URLhaus Database

You are currently viewing the URLhaus database entry for http://64.44.98.108/mersedec.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2148983
URL: http://64.44.98.108/mersedec.exe
URL Status:Offline
Host: 64.44.98.108
Date added:2022-04-15 06:49:06 UTC
Last online:2022-04-15 22:XX:XX UTC
Threat:Malware download Malware download
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2022-04-15 06:50:08 UTC to abuse{at}nexeontech[dot]com)
Takedown time:15 hours, 45 minutes Good (down since 2022-04-15 22:35:51 UTC)
Tags:DanaBot link exe

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-04-15n/aexe e03c845e5faaf35f42d1caa683641d9cc10c61095f4027b0f1ad2f28f0ad9c11n/a DanaBot
2022-04-15n/aexe 8ec6b7399af931d178ba8c3ca00e10ab65336f8794bcd40edb45fba797083265Virustotal results 42.03% DanaBot
2022-04-15n/aexe bd7515fad63d3daf2cf6e50c6f73c5052b1545c159ca7df511c3e6b96d9a24ban/a DanaBot
2022-04-15n/aexe a097a0ffc4ee77786c257b7ac63807676a5342fee96c8d996051df922ec7fd2cn/a DanaBot
2022-04-15n/aexe 340b9f6e1d6b4e6240bb228d1e3c67e958ae7b9ccc72c51e82b3a5994906cb9dVirustotal results 40.58% DanaBot
2022-04-15n/aexe 4f2b36b8ada9bfcabc798e98d6490d21c9c82b0e2ac8d88508640c0f6a882443n/a DanaBot
2022-04-15n/aexe db6cb279687271bd10869c3adc5c1a088e5646888eb40b99727ff50e520c4273n/a DanaBot
2022-04-15n/aexe f991688a2961c3f6c9b261f7279f6388896e3f498c3a63a8b5270c36166a0374n/a DanaBot
2022-04-15n/aexe e5daf71cd049da44c05550d3564bfe82e79a3393f66370b06591e819df946bd7Virustotal results 41.43%DanaBot
2022-04-15n/aexe 07c52d7502270fdd42ee6e3fada464e83ac207f57f169f51b2a95a756f401940n/aDanaBot