URLhaus Database

You are currently viewing the URLhaus database entry for http://2.58.149.41/emezx.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2096984
URL: http://2.58.149.41/emezx.exe
URL Status:Offline
Host: 2.58.149.41
Date added:2022-03-14 19:44:04 UTC
Last online:2022-07-16 17:XX:XX UTC
Threat:Malware download Malware download
Reporter: AndreGironda
Abuse complaint sent (?): Yes (2022-03-14 19:45:07 UTC to abuse{at}serverion[dot]com)
Takedown time:4 months, 3 days, 21 hours, 29 minutes Bad (down since 2022-07-16 17:14:47 UTC)
Tags:exe Formbook link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-06-15n/aexe 051487e7b99e78e5f9fb16fe320bec9cf0fae148e2fbc8e22f16b689bcf1d0c9n/a 
2022-06-15n/aexe 0cc933690b9512bdb51abbe93ef3c495be62aba3f4a57fbbfc8c050ab365805en/a Formbook
2022-06-14n/aexe 7f3be904dae737fe2787c4bc430ae3f3d08fab110d6ec2f9d5d951159bb44af0n/a 
2022-06-14n/aexe 0a59d844d300f7889362024d42e17eda71f2cc2c7f28d70081a3cda287408986n/a 
2022-06-13n/aexe 64eb46bef1eef1ffbaea1d5d417ca72e88db24037d8f5d70a03f7f25ca933a75n/a 
2022-06-13n/aexe 01b796e6344f0aed01a755666640702444b02776a00bba9797d208730f948ac8n/aFormbook
2022-06-12n/aexe 5616aed7866133d2fca39248c8e26cb1d7ab4f088b65eadedcc616f6f8ac13c5n/a 
2022-06-11n/aexe b11adc9e331e7bcbc8cbae4a8a2f6a456b5596bcf8049072a592a6bcebf2f664n/a Formbook
2022-06-10n/aexe aea1082a1496fbad5601324d371b217fd97597b9e65599507688bb3bb5e3bbefn/a Formbook
2022-06-09n/aexe bef4d2b112f31aa4e400f8a578eb87817ea1acda68d219f7c5d4387ceaf432cfn/aFormbook
2022-06-08n/aexe 17005c3f6ab6ebe800e76ba1ca0b8a2a3c5d4ae80d26ff8b3c243cd77c349bb4n/a Formbook
2022-06-08n/aexe e26d57d20573347570ab121da4e68e2c91f117758d3be696009c06aea9917794n/a Formbook
2022-06-07n/aexe e7360eb09aba6bffffb11d2b0b00923f0ec4406561f8f30936e55b920858cf3bVirustotal results 31.34% 
2022-04-27n/aexe c377d4ba33414c4c1d17c9d0e650bb4a7b180ec4684d9d93ce91c4f1623aa0f0n/a 
2022-04-24n/aexe 95238253abf331a4301fdb440c85821dd3027422330dabba0651999ed51a4e0cn/a 
2022-04-22n/aexe 3b6550678e55d4c9e190e430e166c71692c153675c839ce21deee83b5ead1a96n/a 
2022-04-21n/aexe 15cdc3738968a706bf091081c9252614bd0b88463566c9d302b73ad5cbfa20ecn/a 
2022-04-21n/aexe 756e345be599ee11b7749fdcf9d20f469700e46a33779c405fac4d3df8b0f8d0n/aFormbook
2022-04-21n/aexe c163d625749010e876b1e3c170944902c430af46a5e7b5283be19560e1fa5d17n/aFormbook
2022-04-20n/aexe 71118e935b23f1ce813db4c7e8bc6780d3423aebb179b56e65ef798868a2a1b0n/a 
2022-04-20n/aexe eded9c78e74ca871e5604264160e190e165349cd2b07a35ebc75e3199f0d1b70n/aFormbook
2022-04-19n/aexe ca5c3b92cc3d548da5a93007d123a5bf220cb07710b4db37c6516b140e789fban/aFormbook
2022-04-19n/aexe a396367b7b3e4c3efda4ad18600a579f8439dfee2a7863463636702b02499308n/a 
2022-04-19n/aexe 7852218d62ced429453e33ba2385cac330960e030011fbb5559407bf9e322b1cn/a 
2022-04-14n/aexe 60c1e1bdf2a237e2cd35032e7e634bc76e0e9364bef46d17c0688bb8e095c8fen/aFormbook
2022-04-13n/aexe e9deef760186498e9b4d075c784b6170bc976a767652f4a5228215fd1b1841ccn/aFormbook
2022-04-13n/aexe d18ee31980399f171c8219a6d14ad83f3d61017f8d14e44c6f3f3bd067eccdf7n/aFormbook
2022-04-12n/aexe 52a948983c37f9056c1c2701179cb3698eb8c077faacd622ba26aef8055388edn/aFormbook
2022-04-11n/aexe e9a5fa1e217bd7dbbb5b055250c3818d3372a77cfe3cb2f397e251583accfd6fn/aFormbook
2022-04-11n/aexe 8523b78ec725e01d19eebfcc0ddd20f717ff3780f199116814628cf6078c3672n/aFormbook
2022-04-06n/aexe c693f2f43531ac27c22d4abe354cd66fa4014a60d1df090b22dfe5a76a97c4d7n/aFormbook
2022-04-06n/aexe 43933efdb6406f03c3505c5bc398a841cb55ffbdf254cdcb6bd5cac87320a1cdn/aFormbook
2022-04-05n/aexe 2ee3e2086f049f6b6ed13389f5daf457efd38d0124a5580a91241b19b53f45f3n/a 
2022-04-05n/aexe f5c1f772395c8a8c52889da9abfca83ecede4e8cb3ee4bfbb9546ca6aac8ed75Virustotal results 18.33% 
2022-04-04n/aexe 0d913321824b24f168daf6da5e888c9700fb5ed5e3bc06bd24be670c1a10fcb7n/aFormbook
2022-04-04n/aexe d727b63c6bcf81ea3c6a345f8435ad103f37c11c1b2cc89f9fee1f7253a26f9fn/aFormbook
2022-03-24n/aexe 9e3075aeadf4672cd6edfeb02d197a31a05be6330e3d179125c68c9d60893d18n/aFormbook
2022-03-24n/aexe 9cfa1deda62a35bf8c2211bf4c1996d880c84c4242308a5d74403a570d70e066n/aFormbook
2022-03-23n/aexe 3e3ccb3b130c86bb2d82a52f8a7e191efa9499577ba0a3d3f335d5a1e1597b76n/aFormbook
2022-03-23n/aexe a21e127b786095914ae2111b3a293477dd2f72a9bf909e1d191f0d4faf92b6f2n/a 
2022-03-22n/aexe 7cd040754a1c2308f7aa4c42a3cf0bf65a9a472dafee01c777a5ec74428f2a45n/a 
2022-03-21n/aexe b71ecfd70a10c73be177dd8fb3a3dcfbc39dc06e7e3646b43c2901e75a79f4a9n/aFormbook
2022-03-18n/aexe c6a3fd36f07d97fb287fbac946ae8b8d12d1fcde36fa87395de79d59f0c3fb77n/aFormbook
2022-03-17n/aexe 24da110a67be678ff138a23f4d8f60600347b1e84f086bbd30b4261e641d5c29Virustotal results 24.64% 
2022-03-16n/aexe 50f555ef14cecb4fe528a8e4a863f0033ed33cfcab411e54486a6220e4ab8310n/a 
2022-03-16n/aexe 620411695361848ab66c79085250c0c624ef9e2d1750d132e091d9ccbcfa6378n/a 
2022-03-16n/aexe 9153630a97fdbebe5d31f1d5c98927fb4e7304d4d5de615b9850194efd2fdb5fn/a 
2022-03-15n/aexe 154e83d504788a5a1a35d1758157daefaed1810f8752601cf4dd5577d626b59bn/aFormbook
2022-03-15n/aexe 059bdd3a82690647000d29fd9d7957782518cf71ab9c848666992508c4bb0c2en/aFormbook
2022-03-14n/aexe 81ca38001ad9f05b6f89e4e956cbd1efce397ebdb516b6e381c777e28b6dadbbn/aFormbook