URLhaus Database

You are currently viewing the URLhaus database entry for http://219.251.34.3/intra/items.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:176784
URL: http://219.251.34.3/intra/items.exe
URL Status:Offline
Host: 219.251.34.3
Date added:2019-04-12 19:33:49 UTC
Last online:2019-10-25 06:XX:XX UTC
Threat:Malware download Malware download
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2019-04-12 19:34:02 UTC to hostmaster{at}nic[dot]or[dot]kr)
Takedown time:6 months, 15 days, 10 hours, 35 minutes Bad (down since 2019-10-25 06:09:07 UTC)
Tags:exe

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-09-03n/aexe e3353bc3bed5e6e62436fb973f5706dd302ebb188d12e13316ee7d55930075a6n/a 
2019-09-03n/aexe 8c5a11b34a46c85b101d5b68625948829a7f37f6c3029cd9ee839a006e3b056en/a 
2019-08-23n/aexe f5324eb547281f920a7098733c5f315cc0f6c423f75120aea722c882a627177fn/a 
2019-07-29n/aexe 6f0830eb514ae2a1df5276aa6fc0727cc7f58527ad54fbd2ead4c72ee8de0b3bn/a 
2019-06-03n/aexe 33a2c20da3646bfd304913148e4974bba9337bb524fdc3c63fd342165cb35d03n/a 
2019-04-12n/aexe a2b5a6a379a2e9077e556ed3dfe8247a532ae405ef5f023b27f57778fca59f29Virustotal results 60.61%