URLhaus Database

You are currently viewing the URLhaus database entry for http://163.24.228.242/AV.scr which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2905240
URL: http://163.24.228.242/AV.scr
URL Status:Offline
Host: 163.24.228.242
Date added:2024-06-25 05:04:19 UTC
Last online:2024-08-21 05:XX:XX UTC
Threat:Malware download Malware download
Reporter: BlinkzSec
Abuse complaint sent (?): Yes (2024-06-25 05:05:28 UTC to hostmaster{at}twnic[dot]net[dot]tw)
Takedown time:1 month, 27 days, 0 hours, 5 minutes Bad (down since 2024-08-21 05:11:20 UTC)
Tags:CoinMiner ua-wget

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-08-17n/aexe 3d3a85ba7366b1c15a91545ec4307369455f09bf94fb2d3ad67c3d0803afea98n/a CoinMiner
2024-08-16n/aexe c6fa911cb39c0586b7b4caaccd0d225e1f7249932832d9cb4d9fdb6533a1d938n/a CoinMiner
2024-08-15n/aexe c84b7f03de01f7af1996cf072f16eeaba872d083bf96d29a26733cc536743d8an/a CoinMiner
2024-08-11n/aexe 6c9336b5ae9eaa8e0f281ea83aab338ff780de977b9b4c6ffe7b2debee324877n/a CoinMiner
2024-08-10n/aexe b89b8ff9d67b0266ebe0fbd7fb6d3d28d887f8e2918f872d82f35dafb2f53939n/a CoinMiner
2024-08-10n/aexe f2e844f88f8d359f66648b839dc263ecd27406051d858dfec055119ea5b57c83n/a CoinMiner
2024-08-10n/aexe 5415aed8a9d958d2d7ec52a722a7405fd47d6301df7bf52e63099a65e65e3115n/a CoinMiner
2024-08-09n/aexe 30fe1453e4433de3d0899266c293eb854cab5cebe82c92592d21c84a326fc804n/a CoinMiner
2024-08-08n/aexe 583d9dc0a13e3708292270dd85e78cb24e46b3990278780c44506ee7412fd82dVirustotal results 60.00% CoinMiner
2024-08-07n/aexe 12cd49eb12b2c4ce38b642f06dc3e191e9890c4d2c876120022cc5b580abb1e6n/a CoinMiner
2024-08-03n/aexe 5acd9f732313f93665cd683d6db6cec054e3d0187f8705864acd78fb6019d022n/a 
2024-08-03n/aexe f4feadf896f98174bf4df05f72f6d44720afb5623de96d1e2a33a694c6564db9n/a CoinMiner
2024-08-02n/aexe 7fd13c1a89ab47ed0f69e0f0f6446fc3f1f1862d517318789b55f106ed7a5503n/a CoinMiner
2024-08-02n/aexe a7f1f249ab16c5ff3cf4ba1e08f3a78bcf017efbe2ce3f095540194d6b3f17b7Virustotal results 65.71% CoinMiner
2024-08-02n/aexe 548d5a6ca0f16cc9769734ec0c747243b954d0800d099753fce07aa055f58ca2n/a CoinMiner
2024-07-30n/aexe 9f0ab73db10cc6ccd2615d28922cd3ddc4a7f1861f49b1c835261e3f9c9dc030n/a 
2024-07-30n/aexe 3fb722ce0aaea012cb4e712432c5fff7adce8efb2f3e0b69212a0a43109312bcn/a CoinMiner
2024-07-27n/aexe 3f5064f985b8a2fd5f38c2dfeae3c802e17f3f16b2750ca251891f853b559ec8n/a CoinMiner
2024-07-17n/aexe 62fea811debb282941b311dc5850d43f64bd92ab1b9235f1941afea7b911f8f8n/a 
2024-07-05n/aexe 9194b57673209c8534888f61b0cdefa34f463ae50cd78f72ab2b3348220baaf9Virustotal results 82.19% CoinMiner
2024-07-04n/aexe a1bdae36c037f676ed92a4e9161debb28e501dc81cfa5ba662a6110ab8bab4e8n/a CoinMiner
2024-06-25n/aexe dc7da29142f07f3cda9d3e22ba2c8ada56fc299e92c3902fce7b0a5d5efd1eccn/a CoinMiner
2024-06-25n/aexe ad951bb8ea48049df539613515b8eb682de3eadb23e085dc47237832e8f932daVirustotal results 58.11% CoinMiner