🤲🏼 NEW | abuse.ch Community Hub! Earn recognition 🏅 for the malware intelligence you share, climb the leaderboards 📈, and connect with like-minded contributors who share your hunting focus 🤝. Ready to unlock your profile? Go to the Community Hub →

URLhaus Database

You are currently viewing the URLhaus database entry for http://64.89.161.119:751/download which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3881816
URL: http://64.89.161.119:751/download
URL Status:Offline
Host: 64.89.161.119
Date added:2026-07-07 05:12:28 UTC
Last online:2026-09-07 09:XX:XX UTC
Threat:Malware download Malware download
Reporter:Anonymous
Abuse complaint sent (?): Yes (2026-07-07 05:13:20 UTC to abuse{at}nfx[dot]rip)
Takedown time:2 months, 2 days, 4 hours, 41 minutes Bad (down since 2026-09-07 09:54:48 UTC)
Tags:RapidStealer

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2026-08-30servicesrv.exeexe f64ebb7b6949077a8d1d045f7836384b7eaf737781ac67b5e9c634c625ff6ae4n/a 
2026-08-12servicesrv.exeexe d7e8125afe686dbd970dfdcc1a62ce88936fa5f6dce0513a49e7c052280e1613n/a 
2026-08-11servicesrv.exeexe f3d7cba42bfd7b4cfc4e2fd6b6d43bc7449d080215e5ed5306b3f35d2a8edac5n/a 
2026-08-10servicesrv.exeexe b43691220465f6cbfa97ffef04ff87ce6bb6035372b2fe82f8b1759c6a8c75c8n/a 
2026-07-07ChatAgent.exeexe 784050d885cda72ffe9ba8fc403892ac136bf3c0bf629a69ce11fc6c1f91e5e5n/a