URLhaus Database

You are currently viewing the URLhaus database entry for http://194.226.139.141/Desktop.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1489732
URL: http://194.226.139.141/Desktop.exe
URL Status:Offline
Host: 194.226.139.141
Date added:2021-07-29 11:30:08 UTC
Last online:2021-08-09 02:XX:XX UTC
Threat:Malware download Malware download
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2021-07-29 11:31:03 UTC to abuse{at}msk[dot]host)
Takedown time:10 days, 15 hours, 16 minutes Bad (down since 2021-08-09 02:47:09 UTC)
Tags:32 dcrat exe

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-08-04n/aexe cc88099e43bfc20ce5bb399890fa488d4aabd79b9d0d5e25cf5347212bd47ae3n/a 
2021-08-02n/aexe 69565e54f5b9348e0100c26c17fb1824c72bc96bd594594fa56b5a6c8ac54d4bn/a 
2021-08-01n/aexe f37637c8712fa85c934eaa75f050d15c4156a795125f013b2eada06bc9ee2d64n/a DCRat
2021-07-31n/aexe e7e2866ed8e4e76df821c19dee3c8b3c41c282c226152e5b3abc352d2f2a6861n/a
2021-07-30n/aexe 630b568c36cd9ad05dd5bf5c9c60e95493084820b1996e3d41407cf05c8b67bbn/a
2021-07-29n/aexe 3ab850d582976fd9c1bb14c1c50cffa66e9fd6e55fc27a704f01c45d1bc251dcVirustotal results 71.43%DCRat