URLhaus Database

You are currently viewing the URLhaus database entry for http://37.0.11.227/files/emezx.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2210854
URL: http://37.0.11.227/files/emezx.exe
URL Status:Offline
Host: 37.0.11.227
Date added:2022-05-25 14:43:04 UTC
Last online:2022-06-06 12:XX:XX UTC
Threat:Malware download Malware download
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2022-05-25 14:44:05 UTC to abuse{at}serverion[dot]com)
Takedown time:11 days, 21 hours, 27 minutes Bad (down since 2022-06-06 12:11:34 UTC)
Tags:32 exe Formbook link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-06-01n/aexe 7402baf65e8e27d8e1b2aed068f1626d38985df65ee40236f5b1bcc6d2870b99n/a 
2022-06-01n/aexe aef5b9870a42f13fc78cea7a1044d692b78b30ab2cecee8a625d454301675b15n/a 
2022-06-01n/aexe 6c20a5d96669464ba77019666341a618c36e7677ce58f4e8d7b800d7b496dde1n/a 
2022-05-31n/aexe e78954024229a55e2d993469b138bbee0ca73b382de53912728a5e15e4c2722dn/a Formbook
2022-05-31n/aexe 3db33f29f8e6e65b017172f0a26d8d6901d056c332769ea813bba1a6f420cde5n/a 
2022-05-30n/aexe f2c37bee2f199c458dbc01ca2e9f19a2a1ae98dfb5dde43d7808b84e5aa32b37n/a Formbook
2022-05-30n/aexe 54dd7d22aebb4d4f3b99f6f39c58d6a08122f57ba9c3f753fcecaed9babecf11n/a 
2022-05-29n/aexe cec1e3475be480dcec7b887edfab3389da89c696c99fc99927682f3bc99e208bn/aFormbook
2022-05-28n/aexe 09c88bcf7ebad851bf96be9d453e25447ce6136b25ccc69f908c436f3e3cfed0n/a Formbook
2022-05-28n/aexe 6a1304d1c9897938d2217e62aee0f4a79af9535dce964f0661e67139948a380en/aFormbook
2022-05-27n/aexe 63da41c9ea9d9f68dfc9c70f5390e2ab033e7da8b6604ed0471151e66a0b057cn/a 
2022-05-26n/aexe 3225aae7422a010365533e6ac6573c05d8f1a686b823ef1a37efd8cad33c01ebn/a Formbook
2022-05-26n/aexe 30ffe321695ad79413fd882585113123e7dc9a222d1f98235cbb97b4d4cc2cc3n/a 
2022-05-26n/aexe 6889dda14657ffca0f357b6998fa6a130b2a387a42aa9d37fe72644ccfbb76bfn/a 
2022-05-25n/aexe 3d4f0f70fc18a3b464a938ffb32fb693329993738991b2fa2e2f1a3faf84e7b8n/aFormbook
2022-05-25n/aexe 98b28d84bb0b1479d10646a5d34d02f9e25718adc285634fb11d407188089e1dVirustotal results 36.76%Formbook