URLhaus Database

You are currently viewing the URLhaus database entry for http://185.149.146.227/bd2.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2794516
URL: http://185.149.146.227/bd2.exe
URL Status:Offline
Host: 185.149.146.227
Date added:2024-03-28 06:29:09 UTC
Last online:2024-04-14 02:XX:XX UTC
Threat:Malware download Malware download
Reporter: Gi7w0rm
Abuse complaint sent (?): Yes (2024-03-28 06:30:33 UTC to abuse{at}waf[dot]group)
Takedown time:16 days, 19 hours, 34 minutes Bad (down since 2024-04-14 02:04:45 UTC)
Tags:Vidar link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-04-07n/aexe 669b743dff3f2af73b68067ca3544a03ef72add9c7587ce6a7bcd0b8c338af51Virustotal results 2.78% 
2024-03-28n/aexe 55327bff1fa5fe9b81bbe47faa4c8e102fe2fc0b02148fe9677a4e44cc6d7a77Virustotal results 13.89%Vidar