URLhaus Database

You are currently viewing the URLhaus database entry for http://185.215.113.209/inc/out_test_sig.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3337991
URL: http://185.215.113.209/inc/out_test_sig.exe
URL Status:Offline
Host: 185.215.113.209
Date added:2024-12-09 08:14:15 UTC
Last online:2025-04-18 13:XX:XX UTC
Threat:Malware download Malware download
Reporter: abus3reports
Abuse complaint sent (?): Yes (2024-12-09 08:15:21 UTC to automatic-abuse{at}eliteteam[dot]to)
Takedown time:4 months, 10 days, 5 hours, 3 minutes Bad (down since 2025-04-18 13:19:16 UTC)
Tags:185.215.113.16 MetaStealer

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-01-26n/aexe bf5a70adb7500cab3a49279d27b1e938e921b26d23f3de1b5ab6a6902f808d44n/a 
2025-01-07n/aexe e29559b35300ab6ab9d3855e6cd7255dc1954e8a4446ea24ebd463729dd021e8n/a 
2024-12-09n/aexe 3d37b55464bded5c54903c5328e695d9b08b483e65cf6bdadd4ecf93954dfc9eVirustotal results 81.43%MetaStealer