URLhaus Database

You are currently viewing the URLhaus database entry for http://92.63.197.153/krabaldento.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:146323
URL: http://92.63.197.153/krabaldento.exe
URL Status:Offline
Host: 92.63.197.153
Date added:2019-02-25 22:03:11 UTC
Threat:Malware download Malware download
Google Safe Browsing:Clean
Spamhaus DBL:Unknown
SURBL:Not listed
Reporter:@ps66uk
Abuse complaint sent (?): Yes (2019-02-25 18:46:11 UTC to hvfopserver{at}protonmail[dot]com)
Takedown time:3 days, 16 hours, 29 minutes Bad
Tags:exe GandCrab link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTSignature
2019-02-26n/aexe b8327b87c89f3a42d0f36b2a12a7957868efaca25af5b5f8af85b387c425787dn/a
2019-02-25n/aexe 243e3a984dd9734172d317c949479a75d3e962fb608cd44adaddd2ad59c6a311Virustotal results 37.31%Ransomware.GandCrab
2019-02-25n/aexe 28c2e4b1b800f869e7264553cc2e3e5666f88dc23e32a196e6a2e81096303b0cVirustotal results 27.54%
2019-02-25n/aexe e5b65cd761ff26171d49f535dac59efae0a6501dae18c675a0bfacc76256f1f5Virustotal results 35.29%