URLhaus Database

You are currently viewing the URLhaus database entry for http://62.197.136.176/files/gregzx.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2199536
URL: http://62.197.136.176/files/gregzx.exe
URL Status:Offline
Host: 62.197.136.176
Date added:2022-05-17 16:58:03 UTC
Last online:2022-06-13 07:XX:XX UTC
Threat:Malware download Malware download
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2022-05-17 16:59:06 UTC to abuse{at}serverion[dot]com)
Takedown time:26 days, 14 hours, 25 minutes Bad (down since 2022-06-13 07:24:57 UTC)
Tags:32 exe SnakeKeylogger link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-05-23n/aexe 7e5d9c7f336e94ee88a9cee55858de158ba66862527ede87e3e7dec7ece79688n/aSnakeKeylogger
2022-05-23n/aexe 1deca3ca80c75f513d42c2d02e4193cdd03f1313d7d5ea3aa6751192989a6e84n/aSnakeKeylogger
2022-05-21n/aexe e2113d1238c6af86ae328bd4292d9fe031ae1a4b142686e392434160619da4fen/aSnakeKeylogger
2022-05-19n/aexe 0e1727e8db89ee82bc788703a6ea9304b3c8db4585abaa17be4d3f99ac6f7c93n/a SnakeKeylogger
2022-05-18n/aexe 140135fecede3adc876b52c5c59a08fd73a9fd0491722baf54d5d945793d278dn/aSnakeKeylogger
2022-05-18n/aexe d0d6c8cac39b0e5d60a009069eeb82eacb69781788bb1aa521beffe71a16d39an/a SnakeKeylogger
2022-05-17n/aexe 7ef607e49827ba8f471acbb7ce3aac758ea14683f6da97e6546e16e08b38e450Virustotal results 24.64%SnakeKeylogger