URLhaus Database

You are currently viewing the URLhaus database entry for http://178.16.54.200/rad/random.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3627697
URL: http://178.16.54.200/rad/random.exe
URL Status:Offline
Host: 178.16.54.200
Date added:2025-09-20 13:31:09 UTC
Last online:2025-11-05 14:XX:XX UTC
Threat:Malware download Malware download
Reporter: c2hunter
Abuse complaint sent (?): Yes (2025-09-20 13:32:10 UTC to abuse{at}metaspinner[dot]net)
Takedown time:1 month, 16 days, 1 hours, 26 minutes Bad (down since 2025-11-05 14:58:17 UTC)
Tags:c2-monitor-auto dropped-by-amadey Vidar link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-09-25random.exeexe 9cededc9d40c3a492317fa6dea94d7aab0a9d4892e3395e94b2aa703be56f21bVirustotal results 47.22% Vidar
2025-09-24random.exeexe 959dd37e3a43f8749e5da3914ade03a7b10c485602b1b66609733f1dc88b03e2n/a Vidar
2025-09-24random.exeexe 8016d05cab198c918208deefded2b7741054776f96fba3892dd8bdb8bec79c8dVirustotal results 47.22% Vidar
2025-09-23random.exeexe b0b9a82723481b7730961457dc6c2587e5840c3d327a14149227e46b549b1dc3n/a Vidar
2025-09-23random.exeexe 035b6fa890526c352b8e3834241523e489f8d32f2272e6e17d91a72c623fb5a3Virustotal results 45.83% Vidar
2025-09-23random.exeexe 243da4111b5b4eca02d659edda1ae4f16d177372d1ff90af54098d768bef1caaVirustotal results 48.53% Vidar
2025-09-23random.exeexe bee12147bac42009ba9e13c2cfa9f907a60bf2eded379ed2d16bdbe3d12b73e4n/a Vidar
2025-09-23random.exeexe f49abe760cc995b4deec93cf4c8e7cbf59bb9cf9a7b215bdff9c3be9001396efn/a Vidar
2025-09-23random.exeexe 0deacaf18747cfc8650020e25dc184fa5947ba05115e2abb0535e6da4e904635Virustotal results 47.89% Vidar
2025-09-22random.exeexe 564f32b7e046574fcc589cfb0a64db1b49e4be8ead78c64990518cc7d75885e7Virustotal results 47.22% Vidar
2025-09-22random.exeexe 5f22e4de0d7229064824d850e6864eb05416caf983116bc0e336a0e419481d88Virustotal results 47.22% Vidar
2025-09-22random.exeexe d467ea1fc8588db5c4eaa5563bd5e72719161632839193854e2efd1f6e97f544Virustotal results 45.83% Vidar
2025-09-22random.exeexe 133f178351e98c0d18e7147eb41068b2219edb39e07f2e2f1af36f2f35d1e89bVirustotal results 43.06% Vidar
2025-09-22random.exeexe 1bf03d043125f0e55a3cd894054552d1e2e28d5dacdf7d39a49a7ac6e2978d90Virustotal results 41.67% Vidar
2025-09-21random.exeexe 15c0ac56db38816ae2a4dd2d1c4d71cd7aeeb470105f4380df22b0065a3838bcVirustotal results 42.25% Vidar
2025-09-21random.exeexe e988b409f89b8fba720568e55a743d591ba59ee3e364abd6e29b30e71c873297Virustotal results 34.72% Vidar
2025-09-21random.exeexe 09744b80854a87510343ad3376fd391805b3e28b081251a6f7b3843597312914Virustotal results 34.72% Vidar
2025-09-21random.exeexe 06d0d57138fd90baa82dcf1c10cb4ebf5cd5d4b4aaa8dbc0cc636f9aa3f6a5f0Virustotal results 34.72% Vidar
2025-09-21random.exeexe c29618839be5e6e831424037e994c74b1b645039ad786340e8df3c2ae5097435Virustotal results 34.72% Vidar
2025-09-21random.exeexe 090bbdb78d1da8ea17723d95158113870fedaa89cd60804cb46a96bad614474fVirustotal results 34.72% Vidar
2025-09-20random.exeexe 63d70551a7e2ba9803837fdb397ace5f719e18963eb3bf7af3cba5f163567f32Virustotal results 36.11%Vidar
2025-09-20random.exeexe 242507e13d2c7b486de8c841966b8cea3330b8452d4b0a75e4ebb045dccd7441Virustotal results 36.73%Vidar
2025-09-20random.exeexe 99b26d826b69f27594e7f434659ccf64fbd5bca2cb5cb495c2aeb11855424e47Virustotal results 33.33% Vidar