URLhaus Database

You are currently viewing the URLhaus database entry for http://intecilab.com/10/data64_5.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2258509
URL: http://intecilab.com/10/data64_5.exe
URL Status:Offline
Host: intecilab.com
Date added:2022-07-18 06:46:06 UTC
Last online:2022-08-11 14:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2022-07-18 06:47:06 UTC to abuse{at}publicdomainregistry[dot]com)
Takedown time:24 days, 8 hours, 0 minutes Bad (down since 2022-08-11 14:47:35 UTC)
Tags:exe

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-08-10n/aexe f2a93f373e692a2d763dc66a33ad451d18cb698e85aee4bc981c4d23dcf2adcfVirustotal results 51.43% 
2022-08-06n/aexe 1a8769c26c4461d781750024e673dff1e63d474a5f6ebfcfa937dd7e940bdbe3n/a 
2022-08-06n/aexe b2b729d7b963cbffe4bb6caabb8b6c6b398994bccf3eb1ae444798367b9e1121n/a 
2022-08-03n/aexe 9498e7b026f793586e0403d853d90794ce0f11ad37ad218d16546edd01385eddn/a 
2022-08-02n/aexe 14f8e59ed9b8ad4957547c76b4778ec0c786f2769b63e78e8d9ba0b1ca0b8848n/a 
2022-07-27n/aexe 167fb8ae67c1c28db08e33aedfd00f1c7df0dc965ad3617bb51d6cac33d551c0n/a
2022-07-25n/aexe 9e97ee9cbba7f1e6892576033074d17ed2f09307227ad1ce197f49c9145e614dn/a 
2022-07-23n/aexe 940194c35b92473e8a2339cdfa0197eba9db73f9a44a348f1a4f0db52e4a7c3an/a 
2022-07-19n/aexe 169a7ef6688f009f2a7b8dc88236011fe7a6f64a591434d8dd73f8000b31d18en/a 
2022-07-18n/aexe fe55baafe868522748abea57c243e377a54037d36cee4e70824c2b675a78a886n/a