URLhaus Database

You are currently viewing the URLhaus database entry for http://31.41.244.12/files/Set-up.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3279836
URL: http://31.41.244.12/files/Set-up.exe
URL Status:Offline
Host: 31.41.244.12
Date added:2024-11-07 06:15:13 UTC
Last online:2024-11-10 19:XX:XX UTC
Threat:Malware download Malware download
Reporter: abus3reports
Abuse complaint sent (?): Yes (2024-11-07 06:16:12 UTC to dl{at}redbytes[dot]ru)
Takedown time:3 days, 13 hours, 35 minutes Bad (down since 2024-11-10 19:51:41 UTC)
Tags:cryptbot exe

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-11-09n/aexe 0d3141560ca1e293597d20822fce393602a54a8f7035691bf54de0d37f05ad57Virustotal results 42.25%CryptBot
2024-11-07n/aexe 46a25aa38e536b2f7f2b950f00269d78ceaa2ae77e9ac3b99b1147628e18d76eVirustotal results 37.50%CryptBot
2024-11-07n/aexe 16606d62af0e28e4c9359802f1e9f329eae01edee0b31b8b84b0fbc51818a129Virustotal results 69.44%CryptBot