URLhaus Database

You are currently viewing the URLhaus database entry for http://163.24.230.120/AV.scr which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2906678
URL: http://163.24.230.120/AV.scr
URL Status:Offline
Host: 163.24.230.120
Date added:2024-06-25 20:17:56 UTC
Last online:2024-08-21 04:XX:XX UTC
Threat:Malware download Malware download
Reporter: NDA0E
Abuse complaint sent (?): Yes (2024-06-25 20:18:09 UTC to hostmaster{at}twnic[dot]net[dot]tw)
Takedown time:1 month, 26 days, 8 hours, 9 minutes Bad (down since 2024-08-21 04:27:36 UTC)
Tags:av.scr CoinMiner exe scr

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-08-18n/aexe 4b28f2281a1024f9d341fbcec7356c0e73a03b7bbbc08c92d0638ce2172e3769n/a CoinMiner
2024-08-16n/aexe cfbf52dc4b20cd72b84dcef155697acaf8860fa84c33185518e483c028172792n/a CoinMiner
2024-08-16n/aexe de6a58dcbe98e414027bac77abb26e0f1ba3483665585c376cbf10c9039be9e0n/a CoinMiner
2024-08-16n/aexe 5716cda58866c995a03fdb75589a6f60b2a9ef846a6c7c25ecc39717f90f8215n/a CoinMiner
2024-08-15n/aexe f9c9aa33ba2c29f8c2c9dd50c06ed4ec590d575724abc7d368257523417a8d06n/a CoinMiner
2024-08-15n/aexe 4789aa53e5d193e3a7041023b4407ddccfd92ad8065342b0f9974fe036260099n/a CoinMiner
2024-08-13n/aexe 5454e22a112706c8ea53cdda14741caf464083fb3db9e66f0c27f007cf7393a8n/a CoinMiner
2024-08-13n/aexe 1648cf8105cc81efbaa364e1b099211e900b857867550029c834333a4e0cd892Virustotal results 73.33% CoinMiner
2024-08-13n/aexe dfd473e9fabcd7a00bb4a0fabf2a090c4b35aaba4d29dbfa1e071165de95cc42n/a CoinMiner
2024-08-10n/aexe efef4743a748f0508819bd675842d2e325129d1dd5651da3dae4d48575bd5244n/a CoinMiner
2024-08-09n/aexe 53e3f3c0ed82c5b2b70fadbe2d21623c5517e6dba762e91f6a918cc571690453n/a CoinMiner
2024-08-09n/aexe b5d9f692e267674b06d3f237216ca941508020d0a6bcd50ec01a7ba75103e994n/aCoinMiner
2024-08-07n/aexe a03f77c3938349054ebe261b4b26ef846c8d72851114f41a9ac5176e113dc646n/a CoinMiner
2024-08-06n/aexe 1cd7dd6a572ac36a8ebfb933e3686ea30dffe7eb1313ed299c431e816bb53bd0n/a CoinMiner
2024-08-06n/aexe 18a0ed581f7fe0b9765a107bda88723641112f6b4cb585ad33318f0fdd65de0an/a CoinMiner
2024-08-06n/aexe 7a3278eeeb0bc31bdc32f8b7980e2f50824d0ca895bf0c9db7ec5c81df319770n/a CoinMiner
2024-08-05n/aexe e246467daf7a6388829455866c89a36e8e4ccc795050007becf068d57ff5709cn/a CoinMiner
2024-08-04n/aexe 9a418f1bcee89f73319715f3f351b50fa346ab165654ae181f236e34f65c63f9n/a 
2024-08-03n/aexe ce5577d4195bba01809a51adf5a423593d71cb2f9e4ccda7b6d848d04737233fn/a 
2024-08-02n/aexe 94272189998c67f119561fecf8e478fe16b1901928ce697e2a8b13e2a3778b4dVirustotal results 16.44% CoinMiner
2024-08-01n/aexe a5ab78feca3865df32800e841346d0994f3185d180acc0fe574938483f86246fn/a CoinMiner
2024-07-31n/aexe 102442da9c688d2838f774a8b37ea30fc95af7845e589b6c5fa37502be70e3acn/a CoinMiner
2024-07-30n/aexe 81210efe9ffe75facaef7631b9ec7da572941dbdbf087ee29ac2a1e27490b3ban/a CoinMiner
2024-07-30n/aexe 2a55868d24c76916d9acdf50561c4b40f5adfd13f513c34b7869b0aec1423177n/a CoinMiner
2024-07-28n/aexe 5413adcf8fe879d0a44781a6b29d8299f94d68d2ec8a0e20195f880d7866c686n/a CoinMiner
2024-07-23n/aexe bcbb98f53e4a9ee7971b11ef12e0fca49ed10a2a89504b9e157b3a8d8c6219acn/a CoinMiner
2024-07-17n/aexe 7f85c5c4bb76f409ed6242ec8c3ef3db99038ad1ec3c4ce2408b39d6c052d51bn/a CoinMiner
2024-07-13n/aexe 0460c71b8f5a236a317782c76332017bd536f1fa1c79fc21e6502d3dbaf9c59an/a CoinMiner
2024-07-13n/aexe c31d4baac817ea02be82af776242432b23b2f4ebf4a1f50bb915abcafddcbbc8n/a CoinMiner
2024-07-12n/aexe 43e6215189228db9a61336dc8f59abb83dc9ee73833d84b4f1873500ef76fc72n/a CoinMiner
2024-07-11n/aexe 9194b57673209c8534888f61b0cdefa34f463ae50cd78f72ab2b3348220baaf9Virustotal results 83.10% CoinMiner
2024-06-25n/aexe ad951bb8ea48049df539613515b8eb682de3eadb23e085dc47237832e8f932daVirustotal results 72.22% CoinMiner