URLhaus Database

You are currently viewing the URLhaus database entry for http://111.199.146.42:8085/AV.scr which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3175760
URL: http://111.199.146.42:8085/AV.scr
URL Status:Offline
Host: 111.199.146.42
Date added:2024-09-15 18:55:01 UTC
Last online:2024-10-04 14:XX:XX UTC
Threat:Malware download Malware download
Reporter: RacWatchin8872
Abuse complaint sent (?): Yes (2024-09-15 18:57:33 UTC to zhaoyz3{at}chinaunicom[dot]cn)
Takedown time:18 days, 19 hours, 52 minutes Bad (down since 2024-10-04 14:50:29 UTC)
Tags:CoinMiner

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-10-01n/aexe df21b17d3d5814fde8eda52bf2670049994e56c88332605f60b5a29d1793ceb4n/a CoinMiner
2024-09-28n/aexe 5212fad91472552eba355b71e60fa553c9f711c1c3546d06b0f33cf7fe1faac6n/a CoinMiner
2024-09-27n/aexe 432aeee11a2d4a51c21a11969b4b3420a7fdda730ae5bfd542828d0ff87a7d0bn/a CoinMiner
2024-09-26n/aexe 5b41ff9b7e15ee95c37114580f536916bd5b6f015c3a871f9aee2a3731e75a84n/a CoinMiner
2024-09-26n/aexe 3d66fe97d975727fae14b4710d55b805a6581d677b78271c3773b1a2cefc8ab2n/a CoinMiner
2024-09-23n/aexe 2a2192acf672a44494262b155e25c8dd57c0fa9ac40608652b08f3f9a52db265n/a CoinMiner
2024-09-23n/aexe 3fde84a46aea58ba4ddb5fb0473fc756ff209ba96b1a63a2759d13b8adc01a69Virustotal results 80.82%CoinMiner
2024-09-22n/aexe 692f4e345c71bcf9465aee8ddf0cf9f670cb836153871fc1b1601e5a67036658n/a CoinMiner
2024-09-22n/aexe 3d9bad83928ce5340c2d6437ead036a2df6ba9f30a3e3d1ce065805841a7f1c7n/a CoinMiner
2024-09-22n/aexe 9194b57673209c8534888f61b0cdefa34f463ae50cd78f72ab2b3348220baaf9Virustotal results 82.43% CoinMiner
2024-09-20n/aexe b77eda0fc4c44a7de680ddf925aef49a80934b9a306024148be29b14e8a1d8bbn/a CoinMiner
2024-09-20n/aexe 8283b9a5f1c039515e270d558a7aa43b2f184ce38b555efdadce4298680faeacn/a CoinMiner
2024-09-18n/aexe 40cab85aee3cbff4ffe0d3af9208a0ee8762af795be37fa683ac7a27a6f543c0n/a 
2024-09-18n/aexe 5d9fe2735d4399d98e6e6a792b1feb26d6f2d9a5d77944ecacb4b4837e5e5fcaVirustotal results 81.94%CoinMiner
2024-09-18n/aexe 6283c76126460834e1e5df2c7f8a136179852b857d9198c8eb827086be4a465en/a CoinMiner
2024-09-16n/aexe 894df700acb2473b9eedf3b5ee28df6b7d410ca996367c7af3936f681ece8255n/a CoinMiner
2024-09-15n/aexe f40e39cc51c4bc780a2cd7fd9554c163570e66898f09e95333e746ae2c86aef7n/a CoinMiner
2024-09-15n/aexe af94ddf7c35b9d9f016a5a4b232b43e071d59c6beb1560ba76df20df7b49ca4cVirustotal results 82.19% CoinMiner