URLhaus Database

You are currently viewing the URLhaus database entry for http://statie.link/CERT.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2046193
URL: http://statie.link/CERT.exe
URL Status:Offline
Host: statie.link
Date added:2022-02-17 09:13:06 UTC
Last online:2022-02-17 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: benkow_
Abuse complaint sent (?): Yes (2022-02-17 17:21:24 UTC to audit{at}ihor-hosting[dot]ru)
Takedown time:4 hours, 31 minutes Good (down since 2022-02-17 21:52:57 UTC)
Tags:ArkeiStealer link exe

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-02-17n/aexe 9be2b81a0600683b190ce060408b6fc9bcd75cb9ef1a162aad2c083b871f37e1n/a ArkeiStealer
2022-02-17n/aexe 7510de1e9d09ce8de6bcd0bd4cbb7f50306b3f04353559a8e338a561be8005f2n/a ArkeiStealer
2022-02-17n/aexe bca3ca4e7db762c56158918a1e50fe1a852a69acc9d27a67d04825b2fa946dd4n/aArkeiStealer
2022-02-17n/aexe 3756fa5b69088ad5aad0af2891bffe3815de19a3461755668f68be6adf900999n/a ArkeiStealer
2022-02-17n/aexe 813980ca5305ef5034e98b52596fddf3594108f4156f2057cb3d23b2b89e0ee2Virustotal results 36.23%ArkeiStealer
2022-02-17n/aexe 8ce1822eb29553ebaf2c1ac7f628a0c2532296de28bdb31f38db617404e9fa5an/aArkeiStealer
2022-02-17n/aexe c32c9b880976b25a9318b99cbcf9cabf1369e971c62a5642b4d13b9df6bf021dn/aArkeiStealer