URLhaus Database

You are currently viewing the URLhaus database entry for http://222.130.139.27:8085/Video.scr which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2845994
URL: http://222.130.139.27:8085/Video.scr
URL Status:Offline
Host: 222.130.139.27
Date added:2024-05-10 20:08:00 UTC
Last online:2024-06-15 09:XX:XX UTC
Threat:Malware download Malware download
Reporter: NDA0E
Abuse complaint sent (?): Yes (2024-05-10 20:08:10 UTC to zhaoyz3{at}chinaunicom[dot]cn)
Takedown time:1 month, 5 days, 13 hours, 6 minutes Bad (down since 2024-06-15 09:14:32 UTC)
Tags:CoinMiner scr

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-06-14n/aexe 54cfe00e6c0fb632092b635bde201ebc63a099d1a4e108f1cdc8ed57aa4ae41an/a CoinMiner
2024-06-14n/aexe 14a5c25386affb3f480145510f25e5d76dfee4d4723c9c5f69d8574415ba4b89n/a CoinMiner
2024-06-10n/aexe 9194b57673209c8534888f61b0cdefa34f463ae50cd78f72ab2b3348220baaf9Virustotal results 81.08% CoinMiner
2024-06-01n/aexe 418f46a8d5755e933f30be87d6db7d60175844813e82721fe63a6082f10c162bn/a CoinMiner
2024-05-29n/aexe ebcdf536447cba219a13756c00c97b4ed5fea47f2cbf2283ea86e80216d3822eVirustotal results 75.00% CoinMiner
2024-05-20n/aexe 886106aec5093e1b80c8ca589143bab84228bf5c77f43484ea0620786483cfa3n/a CoinMiner
2024-05-19n/aexe 63e34e428486dead8d79eac70f935152beeb91cc69ec0e2ce9a39edb4e389e94n/a CoinMiner
2024-05-18n/aexe c074d76b7bccf0272482320a968411d92e0ab0ea70ce70956685bb0203da29b8n/a CoinMiner
2024-05-17n/aexe e02bc48604de29406831b6a66668aae658439e8b34ea5c705314c69dad783f7cn/a CoinMiner
2024-05-12n/aexe af94ddf7c35b9d9f016a5a4b232b43e071d59c6beb1560ba76df20df7b49ca4cVirustotal results 79.45% CoinMiner
2024-05-12n/aexe 6e1451a8867b2068a50b182d6efa2a585a1b96ce812b1b4a180730a4a25d4863n/a CoinMiner
2024-05-10n/aexe 5d9fe2735d4399d98e6e6a792b1feb26d6f2d9a5d77944ecacb4b4837e5e5fcaVirustotal results 77.78%CoinMiner