URLhaus Database

You are currently viewing the URLhaus database entry for http://213.209.150.18/fSC2u3IOJCbSQXY.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3619353
URL: http://213.209.150.18/fSC2u3IOJCbSQXY.exe
URL Status:Offline
Host: 213.209.150.18
Date added:2025-09-07 13:49:10 UTC
Last online:2025-09-15 16:XX:XX UTC
Threat:Malware download Malware download
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2025-09-07 13:50:12 UTC to abuse{at}virtualine[dot]org)
Takedown time:8 days, 2 hours, 24 minutes Bad (down since 2025-09-15 16:14:52 UTC)
Tags:exe MassLogger link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-09-08fSC2u3IOJCbSQXY.exeexe 14e165221ac2efc6f337be62526b4005255f27d8b465f29f1edf6176a3cdb03cVirustotal results 36.62%MassLogger
2025-09-08fSC2u3IOJCbSQXY.exeexe e9d0574313cf79e4077710352d6bbcf45ccaa4dd6bfd5ac3bb70805e516b29f7Virustotal results 25.00%
2025-09-07fSC2u3IOJCbSQXY.exeexe 4c463b6b2c03f037fdb1f011a547b1c794fd13d9e1174285991adcdef1f59a46Virustotal results 66.20%MassLogger