URLhaus Database

You are currently viewing the URLhaus database entry for http://23.81.246.58/host.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1090350
URL: http://23.81.246.58/host.exe
URL Status:Offline
Host: 23.81.246.58
Date added:2021-03-25 06:29:07 UTC
Last online:2021-03-25 20:XX:XX UTC
Threat:Malware download Malware download
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2021-03-25 06:30:02 UTC to abuse{at}us[dot]leaseweb[dot]com)
Takedown time:14 hours, 8 minutes Good (down since 2021-03-25 20:38:45 UTC)
Tags:DanaBot link exe

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-03-25n/aexe 2171f665cd26eff1fc61d53dbc78b6dc1543b669b51c9f675e641b23169bc63en/a DanaBot
2021-03-25n/aexe 0bd3e2289f0899ce7978056ad9a96bc1f33e37bb219ecd19ccd0e64b993f6143n/aDanaBot
2021-03-25n/aexe 1170724f17b3a708ae8fb90a3a2bb4093e75b7d3d8a118b1c5ee23027ed03ad0n/a DanaBot
2021-03-25n/aexe c304d726aa9e039a45cf9a6865b9a77d257bb688948fac76a476a0c28c200989n/aDanaBot
2021-03-25n/aexe a52f87de0d8b9d97dc855361235d89ec054b54c65069ea53b58a84417ad072a5n/a DanaBot
2021-03-25n/aexe 9379edf2eabfb2b9914d21fca42dea7b47239f4871651d6221512328a8785444n/a DanaBot
2021-03-25n/aexe 0942dc5440794762dc00afea12bbe4694743a1a8c4e9452b59485e5d25b446d3n/a DanaBot
2021-03-25n/aexe a99d8d6dd7fb3c444c24f4c8ad2011d341d42a792d20ed306a39b7a2be017467n/aDanaBot
2021-03-25n/aexe e3e6925c2542dfef5760150b07bc591324b8287fd829766ab1d938b5ed1ebeccn/aDanaBot
2021-03-25n/aexe 34dbaabe3a0ac0e49c25ee29f5bf8dfb09f28a375dae2d9268163c1370130c03n/a DanaBot
2021-03-25n/aexe fd2489b470b93dfdd0d3eab007381b52a749015ac902da7c2b23d93e44942177n/a DanaBot
2021-03-25n/aexe ecbca23ef270f32a1e18e8717e1351a16234764ea4b6e1804d9b161420ad66bdn/a DanaBot
2021-03-25n/aexe 428678c690936406b3a0364779366e341e8dd73f7804e4591a963086e7e3066en/a DanaBot
2021-03-25n/aexe 7662ab9b318424d7a2351788c64a08788f5c7e12ca960b199d737fd883fe7d40n/aDanaBot
2021-03-25n/aexe 7ea8449c26c4c91bcc6eb8b13035601b099c656a8c7507a1dca42290dcfcf1a0n/a DanaBot
2021-03-25n/aexe a7f9d7978cdf23cda2e590980af3ade324890b0001fcfdf13112263983c2eb50n/a DanaBot
2021-03-25n/aexe 89ebfcdbf750745daa08da3e4c5c56db4f78a00b8c2e8ca06a1b19373ff84da2n/aDanaBot
2021-03-25n/aexe e65e644d9e4644fce4b66e7c85fb16c9be1533b73fd0bec78b6f048c6a21ad9bn/aDanaBot
2021-03-25n/aexe bae80042c1b61aa70ea8687213f90a6326de60f5999e5ecd8d4dd41c7361d16bn/aDanaBot
2021-03-25n/aexe e4bab17bd9aa515f30dbb6bd756532a4b37aa34c671dcc2ad813b00e20df0525n/a DanaBot
2021-03-25n/aexe 558b7e82732b72e64fa83f6acbeab78e90ea7e3a9fc91e54d326c2304f2433b9n/aDanaBot
2021-03-25n/aexe d2b1b74b9bfbb426d4d43ba2271de2bc48a1ed5f5bcf9ce8fa24312266b4dddfVirustotal results 27.14%DanaBot