URLhaus Database

You are currently viewing the URLhaus database entry for https://codeload.github.com/sonriseclient/wosto-stealer-6943/zip/refs/heads/main which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3310232
URL: https://codeload.github.com/sonriseclient/wosto-stealer-6943/zip/refs/heads/main
URL Status:Offline
Host: codeload.github.com
Date added:2024-11-28 10:38:45 UTC
Last online:2024-12-06 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: JAMESWT_MHT
Abuse complaint sent (?): Yes (2024-12-05 08:25:12 UTC to noc{at}github[dot]com)
Takedown time:21 days, 4 hours, 7 minutes Bad (down since 2024-12-19 14:46:19 UTC)
Tags:sonriseclient stealer

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-12-18wosto-stealer-6943-main.zipzip cd170f9c46389a85c57586336916ac370fcc6d2b13c602c81c48a6003bb724a1n/a 
2024-12-17wosto-stealer-6943-main.zipzip 65fd8a52121f3f5f06c2e09b84dd74df00a9c1c5a5a882c41b626478419df039n/a 
2024-12-17wosto-stealer-6943-main.zipzip 6e7e99658c4d4cc2c948fbbf5192ad69849417f19644b45ce31481385484bc20n/a 
2024-12-17wosto-stealer-6943-main.zipzip 4c83e8e2d0f4825faa22e8d720f7e8510bc5b07867928528bdf62b5e3c89da13n/a 
2024-12-17wosto-stealer-6943-main.zipzip 15d081eeac781294eb5e985c00eaf043c370f9900e58fc90d75839069db49858n/a 
2024-12-17wosto-stealer-6943-main.zipzip 089a2c9496f2e85b3e9726e58c005d4a4d4b2e2b1e07fea4d397da5ca23ab76dn/a 
2024-12-16wosto-stealer-6943-main.zipzip d83549d1ef2420e9e474694465d3cb207dd69c2e2e0ea9b781ea3411e2d6fedfn/a 
2024-12-14wosto-stealer-6943-main.zipzip 69598a6e07946e4816a79ae24aabd1f74a9a736e9557b07ad6af40a8b9f60083n/a 
2024-12-13wosto-stealer-6943-main.zipzip 98b96160b7bb690296b3522b41a45e218a3cd5856875b113a8da387ef520b5d9n/a 
2024-12-13wosto-stealer-6943-main.zipzip 69285f4a516cc138b86d439846f0771d5a41cc8f5b5c9f2b11fc1cbf561dd289n/a 
2024-12-12wosto-stealer-6943-main.zipzip 9ca2e10cd756070cf446de35a426fbbff6afef2e23385025d48bd869abd5eaa0n/a 
2024-12-12wosto-stealer-6943-main.zipzip 2b91ff90a7c4d73b2a1d48ef559c74ca64cfc077523f912ef7b1fb16a6fea7e9n/a 
2024-12-10wosto-stealer-6943-main.zipzip df2c346837fdcf62067f6189085dfe29817b7ba3b1793164cbb8f0c08ff80d5en/a 
2024-12-08wosto-stealer-6943-main.zipzip 4667b2ee6a46b73d5f8606409f3bb9657790651aa1ebada0a9692484ffbb469fn/a 
2024-12-06wosto-stealer-6943-main.zipzip 3cccd455a04c10d5be58bee3df9d90a13d129c62ef70cade8329bda9093784dan/a 
2024-11-29wosto-stealer-6943-main.zipzip 7856ac95a66aadafdff8f644bc40e5bfcb47cde96ecf0c6828dea31ba495bba5n/a 
2024-11-28wosto-stealer-6943-main.zipzip e656b8737d0ced9c67c22da1cd2986017e94f6470a776074ba41347e6ff0cf1bn/a 
2024-11-28wosto-stealer-6943-main.zipzip 4532a98a0a3e596120ef343b62893a600c4e329ae7ca97692915e451f1adce0an/a 
2024-11-28wosto-stealer-6943-main.zipzip 00533442e241ff7d3f745b73292f121abc2f225ef25f2114417b788c38061338n/a