URLhaus Database

You are currently viewing the URLhaus database entry for https://codeload.github.com/sonriseclient/wosto-stealer-6424/zip/refs/heads/main which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3310205
URL: https://codeload.github.com/sonriseclient/wosto-stealer-6424/zip/refs/heads/main
URL Status:Offline
Host: codeload.github.com
Date added:2024-11-28 10:37:28 UTC
Last online:2024-12-06 10:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: JAMESWT_MHT
Abuse complaint sent (?): Yes (2024-12-05 08:30:17 UTC to noc{at}github[dot]com)
Takedown time:21 days, 4 hours, 1 minutes Bad (down since 2024-12-19 14:39:39 UTC)
Tags:sonriseclient stealer

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-12-18wosto-stealer-6424-main.zipzip 34323ec8453c224cc93c9eec7877db673db2c54632ebe0dac0f96e50d3d08570n/a 
2024-12-17wosto-stealer-6424-main.zipzip abcc2266696cfd234d109e522baffa0459258e3ea23b38ded57a741017b2fc3fn/a 
2024-12-17wosto-stealer-6424-main.zipzip 29bfdb5f07557139859f62490830d1b73b80b34aadac25d25246b7a4174fe84cn/a 
2024-12-16wosto-stealer-6424-main.zipzip 7edbf1a0e79a02a62b13ebf50b0f5277cf783b5676619c60c84f4d7726e0c92cn/a 
2024-12-14wosto-stealer-6424-main.zipzip a38725ce9b9c9f081a86f4027ca4bb3ffffe0c341922a61ce88b5645f95a7684n/a 
2024-12-14wosto-stealer-6424-main.zipzip 42c7f7d21ccf7f48906a73cf8e2567399bd5d936b4e734ad3c6c337ec53a4aeen/a 
2024-12-08wosto-stealer-6424-main.zipzip ffd178df75a8e2453e34b53863364fb8f5aeaf6bb4df2b581b5891537d9cbc2cn/a 
2024-12-07wosto-stealer-6424-main.zipzip ebb3e1d2ded5c106723acd066be555fb654854cd70331f5ee287e6bd448fb0d0n/a 
2024-12-07wosto-stealer-6424-main.zipzip 05027c10763b7416f34cbe06fe2528867c3a2d005e8955b397470ba2a4a9bc4cn/a 
2024-12-07wosto-stealer-6424-main.zipzip e4267161bcb8abd4fac9c109e9d78a837af94e84096960864718f19b1671e15an/a 
2024-12-04wosto-stealer-6424-main.zipzip 9b7fa2a426693e2b0a8a35e3f7f63ba52d274d677de96a31ade33a94e80dcc55n/a 
2024-12-02wosto-stealer-6424-main.zipzip c0f9fa31eb3dcf3a7bdd82bcac231b3e25698e491425e105263c249698577323n/a 
2024-11-29wosto-stealer-6424-main.zipzip 247721fd8fc376342812cc56ca34c2a1f11eff8cd7732c7a993d74e295fdf079n/a 
2024-11-28wosto-stealer-6424-main.zipzip 547ee6f3a15426a54e656f269a5eabd812af3febde49a213df84fcbe9ad86596n/a 
2024-11-28wosto-stealer-6424-main.zipzip 63031774c6093a9be687aabb45f957efbb15a2e1eb43139967e0af24518eeb23n/a 
2024-11-28wosto-stealer-6424-main.zipzip 6b574056ada4176277ac45c831647f64505181072dd7e929a57c687524888192n/a