URLhaus Database

You are currently viewing the URLhaus database entry for http://45.140.146.180/44273,5055075232.dat which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1075055
URL: http://45.140.146.180/44273,5055075232.dat
URL Status:Offline
Host: 45.140.146.180
Date added:2021-03-18 11:17:04 UTC
Last online:2021-03-18 12:XX:XX UTC
Threat:Malware download Malware download
Reporter: reecdeep
Abuse complaint sent (?): Yes (2021-03-18 11:18:03 UTC to abuse{at}pq[dot]hosting)
Takedown time:1 hour, 15 minutes Good (down since 2021-03-18 12:33:31 UTC)
Tags:IcedID link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-03-1844273,5055075232.datdll c3cc513c88d2bfe2ad960db706989a0d8cf0232da9ed49d26db2853b55bbb20bn/a IcedID
2021-03-1844273,5055075232.datdll 11d58f01d5e74e893a15c96ca7b5c4f1944805eae7ecb53320682772d711415cn/a IcedID
2021-03-1844273,5055075232.datdll 3578e35d7ca66e042017d0bff245f47d4bbe9d310045361373e1db9be3e58869n/a IcedID
2021-03-1844273,5055075232.datdll 71e2b63a1898a79f7fb691e468661051a095bb7cf3465b7c1f85e3a1f64a328en/a IcedID
2021-03-1844273,5055075232.datdll 22a5a7c33516781a4f128a1d72cf52016910dbbc4dd1f9db93f499ffb321e9edn/a IcedID
2021-03-1844273,5055075232.datdll 70e88b33b35129276cb6e9610725610a59bf3c55a43e3421d1d1427bb9cf2b5fn/a IcedID