URLhaus Database

You are currently viewing the URLhaus database entry for http://185.252.179.100/download/gate.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2664257
URL: http://185.252.179.100/download/gate.exe
URL Status:Offline
Host: 185.252.179.100
Date added:2023-06-16 20:07:09 UTC
Last online:2023-07-31 15:XX:XX UTC
Threat:Malware download Malware download
Reporter: dms1899
Abuse complaint sent (?): Yes (2023-06-16 20:08:13 UTC to abuse{at}sukhoi-su-57[dot]com)
Takedown time:1 month, 14 days, 19 hours, 32 minutes Bad (down since 2023-07-31 15:40:59 UTC)
Tags:CoinMiner exe

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-07-19n/aexe a5a47f4ac537bdcd487044b96093b6d41089a6839665b6697b68ae86591baf29n/a 
2023-07-01n/aexe 2238ab84445083f88083a87972895dd3ec4fa10c733b78b4574fe8e127c77893n/a
2023-06-20n/aexe 201cb984d45a5ae14b2ae2624c33f88508de8da4a5935553f2aeb981505da71dn/a 
2023-06-19n/aexe a4ba93f7f3ac062b7b846e25dec92d1e3bf8500356538038e93e6dbac479c0d2n/a 
2023-06-16n/aexe 4508befe4b8012035c52c7aaccbe89b9f75919bdcc86feb8fe79ae01fdea8179Virustotal results 64.29%CoinMiner