URLhaus Database

You are currently viewing the URLhaus database entry for http://147.124.216.113/albt.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3391212
URL: http://147.124.216.113/albt.exe
URL Status:Offline
Host: 147.124.216.113
Date added:2025-01-06 06:50:09 UTC
Last online:2025-02-03 22:XX:XX UTC
Threat:Malware download Malware download
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2025-01-06 06:51:10 UTC to abuse{at}spinservers[dot]com)
Takedown time:28 days, 16 hours, 7 minutes Bad (down since 2025-02-03 22:58:31 UTC)
Tags:DBatLoader link exe

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-01-16n/aexe 4e38df6415cd9a8857c5ff4185da103fa8585e8a589ff2286eaf7317e3d10755n/a DBatLoader
2025-01-15n/aexe ce26bc4556fabe4a47c885353f169def4913c3b1f3f72af47f61952f07e26068n/a 
2025-01-13n/aexe d3155fcf6f052606bc5f0c293aa6ee43d27bf7990713863e2dd23ab870fbb0bfn/a 
2025-01-07n/aexe 3cce82eff14a78c73dbc3f64a7abc6476d9b184763a5f6713ce68d6ee8df75f8n/a DBatLoader
2025-01-06n/aexe 1bec44aa19ea8daa0b7151b312975f3f753e03f0bbce5ebeab8dfda5fb736a91n/a DBatLoader