URLhaus Database

You are currently viewing the URLhaus database entry for http://23.106.122.159/red.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1071066
URL: http://23.106.122.159/red.exe
URL Status:Offline
Host: 23.106.122.159
Date added:2021-03-16 14:07:21 UTC
Last online:2021-03-16 22:XX:XX UTC
Threat:Malware download Malware download
Reporter: vxvault
Abuse complaint sent (?): Yes (2021-03-16 14:08:03 UTC to abuse{at}sg[dot]leaseweb[dot]com)
Takedown time:8 hours, 23 minutes Good (down since 2021-03-16 22:31:46 UTC)
Tags:DanaBot link exe

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-03-16n/aexe c4da604628c1e419e0c863428c81814162af7073850ae94150d5c66bce138719Virustotal results 21.43% DanaBot
2021-03-16n/aexe 6602ce357475119edc07fe4a18baadd110056228bec7130e8c742546bfd8af79n/a DanaBot
2021-03-16n/aexe 26d5fa037040c12c4061d392fdfc5acd1a310c6538587443c35ae054dd11fedaVirustotal results 24.29% DanaBot
2021-03-16n/aexe 7380f0d63258e26ef55854cc4ce3f797b6c086047d955d395bf04a08cf9bc4e9n/a DanaBot
2021-03-16n/aexe b42549ca7239168d76d85e28f7f726b87024c445fc61f4b8c8969f178e06258fn/a DanaBot
2021-03-16n/aexe ba4222b4699a42209a3f4e4021b1afb38c481534878de12bfdab4e955e61cb84n/a DanaBot
2021-03-16n/aexe c9b627acaf26317ecd565d3eca94166ea8e1eeac19e5d07e8a3743c40be6b2f1n/a DanaBot
2021-03-16n/aexe 05a609880ad41905bc0105ce8356e4051bacbe98adae309f16879ec9718a5f17n/a DanaBot
2021-03-16n/aexe f21785ded84f8eeb431deae7f40d44c82cfe24371ac162bd24b8a25c0ca270d4n/a DanaBot
2021-03-16n/aexe 12aa781dbb20df22ed7d20b94a0c30d93ff44a875cee7c028cdccfa3eab9e57dn/aDanaBot
2021-03-16n/aexe 1fba2c2e504eaf4c622aa7e4cf084825bfc1ad840bebeddabcba690667b637e3Virustotal results 33.33% DanaBot
2021-03-16n/aexe 2a2da94d26fa86c594a1d52187189323804b7c771f03943acd943ea63aa5426bn/a DanaBot
2021-03-16n/aexe 0079864e7ac15a065796b4f2e647120ed60dd2e11fcf5d10cba739f0b6a7e0f8Virustotal results 30.00% DanaBot