URLhaus Database

You are currently viewing the URLhaus database entry for http://185.225.74.144/files/get4.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2717427
URL: http://185.225.74.144/files/get4.exe
URL Status:Offline
Host: 185.225.74.144
Date added:2023-10-06 06:43:05 UTC
Last online:2023-10-16 13:XX:XX UTC
Threat:Malware download Malware download
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2023-10-06 06:44:04 UTC to abuse{at}des[dot]capital,abuse{at}serverion[dot]com)
Takedown time:10 days, 6 hours, 23 minutes Bad (down since 2023-10-16 13:07:06 UTC)
Tags:64 CoinMiner exe Vidar link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-10-16n/aexe fbd5230c05fa25148fc296490d4270184bd81c8699dfbd5c1c12bb9e268a2981n/a 
2023-10-15n/aexe 4c460183b2d30ca0c2ac62f60f5cc43da0828a5ffb410d37e5686051a2652080n/a CoinMiner
2023-10-14n/aexe 3fb86005e4c3f077eabcd88c5096bd976e9741278b40e1548c8a4c0840900c10n/a 
2023-10-13n/aexe 45f025d484b7b6902b68a74c2cbe926b34c7cfcd18fbdc0c1f57c3860ecb1538n/a 
2023-10-12n/aexe 5d01bb3b55f5682148e46b219cc6db8269e0264e79692aaa35e150d9404aa425n/a 
2023-10-11n/aexe a59bb3c3a43c597702e9a2a6e989ad996ae954ad5a1643656b25e8b648e5b71dn/a 
2023-10-10n/aexe 4520e200bd01f6ffd786172f0b6d482510e8367055cf7082ab455b61554a0e32n/aVidar
2023-10-09n/aexe 4a5d1f4fce13762290f7c344dc9c2e789ca614f2b0e8969a65a24b4d7cc25e24n/a 
2023-10-08n/aexe ce37f66cec342fa4509182535cf82d686f565bf14233c08dde0ff2521f3f0d06n/a 
2023-10-07n/aexe 2ec38e243300bfc0bdfad247b8ace213cbd2ecf262d35f4998c7aeda53b706faVirustotal results 7.25% 
2023-10-06n/aexe 206004034a63418c586b4ef2795a92fdca32ecc001df9d58fcab4fd984eca3d0Virustotal results 15.49%CoinMiner