URLhaus Database

You are currently viewing the URLhaus database entry for https://github.com/user337666/brow666/raw/main/svchost.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3271599
URL: https://github.com/user337666/brow666/raw/main/svchost.exe
URL Status:Offline
Host: github.com
Date added:2024-11-02 14:33:14 UTC
Last online:2025-01-01 00:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: abus3reports
Abuse complaint sent (?): Yes (2024-12-20 07:39:01 UTC to noc{at}github[dot]com)
Takedown time:10 months, 19 days, 22 hours, 13 minutes Bad (down since 2025-09-18 12:47:30 UTC)
Tags:AsyncRAT link exe njRAT link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-09-18svchost.exeexe 396f3e56334723a20ce563b95996fcfb22a253d5f295f4bedb2e6b4e2969f3e8Virustotal results 73.61% AsyncRAT
2025-09-13svchost.exeexe cbf7bdca8cd7737bf04c250a7d8b26141cd554fd816fdc90ec970d97a16db6den/a 
2025-08-14svchost.exeexe 92f3e7b1b84d47adb4aeecabe989dbacc0b4976f329eab01604896e2001761caVirustotal results 72.22% AsyncRAT
2025-08-09svchost.exeexe 3fcbc188d67577da3eacd01482c4e0b8bc314efaa19ef7cc3d03eb9fa2ed7622Virustotal results 72.22% AsyncRAT
2025-06-07svchost.exeexe 93a43b26391b48b171236a02f34b8c34cf5043780359ab0483b5b2880aa24236n/a njrat
2024-11-02n/aexe edf022a94f2a07bbc5eaa476f4d1eddf1fa136405352b232637fd4d456a34951Virustotal results 79.45%