URLhaus Database

You are currently viewing the URLhaus database entry for http://103.155.80.130/kung/bin.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1431197
URL: http://103.155.80.130/kung/bin.exe
URL Status:Offline
Host: 103.155.80.130
Date added:2021-07-06 15:30:08 UTC
Last online:2021-07-30 14:XX:XX UTC
Threat:Malware download Malware download
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2021-07-06 15:31:02 UTC to abuse{at}vnn[dot]vn,abuse{at}vdc[dot]com[dot]vn)
Takedown time:23 days, 22 hours, 45 minutes Bad (down since 2021-07-30 14:16:44 UTC)
Tags:exe Loki link opendir

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-07-28n/aexe 4c58c7531d5b7057ac6b2789b85ed88eca249979c1173711ea897656defa70e3n/aLoki
2021-07-27n/aexe a728204cf53dff3c0f93facfa43a189166caf917e31e85c3ff3b773ecf0cb9b6Virustotal results 26.47%Loki
2021-07-27n/aexe a4496233ba3b2c6ec5f8f1d591cf45839d3be94ae0517c5a83aab9586de103c9n/aLoki
2021-07-26n/aexe 5cd560ec7db038e75c705546d41801264cf450d601cf9b1835826da7597ef921n/aLoki
2021-07-26n/aexe ef9f101dde3bdcfdb7e80989c152290d02a58a9853804fb7b691343b1d18cd5bn/aLoki
2021-07-22n/aexe d2ebab1807dd44bad7b61ac4b53e5d4e8dcdd1daa20d521c778400610fc1a252n/aLoki
2021-07-21n/aexe 994f99037072fbea77a376832818fec2bdaf577a09b1936a7285e38ace5d8e4fn/aLoki
2021-07-19n/aexe e38f60c9ff210681232148c43db51f11967e6360940b50a646c8edb472fb1c42n/aLoki
2021-07-15n/aexe 5c1ba858b951c160d09a7e448a6287aedd337c6869ee4dc67c784c31c70bb7a6n/aLoki
2021-07-15n/aexe f8da8ce794b8a5e02ea07d1e71e5432c3d38ec4a538c0f984622bb18c1b12618n/aLoki
2021-07-14n/aexe 476b568daffd903ccc4cde8c7f8d643eaba306fcad74e2f90dff37504bb11292n/aLoki
2021-07-13n/aexe 7267a71c47e693308bfe345be31eb850e6454302adea1d6dc9795ed54e798033Virustotal results 39.13%Loki
2021-07-12n/aexe 2d230a1a4f5477bfc5bc3b68256fd237f27c580920f2b721cd61df5e3edfd8acn/aLoki
2021-07-06n/aexe cee10fecac0edc80c9028ae0916414140050888561fff693e34eeb7780af222bVirustotal results 33.93%Loki