URLhaus Database

You are currently viewing the URLhaus database entry for http://136.144.41.201/WW/file4.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1414681
URL: http://136.144.41.201/WW/file4.exe
URL Status:Offline
Host: 136.144.41.201
Date added:2021-07-01 00:02:04 UTC
Last online:2021-07-24 09:XX:XX UTC
Threat:Malware download Malware download
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2021-07-01 00:03:02 UTC to abuse{at}serverion[dot]com)
Takedown time:23 days, 9 hours, 19 minutes Bad (down since 2021-07-24 09:22:07 UTC)
Tags:32 ArkeiStealer link exe GuLoader link RedLineStealer link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-07-23n/aexe c4dc9c9569623520b48ed7bb3f55acdc788aa30492febfb87603a4d91ffb703en/a RedLineStealer
2021-07-23n/aexe 35f7ad295f00b38a569f136204a7b1a9dbfdc17760c6999c456df20fe96e28e2n/a RedLineStealer
2021-07-21n/aexe 76acd8a497e85765a133bdd3c90cb26d257f029c45d73c52b4effc06f94a2555Virustotal results 24.64%RedLineStealer
2021-07-19n/aexe 8cecb6b01aa0456667f940b42f7e394902c7b4da6f7597c5e9ca8a45f7e646d0Virustotal results 39.13%ArkeiStealer
2021-07-16n/aexe d3ac3ebc9420eba359530a211d0fc51e4b09cb12c1f7bdba4a329cfcd5380718Virustotal results 37.68% RedLineStealer
2021-07-14n/aexe 8275ce4431c44f5d5a463702f986fd006678ac771de8e8b97d8fe8270a1231aan/a RedLineStealer
2021-07-13n/aexe a7ebec6f8454815d08c8931f403854e28dfd6ca7c04d59dff34883e2cb413bb2Virustotal results 30.88%RedLineStealer
2021-07-11n/aexe f69c2c4373795adabcd45f81db1e6e2b038ce3fd6471d18dfe35ccc148e7b81dn/a RedLineStealer
2021-07-10n/aexe 7e0e91fac0125f566d34563254893f97168439caadd1fd84b0a2ec254ee72525Virustotal results 33.33% RedLineStealer
2021-07-06n/aexe 2e641d4ca1ec2d70e05dcfea340e14375c20cc66dcb964c003a43a71ae8ea911n/aRedLineStealer
2021-07-05n/aexe a5a1d72b8d7045cf92e3fc39b72cf251a015464f1f7920aa028b341d3f646ee8n/aRedLineStealer
2021-07-05n/aexe 60c47c555c49428dd6623e73049c936e7a42687ce6506ee1e6b614585b52714fn/aArkeiStealer
2021-07-04n/aexe 452360cd423f7d63f2c44a4d3e3a71ee219bfe070837a219ced908f0bb18388cVirustotal results 19.12%ArkeiStealer
2021-07-01n/aexe 9db6c93a5088b8b8ad42da6dd88ed3c76ae3b6cde4f6f05742befdd4951a0550n/aGuLoader
2021-07-01n/aexe bcf08bd75a4016dab6b39ad63101a8e5daa5cd309ee9162374d65dded2d48dfdn/aGuLoader
2021-07-01n/aexe ed4b9cc3467e9c1a975698450823fe72cebecfbc2c4246fcf98284bc20662cc1n/a GuLoader
2021-07-01n/aexe 3012b7a51af86d42beaaf6488f7166002226cbaee3ccb92e1c2a2d4b107c3930Virustotal results 37.68%GuLoader