URLhaus Database

You are currently viewing the URLhaus database entry for http://185.215.113.209/inc/probnik.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3338131
URL: http://185.215.113.209/inc/probnik.exe
URL Status:Offline
Host: 185.215.113.209
Date added:2024-12-09 08:18:32 UTC
Last online:2025-04-28 11:XX:XX UTC
Threat:Malware download Malware download
Reporter: abus3reports
Abuse complaint sent (?): Yes (2024-12-09 08:19:13 UTC to automatic-abuse{at}eliteteam[dot]to)
Takedown time:4 months, 20 days, 3 hours, 40 minutes Bad (down since 2025-04-28 11:59:53 UTC)
Tags:185.215.113.16

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-04-04probnik.exeexe 891688f288b2b2544b8c2342cfa98147390520b02e066a8bc89068a53c7cc5b2n/a
2025-03-14n/aexe 6fb0a99a51482b25b2101bda24b3a92f300e939f9b4af4c635dbceae080313ban/a 
2025-03-14n/aexe d3a32b98216ecd2fe94493cd564aa809d76f5b8f53721aaee70f3498546d0effn/a 
2025-02-26n/aexe 9e1a565cafd5663da15ced6431cf3dcdaa6d2cb838bd239419995c90f647eca4n/a 
2025-01-25n/aexe bd4564e49e7e3e8977592b7df3e1e55b2af7b2819ba905c8c86c0c880c28724an/a 
2024-12-09n/aexe fda5a3cad6c0b17feba517625f66e3585f668e5f341ae8a41edf7aadb98c8904Virustotal results 59.72%