URLhaus Database

You are currently viewing the URLhaus database entry for http://5.255.101.55/myblog/posts/onfile.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1834906
URL: http://5.255.101.55/myblog/posts/onfile.exe
URL Status:Offline
Host: 5.255.101.55
Date added:2021-11-30 05:47:04 UTC
Last online:2021-11-30 17:XX:XX UTC
Threat:Malware download Malware download
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2021-11-30 14:18:05 UTC to ripe{at}liteserver[dot]nl)
Takedown time:12 hours, 2 minutes Good (down since 2021-11-30 17:50:42 UTC)
Tags:32 cryptbot exe

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-11-30n/aexe 23f76bbb30ceda7469b993abb0a17f0c6393f202666d7cabc118887f817e2ba0n/a CryptBot
2021-11-30n/aexe 63969ffd7b9a6a35efee84c9bd16e88df6f8b717f60f39a3db137d045f8a557bn/a CryptBot
2021-11-30n/aexe f28a9641e44d4bf64fdab51379845df0f58265df992d7de335055babc1a1114en/a CryptBot
2021-11-30n/aexe 465575a6686340c79eb29c7a96e5726cd6ccea0290bae7ebe453ddbd4a22324cn/a CryptBot
2021-11-30n/aexe b453a2b5219ff85d6b1bdc6906aa7a217e6e762f284a7dbb21510760a2093749n/a CryptBot
2021-11-30n/aexe ee97fbdf1cdd3a3ca7f5d143c003a22587cac651e7d17b6134054e10abee8f27n/a CryptBot
2021-11-30n/aexe 67f709e2488773b18c65a904226e3fce8d52eaab5e323903f082a88c1ebcd5can/a CryptBot
2021-11-30n/aexe d20a4324e45b1d2705de7f2223e5819f9122b9b3aa628a65f954cbdb113f91e4n/a CryptBot
2021-11-30n/aexe b6cc56b47d8df7dd50af497a837099c9f7dc3baf965c7967c169a579edaeedbbn/a CryptBot
2021-11-30n/aexe 5741319cd80b76803e630aa1851c08b08fb4ae942ae2f9a0c92c62c9fdc671e7n/a CryptBot
2021-11-30n/aexe 239560dda3b8c7a8a26b29ddb0ff753db571c5c96eb11dd97ac64298d8d724fdn/aCryptBot
2021-11-30n/aexe 0eed9b77d6fb90ca8d1019c1e2cea5da91500883c361442ad5543dfa0966c97bn/a CryptBot
2021-11-30n/aexe 92f906dafde15f429df8f9d7d729da3ef942ca577a599473fccfa2e3c9af7e31n/a CryptBot
2021-11-30n/aexe 519041987091727c7090a0e75c52adacbe7a4dac2646166a88f4e487c398d32cVirustotal results 37.88%CryptBot
2021-11-30n/aexe de0819da1d13c8b0a83e4f3da78b56198bfd3b15f55952e814b27e7ceef945d7Virustotal results 36.67%CryptBot