URLhaus Database

You are currently viewing the URLhaus database entry for https://vanta.st/rem which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3851718
URL: https://vanta.st/rem
URL Status:Offline
Host: vanta.st
Date added:2026-05-22 13:26:28 UTC
Last online:2026-05-27 14:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Abused domain (botnet C&C)
SURBL :Blocked
Quad9 :Blocked
AdGuard :Blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Blocked
OpenBLD :Blocked
DNS4EU :Not blocked
Reporter: burger
Abuse complaint sent (?): Yes (2026-05-22 13:27:17 UTC to abuse{at}ddos-guard[dot]net)
Takedown time:5 days, 0 hours, 50 minutes Bad (down since 2026-05-27 14:17:52 UTC)
Tags:exe VantaRAT

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2026-05-27WindowsRuntime.exeexe f2dd1b603af28d363bb4653b61004ea1ccbbbcc2a485394ad8e479b5b94e2b56n/a 
2026-05-27WindowsRuntime.exeexe e51401f97768c1a841e218c33ac8bb7d1735286f08d38922429bb9a3b814cfa5n/a 
2026-05-27WindowsRuntime.exeexe f24e7a59b3e7f84efe4ebf45dd8b049d1b99c81f881e06720297c004463110d2n/a 
2026-05-26WindowsRuntime.exeexe 5ecda3852c3e8aff3b7bca8b8eb916348751a43c44326d7de9aab63a8ccb3313n/a 
2026-05-26WindowsRuntime.exeexe 395f638da0aa3bdb63949c9899d83ac5ab56f52243edfaa8fea16b6b59eedc5en/a 
2026-05-26WindowsRuntime.exeexe a4d9c9f3fd027ffe0fbe2782cd2384f3dd7a0d5da475d682260bd6dce9fc2781n/a 
2026-05-26WindowsRuntime.exeexe 8adadc552337cecdfe86ba8583f8ce5efc4b008566236e1a2c4ed1bbc98b3399n/a 
2026-05-26WindowsRuntime.exeexe 167d58a8cd771ca5c790ff604d2f75409079b8ce533abac369ed5ff77e34a24cn/a 
2026-05-26WindowsRuntime.exeexe 2876b3d7f1e8337e97b1bf51d0b8dfe4feae4582b044f3db38710350df7a7507n/a 
2026-05-26WindowsRuntime.exeexe a08a7a136abeb86553b35400fef11cee01870d43ca25881e9d16f7d024aff9dan/a 
2026-05-25WindowsRuntime.exeexe 8aa0a5ea1a7ab013c7fc09ed1436f14127b4e4953341eeb68392a0f011245492n/a 
2026-05-25WindowsRuntime.exeexe 6edb7276080d8a5c523fb1200dc4e27c2e7705d8e4ccc39eb8eb67cfd64fec47n/a 
2026-05-25WindowsRuntime.exeexe d2ac15bf713f56da6279531513c802c8e9940f4e18241fe7fc4eb8ac6282cea6n/a 
2026-05-25WindowsRuntime.exeexe 8ac7574893c38971b9497c79d02bf6a82a65fec7205185b93a760c8d6db1a7d4n/a 
2026-05-25WindowsRuntime.exeexe 80ae0b162531b414d951dee42b3a60b7a6d7092b1e2158d882b17ab472a54607n/a 
2026-05-25WindowsRuntime.exeexe 579e9155ed08b65117f1279f87e4b3f098ccb1696e8f8ca9141cbb12b0e7fef2n/a 
2026-05-24WindowsRuntime.exeexe cdddeaadb250fab27a5b71e6f1d33fe22983afad0d1a48db45aff61a030cd9b9n/a 
2026-05-24WindowsRuntime.exeexe c0b13d9e81ec394593820b159823014f90bbab053ed4919a432c53a4c44f152dn/a 
2026-05-24WindowsRuntime.exeexe 6610cd38955240da087538ff84178a655105f18bb1d8d05dba9aa61c23b8a8e2n/a 
2026-05-22WindowsRuntime.exeexe 0c6fc85662864fa94e4867ebc8008098b15d8752b2bac9192a348d6ea71db354n/a