URLhaus Database

You are currently viewing the URLhaus database entry for http://196.251.73.58/host/Stein.zip which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3611135
URL: http://196.251.73.58/host/Stein.zip
URL Status:Offline
Host: 196.251.73.58
Date added:2025-08-25 06:42:07 UTC
Last online:2025-09-05 03:XX:XX UTC
Threat:Malware download Malware download
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2025-08-25 06:43:12 UTC to abuse{at}cheapy[dot]host)
Takedown time:10 days, 20 hours, 35 minutes Bad (down since 2025-09-05 03:18:18 UTC)
Tags:AgentTesla link opendir zip

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-09-01Stein.zipzip bbcdd4f9d048f01fbab15d56207f248b12f052dec91d2cfdadc8e4c7b2d425e5n/a 
2025-08-29Stein.zipzip 1cd38245fcb3fab9168a5bd3b6cbd0d705fa483b4421c0d6d93071fc7a4c6637n/a 
2025-08-28Stein.zipzip 56a88f51c952133a11dc9843da6fb0d44bce4b78a5a2c3cdfef40ccccec8fa81n/a 
2025-08-27Stein.zipzip 9316bf4672dc6a055b4df715382969737c4f6ef92f97ebf4c7ad0c54743705a7Virustotal results 17.65% 
2025-08-26Stein.zipzip 12ff2dc12be4ecddd42f96e0d902a32082ae346bbcf46d7e96e14a895678ba37Virustotal results 24.64% 
2025-08-25Stein.zipzip df9fc77be80e0a200db4898bdfd2e5f3f4a9c5e735a440c804e9fe7f26b2a883Virustotal results 21.74%