URLhaus Database

You are currently viewing the URLhaus database entry for http://193.37.69.43:97/02.08.2022.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3569573
URL: http://193.37.69.43:97/02.08.2022.exe
URL Status:Offline
Host: 193.37.69.43
Date added:2025-06-23 17:58:04 UTC
Last online:2025-07-04 23:XX:XX UTC
Threat:Malware download Malware download
Reporter: DaveLikesMalwre
Abuse complaint sent (?): Yes (2025-06-25 16:44:10 UTC to alievnethost{at}tutamail[dot]com)
Takedown time:9 days, 6 hours, 50 minutes Bad (down since 2025-07-04 23:34:16 UTC)
Tags:censys CobaltStrike link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-07-0402.08.2022.exeunknown 6ea591012f14ac0544ab22fbbc1822f29269d27db5e3542800be06908049a289Virustotal results 26.23% 
2025-07-0202.08.2022.exeunknown d8763f883ac839adf4975aef7b97032259ccd6c4af50fa4b97f31031f3584802Virustotal results 25.81% 
2025-07-0102.08.2022.exeunknown 0da4b6c8c15a110f0cec347ec25bb6810227afb04982d3372304711940e0deecVirustotal results 26.23% 
2025-06-2902.08.2022.exeunknown 1340129a43cf589d8d9dcac2b49c89d860153fb8ffcfd6bedac63258eba68068n/a 
2025-06-2802.08.2022.exeunknown d9e0a9e951ad407d9d5c0c62d41c84df6cc3cd5c88d0ce7ce1a1b6f123344544n/a 
2025-06-2602.08.2022.exeunknown e820da217db800a1988bbd779f9ccce059ebb115f7115e92310d2c1e4b1d3512n/a 
2025-06-2502.08.2022.exeunknown f382814d1715412649cae572889b27cb897e5fdbac8b68189da4bd4c97df8ae9n/a