URLhaus Database

You are currently viewing the URLhaus database entry for http://94.103.94.2/miner_scrooges.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1025034
URL: http://94.103.94.2/miner_scrooges.exe
URL Status:Offline
Host: 94.103.94.2
Date added:2021-02-23 05:01:07 UTC
Last online:2021-02-23 13:XX:XX UTC
Threat:Malware download Malware download
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2021-02-23 05:02:05 UTC to abuse{at}vdsina[dot]ru)
Takedown time:8 hours, 7 minutes Good (down since 2021-02-23 13:09:56 UTC)
Tags:CoinMiner exe

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-02-23n/aexe b704279b63056862c86f3ad3be8d905180f6f00e84a22d04d11acc98083e25aan/a 
2021-02-23n/aexe 5968487c35c4a23a5c8e836bab7f22cf00d47755ba38b6e06fd649e89831f0f3Virustotal results 40.00% 
2021-02-23n/aexe 33dd369497056a60bb9b9339a57a74ea6230087613aa5031898d2e8e84af3fd5n/a 
2021-02-23n/aexe 57ffee3928140c376040d0fad138818600fb8aa0aabbbc5b1a9a7207bdca204dVirustotal results 40.58% 
2021-02-23n/aexe 1980ebef37b3e03641a0c6727df6a337271ac02edfe7b12cf3f4a354d3141c89n/a 
2021-02-23n/aexe 626bd3059c43ff31f37bd3996589d8fe515fccbde1aad47fd70c9cd47e0658b7n/a 
2021-02-23n/aexe cd0fa002bbe0c5f3cd9aeb4a28b2e60074eb497568b305517ef7beae843dfe17n/a 
2021-02-23n/aexe c791ac1046177754f0574e3d34710acf6adc5939647311669ff38097b8a9f831n/a 
2021-02-23n/aexe 541ecb35541767e712696186864d8fcede18fb249955727644885405cdb78ca3n/a 
2021-02-23n/aexe 5e4c3c6881ba2c511b331ddbf59de6917b91357727d21bc24ff48a1e3b6e4eb1n/a CoinMiner
2021-02-23n/aexe 0c8718d6654602c476b55b6ef34a6b4d6b280794aa586b71e55a3e11067ab129n/a 
2021-02-23n/aexe f05d76c071555f48ff240556f6d0d3d895493c3c411e182648d256f83ad657e5n/aCoinMiner
2021-02-23n/aexe 71e0aae0ebedd47cbba8cf8ea124c6ea17496d95ea8ab439517906b950e7d827n/a 
2021-02-23n/aexe 3adf4a5ab3a5dba879b9626314b082e1ee0c18a04c6283749f46ae07b321cc59n/a 
2021-02-23n/aexe 33a81e3e6d4bfe3812c71b4ae5ce840db1710d4305ad1e55baf37893692de715n/a 
2021-02-23n/aexe dba7ebc570e128283d37c707fa0a0e56364500434c2911cb3feca06c017de04en/a 
2021-02-23n/aexe e0b82b1458e071658da98262f0b974aeb30e7e306eb786f8a289f3dd1b8cb80dn/a 
2021-02-23n/aexe 6d83e7bcbdd10761b3c06363d9f677745d2c9c03416d057668e87617086d0a61n/a 
2021-02-23n/aexe 8291db6ed7f2be2e014d6ad586a2fa2021c6f59334416e1042ed88edea137d0bn/aCoinMiner
2021-02-23n/aexe 399cd22961b046713773a0a1a0817d0e30fcad4f9ec82d33c84f0e667cbd925dVirustotal results 35.94%