URLhaus Database

You are currently viewing the URLhaus database entry for http://194.62.55.143/Client-built.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3765711
URL: http://194.62.55.143/Client-built.exe
URL Status:flame Online (spreading malware for 1 day, 8 hours, 16 minutes)
Host: 194.62.55.143
Date added:2026-01-29 17:24:22 UTC
Threat:Malware download Malware download
Reporter: BlinkzSec
Abuse complaint sent (?): Yes (2026-01-29 17:37:12 UTC to info{at}hostingdunyam[dot]com[dot]tr)
Tags:opendir QuasarRAT link ua-wget

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2026-01-30Client-built.exeexe 65168e365a4a611aaea6bcfebd95df7b6f76501ea6d7dd1e791e88333580fd90n/a QuasarRAT
2026-01-30Client-built.exeexe 9c3aa17a60e852bb0ec78902c6941f0f5cf99d81aec0be7b77b34d97331b9f7en/a QuasarRAT
2026-01-30Client-built.exeexe 535ff0b981193204fa5422bad40cccecc198d99606794b3dfd0b38646f1431c2n/a QuasarRAT
2026-01-29Client-built.exeexe 13b92c9a67524a0ff5098fbb00b53219cb93c8abd23594b36875fe92320f2a13n/aQuasarRAT