URLhaus Database

You are currently viewing the URLhaus database entry for http://92.63.197.60/1.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:120593
URL:http://92.63.197.60/1.exe
URL Status: Online
Host:92.63.197.60
Date added:2019-02-09 07:50:03 UTC
Threat:Malware download Malware download
Google Safe Browsing:Clean
Spamhaus DBL:Unknown
SURBL:Not listed
Reporter:@shotgunner101
Abuse complaint sent (?): Yes (2019-02-09 07:52:03 UTC to hvfopserver{at}protonmail[dot]com)
Tags:CoinMiner exe GandCrab Loader phorpiex

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTSignature
2019-08-24n/aexed746e41e18bb637062881aca207186dc3d005e79c857e025f89ce2a1b3e52ecfVirustotal results 9 / 70 (12.86)
2019-08-23n/aexeb9b4511065cb56bd162e143c22cf2afe32e3ee6617ba5a4852182cb0781f18f1Virustotal results 48 / 70 (68.57)Phorpiex
2019-07-18n/aexecfa7edc52cb8289ea0822520adf2c116c879c522af81a8aea35e9421a9019535Virustotal results 23 / 66 (34.85)
2019-07-17n/aexe64d187bed40d023e14d41b1a80d528f5c12dcf743fcb4de91530567d3244e09eVirustotal results 9 / 70 (12.86)
2019-07-09n/aexe9dbbb31e9df0c42d83a0fa7b610a9438dc3d727d8dd7eaa81418df25f87d5981n/a
2019-07-07n/aexe9e38c7f093d4f02631406ca00ed549386e794bf7bc0c53e6147b1cbaf10c8a69n/a
2019-07-05n/aexe48393fed57d7c4309373e400080449afa794f665f1a573ab26cfb316de4cef80Virustotal results 22 / 72 (30.56)
2019-07-02n/aexeb1650c6085710bd89fdec14ce9a1a5f52d7199ab98671d994181b1e7116a0a86n/a
2019-07-01n/aexe7f9af5447e0da4702f9fefab0bb095b1323813c657c7387e74dcc0774f691349n/a
2019-06-29n/aexe7cb48b10cceccfbbbfb67677ddc9df820ee8c6d45a371dcf75edfd2fac8bf078Virustotal results 18 / 70 (25.71)
2019-06-22n/aexe2253bec8888c6c8fa3227dd6f33206e412309f0787ee67deefa63c50e99b4645Virustotal results 25 / 69 (36.23)CoinMiner
2019-02-28n/aexef7950519ed84f7893a0e22a1e45c9dc0610f8975c92072326d086fc20afbff99n/aRansomware.GandCrab
2019-02-27n/aexec225e260cda5f832cca97b6592c923cb65444213986fdac34451b1953c8bb872n/aCoinMiner
2019-02-25n/aexee5b65cd761ff26171d49f535dac59efae0a6501dae18c675a0bfacc76256f1f5n/a
2019-02-24n/aexe4ec5ac282163226d3a52949bdbeca7fac3e523108761c2fc81cd943ce59c994eVirustotal results 32 / 69 (46.38)
2019-02-20n/aexe065586040168b8b5e14410780992483bab63a30f14451ffcf8c5aabbe98ad31an/aCoinMiner
2019-02-20n/aexece2bcab5b5c92b46ade212ffbcddb43ccf63a753f2a15d72083af3b7752048a6n/aRansomware.GandCrab
2019-02-18n/aexe6f4ea46cd37fdd4009d4892a68aed3184788017b9ae54eb9172db8cb21927b0bn/a
2019-02-18n/aexe097d1c811d7cf721a2874cc8211f5eae7940c7dc7ff3701e879f766035579277Virustotal results 16 / 65 (24.62)Ransomware.GandCrab
2019-02-17n/aexeeddd09fdd3e1b6bec7027ffc3204ade8232d3cf46eca15d455b077d37784bf93n/aRansomware.GandCrab
2019-02-16n/aexe71e9be5a89fbf935896142e3e00d404bedcc167da395ccfc86e0062fbfe3ba5an/aRansomware.GandCrab
2019-02-14n/aexe436862557cd97622cbcb2d7de676875dde08f5edd3c2339cccc6137009f366b0n/a
2019-02-13n/aexe11182a25c4eef1e9567859e893a9464171c21cc0456ac96236422ccb1f6213e1n/aCoinMiner
2019-02-12n/aexe72f7c16c2db8621b62e64a42b017b7892b69a8ec5f29dc93106e7581688a42d6n/aCoinMiner
2019-02-11n/aexe395ee0641c186659b0b95d9515fbc5aaa39c3825aadee9c2bfdd8bc45e00a62cn/aCoinMiner
2019-02-10n/aexefdf1aed640293c7fa25d084ffdae15623a1f38acfb0a7ee61a51f6ef0108307bn/aCoinMiner
2019-02-09n/aexe453375371a20efae3ac33601b2876e19d00b0d9cc5f77ba137c596fcbc872decVirustotal results 44 / 69 (63.77)Ransomware.GandCrab