URLhaus Database

You are currently viewing the URLhaus database entry for http://5.255.105.147/key.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2697884
URL: http://5.255.105.147/key.exe
URL Status:Offline
Host: 5.255.105.147
Date added:2023-08-04 04:44:06 UTC
Last online:2023-11-23 22:XX:XX UTC
Threat:Malware download Malware download
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2023-08-04 04:45:10 UTC to abuse{at}liteserver[dot]nl)
Takedown time:3 months, 21 days, 17 hours, 29 minutes Bad (down since 2023-11-23 22:14:37 UTC)
Tags:dcrat exe

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-10-22n/aexe 4e405b2c14abf193f443acd586180bf6f8a661b2418249524d393e7945c56c93n/a 
2023-10-19n/aexe e3e05610449a5773a250e48b6f52b8a0daf59789a9fc85cffa111dfd915f9a3en/a 
2023-10-10n/aexe 1d59c56516753d778e129da47890117d03144ce54584f063ecfa2c9f9b148b2en/a 
2023-10-06n/aexe f98ad11281ea6d1cf52eaeded43e16a0b73f52d17429380be329ff7069aff55an/a 
2023-09-28n/aexe 024c933e0370dd86218949dc904f5f8d9cb3f26735286bab618714859b7848bfn/a 
2023-09-08n/aexe 1a1ffcbab9bff4a033a26e8b9a08039955ac14ac5ce1f8fb22ff481109d781a7n/a DCRat
2023-09-08n/aexe d774b1d0f5bdb26e68e63dc93ba81a1cdf076524e29b4260b67542c06fbfe55cn/a 
2023-09-06n/aexe a00beaa5228a153810b65151785596bebe2f09f77851c92989f620e37c60c935n/aDCRat
2023-08-04n/aexe 9c9d8a801b826de4a8d05a300673282ade62891684f682a695e6a1a8db083466n/aDCRat