URLhaus Database

You are currently viewing the URLhaus database entry for http://45.9.74.80/wall.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2647221
URL: http://45.9.74.80/wall.exe
URL Status:Offline
Host: 45.9.74.80
Date added:2023-05-31 07:00:14 UTC
Last online:2023-08-19 11:XX:XX UTC
Threat:Malware download Malware download
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2023-05-31 07:01:07 UTC to abuse{at}lethost[dot]co)
Takedown time:2 months, 20 days, 4 hours, 33 minutes Bad (down since 2023-08-19 11:34:40 UTC)
Tags:32 Amadey CoinMiner exe fabookie FruitMIX

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-08-17n/aexe ad09f9e955357522055952ba516e9b6c7562a79f6b2d6b7b895aba8652d0047en/a
2023-08-04n/aexe a2feaa49b96b5a3f7db4159f02690444d4a031dd8b538bb6a6c857a336d71e4bn/a Amadey
2023-08-01n/aexe ce944bced46d3ed29c183d4068c8beda53992152cd66d2ae2c1c864d351811b4n/a Amadey
2023-07-28n/aexe 811b439a6694a4b67e86dfe072473d7b18fe54039840f89c9b9b1e3a1ed69084n/a Amadey
2023-07-24n/aexe 965b882b4d565124645e8412c492933e4421bb3aac2c22c6ba54e3e01f5c2692n/a Amadey
2023-07-19n/aexe f0c7026d5e40c38d3ce5ca2669f57da25992dff637753b0220a66994decadde4n/a Fabookie
2023-07-15n/aexe 75199959eef6bca77f13f285685b05faed159bca05442d8e9f93aa39e45c7cb4n/a Fabookie
2023-07-06n/aexe 0be27abe7b8402580c8ee84dc58a64b2bc9077e2d32634675fb723de04646620n/a Amadey
2023-07-04n/aexe 902ad7ccf2e68e3240a3b9f8c41b09e2acc650db69a0593e7c17d04ce0ad0e2bn/a Amadey
2023-06-30n/aexe 2b30c78da77cb01371ef3e1fe61d70608227a5c1784ffe4366cb77461d4323e7n/a Amadey
2023-06-26n/aexe 4fd8fcc845a48859ae4725605c89b5c6cb507f8aceee3e9f06a2f180838ef655n/a Amadey
2023-06-24n/aexe 5aad31095b0b9a429fed8773a233eb872868467d33f52b9d6f6e7fa078092011n/aAmadey
2023-06-23n/aexe 7d0417ec0e02002489cda78b4fd5d4dc57d4957a00287b4eb24c8cec8c68caadn/aAmadey
2023-06-21n/aexe c9dbc567a9764bc8e3daef054db96a7b8074b1855370f558d2ee5d859e705485Virustotal results 61.97%Amadey
2023-06-20n/aexe 8a2e061b3b38dff83f62982a6b0087e5c4ea1c47192bf0ac2f8f67397636b164Virustotal results 63.38%Amadey
2023-06-19n/aexe 0bc3689575acffde20abb2ff8db97b9698b07fc0e2f64a04ef10dea26fe64d87Virustotal results 61.97%Fabookie
2023-06-15n/aexe 62df74714cd81842088313cb600f935d37a851b7faffba085303346877ff2a9fn/aAmadey
2023-06-11n/aexe c5ed5ae369da1d7784e5750e5da0ff898b438b79a7875590cad8bdd6af3e99f4n/a CoinMiner
2023-06-07n/aexe 1adda3b870c28e6ae33226565b2f31ebfed65adf7a530a883404021104714746Virustotal results 61.97%Fabookie
2023-05-31n/aexe ffbfc1faf050f395b32be386596848fbfdf679aa2f7992393c27461f4789230an/a 
2023-05-31n/aexe 92f4134cc013553a811aa371570d7e2e66a2537b4eac3dbdeaf0cb5f02e6ec56Virustotal results 61.97%Fabookie