URLhaus Database

You are currently viewing the URLhaus database entry for http://31.41.244.10/zumo/leto.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3345091
URL: http://31.41.244.10/zumo/leto.exe
URL Status:Offline
Host: 31.41.244.10
Date added:2024-12-11 12:28:14 UTC
Last online:2024-12-17 00:XX:XX UTC
Threat:Malware download Malware download
Reporter: lontze7
Abuse complaint sent (?): Yes (2024-12-11 12:29:26 UTC to dl{at}redbytes[dot]ru)
Takedown time:5 days, 12 hours, 17 minutes Bad (down since 2024-12-17 00:46:29 UTC)
Tags:Amadey RedLineStealer link Stealc

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-12-16n/aexe 263d1cf6ee0322a2e320c3fd5baf21547085d56c0b7d3226f27ea52eed0ec17fn/a RedLineStealer
2024-12-16n/aexe 2ac10413508a1d2a00453371e8efcb1f9af0f4b1f102599c7f69f4f5ec08fa0dn/a RedLineStealer
2024-12-16n/aexe bba9a6f673f83384c42b7ecc22261525767c36ffcc571be2cc0300d0a45bc0ccn/a RedLineStealer
2024-12-16n/aexe 4ec31f4077dd5c4c9ffb76cda98e3527df934080c5262dc0c6438ff70c379d22n/a RedLineStealer
2024-12-16n/aexe fa237ebe589cbc85940f0a39b38a1c1c71c1b308f9fe768637c441075c4887f7n/a RedLineStealer
2024-12-16n/aexe 904d48cd4798b2c10b4f7311869100e504045c05497ab38c955563dc8c7596abn/a RedLineStealer
2024-12-16n/aexe e71ac951949be22e280b201794083cafc57bbe37af9a79099b700c7459b02adbn/a RedLineStealer
2024-12-16n/aexe 3e9c6c0a6e27dc80dbaa2add7712f3456f87ba8af4c32f07482449369cb38e85n/a RedLineStealer
2024-12-15n/aexe 9e7260e1ffa677acc7c6fba7a28c8ff6303567a9e0634663e9920fbab646db26n/a RedLineStealer
2024-12-15n/aexe 83cfadda68968118d0d410461400e9affdd0de1ac0733e0362a63dd4f4b6f460n/a RedLineStealer
2024-12-15n/aexe 7a377cff7596728f88ad15de8c4865ad8828daf339278f4b9cc28e3257a8db17n/a RedLineStealer
2024-12-15n/aexe 3302ec0eeea7570311e532f23044556ab6666939da2cac83b9468640c2ceb3ean/a RedLineStealer
2024-12-15n/aexe 5749078466c5f7c9f9c65fbaebdb7e291cba8dae43a42b5c47e177c6dedbf705n/aAmadey
2024-12-15n/aexe 038cb851af3041f61604161f91c4aad9c470d73977471337279b270dce5f8424n/a RedLineStealer
2024-12-15n/aexe a4947b1f2ddcd26b036a0b57a0be5ab58c0646bb685be4291eab2efb26d0055bn/a RedLineStealer
2024-12-15n/aexe 5ebf23c15a96a859fb2ad5af08789944f02f85fc80d997b4e51380e20a392babn/a RedLineStealer
2024-12-15n/aexe d59757233e437fa48165befd29cb883f194f413bffb4287e587d1fe8e73658ben/a RedLineStealer
2024-12-14n/aexe d3156e77aac4aa0807c952253096c7312f2643edb88b623c9cbc28a94ccc9ecan/a RedLineStealer
2024-12-14n/aexe 195305cae1f9d7c4f24c38f88a4d360e3e274f2b00110d2ba9712bf947a7e325n/a RedLineStealer
2024-12-14n/aexe 7d7a31de464462f8ad55e0a4166851b2a2e93c9027f20ef4cc75452a47015942n/a RedLineStealer
2024-12-14n/aexe d43a9b85dda9f3b50ce236bb2cabc7772ffbe07318e5a8f5be5b002c2ee8d9e6n/a RedLineStealer
2024-12-14n/aexe cbe9a05c5d52190f93d178ad073a1e64ab6aeebef8d128abe784a23fb9cc3037n/a RedLineStealer
2024-12-14n/aexe c1613d4c4d8252766215604d49ffbb767f3e36235b77b4c03d9f7f61d0cc0ab7n/a RedLineStealer
2024-12-14n/aexe 924c879ddbc4fc54607b98c921efd5dbf817a934e48050b26fc791ebeae98ab0n/a Amadey
2024-12-14n/aexe 80834c97ca3a62ca2823ea2069d74114f05ddb68613334943ce3290516c8bee8n/a Stealc
2024-12-14n/aexe d14316f9eecf9707a10bc07693fa18280b949fc5d7118e1bc615e180f05ebaf4n/a RedLineStealer
2024-12-14n/aexe 3271e292aa322d639d97b2220f0369d8d1de15404b514cf7fee6c1420b2b0601n/a Stealc
2024-12-13n/aexe 81375651d6e31b1082f077b751a550d79be94ec878f110c53c8a52d64070e566n/a Amadey
2024-12-13n/aexe e4f6ec8d5517851819fd65f92fe553abae9e5fc834e98233fe95357e993d3fb9n/a RedLineStealer
2024-12-13n/aexe d0fba71b73c3206de7313feccab0a53f709d63e25df434d9414ff935eb95fed5n/a RedLineStealer
2024-12-13n/aexe d7de79b54b554a64d2b551801e43208f03275ead7dc7b237f3188c27206f0d93n/a RedLineStealer
2024-12-13n/aexe 07caf464a3ca57bb2172b20a3908c66e5f08a7d8071aeff7c808a75a0340d163n/a RedLineStealer
2024-12-13n/aexe 4d6443ea9137f5c984ad2c30944c126db2a8b1643e07a62742a6a71627a1c604n/a RedLineStealer
2024-12-13n/aexe 913164ccb1397443cfaf24ce7deb3e8214bc7b8f740826b387fb15a2f9a8ab54n/a RedLineStealer
2024-12-13n/aexe 734a8c0d86ce0610da79e120d49e04546e70580b65b471e39fcf4dfbfa4c606en/a RedLineStealer
2024-12-13n/aexe e20f6edf25c1da2562bc3f4197b0cc890d6baf82a03a29899e4d2be8d422e784n/a RedLineStealer
2024-12-13n/aexe e3a967c36bfb7fccdd497e14ed1578ef6830e2c02dc2c536a6cf028ff93b20b7n/a RedLineStealer
2024-12-13n/aexe 12def46654d4a92e61dd2843df8903436fd736f8a98e921d2e96d6affafef83bn/a RedLineStealer
2024-12-12n/aexe 78b035381163ab2659ff090097b16ca369f15765e570f3f9b3d829ebf353c803n/a RedLineStealer
2024-12-12n/aexe 3c05907b4de77c7066eda575ce8070aa96792ccddd148e27468f4f835f1456f1n/a RedLineStealer
2024-12-12n/aexe be1b699e184f97aacd8160716728796f9d52a48c11081446493edfa91de2d8fan/a RedLineStealer
2024-12-12n/aexe 977e7a47f360bba3fb56459cf88313a5e33a58f9012e8f2afa152ddd12a21ffdn/a RedLineStealer
2024-12-12n/aexe 1f9a5fcd6fa63ceb9cf92ef23eca0fc1d587474cb4300d966331e4eff8f79125n/a RedLineStealer
2024-12-12n/aexe 53162e364fc6770f51b0b7f48d439e956f75822ca8e6885002c69394896d7667n/a RedLineStealer
2024-12-12n/aexe 20a45ed98d09696e3000c9f14958a75aace28ad5829954a3a94fadf7f6bed97an/a RedLineStealer
2024-12-12n/aexe 9cb1e9efca58664ea398f169f11164922473ffa5c3f384a597435f8f48d4a072n/a RedLineStealer
2024-12-11n/aexe bd49ad91c3de34024b053c54f0f178d663a020f93dae77083bb60029319417ben/a RedLineStealer
2024-12-11n/aexe 99f23797702c2f27409a03c06c1aeb03b7038cf26d4cdc86cdd25cc7fa870843n/a RedLineStealer
2024-12-11n/aexe f5fc2ac08c5caa903ae399316ff95cd03a130a2d30e02c219023686ba206ad16n/a RedLineStealer
2024-12-11n/aexe 603d16acc5d25ee1ac8bdab71a0a68138bd2b2ad119206966101dc7c26749075Virustotal results 53.52% RedLineStealer