URLhaus Database

You are currently viewing the URLhaus database entry for http://github.com/43a1723/test/releases/download/siu/stub.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3241054
URL: http://github.com/43a1723/test/releases/download/siu/stub.exe
URL Status:Offline
Host: github.com
Date added:2024-10-18 10:17:12 UTC
Last online:2024-12-30 00:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: RacWatchin8872
Abuse complaint sent (?): Yes (2024-12-20 07:39:01 UTC to noc{at}github[dot]com)
Takedown time:5 months, 18 days, 19 hours, 19 minutes Bad (down since 2025-04-05 05:37:28 UTC)
Tags:dizemp filerepmalware python trojan xworm

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-01-29stub.exeexe 1ffda2e321da24ed422e6320900b50664c67d6f316502d06ee46c713c88448f9n/a 
2025-01-24stub.exeexe 65dbd7db9ca10305fbebe8ebc78cb68e353d13e9074d04ba3a6aacf70eeb8126n/a 
2024-12-29stub.exeexe 748dd788735064ea8998b880b11d991b1bbb0bd158a9908c470507a82a1e7512n/a 
2024-11-11stub.exeexe 4e50e4ad5189d7e410eb1bdcce73f0ecdfd4f566a2c71fe7852214904659d30bn/a 
2024-11-05stub.exeexe a4613e749b66fc8f70489561f15be5753d34869476b6cf8c14c8b0788ef582adn/a XWorm
2024-10-18stub.exeexe 0afd7eda1ab7c6ffb70847d8778acd9c01b32862f30b1d230b199ca146198fe2Virustotal results 53.42%