URLhaus Database

You are currently viewing the URLhaus database entry for http://147.45.44.104/yuop/66b331997e05e_main21.exe#space which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3097265
URL: http://147.45.44.104/yuop/66b331997e05e_main21.exe#space
URL Status:Offline
Host: 147.45.44.104
Date added:2024-08-09 08:21:09 UTC
Last online:2024-10-22 17:XX:XX UTC
Threat:Malware download Malware download
Reporter: Bitsight
Abuse complaint sent (?): Yes (2024-08-09 08:22:06 UTC to karina-rashkovska{at}ukr[dot]net)
Takedown time:2 months, 14 days, 9 hours, 29 minutes Bad (down since 2024-10-22 17:51:14 UTC)
Tags:dropped-by-PrivateLoader exe Vidar link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-10-16n/aexe bbb6ee9735855ebcaa1784939541e62ca4e334c5bebc51dcc1db30da2d150d2bn/a 
2024-10-09n/aexe 7944dfb35fbcb2611686b7b1062b12c9212cc197b9c5ed015197bc6b36d713abn/a 
2024-10-02n/aexe 51ae73faab452321a8199675136fee66b530962dd980457f1673aaae1420f844n/a 
2024-09-27n/aexe dc0a4fdbf8cde64b0a750544753eb62c15c7bed5e5b956e7026dc3d3669ade34n/a 
2024-09-23n/aexe 4cb736adec75a55221d734419a6feb3fa092cd19f4644a2dc5c0e3df749b215cn/a Vidar
2024-09-11n/aexe ce66189053bf2dc27b39e5723555b8f6a5632139b32c9722d4b1070292ff4b8bn/a 
2024-08-09n/aexe 12df075fcaec366639ab37f203aa412540f351ee17e7f126a4a126e7a61c2a9bVirustotal results 66.67%Vidar