URLhaus Database

You are currently viewing the URLhaus database entry for http://123.112.97.90:8085/AV.scr which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3411642
URL: http://123.112.97.90:8085/AV.scr
URL Status:Offline
Host: 123.112.97.90
Date added:2025-01-23 18:48:09 UTC
Last online:2025-03-14 07:XX:XX UTC
Threat:Malware download Malware download
Reporter: BlinkzSec
Abuse complaint sent (?): Yes (2025-01-23 18:49:06 UTC to zhaoyz3{at}chinaunicom[dot]cn)
Takedown time:1 month, 19 days, 12 hours, 49 minutes Bad (down since 2025-03-14 07:38:17 UTC)
Tags:CoinMiner scr

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-03-09n/aexe 551a995d98874ea5caf56bfec517286d8a5879f9eef3b052a82a80ff08fa9ca4n/a 
2025-03-03n/aexe 5435f4932b066f04c14d9cf39d50c6ff588f44d68ccdc5737e635415591cccfdVirustotal results 64.79% CoinMiner
2025-02-27n/aexe 3fde84a46aea58ba4ddb5fb0473fc756ff209ba96b1a63a2759d13b8adc01a69Virustotal results 77.78%CoinMiner
2025-02-17n/aexe 8ab77c9fffccf687b56f8038ce53370796250d471f08a246aa9e92796028fbdfVirustotal results 54.67% CoinMiner
2025-02-10n/aexe 9194b57673209c8534888f61b0cdefa34f463ae50cd78f72ab2b3348220baaf9Virustotal results 79.17% CoinMiner
2025-01-29n/aexe 469118f87a16e30eda0a27208d69274c130ec0543c5daf94b9ce489af24cd212n/a CoinMiner
2025-01-28n/aexe 3be83cdc3a8fbe5a54dc129d5a85294437265f93c3e500dd895f4f1992d25872n/a CoinMiner
2025-01-28n/aexe 5d9fe2735d4399d98e6e6a792b1feb26d6f2d9a5d77944ecacb4b4837e5e5fcaVirustotal results 81.94%CoinMiner
2025-01-28n/aexe 6f1b6fd9486bc167b8b91a6afe77511f9ffb93941f49b5330867c8fe71e44e97n/a CoinMiner
2025-01-27n/aexe d654e24c6d27aa121d0160ae407236848aade965470e27f0a90c8c52892f22d4n/a CoinMiner
2025-01-26n/aexe 4d17987037935094e92e384dbd91211ce11f1586f5d2e640aaec08230be64228n/a CoinMiner
2025-01-25n/aexe d4d53de2736d725c3e70d57c1f0e1413f98d1db65e9384802f8f2c7cb7bce67an/a CoinMiner
2025-01-24n/aexe 62d60b637b353fd00a54ade93677d3eee55ded17b92a29f08233ac2504a93d2an/a CoinMiner
2025-01-23n/aexe af94ddf7c35b9d9f016a5a4b232b43e071d59c6beb1560ba76df20df7b49ca4cVirustotal results 80.56% CoinMiner