URLhaus Database

You are currently viewing the URLhaus database entry for https://codeload.github.com/sonriseclient/rihays._90745-stealer-2037/zip/refs/heads/main which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3310154
URL: https://codeload.github.com/sonriseclient/rihays._90745-stealer-2037/zip/refs/heads/main
URL Status:Offline
Host: codeload.github.com
Date added:2024-11-28 10:34:40 UTC
Last online:2024-12-05 17:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: JAMESWT_MHT
Abuse complaint sent (?): Yes (2024-12-05 08:13:09 UTC to noc{at}github[dot]com)
Takedown time:21 days, 5 hours, 13 minutes Bad (down since 2024-12-19 15:49:56 UTC)
Tags:sonriseclient stealer

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-12-18rihays._90745-stealer-2037-main.zipzip 695a0fb5a0ae495a7d813b915c3a1bb27135cfd2f53a00e7a854f07e90ea5d19n/a 
2024-12-16rihays._90745-stealer-2037-main.zipzip f255a19403e3908fbadcdf6bf70c9105ac4f7d8aa38d4171f368ca4b0655745cn/a 
2024-12-16rihays._90745-stealer-2037-main.zipzip 55503fc76a5682420378a22811923059e3af76e43d78b4c26995e223ed8c7e4cn/a 
2024-12-13rihays._90745-stealer-2037-main.zipzip ca3110a31636734759cc5c34eba807deb256956a541ccde1ec6d7a1bd9e598d6n/a 
2024-12-13rihays._90745-stealer-2037-main.zipzip 9dd38ac89348cb293ba2c1aeae6d73d8051304639e48cf6172ac2e3e7ffe9bf6n/a 
2024-12-09rihays._90745-stealer-2037-main.zipzip 1bd8031d2e32b52ffecd1df11991dd718ad0601127c7bb5d73fbae17dd6d4714n/a 
2024-12-09rihays._90745-stealer-2037-main.zipzip ba96e2b00653a0f5deab835fe156722d1d0cd88d4e63ca45db9e88a874a907cen/a 
2024-12-09rihays._90745-stealer-2037-main.zipzip 4a6c99ed92c9f80a171d2ead2d5112670aa3a6bd290c7649b50ed28e9837f839n/a 
2024-12-08rihays._90745-stealer-2037-main.zipzip 15cdb8226f7fec3ff6fb5ef4d631824f32f756ace5cbc726657ad57474a6acefn/a 
2024-12-08rihays._90745-stealer-2037-main.zipzip c25901c2009615e00c8df35770ae7530271e861578faaae667b585aa051256e3n/a 
2024-12-06rihays._90745-stealer-2037-main.zipzip 434fb40d23d5ae98348c2e2ea0f395d01dedcc2b2805848569c05d3825647849n/a 
2024-12-05rihays._90745-stealer-2037-main.zipzip 29b721774bab2e98cf53a49024210c1e8a669ddfa18ace57cb21f65d9fc72868n/a 
2024-12-05rihays._90745-stealer-2037-main.zipzip 508a9805b2805f512644030e4a8ba9b39085d409cbe34e4321de55875c3ba263n/a 
2024-12-04rihays._90745-stealer-2037-main.zipzip 3750e0f7d22a898cc00f5b219cf9d594781c1e9b2b80aae10d23948489d3040dn/a 
2024-12-01rihays._90745-stealer-2037-main.zipzip 549874c88e7cfe1e4ea4b27f543e7960a42b7cc77b60480b73745a5fd9bfc3e8n/a 
2024-11-30rihays._90745-stealer-2037-main.zipzip 75598f59a6d105b649fd0539ca7532105264516ae3234310254f8eda6120f699n/a 
2024-11-30rihays._90745-stealer-2037-main.zipzip fb556431691ec550446304311c1bf0c34c0a63aa0e399f30d8ca92d5221edfcan/a 
2024-11-29rihays._90745-stealer-2037-main.zipzip 33d7d709498415ad63596b5341e7c1f13e821e393c3efd0964c2046f0f831c0en/a 
2024-11-28rihays._90745-stealer-2037-main.zipzip 37c2dc7ecc3d0b586eeb5f362275c1ea3354902a1e08cfa4d05decbde2469a81n/a 
2024-11-28rihays._90745-stealer-2037-main.zipzip e0b34dabb0162568bfc64dc59a8ac5ff9dac329ed7a9477927affe87f6203f46n/a 
2024-11-28rihays._90745-stealer-2037-main.zipzip f682d7b80a30f1245ddcd2565daf8659b375eaeba824f6aaa06ea7ac0f4e0de5n/a