URLhaus Database

You are currently viewing the URLhaus database entry for http://newr2bb.top/build.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2661600
URL: http://newr2bb.top/build.exe
URL Status:Offline
Host: newr2bb.top
Date added:2023-06-15 07:06:12 UTC
Last online:2023-06-20 01:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: crep1x
Abuse complaint sent (?): Yes (2023-06-15 07:07:07 UTC to info{at}iqhost[dot]ru)
Takedown time:4 days, 18 hours, 37 minutes Bad (down since 2023-06-20 01:44:18 UTC)
Tags:ArkeiStealer link Vidar link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-06-19n/aexe 776f9f37f48c8d6a05ac08ec3dcafe6b92ee19078dd2991eb13d9223885c522fn/aArkeiStealer
2023-06-19n/aexe 1543c4ddbc99f9efcd7992b51da3d491f1abe6f7785e63778f731ef814b821e7Virustotal results 39.44% ArkeiStealer
2023-06-19n/aexe f00c5a8a562a86a53dfc9c4ea0d90b862bedc1d08718966b19affa062856e3e5Virustotal results 45.07%ArkeiStealer
2023-06-18n/aexe 41498ba082b5db1b4ac7fa015b92680a7e2c9e0922cb2c05c8cddf30b64cea33Virustotal results 47.14% ArkeiStealer
2023-06-18n/aexe fda712bf6f7b7a33ad95906effa18df512edd509f768483402e5660157a25bebVirustotal results 40.85% ArkeiStealer
2023-06-18n/aexe 709693d702c3bf9813a8902197f9eca9f2e79c049f1d95468db2d9e535b598eaVirustotal results 56.34% ArkeiStealer
2023-06-17n/aexe 5f4de2701910791472fa25d6782de8cbe53e39e1cdfa3908413d01d82c2e62cbVirustotal results 46.38%ArkeiStealer
2023-06-16n/aexe 42c8c439618026e2a94e526c32bc6fbe680f638a3e2b3442201725739d921eacVirustotal results 42.86%ArkeiStealer
2023-06-15n/aexe 96bfe4860eb78783dd945f6d3f30e25bd252449c8f18f871334bd7c66978fd30n/a ArkeiStealer
2023-06-15n/aexe 2828697e13a2357b6fd3bdb56f036037d66cd858844fc478da9a22f9a51dcbfbVirustotal results 37.14%ArkeiStealer
2023-06-15n/aexe 29a2ccde9462129384566d7a6b3553ae3d4c3c62628b9f91995cc8433de139abVirustotal results 40.00%ArkeiStealer