URLhaus Database

You are currently viewing the URLhaus database entry for http://cnc.c25e6559668942.xyz/DarkHTTP.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:909195
URL: http://cnc.c25e6559668942.xyz/DarkHTTP.exe
URL Status:Offline
Host: cnc.c25e6559668942.xyz
Date added:2020-12-12 10:55:06 UTC
Last online:2020-12-23 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2020-12-12 12:00:05 UTC to abuse{at}serverion[dot]com)
Takedown time:11 days, 9 hours, 10 minutes Bad (down since 2020-12-23 21:10:22 UTC)
Tags:CoinMiner exe

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-12-23n/aexe 9e76f8e208b82a5cc05716fd3cd4508930f9ae44ffc7ff46d7622ed417d97bcfVirustotal results 51.56%CoinMiner
2020-12-14n/aexe f8cf15138f5aed3e874c8d1c5d564d30962a2f8f620510cd57eda66b71f88a96n/a 
2020-12-14n/aexe 6c465574f06d949ef07c5a3f718970843cf3b7c72524204c4cddbb790910a225n/a 
2020-12-13n/aexe 6e4a1941ec9ed6bec97f55846dd9774be59329b4fa35d54083233663bab516b3n/a 
2020-12-13n/aexe 190012891adeffa2513e25576978933249d2d374b887b62617b466297dfbe159n/a 
2020-12-13n/aexe 2970d3ee054f97d50fd7aabfa884090ccd123ca2f2c749cbb89c57e6b3c1af52n/a 
2020-12-13n/aexe 97ab0128be30807e67649da91dd2fdd479e34cf026e1720bd5984a7adda3ad2an/a 
2020-12-12n/aexe 557c847b2ee4d12d0c97db82ff1edc98dcf944ab52eb942dca4416e2b8868524n/a 
2020-12-12n/aexe 9b94f6e44c501703efa58acf3e1f967209b2af7c84b9ced69e0e6e54a2b23fbbn/a 
2020-12-12n/aexe 9a9dcd072c514bb9c80e5724c6e421a9f6b5c9cff13add033307ca67d4b73fa9Virustotal results 32.35% CoinMiner