URLhaus Database

You are currently viewing the URLhaus database entry for http://124.160.126.238/tq.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:415162
URL: http://124.160.126.238/tq.exe
URL Status:Offline
Host: 124.160.126.238
Date added:2020-07-20 09:19:07 UTC
Last online:2022-02-12 11:XX:XX UTC
Threat:Malware download Malware download
Reporter: 0xcpu
Abuse complaint sent (?): Yes (2020-07-20 09:20:03 UTC to hqs-ipabuse{at}chinaunicom[dot]cn)
Takedown time:1 year, 7 month, 2 days, 1 hours, 47 minutes Bad (down since 2022-02-12 11:07:09 UTC)
Tags:CoinMiner CoinMiner.XMRig

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-11-21n/aexe 840943a659e0dbde1c3ca2972bfe87b13f0eb6198c1cadd8542b366320f2b7edn/a
2021-11-18n/aexe 6f9ec71a14edcc85667bce5c7ceb4b81b0bba0f37a2219242fb9a2babbc56b3an/a 
2021-11-15n/aexe 2a80687500dafd4b5daedaf935d1b03f410e00e8f3103d30627f4c0bf53ba84en/a 
2021-11-14n/aexe 27fbb4b6d6f9a0b9dfa77427fb2da4d72a0304fe65478b2f27da568e6bd3d056n/a 
2021-11-14n/aexe 987daa0ee3cd7d6edbb2cfed9fe57cf22aa85fb4be14b99050206e1edc664659n/a
2021-10-09n/aexe 657263f57998bdf9e571f8299122bb4963f5a3d8ec5cb982aaaeddccc8cd8badVirustotal results 59.42% 
2021-08-15n/aexe fbd416f0fcd2972ad1ec389a78183c2be1d40c177c28c882ff1e1c2c89b9d6e8n/a CoinMiner
2021-08-05n/aexe f98c2d4c1e4df89114b013b9352f7e31391b920bca59250022479bda34f94f79n/a 
2021-03-09n/aexe 56366767ea271a34834e6ef95f7b8068db47d43a70c2fdf635b3ee0eb76827f4n/a 
2021-03-08n/aexe b3f09e1e6a31dc07e61eb594dc33958b1677325c02e08651d2e910f60e53c641n/a 
2021-03-07n/aexe 2abd3a1b3de909372f7a123c6babf4c92fa233e4e8154bdb6346436c49f43f25n/a 
2020-12-09n/aexe 0bd2014bb1daba436cf1168ca4de9d3784afef3a4141c2305f786da543567c15n/a CoinMiner
2020-12-07n/aexe 750ed262c21847a91f27c37489bfbae6024986072247431867043eedb3252f35n/a CoinMiner.XMRig
2020-11-27n/aexe 9fede9c9506a13b09f536051e29e1be015d587223efa0af2765cdba12722c30cn/a CoinMiner
2020-11-26n/aexe 6f5686d0343da0718e13035b3eba992f0401b33386f10df2554b80b33bdcc43bn/a CoinMiner
2020-11-18n/aexe a1b1701183c55c469f6615e04c84faf84f31eb55bbc18203ff7ffcf6d248f800n/a 
2020-11-17n/aexe 6df23eb32502b3769e0ce40cd34e0bb99e03299bf2afe4e49e017916b2fc6701n/a 
2020-11-10n/aexe ed434571c52180efd04486cba5b0601c8413dac86393220393e33e52096f22a9n/a
2020-11-10n/aexe b87b9d17103d85e4b91da02b8f1ccb866ab4502c06b7e7801c0e67193467fc1en/a
2020-11-08n/aexe d19941b9eee933d889614d48b54b413cb097ec5fbc3fc28432b2e6ebc4162799n/a 
2020-07-20n/aexe 5fb20cca77d85fedf3653f24c8109d985c946955ad50ffd18bff9e33d64bc5efVirustotal results 85.14%