URLhaus Database

You are currently viewing the URLhaus database entry for http://da.alibuf.com:3/445.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:21352
URL:http://da.alibuf.com:3/445.exe
URL Status: Online
Host:da.alibuf.com
Date added:2018-06-20 06:00:29 UTC
Threat:Malware download Malware download
Google Safe Browsing:Clean
Spamhaus DBL:Abused domain (malware)
SURBL:Blacklisted
Reporter:Anonymous
Abuse complaint sent (?): Yes (2019-02-19 07:18:06 UTC to antispam{at}dcb[dot]hz[dot]zj[dot]cn,anti_spam{at}mail[dot]jhptt[dot]zj[dot]cn)
Tags:CoinMiner exe

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTSignature
2019-01-17445.exe;exe9cb2519a93ca905c963f7e98aab5a64e67e9c761001fa9a9c2e5fe0b95e7eed2Virustotal results 54 / 71 (76.06)Zegost
2018-11-27445.exe;exead7c3d3e8092f56386668bb3feef70ceaf294e22262acfabd7db4a6dd5854902Virustotal results 40 / 69 (57.97)
2018-11-26445.exe;exe0f1e98836c8d12feedf26b32f2f4dfe2885c8ea71f6e0df86a5001d14c29a63en/a
2018-11-26445.exe;exe966d2284bd8dffefa7d387654880cccb8eb1260c869bdc56a639558b82c7ea54n/a
2018-11-23445.exe;exe828ddb53a06ae5e70d2f50afcd3fc287b511f22d6e4e71bd2e2bb622f5ead326Virustotal results 37 / 66 (56.06)
2018-10-30445.exe;exeeb8d7cca270cca6e05ab72d34b0a8c591459fa178a842650a8dc5c86519a725en/a
2018-10-19445.exe;exe8832775cdc217c11f23a6c3ac28fe48b5966ee1a036c029dad284c9e946524ban/a
2018-10-13445.exe;exe21ff4840aad2b54f4cfcc1b80c3d9a762aa32a705cb0f44bd39b9eea8c4d85aen/a
2018-10-13445.exe;exee87c166c72dedda2b024833573763c2c1ef242b14b06a3a344ad3321f99d3213n/a
2018-10-05445.exe;exe01def3ad374d6764a5ffad636a6d54a7007b71e4563ec32f1ccdaea831dc6535n/a
2018-10-01445.exe;exeb9ed132d17299b9f066923099bcb2f806ab7052b8e9c5892c1c5befa5963cfc2n/aCoinMiner
2018-10-01445.exe;exe97777b89eac81ccb0d81cbfcd605c12b91469109b9550700148d43b3be725576Virustotal results 49 / 68 (72.06)
2018-09-02445.exe;exed203d09d289d8c8f449a1bc406b25755e86e6bd1374793e16c5b21899ad00cben/a
2018-08-17445.exe;exef7bd44374d44487c9b954df8d7d85e5347959be103665894ec8316a5a6d46238n/a
2018-08-16445.exe;exe09bb450f0bda903f4452f8adc1eb08ab4efdd53b56b39082cf26ce543e30dccfn/a
2018-08-15445.exe;exe9e20b76b1697403e9a1c9781cbb805f1d48a8bd74d93d0b7f00669c6166906c7n/a
2018-06-20445.exe;exe483c7fa66d9cf56e48741b7c4516906c78d71a89ef64529266d607ff7e0544e6Virustotal results 45 / 65 (69.23)