URLhaus Database

You are currently viewing the URLhaus database entry for http://198.23.177.201/img/optimized_MSI.png which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3634946
URL: http://198.23.177.201/img/optimized_MSI.png
URL Status:Offline
Host: 198.23.177.201
Date added:2025-09-29 14:32:08 UTC
Last online:2025-10-13 03:XX:XX UTC
Threat:Malware download Malware download
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2025-09-29 14:33:11 UTC to support{at}vpsace[dot]com)
Takedown time:13 days, 12 hours, 34 minutes Bad (down since 2025-10-13 03:07:54 UTC)
Tags:rat RemcosRAT link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-10-12optimized_MSI.pngunknown 78abd1423cbe30320ed4d372f56179392f654cd0a4704459c0143eb3a5c1ecc0Virustotal results 3.28% 
2025-10-08optimized_MSI.pngunknown d9cf618bd86026aeb10f6f7b0c955af73259c0f1948c0b392b2c1d4ca228f59dVirustotal results 3.28% 
2025-10-02optimized_MSI.pngunknown 019861676812da1c6dc1b7da6aaf423a189583c236d60f4870eb8e4eea9a22e8Virustotal results 3.28% 
2025-10-02optimized_MSI.pngunknown 21a730e59f4f7258dd0d99d7d6e1d6ec9933021b3f8467a314e58f220d32881cVirustotal results 1.64% 
2025-09-29optimized_MSI.pngunknown c20382bc5c40e9548a1255a4bef8470a83b78feb9a94f5e1899e90cc6d1672d2Virustotal results 3.28% 
2025-09-29optimized_MSI.pngunknown b932adbdbb14644366daed1bede62d9293868c9a3eecbffc7c4e6604d6d5b243Virustotal results 3.28%