URLhaus Database

You are currently viewing the URLhaus database entry for http://31.41.244.9/good/trak.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3332882
URL: http://31.41.244.9/good/trak.exe
URL Status:Offline
Host: 31.41.244.9
Date added:2024-12-06 08:37:25 UTC
Last online:2024-12-11 03:XX:XX UTC
Threat:Malware download Malware download
Reporter: abus3reports
Abuse complaint sent (?): Yes (2024-12-06 08:38:16 UTC to dl{at}redbytes[dot]ru)
Takedown time:4 days, 18 hours, 22 minutes Bad (down since 2024-12-11 03:01:10 UTC)
Tags:Amadey exe LummaStealer RedLineStealer link Stealc

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-12-10n/aexe 74353c3a81ce1d692ac70fb74607a05c8bee2f2e08a524de8222c1f0be935f51n/a RedLineStealer
2024-12-10n/aexe 6b484fae3f9acbc1b5256e002bed2b91900ac8c9b81c0da558c00ec046d94a60n/a RedLineStealer
2024-12-10n/aexe 677f36e511b34f349df020e3dc6e15ad59edc6085111e0526c5ce75c0ca5473bn/a RedLineStealer
2024-12-10n/aexe e722b1ec7c893209be4e092e4db1aefe498cd87120350df2049f2d50b5e5bf1dn/a RedLineStealer
2024-12-10n/aexe 2949d21f36ac9ddb989dd8ac6948b3e95ee554d70767b8dae6c8bb2aaa1f83cbn/a RedLineStealer
2024-12-10n/aexe ddbae7f24b368c1f5c56d78add47eb95dd7732b8dc2a918706cab5f3ebcbacf8n/a RedLineStealer
2024-12-10n/aexe c457d98d61906051ab1744e9e680334f69fd7ce6888cb7836a46bc82c8f2fa96n/a RedLineStealer
2024-12-10n/aexe d231c41502786f3f5aa6c953347784a86fdc4b2ddecfa73a1ada608e9b239fban/a RedLineStealer
2024-12-10n/aexe 48c4c36a7e0043438ba7dbdb6a7f8bd9b35cda91451f078ddb4dcef4b97dfa93Virustotal results 54.29% RedLineStealer
2024-12-10n/aexe 1af4e6a4d5c34600ce53deceb53e0bd8d2a06bbaa24833c273e82f8d2cafa0d8n/a RedLineStealer
2024-12-10n/aexe 8311e6eab20959c9552a1476d843e1e2dc3d4e9daf6a1c5022d7712d957762d4n/a RedLineStealer
2024-12-09n/aexe a70d584c0420227a7d9f232927b1ede30189579162b56bc1d09748c977136fb2n/a Stealc
2024-12-09n/aexe df016a9bd35f559c4a3f23dd887e28b010ceee15e653f517c93a86f76d5755c3Virustotal results 49.30% Stealc
2024-12-09n/aexe 965879e4e43e11ce73165f4a7d8f7d14fdd11d24d128db9ab4ea6f171c1ebaean/a RedLineStealer
2024-12-09n/aexe 5d0e86d16b65fff3e54891672ef238c76a8494858b191a26af77d431cf21f54bn/a RedLineStealer
2024-12-09n/aexe 9ed40e0d795ec7894955447aa60a3df726b8a1618bab72711936c56383e20a49n/a RedLineStealer
2024-12-09n/aexe 4e55160a8957252129f323d40c73ef07351127de170119b1902b77b9c1ace2bfn/a RedLineStealer
2024-12-09n/aexe 552a07d87f9b2a99acfb066f69a1629c8fa892ce90e2328e7b9059763f5cd7faVirustotal results 54.69% RedLineStealer
2024-12-09n/aexe 16cb64a6dd7bd0b8fc487acb0427468d3bab0f65e9cda675e2d9b568729a8933n/a Amadey
2024-12-08n/aexe 04ccac472e7f9760a547e7bbb721c713f00021fcc74a59637c198f4bbee06c2dVirustotal results 55.56%Stealc
2024-12-08n/aexe a2f2cfd6b86997400bac306befc6888ceb08054e8ba4c7b194543b5654793f85n/a Stealc
2024-12-08n/aexe 17a5bdc26d3ea1bae99a8b8b323bf920b23393921237cfc2fdd7677356e42b5an/a RedLineStealer
2024-12-08n/aexe 8bc7a6b15ddf8ee92af2fbbed5a1a2519e230562668852d025dfbd17fc18b534n/a RedLineStealer
2024-12-08n/aexe d350ddaccebf1e8f389b5986253c05c729f921e8063fd82ba8f30575e948ea4dn/a RedLineStealer
2024-12-08n/aexe 020d3c6bd61799a23049f0175f2e7ec927277f1af1d7433eddfb3194fb934191Virustotal results 49.30% RedLineStealer
2024-12-08n/aexe 3b1a8195f46650f98aa01370319f9aa87646c8c30b5ee765b8562c1f5b8b6945n/a RedLineStealer
2024-12-08n/aexe 4aa8961ae64ec7c2abb75aeca047389bd3167e78e9866b4c53b54c12e68bb574n/a RedLineStealer
2024-12-07n/aexe a1a647f34c4a8583f720a1042e570cdca073f8303b9245765d49a809d017466cn/a RedLineStealer
2024-12-07n/aexe c026568e31b5c21c14e9344dbe601dc8fa5ebd52d0bc20588902cbab8ec9411bn/a RedLineStealer
2024-12-07n/aexe 80f00de48e0ee1b572a8e2c73d15a8cad5e5039ae8356f1faa183574a6ff9a44n/a RedLineStealer
2024-12-07n/aexe 6d947d58bd507989eae088f9e052a4ff18e96d289c2671649217a020548f1ad2n/a RedLineStealer
2024-12-07n/aexe 58ff3b890f3a0664ac60ba26bdfae7df982d1ac488469e4967297c1c210b95ddn/a RedLineStealer
2024-12-07n/aexe 7c29905495c34a07aea7722dc70b3764a3595ebf754e6dc5119fe7526fea4a91n/a RedLineStealer
2024-12-07n/aexe 73875813ae8b1ccceafd62484b9ba91021d964fc0a159058228726016e0bf279n/a RedLineStealer
2024-12-07n/aexe c3d8785fe37df121662d75f11d7a639fcb7f89073885beae2fedf40508bc2ee6n/a LummaStealer
2024-12-07n/aexe 2011c716610e24101eb4fe01b81c6c80c2f634243b381424e7d33ef03c2abb4fn/a RedLineStealer
2024-12-07n/aexe 269106f7b2193054bcb4d36ed37ef9902ebf148fa2dcff6bd5c621bacc38a47bn/a LummaStealer
2024-12-06n/aexe 790e00163b10ff289be87d5171dd644fac061af4029f604554b1069594bb4422n/a Amadey
2024-12-06n/aexe 0a94b6989087a0696eb05733e1ffdcd2377c4139e843e59b829cc29674ce5aedn/a RedLineStealer
2024-12-06n/aexe 1dd39914b910eb9c0f27b338f27d960ee003315c5ce0b59fb2b76cb8ebcfb599n/a RedLineStealer
2024-12-06n/aexe f6e23cbb5c09b8ab781034c19c1803bf7574fd1878dc340fe22b22bc9ed3dadfn/a RedLineStealer