URLhaus Database

You are currently viewing the URLhaus database entry for http://45.141.233.196/files/5254702106/p62ZOJm.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3596155
URL: http://45.141.233.196/files/5254702106/p62ZOJm.exe
URL Status:Offline
Host: 45.141.233.196
Date added:2025-08-04 13:29:07 UTC
Last online:2025-08-06 14:XX:XX UTC
Threat:Malware download Malware download
Reporter: c2hunter
Abuse complaint sent (?): Yes (2025-08-04 13:30:13 UTC to abuse{at}virtualine[dot]org)
Takedown time:2 days, 1 hours, 17 minutes Poor (down since 2025-08-06 14:47:58 UTC)
Tags:c2-monitor-auto dropped-by-amadey SalatStealer Stealc

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-08-06p62ZOJm.exeexe b662348b8a7c2c632964f3776dea8186dd8ef8615c9634aa3fdd24ddf04294e3Virustotal results 36.11%SalatStealer
2025-08-06p62ZOJm.exeexe 580e4095c4f54a7883564aca38ec1d6280f7e89404f2bc89c10bd854ef0683f2Virustotal results 40.28% Stealc
2025-08-04p62ZOJm.exeexe 1ff9694c0c8b60ff6bef904d9f002b7ce4a27563be57b550a6acaca5f83f9dc3Virustotal results 43.06%Stealc