URLhaus Database

You are currently viewing the URLhaus database entry for https://woonort.redbyte.in.net/verification.google which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3805263
URL: https://woonort.redbyte.in.net/verification.google
URL Status:flame Online (spreading malware for 2 days, 1 hours, 44 minutes)
Host: woonort.redbyte.in.net
Date added:2026-03-26 06:10:09 UTC
Threat:Malware download Malware download
URLhaus blocklist:Blocked
Spamhaus DBL :Abused domain (malware)
SURBL :Blocked
Quad9 :Blocked
AdGuard :Blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter:Anonymous
Abuse complaint sent (?): Yes (2026-03-26 06:11:12 UTC to abuse{at}cloudflare[dot]com)
Tags:ACRStealer ClearFake

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2026-03-28verification.googledll 83481e5adbe08e6974be76c7e46311d73651e9f23aac230b6e31cf073e4e6c2cn/aACRStealer
2026-03-27verification.googledll 3ebf4ba45b090a9a78e56bb3b89515dfb5fddc5c6a4f6d8f582d3bc4e49897b9n/a ACRStealer
2026-03-27verification.googledll 155c95579e916517ebe01171a1a92f8ba4bb8dabb702aebc3ea40e6679c2b78cn/a ACRStealer
2026-03-27verification.googledll 3a4481d17c2b79452d0a42ad9765a51a1e1960df8e7252e38afa4776801e84aen/a ACRStealer
2026-03-27verification.googledll 5d18862be945808282a45e8d6ef0e1dbed106db8fdf6e24e12b1fdc40d63caddn/aACRStealer
2026-03-26verification.googledll e7d677af0d217ba27a72aa31dfc0fe3cab15f2bd29dd3e0cfa15091a0aeee1dan/a ACRStealer
2026-03-26verification.googledll 69df8847cabe02123eab3c6a1b59afdfac69f18ed532dfce9e6bac86d9513778n/a ACRStealer
2026-03-26verification.googledll 4f1652daeb35e3b29f9ee7f7c50a2bda830c482d276893d0afefdd11b7871e87n/a ACRStealer
2026-03-26verification.googledll 70fc8adce4713cd8c8fddea101108c29d7e0d852b725eea8d3821ff7c8b3d89an/a ACRStealer