URLhaus Database

You are currently viewing the URLhaus database entry for http://151.106.34.115:6573/svhost.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3395711
URL: http://151.106.34.115:6573/svhost.exe
URL Status:Offline
Host: 151.106.34.115
Date added:2025-01-10 06:54:11 UTC
Last online:2025-04-15 07:XX:XX UTC
Threat:Malware download Malware download
Reporter: Riordz
Abuse complaint sent (?): Yes (2025-01-10 06:55:13 UTC to abuse{at}godaddy[dot]com)
Takedown time:3 months, 5 days, 0 hours, 55 minutes Bad (down since 2025-04-15 07:50:50 UTC)
Tags:CoinMiner

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-03-03n/aexe 8d592a188feff1448b6f4ef4afe32dce0d7fb975afa9b9f9abb9394c7c04af0en/a 
2025-02-06n/aexe f28cef432ac2de2b826dc123d6523870eb4605d6d46e3a04b7d920c06b930b56n/a 
2025-01-24n/aexe 4fd215cd3b7d58dcb4fcfdb0813d714339df8b3375be9e33c8110fc9bd287f02n/a 
2025-01-20n/aexe d2fcf28897ddc2137141d838b734664ff7592e03fcd467a433a51cb4976b4fb1Virustotal results 75.76%CoinMiner
2025-01-10n/aexe 5422a959db0ae7deadab5898df05405af64a12e3eacd0419644fd3078989f620Virustotal results 18.06%