URLhaus Database

You are currently viewing the URLhaus database entry for http://cothdesigns.com:443/Window.msi which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2290697
URL: http://cothdesigns.com:443/Window.msi
URL Status:Offline
Host: cothdesigns.com
Date added:2022-09-03 08:38:03 UTC
Last online:2023-02-01 15:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Status unknown
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2022-09-03 08:39:07 UTC to abuse{at}neterra[dot]net)
Takedown time:5 months, 1 days, 6 hours, 21 minutes Bad (down since 2023-02-01 15:00:09 UTC)
Tags:32 CoinMiner exe

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-01-22n/aexe 5811b47aeeaba2ee79f1fbcc87b5f8c79f12d52db60ac4f4eb515a80b48b0d7bn/a 
2023-01-19n/aexe ce372965f6db417408880e888e3edcc299b2ca334d1af2948314257fe2b3e62fn/a 
2023-01-17n/aexe 664a91f2d20d54704bcfda1346a79bc1d5ff4c93c8196952c1cff6b0d0dd2d32n/a 
2023-01-15n/aexe b82f820a5b75a39207afa9ee8287d0e493de47642a17bd4003a80df920490ac4n/a 
2023-01-13n/aexe 44bbb0a5ffb16da6890c4d2f2315c9ce81774a55c3e1df85cb237277823bc45en/a 
2023-01-12n/aexe 7f24ff4ace1b9c6343ee4989080c1f2e2ff4a57abb39263684fada3865d76e62n/a 
2022-12-31n/aexe ec4fd4d093e6202ecca7dd21e68b50c90cae8965837fb61fb806f4d38b40fe3bn/a 
2022-11-29n/aexe e9eb1b92d69c22bee832d6fc7816513094001ea75fed2806c212dbef54bf2909n/a 
2022-11-24n/aexe 7ba5ad661dfb2410a2eac0b23ac5307734e0a71ea64134d5d89cfc7927ed9a92n/a 
2022-11-20n/aexe fbd44757c66156b8b2d9967974dbdf7d84c1439749577e2e976bb6ee3516bb70n/a 
2022-11-20n/aexe e6223b6c68ee5fff8dd28bd6f5ca52c22d8d7245f0e642a097fccf0c520d4255n/a 
2022-11-20n/aexe 9c17629376c1d3f7b10cdfec3169cbdd360d1b305660d30c826787a65d8c784fn/a 
2022-11-17n/aexe 3fa7f779d2d4f72aa56c0e1c67c6faff8d87598dc7fa9da65cfa1a0b121389f5n/a 
2022-11-16n/aexe a13087598dc5d16a96c9c41e2643a32f3fe692ae67dbd56ae33689a68300502dn/a 
2022-11-13n/aexe 4c7aed42ce781ebf7387faf5079a59d68915db9fd7114aa12ae5106aef3fef47n/a 
2022-11-12n/aexe 61c94304a4f5cf82d62460f99b406980b73802485ea5629557bcfd49f541140an/a 
2022-11-09n/aexe 3fd968d3e5eed57f5dc3a039f8dc9d7487168ad461c9f0a87cf57fc362b3d765n/a 
2022-11-03n/aexe 18b60e08f142353c776cdc3ea88087fc66aca36cca60c3ff3097d159a25f9edbn/a 
2022-11-01n/aexe 1e0e4b716eb256481c5a9d91a8b557fc0d3b2093d4aec8dbf1375e203ac1251bn/a 
2022-11-01n/aexe 26bbde6491e620660c726e86ada8ab6ec799df1eed1f1ef64be27a17768ab041n/a 
2022-10-27n/aexe 2a9507a1d85e95c40a3886fbb69b140006430fc30fdb489ece62e5cf271eb9b5n/a 
2022-10-25n/aexe 598af3f6de8450c1f3752b2b7222253f7f9aa9dd33882a9301b9629e7d99e774n/a 
2022-10-25n/aexe 35fc307ab2ced6a087e1006c78d67d0ac3cf3cf95a4c3bf208a03edc7a7385edn/a 
2022-10-20n/aexe 31bf9b300664ca4e11b29a91499ab455cd75a11a0973d88ea79b7659a3e16369n/a 
2022-10-20n/aexe 37bf54633a1f64111eec698fe3c19eadbdc4a27a60d69976e2801c60dc0c52c2n/a 
2022-10-10n/aexe f2885ac7595808ca0bdc49b06a4d728713e68d1a16675d3dbb5408235afe4bdcn/a CoinMiner
2022-10-10n/aexe a5b17c37da2b7529efd098c7451da7fc273ec08ce118e3a86c1743bedfb71ecbn/a 
2022-10-09n/aexe fe9aa5c5c1c785941408eb7abf34d3461290058f59d8c8a4366fa712cb0f48e4n/a 
2022-10-08n/aexe 9d3ec178d6a32e311d726bc718fe9c783a2475a94f07dbb3a1f68a75b9063721n/a 
2022-10-05n/aexe 40b5dd1604655ae819f292bef28333d813810da9aded0827a6e10ef888a68fd4n/a 
2022-10-04n/aexe 2fa0efb8b8e4c05ba0c3f7769b17397f6a828b348c273663f735d9d23120d76an/a 
2022-10-02n/aexe 8aa599c12bae40549b4e28d90ae1a373d23fc937279ee40d509c7af5a84982f1n/a PripyatMiner
2022-09-29n/aexe b42d3c93a874c387df9c59459918815e4a3bd0d92cef996292781d2b888445efn/a PripyatMiner
2022-09-26n/aexe 90c5e49f8f283227c5b28251dec7c40d12498474dd3b573151ce7e50e76fbb41n/a PripyatMiner
2022-09-25n/aexe d170784aa87e9954da76daec128c13bf721ccbd639510548d27963acf633d403n/a PripyatMiner
2022-09-25n/aexe af0913908105f75dc456a1059befda1d13fc5503272d11ad811069a5078d3551n/a PripyatMiner
2022-09-25n/aexe b9375d930b1c6222af2efe2954366707a9448bd1df00c52c85854f8d06a79b94n/a PripyatMiner
2022-09-25n/aexe dfc943d3f20a22a805fb094f82bdf499dd7fe064651b457c9daa60b76064d163n/a PripyatMiner
2022-09-25n/aexe 36deed18e8bba8933b85f0e180e31699231f0a201988a34dec0865fd6c8f28can/a 
2022-09-22n/aexe ad58f5ff67f5ee0697a52121d21a9dd95919342ad8c7506ed95a1071c22cbe6cn/aPripyatMiner
2022-09-14n/aexe d1f33b6149580342e645139cfd9c714c53575225e3ff161709147ad2463c67c9n/a 
2022-09-13n/aexe 29dec7765c0487b75c911848b0abafadedf1b9b3e9e10dc97554bd277c24f93bn/aPripyatMiner
2022-09-09n/aexe 07044c8a87590ea9abaebafe5efc95ee68b387f9eecdf5677058748ab37f9fdbn/a CoinMiner
2022-09-07n/aexe 399d28b32807f6f42cf4ada7513596fc3506046d836c3363f76f13a133fe5c32n/a 
2022-09-07n/aexe d8df45c52a9ea27527ff5f74f602dd04099d25222dd436db9d77ca0d43870cb8n/a CoinMiner
2022-09-04n/aexe 3c12e82adc4d5aa7cd726a26b05d973f26a6ec10a96ddde3e3d3e7466506b7c5n/a 
2022-09-04n/aexe 89bbd12aacddfaac1a38a140a89bb7790e8e5d4ee70be52203a9e81c809413d1n/a CoinMiner
2022-09-04n/aexe d214e952ce5cd7819a62d12298d53689aa048144852304f885e1536bfd52b758n/a 
2022-09-03n/aexe b7120590c6a56643c5a3b0fbe077b3a661d81c5b57648248cb85024fee542bd8Virustotal results 48.57%CoinMiner