URLhaus Database

You are currently viewing the URLhaus database entry for http://147.45.44.104/revada/66fce880d2739_union.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3204670
URL: http://147.45.44.104/revada/66fce880d2739_union.exe
URL Status:Offline
Host: 147.45.44.104
Date added:2024-10-02 06:33:12 UTC
Last online:2024-10-22 16:XX:XX UTC
Threat:Malware download Malware download
Reporter: Bitsight
Abuse complaint sent (?): Yes (2024-10-02 06:34:08 UTC to karina-rashkovska{at}ukr[dot]net)
Takedown time:20 days, 10 hours, 8 minutes Bad (down since 2024-10-22 16:43:04 UTC)
Tags:dropped-by-PrivateLoader

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-10-16n/aexe 3538cc67394d0bca3e42f350e0bcb90567d14a90d42d157947d1cbb793707aa0n/a 
2024-10-16n/aexe 2ee704e3a5ef4941af6bc57deeebb2066863b51ec6052d96c9b0e56e3f18cf2dn/a 
2024-10-13n/aexe a0bb801a670f75797d672cc9ca0120e2806d8b8a0a094b9dcb2edbb8de811b32n/a 
2024-10-09n/aexe c72822f62d94a67e39166096bd68cb8c20f3c52b5beb231fbfc5264b09038414n/a 
2024-10-09n/aexe 2cb083e1e2ec908373f001333e42f25e22db32f39db3a505eec3bd91441dda16n/a 
2024-10-03n/aexe 951d1f4c8f4f3f41e0ad16b9134006116b53fd2cd887c2ad7d78cd7ba7404f0dn/a 
2024-10-02n/aexe 2333a83bfd543d45bb945d6b879216b8505398258f2dc43571708393189419a7n/a