URLhaus Database

You are currently viewing the URLhaus database entry for http://178.16.55.189/files/1101243119/uv1npwQ.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3613540
URL: http://178.16.55.189/files/1101243119/uv1npwQ.exe
URL Status:Offline
Host: 178.16.55.189
Date added:2025-08-29 10:47:07 UTC
Last online:2025-08-30 08:XX:XX UTC
Threat:Malware download Malware download
Reporter: c2hunter
Abuse complaint sent (?): Yes (2025-08-29 10:48:10 UTC to abuse{at}metaspinner[dot]net,info{at}metaspinner[dot]net)
Takedown time:21 hours, 36 minutes Good (down since 2025-08-30 08:24:14 UTC)
Tags:c2-monitor-auto dropped-by-amadey

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-08-30uv1npwQ.exeexe bbf243bb85ce21a5c8b7a4ed2cacaaabf2ad2d281776667356a61d949e5c7e07Virustotal results 0.00%
2025-08-29uv1npwQ.exeexe d3ec41a7e344763179576efc33cf1228752e7229f50c82d01a108a1f5fc72033Virustotal results 53.52%