URLhaus Database

You are currently viewing the URLhaus database entry for http://185.215.113.209/inc/Set-up-1.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3338520
URL: http://185.215.113.209/inc/Set-up-1.exe
URL Status:Offline
Host: 185.215.113.209
Date added:2024-12-09 14:43:11 UTC
Last online:2025-04-28 13:XX:XX UTC
Threat:Malware download Malware download
Reporter: abus3reports
Abuse complaint sent (?): Yes (2024-12-09 14:44:13 UTC to automatic-abuse{at}eliteteam[dot]to)
Takedown time:4 months, 19 days, 22 hours, 56 minutes Bad (down since 2025-04-28 13:40:46 UTC)
Tags:185.215.113.16 cryptbot

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-03-14n/aexe be839236c157babb04a594b8c0eafe64d59e53aab5ddf18e560a1f6434913516n/a 
2025-02-28n/aexe c9694bb842cb4c62886b988725a5af186660298c52ea082d3f3b697f558a511bn/a 
2025-01-27n/aexe 481565bd5706d9017f173d618becf8f1b6913f51904b9437d3841bbee0a16dc4n/a 
2025-01-25n/aexe 5be92c50f73443ce1f6984ba4558b5ab6983c6375bc758b2e04140e90efc3350n/a 
2025-01-20n/aexe 0e1b2b3938d7ddc5f1edf18c6c9130adc7bb17462aab4291b6712a353f9dfa26n/a 
2024-12-09n/aexe 8b6a0a8d8594fb4f465a8220533a8cbf25fb725220dfc35056c7787b27d89643Virustotal results 56.34% CryptBot