URLhaus Database

You are currently viewing the URLhaus database entry for http://185.157.160.147:4444/BTconsole9.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1608100
URL: http://185.157.160.147:4444/BTconsole9.exe
URL Status:Offline
Host: 185.157.160.147
Date added:2021-09-10 12:42:42 UTC
Last online:2021-09-22 07:XX:XX UTC
Threat:Malware download Malware download
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2021-09-10 12:43:05 UTC to abuse{at}ovpn[dot]com)
Takedown time:11 days, 18 hours, 56 minutes Bad (down since 2021-09-22 07:39:15 UTC)
Tags:32 AsyncRAT link bitrat link exe

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-09-16n/aexe 34a898e95f01c907aa9c6ac108e8768a751ac97fa9db9573dab218a777399605n/aAsyncRAT
2021-09-15n/aexe 28b61c22d9bb96686bb3bb6e758fb1bba123d83720eb1d3588c673ac9040ed86Virustotal results 42.65%AsyncRAT
2021-09-14n/aexe dd8ce3429e9ea5ceb896d2f0d6be4dfe39ab38009240e43338483b33608a8a97n/a AsyncRAT
2021-09-13n/aexe ab39e61b03e9a30bdfa9f3a51813a887e2ca126441784d9918bcb000d301256dVirustotal results 30.88% BitRAT
2021-09-13n/aexe 31bd0dc6af6f3ba0fe9a59d19e59d864ff14728b237ae66063be7dfccdf72beaVirustotal results 30.88% BitRAT
2021-09-12n/aexe 0cbf69e0e443b3c19951dcc73ee4d360e24f61e8d970f96aa15d0db30b4d90ben/a BitRAT
2021-09-10n/aexe b3a60510681f1f940c6d78f582d0d34a92990e31582620e403f60694ca767d49Virustotal results 31.34%BitRAT