URLhaus Database

You are currently viewing the URLhaus database entry for http://colisumy.com/dl/build2.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2615177
URL: http://colisumy.com/dl/build2.exe
URL Status:Offline
Host: colisumy.com
Date added:2023-04-21 05:47:10 UTC
Last online:2023-11-07 20:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: Gi7w0rm
Abuse complaint sent (?): Yes (2023-11-07 20:07:05 UTC to abuse{at}uninet[dot]net[dot]mx)
Takedown time:6 months, 20 days, 14 hours, 34 minutes Bad (down since 2023-11-07 20:22:45 UTC)
Tags:ArkeiStealer link emotet link FruitMIX heodo link MarsStealer payloads viaSmokeLoader Vidar link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-11-06n/aexe 9fb923a3874ca63902de4811c0b78ec1ea570e339799e59fa8327deb149a77dfn/a MarsStealer
2023-11-03n/aexe 2351b9bef85654b5b45d60f849f11eefc9345afd9072739504cac67d734da8d7n/a Heodo
2023-11-03n/aexe 2a94999889996a959b2e1d73df57d1878c4bd8460d80de136ed1cc25da9b5093Virustotal results 38.89% ArkeiStealer
2023-10-31n/aexe 2b51eb4478d4d3518659d1fe706408aaf2076efb5445524ace766047b50d0789n/a Heodo
2023-10-24n/aexe 470eb462001b2d0ec0ec2134840f413606181370b223af0a257d2bf95a71c60fVirustotal results 38.03% ArkeiStealer
2023-10-16n/aexe 5f44375ddddaedfcd4f2499d3e121b7d9ee627b751f2d0914a562d35d7c9a551n/a ArkeiStealer
2023-10-10n/aexe bf1d4645972f8a10ef66d4343d0b3dc5b66ea2050a061e8194e6858a88220454Virustotal results 44.44% ArkeiStealer
2023-10-02n/aexe e81cf314b9336ae58e0ed051467245f4eea056c30bd54429d740aad521813092n/a ArkeiStealer
2023-09-26n/aexe fc0757507960b91ab61afe79de7e316fabde48f983a8a497a709c19c99012456n/a ArkeiStealer
2023-09-18n/aexe ffaed8dcf0282df833b74faf419729dc20951ee7edbb58103fa5c582e93d5f3an/a 
2023-09-11n/aexe 34e9b76c568bed90396850a59f181edb5233a045c1042fec1e29a42d8449cd40Virustotal results 37.14%Vidar
2023-09-05n/aexe fc5336b039a9cc8e14d515f338c90a5a404249adab200032324c65f055904255n/aVidar
2023-08-28n/aexe 3609c3cbb2bee674e91d44e4e49197c5403a33ac9649343feacedb5ca5759ef5Virustotal results 39.44% ArkeiStealer
2023-08-21n/aexe 44f9e81a2e056d24c0da23b8be38d37eceefe06e5bc6dbf67df2b18caf6223b8n/a ArkeiStealer
2023-08-14n/aexe a3ec2956fea5d99ce309b2b2209dc4dbcbf5330482ebbe46a754eb8c0885a209n/aArkeiStealer
2023-08-08n/aexe f57210d90101da3bc77c55f813ba64f35dbb6d0db50f71467f18816486b9d6d0n/a ArkeiStealer
2023-07-31n/aexe bd5aff6936d77e3deae4e45195b44ec5d4e7ba4f2a9dfe68ee7d6f7be2cfd97an/aArkeiStealer
2023-07-25n/aexe 726855dc870ed0224d91891b898e542393149b0eaef7817aa332b71c13b22ae0n/aArkeiStealer
2023-07-18n/aexe 7539d1cff13c822fbffc73cb9416dd8ae40d79f59b03b1e77b0909e182b6bd2bn/a ArkeiStealer
2023-07-10n/aexe 3dae32e22775721f2f9de5fec79dbcd8d62adaeb057b47c4524e02d130a43b25n/a ArkeiStealer
2023-07-04n/aexe 4df6328ec1e748df2043ceca410088ca2018b6635d91f29451b53ed4416cdac2n/a ArkeiStealer
2023-06-28n/aexe e356f807c297edf59ba7b0e1e0eb2a2186cc02246ad4bbe8d6fa42c7383b46c7n/aArkeiStealer
2023-06-20n/aexe a96e080ee195fb2333191fb38c7a66e0c0bd029af6480dc489a8c8113e5b03a9Virustotal results 40.58% ArkeiStealer
2023-06-16n/aexe 969dbe828eb2360ea534391879163f2f91012c265e2c2f6e0f4ccf152912e5dcVirustotal results 68.12%ArkeiStealer
2023-06-08n/aexe c2c5560cede5fe447363e0d432707fc287312c20e92715b59700888e77eab92dVirustotal results 74.29%ArkeiStealer
2023-06-02n/aexe 692fe3aca06ef0e1582fcf692dfd0e2e38e1b542368848318e0095a8f85f3d77Virustotal results 71.83% ArkeiStealer
2023-05-23n/aexe c8b5119160d3301fc69657f1c23c8561e6290b953ec645298f436431d41bbd70Virustotal results 47.14% ArkeiStealer
2023-05-17n/aexe 3d9cf227ef3c29b9ca22c66359fdd61d9b3d3f2bb197ec3df42d49ff22b989a4Virustotal results 47.89% ArkeiStealer
2023-05-15n/aexe 42c823531f5038aff7241f264c94da48051a26fd186e5799fd8a7cd147baedccVirustotal results 35.19% ArkeiStealer
2023-05-10n/aexe 6e6061cd2d846e6be7058e35b0dab7f0513038a410a367be304e2e71c0bfb427Virustotal results 40.58%ArkeiStealer
2023-05-09n/aexe e8e2a76386412d9fbf39a156d148a47bd9da6dd4e6d67aa9694b80124ff3bc43n/a ArkeiStealer
2023-05-02n/aexe 810be76ae3ecc5ab7f019f91979ac9ebf76ed220a7b42c2254a21ec660f8289fVirustotal results 61.43%Vidar
2023-04-21n/aexe 2689a2c221cb723b4f35e912efa5c1f6df415d9f656b44c1c9cbbccf248ad1c6Virustotal results 76.81%Vidar