URLhaus Database

You are currently viewing the URLhaus database entry for http://8.212.101.250/libemb.dll which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3252702
URL: http://8.212.101.250/libemb.dll
URL Status:Offline
Host: 8.212.101.250
Date added:2024-10-25 07:21:13 UTC
Last online:2024-11-14 06:XX:XX UTC
Threat:Malware download Malware download
Reporter: abus3reports
Abuse complaint sent (?): Yes (2024-10-25 07:22:13 UTC to abuse{at}alibaba-inc[dot]com)
Takedown time:19 days, 22 hours, 43 minutes Bad (down since 2024-11-14 06:05:49 UTC)
Tags:anonymous dll rat

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-11-07n/adll 5f0c17da73e416a9efa7d21091f44daad040e87d5bc9916528b495d5dca57735n/a 
2024-11-02n/adll abefcafbe6a8d42b7b79c1cb2b70377ab63884b4fdfc7fc1a99a153ab1d0ef02n/a 
2024-11-02n/adll f275c346e3541db5b9faea6653e43a1b20fbd9fe2b4e64d6045aeba960da4c06n/a 
2024-11-02n/adll 635b97b762791b9a90753a981c5e433a26fe6e240f181d150c08b03a921d4c6an/a 
2024-10-26n/adll de1e5161430e3c0dce55ab81d42a0e16804b1fcb1ba95b110bea34ae1a32747an/a 
2024-10-26n/adll 049690c7a6485b49c5b8844ee3662d7b093284a8753dbf84bc8789020fbe5db1n/a 
2024-10-25n/adll ab67f9b2aba675e29dfde3beb40683ffdceb70b1237f43093aa94a20855d2e87Virustotal results 38.36%