URLhaus Database

You are currently viewing the URLhaus database entry for http://185.182.82.13/1.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3787990
URL: http://185.182.82.13/1.exe
URL Status:Offline
Host: 185.182.82.13
Date added:2026-03-01 09:50:15 UTC
Last online:2026-03-03 00:XX:XX UTC
Threat:Malware download Malware download
Reporter: c2hunter
Abuse complaint sent (?): Yes (2026-03-01 09:51:12 UTC to abuse{at}podaon[dot]com)
Takedown time:1 day, 14 hours, 10 minutes Poor (down since 2026-03-03 00:01:37 UTC)
Tags:c2-monitor-auto dropped-by-amadey Vidar link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2026-03-021.exeexe 073201915ffdbbfd2a2e21c0fbc15bf129b6b81521ddcf5dc8747ea6fa3c5c71n/a Vidar
2026-03-021.exeexe 3d40aec24d782f605bd3b7903a565bf3789c241d63a278868de309f9c4d270c3n/a Vidar
2026-03-021.exeexe f418fdc7482599c061737e995ed1381344fb2f788b2b576aa49531f30a619294n/a Vidar
2026-03-021.exeexe 195a62b27849b9cbf0c5539e266c856059b1b2422673572866ae1572348ba979n/a Vidar
2026-03-011.exeexe 77f2774cf6124ca18f3b123bf3417a2bdf7e80c4506eb140cbbdaef9915e1513n/a Vidar
2026-03-011.exeexe a06283d61a63d8f659ce5eeea2b7b26c5da4b0b26e6c3f6f097524416b4950d4n/a Vidar
2026-03-011.exeexe 05e92880112a00292ed31f8cd3f0679f7c0295952f3743af2285eedfdf5155d0n/aVidar