URLhaus Database

You are currently viewing the URLhaus database entry for http://31.41.244.12/good/trak.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3332880
URL: http://31.41.244.12/good/trak.exe
URL Status:Offline
Host: 31.41.244.12
Date added:2024-12-06 08:37:23 UTC
Last online:2024-12-11 00:XX:XX UTC
Threat:Malware download Malware download
Reporter: abus3reports
Abuse complaint sent (?): Yes (2024-12-06 08:38:15 UTC to dl{at}redbytes[dot]ru)
Takedown time:4 days, 15 hours, 53 minutes Bad (down since 2024-12-11 00:31:23 UTC)
Tags:Amadey exe LummaStealer RedLineStealer link Stealc

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-12-11n/aexe 74353c3a81ce1d692ac70fb74607a05c8bee2f2e08a524de8222c1f0be935f51Virustotal results 56.94% RedLineStealer
2024-12-10n/aexe 677f36e511b34f349df020e3dc6e15ad59edc6085111e0526c5ce75c0ca5473bVirustotal results 48.61% RedLineStealer
2024-12-10n/aexe e722b1ec7c893209be4e092e4db1aefe498cd87120350df2049f2d50b5e5bf1dn/a RedLineStealer
2024-12-10n/aexe 2949d21f36ac9ddb989dd8ac6948b3e95ee554d70767b8dae6c8bb2aaa1f83cbn/a RedLineStealer
2024-12-10n/aexe bb94330d7bb4d60f1247bf1ab358ac2960823d8289d2016ea8e3489b6919038bn/a RedLineStealer
2024-12-10n/aexe 4119e8730fb745bf623cd5aa2b1370177e81bef5a41beefc5fcf2e3c1bc144dcn/a RedLineStealer
2024-12-10n/aexe d231c41502786f3f5aa6c953347784a86fdc4b2ddecfa73a1ada608e9b239fbaVirustotal results 52.78% RedLineStealer
2024-12-10n/aexe b51bcbe26f81378127643583d6f5afcee58623252c674e91334fe4e7adb2ec88Virustotal results 55.22% RedLineStealer
2024-12-10n/aexe bc6befbb15387dd8d3c76fe2ca83cfb0ec4b0c2f89d8dcabb9f828ec754c710dn/a RedLineStealer
2024-12-10n/aexe 1af4e6a4d5c34600ce53deceb53e0bd8d2a06bbaa24833c273e82f8d2cafa0d8Virustotal results 51.39% RedLineStealer
2024-12-10n/aexe 0360265e7c002862e33920d627dd2d8a4d7b2b25d3250d0445c6c15258b62a63n/a RedLineStealer
2024-12-10n/aexe 0df907842b137187c0209b75aa737ef6cc95081e2573b2a77149a6fdc21ed0b3n/a RedLineStealer
2024-12-09n/aexe 4e0921037cd3e0d5f8d0155a09214da29bd9d0296634779d73890a9c8904f118n/a Stealc
2024-12-09n/aexe 1136566f5c896c8a2218126b2c4dbe67a6fd83bf808fd2de735458a6422f0636n/a Amadey
2024-12-09n/aexe 18da47cbaa9d4fddb3d68859d66bd2573f172eea02c5f829795ae6c09f4fcdf3n/a RedLineStealer
2024-12-09n/aexe 965879e4e43e11ce73165f4a7d8f7d14fdd11d24d128db9ab4ea6f171c1ebaean/a RedLineStealer
2024-12-09n/aexe 9ed40e0d795ec7894955447aa60a3df726b8a1618bab72711936c56383e20a49n/a RedLineStealer
2024-12-09n/aexe 4e55160a8957252129f323d40c73ef07351127de170119b1902b77b9c1ace2bfVirustotal results 59.72% RedLineStealer
2024-12-09n/aexe 552a07d87f9b2a99acfb066f69a1629c8fa892ce90e2328e7b9059763f5cd7faVirustotal results 54.69% RedLineStealer
2024-12-09n/aexe 1bc701e02807ede8294219701706c8d51824814fe33b17ed0660ff09f422481en/a Amadey
2024-12-08n/aexe 2e50f78cffe14537be114c02735107d9f06de35f7323270123878fd7d4397758n/a Stealc
2024-12-08n/aexe 09e789e21aa81fd55c4c94f4cec5b6075fcf0b70421e21f304913f6778f5fe27Virustotal results 56.94% RedLineStealer
2024-12-08n/aexe 17a5bdc26d3ea1bae99a8b8b323bf920b23393921237cfc2fdd7677356e42b5an/a RedLineStealer
2024-12-08n/aexe ee0a61a0ee734019d0e648b88dbcda6ecfb8c52886168e124c08410a7d345adcn/a RedLineStealer
2024-12-08n/aexe 45c4e4a5d400425298bf97f12e4898c23351901389adc27c9e1276464005c540n/a RedLineStealer
2024-12-08n/aexe e9950c82ab52989d6254f4ea8fc9e029af8c16fd31961158fe58698de6060cbbVirustotal results 55.56% RedLineStealer
2024-12-08n/aexe 020d3c6bd61799a23049f0175f2e7ec927277f1af1d7433eddfb3194fb934191Virustotal results 49.30% RedLineStealer
2024-12-08n/aexe 7b5e36ef75876c0cbbadfe05d8bb172398b77241195ce3cbdca88f04ddd00cccn/a RedLineStealer
2024-12-08n/aexe 4aa8961ae64ec7c2abb75aeca047389bd3167e78e9866b4c53b54c12e68bb574n/a RedLineStealer
2024-12-07n/aexe a1a647f34c4a8583f720a1042e570cdca073f8303b9245765d49a809d017466cn/a RedLineStealer
2024-12-07n/aexe 80f00de48e0ee1b572a8e2c73d15a8cad5e5039ae8356f1faa183574a6ff9a44n/a RedLineStealer
2024-12-07n/aexe 27270a46f9cb7bae6cfe197c5622bbddb51a580ee020d75c325c3640f70c769bn/a RedLineStealer
2024-12-07n/aexe 58ff3b890f3a0664ac60ba26bdfae7df982d1ac488469e4967297c1c210b95ddVirustotal results 48.61% RedLineStealer
2024-12-07n/aexe 7c29905495c34a07aea7722dc70b3764a3595ebf754e6dc5119fe7526fea4a91n/a RedLineStealer
2024-12-07n/aexe dee06f6c1f9d820768084cf83b511a621f6461e5420a354273125e3c1f994e9dn/a RedLineStealer
2024-12-07n/aexe c3d8785fe37df121662d75f11d7a639fcb7f89073885beae2fedf40508bc2ee6n/a LummaStealer
2024-12-07n/aexe afc3e018713dfca920ff0d6e97323aa44ba2501047ae566ddfd4b328308f0804n/a RedLineStealer
2024-12-07n/aexe 269106f7b2193054bcb4d36ed37ef9902ebf148fa2dcff6bd5c621bacc38a47bn/a LummaStealer
2024-12-06n/aexe cefd5896d5020672884a26c4170539c5330defd92d9c1196bfb744822892b8c2n/a Amadey
2024-12-06n/aexe 0a94b6989087a0696eb05733e1ffdcd2377c4139e843e59b829cc29674ce5aedn/a RedLineStealer
2024-12-06n/aexe 06b7ed2896d9ccbc3d7f37214499b4011cc9ac04613aaad13c8264ef2ce4354fn/a RedLineStealer
2024-12-06n/aexe 32b97cf357ea630a1a6d9a44e20b183e69e009e3203b6b7110f0a037d305e2bdVirustotal results 54.17% RedLineStealer
2024-12-06n/aexe f6e23cbb5c09b8ab781034c19c1803bf7574fd1878dc340fe22b22bc9ed3dadfn/a RedLineStealer