URLhaus Database

You are currently viewing the URLhaus database entry for http://80.71.158.96/wxm.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1988946
URL: http://80.71.158.96/wxm.exe
URL Status:Offline
Host: 80.71.158.96
Date added:2022-01-19 08:54:06 UTC
Last online:2022-04-17 17:XX:XX UTC
Threat:Malware download Malware download
Reporter: lrz_urlhaus
Abuse complaint sent (?): Yes (2022-01-19 08:55:17 UTC to abuse{at}ntup[dot]net)
Takedown time:2 months, 28 days, 8 hours, 46 minutes Bad (down since 2022-04-17 17:41:24 UTC)
Tags:CoinMiner coinmining exe

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-04-09n/aexe de49c7c71e352ad45d5d600b2524bf3c9b1f88ff6cf108635d37be86ec0ac819n/a 
2022-04-06n/aexe be1103f1ff921cbbd947baf188233d5300b33ab1c4d7873e21281a250bf1ea5cn/a 
2022-03-27n/aexe 10c0687f586f23c486cb2186667a5edae3bb831ace8a6a9e1c92cb30879e0bf7n/aCoinMiner
2022-03-23n/aexe 154de926f3f0df4b88704002ad569ee96ddc40f3cfb5eb96c54a0e7bed7738dan/a 
2022-03-15n/aexe 1ad2fb13fc886bf181c2371fc214b43e348a0039128e56fdb34fcd41171e54b9n/a
2022-03-11n/aexe a45c482955a2a12f41fdbe5f3d2422809ab4c8ae735aa6bc701ebfb9a49c1c39n/a 
2022-03-11n/aexe 9542979abb6e6fb789c17c5772a0d585cf4f727b5e2a76e3417c27789d43b458n/a 
2022-03-09n/aexe 68280e79fef4b3ed2118343cb515826766bdcc41521e20a6a4d87036330956ffn/a
2022-03-04n/aexe 18de03358fa42372c3aa0cd6c3fbce9d38c3a04c6022e9c11199bcac0f883270n/a CoinMiner
2022-03-03n/aexe 89d1ceca46b03b99d0373dd2e8d209429bca0627ca643fbd82ea3c7b260d73f3n/a 
2022-03-03n/aexe bf20eb54e15c145d16f5d635b0b28d404705643207ca20585645c3aee7eaeb91n/a
2022-03-02n/aexe 480756f6943ef93b0a874e7d9a169f7ea11f1126626b3b6fa74b7159aba3b3e2n/a 
2022-01-31n/aexe 11b3b2b3e4ebc1545b198e9f6d6fa3e70b9d5b6bd37215e329a5e5fc590a6361n/a CoinMiner
2022-01-20n/aexe 366b32c15ff2b30da5cafc1407e6dc49aa4bbecffc34c438302022acd1c00b8eVirustotal results 67.19% 
2022-01-19n/aexe 0663d70411a20340f184ae3b47138b33ac398c800920e4d976ae609b60522b01Virustotal results 77.27%