URLhaus Database

You are currently viewing the URLhaus database entry for http://91.243.44.128/miner/new.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1942348
URL: http://91.243.44.128/miner/new.exe
URL Status:Offline
Host: 91.243.44.128
Date added:2022-01-02 00:20:07 UTC
Last online:2022-01-03 16:XX:XX UTC
Threat:Malware download Malware download
Reporter:Anonymous
Abuse complaint sent (?): Yes (2022-01-02 00:24:43 UTC to abuse{at}grizlnet[dot]com,abuse{at}vamu[dot]ru)
Takedown time:1 day, 15 hours, 49 minutes Poor (down since 2022-01-03 16:14:27 UTC)
Tags:CoinMiner

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-01-03n/aexe 6b10f57d5211fa504775f4db4021b74bfee20d6fc6f908fb062044db926c0656n/a CoinMiner
2022-01-02n/aexe e53815bde4306397c668c921b03877403c5faae724ec66e1a62f3cc506fdb2ean/a CoinMiner
2022-01-02n/aexe 85cdf8b03d3b24db2e010fe37c99081c7aa916fb20e01d6bc18f41d895e3c391Virustotal results 10.29% CoinMiner
2022-01-02n/aexe a8d2988b11e6991110ac5a9a055c14efc997f35f63b734ae8b0ddd0ab9bf7e3eVirustotal results 24.64% CoinMiner