URLhaus Database

You are currently viewing the URLhaus database entry for http://humachopa.com/gtrn975/bryjf.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3560211
URL: http://humachopa.com/gtrn975/bryjf.exe
URL Status:Offline
Host: humachopa.com
Date added:2025-06-10 08:38:26 UTC
Last online:2025-06-27 09:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Phishing domain
SURBL :Blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: JAMESWT_WT
Abuse complaint sent (?): Yes (2025-06-10 08:39:08 UTC to erishennya[dot]res{at}gmail[dot]com)
Takedown time:17 days, 1 hours, 19 minutes Bad (down since 2025-06-27 09:59:04 UTC)
Tags:dcrat

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-06-23bryjf.exeexe 481af75fb0187e07e303a63ef8c770a56c5145bcef22257dfa2ad2980e9b6063n/a 
2025-06-23bryjf.exeexe 0001e1ce08552acf86d48181e6761ae93a07cf22f828970d8a56edda83bae310n/a 
2025-06-13bryjf.exeexe 116c084996034782c41cabd0971ef5d30e49df349ec4468213e2249a30e14333Virustotal results 52.78% DCRat
2025-06-11bryjf.exeexe 432efad5fd4f793fb30e3ba52236a5d647a4cb046534faafcad927a0dbcfe6a8Virustotal results 53.52% DCRat
2025-06-10bryjf.exeexe 8c4e2908eebef7809f904d0e93851ab9397db0693c989dc9c83e840c927d3dc8Virustotal results 75.00%DCRat