URLhaus Database

You are currently viewing the URLhaus database entry for http://185.157.160.147:4444/BTconsole92.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1608283
URL: http://185.157.160.147:4444/BTconsole92.exe
URL Status:Offline
Host: 185.157.160.147
Date added:2021-09-10 14:15:44 UTC
Last online:2021-09-20 12:XX:XX UTC
Threat:Malware download Malware download
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2021-09-10 14:16:02 UTC to abuse{at}ovpn[dot]com)
Takedown time:9 days, 22 hours, 22 minutes Bad (down since 2021-09-20 12:38:58 UTC)
Tags:32 AsyncRAT link bitrat link exe

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-09-17n/aexe aee40f6b2ab8152e2bacb8deef06aa9518646307ec101ef0cb4ed94ac0dd09f1Virustotal results 35.29%AsyncRAT
2021-09-14n/aexe 28b61c22d9bb96686bb3bb6e758fb1bba123d83720eb1d3588c673ac9040ed86Virustotal results 42.65%AsyncRAT
2021-09-14n/aexe a20939d2791cfeb8dfd3f2e7b6f18e77b57086b2a06d6d735461ade24f9eecedVirustotal results 42.65%AsyncRAT
2021-09-13n/aexe 4561171c7cffedf4f48f1e80c7bb070f805d78b1e16e9876709e725019f307fbVirustotal results 30.88% BitRAT
2021-09-13n/aexe 1e5d3a2fc6de4e796e3e60974a9731b733c659f23537e28e44e02dbc1e554fafVirustotal results 25.00% BitRAT
2021-09-13n/aexe b80e83f7e68b52087b6fb0988e25737cfc1325abdd2ecfc708b9361ab203ee59n/a BitRAT
2021-09-12n/aexe 776c754f8b3cbcfc14c564cffbc38544ebcb894f46eb4c3edc98fda5d501fed4n/a BitRAT
2021-09-10n/aexe a1829c8338b844c7ded5b58e8bd5fba28f172ebc2b4baea20166ba7c0e29fe08Virustotal results 32.35%BitRAT