URLhaus Database

You are currently viewing the URLhaus database entry for http://23.106.123.49/lapov.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2470039
URL: http://23.106.123.49/lapov.exe
URL Status:Offline
Host: 23.106.123.49
Date added:2022-12-19 09:13:10 UTC
Last online:2022-12-19 22:XX:XX UTC
Threat:Malware download Malware download
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2022-12-19 09:14:05 UTC to abuse{at}sg[dot]leaseweb[dot]com)
Takedown time:13 hours, 1 minutes Good (down since 2022-12-19 22:15:32 UTC)
Tags:DanaBot link exe

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-12-19n/aexe 36cfa0e234d289738ca43878f695c4ed58de0e2db30edb6521d96c881ab14c7fVirustotal results 50.70%DanaBot
2022-12-19n/aexe b3a1633cf2b87e4084d7c61a92a36c8c5fca4c926a7eed0916653712618033b1n/a DanaBot
2022-12-19n/aexe 106a8c05bd4fe5807019f19c99c66dd65166442148ab41a482944a06740dca2fn/aDanaBot
2022-12-19n/aexe f82079c0756f06680dd0da0618a472eee85039919822ae1d546978c0fe6b430cn/a DanaBot
2022-12-19n/aexe 37b5287743c5de46c17952589bdc3632a5083450f799f6c8f314afa613f4ae34n/aDanaBot
2022-12-19n/aexe 57d4d742672d0b1a350de9a156f806404a137fe73c32363df3976a5205cade21Virustotal results 47.89% DanaBot
2022-12-19n/aexe ef4fad59fb577e12dfae7d0f88c565f9fd74392a2630da3abe7db2d2f75b0336n/a
2022-12-19n/aexe c51c27c86facb3ce46801e6a9f900292b5ba336760708438483e5246b7440029n/a DanaBot
2022-12-19n/aexe aa123ff84c9fc24ff4fd58d0b5796b6b176976774b877efd9ec1c8263e87b08fVirustotal results 44.29%DanaBot
2022-12-19n/aexe 08a5c87ab1ea14d269adfc5ae54db174b3465d0a7d9ba590dd6606091440b9b7n/a DanaBot
2022-12-19n/aexe 9292bc6aec169cc1f3f223470669c6307f1d3e61687544c0a228846c1cf0df97Virustotal results 47.89%DanaBot