🤲🏼 NEW | abuse.ch Community Hub! Earn recognition 🏅 for the malware intelligence you share, climb the leaderboards 📈, and connect with like-minded contributors who share your hunting focus 🤝. Ready to unlock your profile? Go to the Community Hub →

URLhaus Database

You are currently viewing the URLhaus database entry for http://195.82.147.81/abacfa/040125-lop2/evenuncommon.zip which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry



ID:3500167
URL: http://195.82.147.81/abacfa/040125-lop2/evenuncommon.zip
URL Status:Offline
Host: 195.82.147.81
Date added:2025-04-03 15:09:08 UTC
Last online:2025-05-27 05:XX:XX UTC
Threat:Malware download Malware download
Reporter: JAMESWT_WT
Abuse complaint sent (?): Yes (2025-04-03 15:10:08 UTC to abuse{at}dedbro[dot]pro,admin{at}vaultdweller[dot]net)
Takedown time:1 month, 23 days, 13 hours, 59 minutes Bad (down since 2025-05-27 05:09:54 UTC)
Tags:Gh0stRAT

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-04-07evenuncommon.zipzip 8fcf805ffb9d59b38b055ccadc53001ca8fc3058671c55781d0f42fdf3d4725bn/a 
2025-04-06evenuncommon.zipzip 566b80f6ebc169c4b4b3b18471e72d49168854d8d34c81cf76ce5cf42e393417n/a 
2025-04-06evenuncommon.zipzip 4a2e6c0277ccf28c7cce643eb73509a51b588a3ae25663e2a34c5c39388d28c5n/a 
2025-04-05evenuncommon.zipzip bedf8ec9e7a9a687924177d152f665ee4f0f8ef21088b3e70a06e3f0d94fbb6bn/a 
2025-04-05n/azip bcbf91e02b9d2d482d12ba2ad385bb01525a4562876fe1a43b18c36d0ec80c4fn/a 
2025-04-04n/azip 033a161adf7c72348bd81da6a575d55eea3f8e32e3a7002efe255387d848284dn/a 
2025-04-04n/azip 255f65832250aaf19c716c860cd4c1a4568aa5eeddf9a5596aa31054baec13bcn/a 
2025-04-03n/azip 2ec9ca5ce553be2a5a2206f0df8985f546a904f3bf63ded7938384baa1f64fc5n/a 
2025-04-03n/azip 24dba7ebb3e41ed4102db83f055b98b95c0428f446d7657251d10a38cd90e145Virustotal results 27.69%Gh0stRAT