URLhaus Database

You are currently viewing the URLhaus database entry for http://136.144.41.133/WW/file6.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1364157
URL: http://136.144.41.133/WW/file6.exe
URL Status:Offline
Host: 136.144.41.133
Date added:2021-06-14 06:55:04 UTC
Last online:2021-06-29 19:XX:XX UTC
Threat:Malware download Malware download
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2021-06-14 06:56:03 UTC to abuse{at}serverion[dot]com)
Takedown time:15 days, 12 hours, 10 minutes Bad (down since 2021-06-29 19:07:01 UTC)
Tags:ArkeiStealer link exe opendir RedLineStealer link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-06-29n/aexe b9c8f1cf4978dce7dd0c123bcae9a6c090d1fa76755faa79c8ecbaa28dbe9d68Virustotal results 50.00%RedLineStealer
2021-06-28n/aexe 9405876cce12a7a194783c721b154f270b9b4e53be9ad3c6cb3982ffbd8a6c73n/aRedLineStealer
2021-06-27n/aexe 58199bddad762ec10114f06c6ed838b288558e61378d9caf74af1ba861e7e495Virustotal results 42.03%RedLineStealer
2021-06-27n/aexe 9c3bd592fc9da10ff2b30b73f2195bad21df56f347eca2011904cf6d00a9a5e2Virustotal results 29.51%RedLineStealer
2021-06-25n/aexe baa011a0a4e29a1b2aecfb5001347792be97956fd7e1df5b27902f2a8ee5aa61n/aArkeiStealer
2021-06-25n/aexe 9c539f0ca8a0b221b8239b1cb06e3eee431a72175b6360f518394ffc2ffaa939Virustotal results 47.14%ArkeiStealer
2021-06-24n/aexe f59de21ca84bcc494d5b68094a22bd033a12cfddfb46ed2c04d4c9e41dc12640n/a RedLineStealer
2021-06-24n/aexe 261bfbcdb179633109487801b08179fec979d328c3ee253a6c7c5b34bf185624n/a RedLineStealer
2021-06-23n/aexe 397e2b5da2c8a13a8eafd1d05a6a320fdb9c18d90811787ec4383531e683f2baVirustotal results 8.96%RedLineStealer
2021-06-22n/aexe 2697273a47dc9a8ab4fb675d7bc252864bf42d999e05e52887d3baaec5d300b2Virustotal results 14.29% RedLineStealer
2021-06-20n/aexe 9c86d6d4ff5fcfcd5cc3b3304eb7e4fc31b06db0236deb497f0d88961f1f2487n/a RedLineStealer
2021-06-20n/aexe 521294dfc8a64a5e31a33afab50041dab893d8b7837bb043e54bf2a9febf19c9Virustotal results 29.03%ArkeiStealer
2021-06-18n/aexe f24727cf3cd7e340aee5ab89c313a56f26ec4ee029a6ab5a598406beabc51d05n/a RedLineStealer
2021-06-16n/aexe 006aebdb520b6ed01cad55e601614775757c72e116eccdbc316ae0422d59a5e0Virustotal results 48.44%RedLineStealer
2021-06-15n/aexe d645b7c368c3c60c34eab973cd99d5c08f014ac87c56b56eeb8cdc24abddf32bVirustotal results 27.14%RedLineStealer
2021-06-14n/aexe d6790cc196be01cc853b498b7689f588d1679b19869fdbdb10d4c47dfcd55ad0Virustotal results 22.86%RedLineStealer