URLhaus Database

You are currently viewing the URLhaus database entry for http://136.144.41.201/WW/file2.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1414749
URL: http://136.144.41.201/WW/file2.exe
URL Status:Offline
Host: 136.144.41.201
Date added:2021-07-01 00:42:03 UTC
Last online:2021-07-22 19:XX:XX UTC
Threat:Malware download Malware download
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2021-07-01 00:43:02 UTC to abuse{at}serverion[dot]com)
Takedown time:21 days, 19 hours, 14 minutes Bad (down since 2021-07-22 19:57:27 UTC)
Tags:32 ArkeiStealer link exe RedLineStealer link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-07-21n/aexe 51dd1bfd096aa2df54b2c2f0ead05ca6eae63dfb50c93788163b4a5707fbe0daVirustotal results 45.71%RedLineStealer
2021-07-19n/aexe 1b9b021ce1c037a4a6d7a999a2ce3be065b35c0a11b4429c47e54e924828da2dn/aArkeiStealer
2021-07-19n/aexe 3559b0d23a700233cfccdaa2f665c37d2501907be780b34da6aece15eec6be72Virustotal results 19.12%ArkeiStealer
2021-07-18n/aexe 581684eed64322ad48a61a06b57e73b343c2dabb51248b33a943d0282677546fn/aArkeiStealer
2021-07-18n/aexe 9706247fdb847874ca3fad6229787e37299be25d938af865a8e5b132bf313b89Virustotal results 19.12%ArkeiStealer
2021-07-16n/aexe 4b1bb5b4ec520f876013a1607c28097c02c7e93d6a1e908af320d633d3d0a76bn/aArkeiStealer
2021-07-15n/aexe 419c0ec8639bbed490688e2811ddd0cd193da81096ad07724b7afb1e51de351bn/aArkeiStealer
2021-07-14n/aexe abe64f9e17fbec4bad53123daea78baddcecc55282ce8311b58c5caf1b1fda6an/a RedLineStealer
2021-07-13n/aexe fd6321b3376d531394fb88138597a75cd18ab0235c542d8249aa8c4c05559b4an/a RedLineStealer
2021-07-13n/aexe c5dba47d2aa01b880e395e5d811872aff721397d9b6377c2d51bee885fdfed6dVirustotal results 26.87% RedLineStealer
2021-07-11n/aexe d2ef87197c3cba0c94de3d1f5ffd8947eb8f4e470d0379ad6dcbd7e883464518Virustotal results 39.13% RedLineStealer
2021-07-10n/aexe 2f2e4abbe46856f4b1056e5147652d19e316fa80848ec1e8dc8b9ea61918c93bVirustotal results 29.41% RedLineStealer
2021-07-06n/aexe 2ff7ffce923329f55bc637371e54822d6ceee9962c807ccc42e3301e0a8a2caen/aRedLineStealer
2021-07-05n/aexe fa828910a57f28e7f5c5d98f5bceb8c082dec0f2b71d225a06ee231d326e713en/aRedLineStealer
2021-07-04n/aexe 554dbd07e0f226d4e888bb2eb368d0ca3c2d4b2b17f8726ca61a63120ee5e083n/aRedLineStealer
2021-07-04n/aexe db1e574f8cfdf5e9dc03043149cf9327a0102bd5d35369978e632632a2444bcbn/a RedLineStealer
2021-07-01n/aexe c88aa7ed56d611114cd6e9376e42a608103f371d5ceeb82c1c0253cb7d1d7151n/a RedLineStealer
2021-07-01n/aexe 7084f1ae45733b1311a449d2a33202b5ca93363755fc6a746b37ed934b8fa9c9Virustotal results 42.03%RedLineStealer