URLhaus Database

You are currently viewing the URLhaus database entry for http://8.212.100.188/libemb.dll which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3252700
URL: http://8.212.100.188/libemb.dll
URL Status:Offline
Host: 8.212.100.188
Date added:2024-10-25 07:21:11 UTC
Last online:2024-11-20 07:XX:XX UTC
Threat:Malware download Malware download
Reporter: abus3reports
Abuse complaint sent (?): Yes (2024-10-25 07:22:11 UTC to abuse{at}alibaba-inc[dot]com)
Takedown time:25 days, 23 hours, 56 minutes Bad (down since 2024-11-20 07:18:39 UTC)
Tags:anonymous dll rat

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-11-18n/adll 573c2766103e5ab87e74e0f87f6dfff405df93cad6199b9535284d251b5e79fbn/a 
2024-11-14n/adll 0ea74fa60364c7026f3514a04814c551f2e888475c078917bcd6d0f0d49f81d9n/a 
2024-11-08n/adll a3ec55b2dbb7f8a281e99d295de60f2baa2a14b9dcbb7dceda75363491f2cdecn/a 
2024-11-08n/adll 21c504e4e8de9676a0ca1e4da0977f0be177f1766a7ba13ff304ac178f884a46n/a 
2024-11-08n/adll c4bdfab3bf35376cb52ccad745641d46c37fab1e43fff9cba1ac136245f5252bn/a 
2024-11-06n/adll ca45a97e914e975be7b38251e5bc239277c83f91a5edd06b343ccff4c592a89bn/a 
2024-11-06n/adll 6fed8c368e80529940d8748e64106e47361007afc70eb607ee1d8840b0cd60f7n/a 
2024-11-03n/adll c32d406e780aad33b196ab625e08a2ed5723ccded1d9efb74c9ac48d364ade4an/a 
2024-10-25n/adll ab67f9b2aba675e29dfde3beb40683ffdceb70b1237f43093aa94a20855d2e87Virustotal results 38.36%