URLhaus Database

You are currently viewing the URLhaus database entry for http://196.251.73.58/Home/FOREIGN.zip which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3625995
URL: http://196.251.73.58/Home/FOREIGN.zip
URL Status:Offline
Host: 196.251.73.58
Date added:2025-09-18 05:54:22 UTC
Last online:2025-09-19 12:XX:XX UTC
Threat:Malware download Malware download
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2025-09-18 05:55:14 UTC to abuse{at}cheapy[dot]host)
Takedown time:1 day, 6 hours, 10 minutes Poor (down since 2025-09-19 12:05:36 UTC)

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-09-19FOREIGN.zipzip 1993f2ea8f0aff18f1502b07f5fa8fe6a2a4c3b3b607c11be11b0d081295b173n/a 
2025-09-19FOREIGN.zipzip fcbf23602fe94276515b407820ea46569be0e1fa586e84488eafa19b77f2f6a3n/a 
2025-09-18FOREIGN.zipzip 2653a4081bc38ace77a41ce480823ad9b9a49200a006ea5217951b3ef7818317Virustotal results 43.28%