URLhaus Database

You are currently viewing the URLhaus database entry for https://codeload.github.com/sonriseclient/kirlisokak-stealer-6505/zip/refs/heads/main which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3310272
URL: https://codeload.github.com/sonriseclient/kirlisokak-stealer-6505/zip/refs/heads/main
URL Status:Offline
Host: codeload.github.com
Date added:2024-11-28 10:41:05 UTC
Last online:2024-12-05 15:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: JAMESWT_MHT
Abuse complaint sent (?): Yes (2024-12-05 08:25:12 UTC to noc{at}github[dot]com)
Takedown time:21 days, 10 hours, 5 minutes Bad (down since 2024-12-19 20:47:08 UTC)
Tags:sonriseclient stealer

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-12-19kirlisokak-stealer-6505-main.zipzip 05c46284f306061c36cec9866422b25ddf36fd80df74ac58cd784ad25d016f1an/a 
2024-12-18kirlisokak-stealer-6505-main.zipzip 9b148048cef97223bd644705296ebcfa69e95173d3021fddcfee8061d32bfd22n/a 
2024-12-16kirlisokak-stealer-6505-main.zipzip 69d86b68c9c1d94808b646b0a98cbfae7d0c49e4b43a540dc23e53521da85239n/a 
2024-12-16kirlisokak-stealer-6505-main.zipzip 9284888ab795069742135e9adb521d3862099f10177212fec56dfd110a609f91n/a 
2024-12-15kirlisokak-stealer-6505-main.zipzip b1350267d4e858387c9b45f7c636d9ad465d4af2ce4d18d2b63fe156976f4af3n/a 
2024-12-14kirlisokak-stealer-6505-main.zipzip adee67092ce91828dbabc2d7a8b4bdf270a7d8684c5bc16e13f02a0b6cca002bn/a 
2024-12-13kirlisokak-stealer-6505-main.zipzip e9fba06fda361046640949b8517afd8c7bf15fb3f6455b49d36fa2a810111ff4n/a 
2024-12-13kirlisokak-stealer-6505-main.zipzip 52cbceb008665602fa6a14d5e24f12a002cf1dda60c9286bf99bd37980763b0an/a 
2024-12-09kirlisokak-stealer-6505-main.zipzip 0feff7838246c5623936bc532aa02a2a4a8a772aab642cf1136df1e2b64df3abn/a 
2024-12-09kirlisokak-stealer-6505-main.zipzip 68b91d2a651d6810ac0358bcae81a6fa21bdc68c215eebe8800e67e9c52022den/a 
2024-12-08kirlisokak-stealer-6505-main.zipzip 3e074153d5e114c3a3311659f82a2dafba2f667a8ddd1e73b5cabcefe129f3a4n/a 
2024-12-06kirlisokak-stealer-6505-main.zipzip 4026581f03853cab97e61807db2f7b7e50897b861aefa404f1b977a512b4ea45n/a 
2024-12-06kirlisokak-stealer-6505-main.zipzip 563291ba30af79badee908969198567968fe1d5a60b2406e8a8642f477f5f981n/a 
2024-12-06kirlisokak-stealer-6505-main.zipzip 15b0b1ab183697f963106112dae3e59feef571772ec7730252c16e094b8397a7n/a 
2024-12-05kirlisokak-stealer-6505-main.zipzip 1741e0fad75a2ee7a29604aa90b4865c7ba472801bbf3b51c113b155542ba941n/a 
2024-12-01kirlisokak-stealer-6505-main.zipzip d712b250901124d8b854a2ff4cff66cca056a3e1c16cbf331f4aef7c9f541b93n/a 
2024-11-30kirlisokak-stealer-6505-main.zipzip c240d144c1deee61246629a100419dfa5eb5bce2b646c312da71021596d4b20bn/a 
2024-11-29kirlisokak-stealer-6505-main.zipzip 88a6a61bd5f96939b466e7aa69836d65430b7c516999cdb40eb06cbf8609fc09n/a 
2024-11-29kirlisokak-stealer-6505-main.zipzip ec712c21d15db9a3d98a85dd0fbd47a3bb429f3b38c1ce414ec8cebdc3a3f320n/a 
2024-11-29kirlisokak-stealer-6505-main.zipzip bd0830eb82d2b3258d5ca9645669104c27abd47af2eb47221e38a2b2ca1ed352n/a 
2024-11-29kirlisokak-stealer-6505-main.zipzip fcbda28b28d0b799685d84455c65bc00ebfdd91354ed2e296b5c9bcef32f9731n/a 
2024-11-29kirlisokak-stealer-6505-main.zipzip 2798e3566b0dad4ed17c510eebbf3037bf3668556e11fe9b324d9343543e05aan/a 
2024-11-28kirlisokak-stealer-6505-main.zipzip 07019e1248610c5f2795d2891608731254032805fa957f9701ac9d7f827af4dfn/a 
2024-11-28kirlisokak-stealer-6505-main.zipzip 51c058e6673b512140d877c001bb9c0571caeab9dec1446c72c4c345de772ef7n/a