URLhaus Database

You are currently viewing the URLhaus database entry for http://windriversfiles.imeitools.com/component/vc2005sp1redist_x86.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3347308
URL: http://windriversfiles.imeitools.com/component/vc2005sp1redist_x86.exe
URL Status:flame Online (spreading malware for 1 year, 5 month, 20 days, 14 hours, 11 minutes)
Host: windriversfiles.imeitools.com
Date added:2024-12-13 06:30:20 UTC
Threat:Malware download Malware download
URLhaus blocklist:Blocked
Spamhaus DBL :Abused domain (malware)
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Blocked
DNS4EU :Not blocked
Reporter: lontze7
Abuse complaint sent (?): Yes (2026-05-20 18:43:19 UTC to zhaoyz3{at}chinaunicom[dot]cn)
Tags:RedLineStealer link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-06-11vc2005sp1redist_x86.exeexe 6f02d7b73a5be8ca03aeb343357f5ac4d6e65205a50efcd876f0c8e63ab30857n/a 
2025-06-11vc2005sp1redist_x86.exeexe 842eca3662c14ac6199d73c317fe4a5521e3eb0a9a16b54a837ac3f09e48d6b5n/a 
2025-06-11vc2005sp1redist_x86.exeexe 02870e56d2a2bcf9c9bd2fe485aa2f1f6dd351f509fddd138b467ab1517d4a98n/a 
2025-06-11vc2005sp1redist_x86.exeexe ab6cb8bd209c1ac581c4faa111db831dd34838a85d2b8d7bce7a0f82c634a9c1n/a 
2025-06-10vc2005sp1redist_x86.exeexe 550c63fbba27c15a3875c05d1ae9b1d669ad436e523ed28cf7519cc1ee36a2fcn/a 
2025-06-10vc2005sp1redist_x86.exeexe b69f7ee6fc49553b751535d2ebad28a8517d4fbd57274640c0670336ff7c9955n/a 
2025-06-10vc2005sp1redist_x86.exeexe b6237ca356a49a0df650a1203270c757cc67f2dfc0e3fc1988b29efe8cf6d699n/a 
2025-03-16n/aexe 1f0260b5c972978c1bdc0347c63429fbef0f361d6c762c299edbf10a42bf14f3n/a 
2025-01-25n/aexe c01aafb3561211d1ffeea3c4698ffe67bb71b1aed28c129fbf2a96bfbb854e89n/a 
2024-12-13n/aexe 38956c255f79c4378e25abf28ea72bad8ca69e48b0ae897ce78baa4580aa48c3Virustotal results 0.00%