URLhaus Database

You are currently viewing the URLhaus database entry for http://5.255.98.239/dp123481.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2214816
URL: http://5.255.98.239/dp123481.exe
URL Status:Offline
Host: 5.255.98.239
Date added:2022-05-28 00:31:05 UTC
Last online:2022-05-29 08:XX:XX UTC
Threat:Malware download Malware download
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2022-05-28 00:32:06 UTC to ripe{at}liteserver[dot]nl)
Takedown time:1 day, 7 hours, 45 minutes Poor (down since 2022-05-29 08:17:25 UTC)
Tags:exe

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-05-28n/aexe 1659eeb159c06e2761484246798274d8f23bcd85d7ba540e758c17d8bb9fb2d6n/a
2022-05-28n/aexe ff7cd4763a295ad91a95fb4ee95476abce8f85f076198e55c9b0d6a0a8478d81n/a 
2022-05-28n/aexe 262dd6c5d9ddad7ccd87119b794ff2f2b50c9668b7d15349ce6d0880fc0a55a6n/a
2022-05-28n/aexe 4e78dbfd9d5fcc891dc5bf5c37930188a51b817f9c94406717ec3b14c300de1aVirustotal results 49.28%