URLhaus Database

You are currently viewing the URLhaus database entry for http://136.144.41.201/USA/joker.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1427014
URL: http://136.144.41.201/USA/joker.exe
URL Status:Offline
Host: 136.144.41.201
Date added:2021-07-05 01:57:03 UTC
Last online:2021-07-17 10:XX:XX UTC
Threat:Malware download Malware download
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2021-07-05 01:58:02 UTC to abuse{at}serverion[dot]com)
Takedown time:12 days, 8 hours, 31 minutes Bad (down since 2021-07-17 10:29:41 UTC)
Tags:ArkeiStealer link exe RaccoonStealer link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-07-13n/aexe fe65170a6f6cd5ba0df997262bca40350b650067db206bc83bfaf80da94bba9eVirustotal results 23.19%RaccoonStealer
2021-07-11n/aexe bf6ed9f5ca0c3261ed154a6ac8e40f3c036083f7be7dd8130a33b9d184a03c79Virustotal results 25.40%ArkeiStealer
2021-07-11n/aexe a8a3a422b28079598873b90fb91fcc74242207954fc8827d96765ec5d3144f0en/aArkeiStealer
2021-07-10n/aexe 35e4eae543d8f615f6dc3aa780af21207171babf713ad3a4328ea5abefffff70n/aArkeiStealer
2021-07-09n/aexe 26b2619f3a1eae7a181a64e22180e37ba481de6547d31ad92fd6f1ddbbe521bfn/aArkeiStealer
2021-07-09n/aexe 10d971c860d4f8ad93b86f47fbc0cd285897769dd60bb68dea4377bb6e7d6f1fn/aArkeiStealer
2021-07-09n/aexe 4d71f1f9846b1d17a082de364804ff7f69b4e6ecf4c9013ae14363927c7c5054n/a RaccoonStealer
2021-07-08n/aexe 91612c1717b0ab29feab36e67851807692e3ddcf6c34931be5ed4cdcb2471a9bn/aRaccoonStealer
2021-07-07n/aexe ba47d87e13de62e40ec78cca3464b4caa2eedcc35acaffb384affc9d9ed3453dn/a RaccoonStealer
2021-07-06n/aexe cee8738edc8a8a93d3313ad03698b456d39f5acaacaf357e4580784e45692369n/aArkeiStealer
2021-07-05n/aexe d6ff71f4320761a9d08e753f0fe917ff018df8000405f1e789ce2f20dd22bc76n/aRaccoonStealer
2021-07-05n/aexe 23fabb6cec4ce462d1bc0aec4db3259a3b3d10e5d6f3f07ea7c852495a8ef439Virustotal results 40.00%RaccoonStealer