URLhaus Database

You are currently viewing the URLhaus database entry for http://marnersstyler.ug/zxcvb.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2223030
URL: http://marnersstyler.ug/zxcvb.exe
URL Status:Offline
Host: marnersstyler.ug
Date added:2022-06-03 08:05:05 UTC
Last online:2022-08-20 14:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2022-08-19 08:34:05 UTC to info{at}kanzas[dot]msk[dot]ru)
Takedown time:6 months, 17 days, 12 hours, 18 minutes Bad (down since 2022-12-17 20:24:36 UTC)
Tags:32 AZORult link exe RecordBreaker link RemcosRAT link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-10-26n/aexe a3d6aa74aa99c5e034b7746fe7fd73e68bd3e4d138d68667c09e1e5e248a11f1n/a 
2022-10-06n/aexe d4227ec9dd2159223342099e0ed7d55c0691fe677ab2fc513c149a137e50ced8Virustotal results 34.72%AZORult
2022-10-03n/aexe f0c0ac751d55d69d9e82c66e7f7f8ab5e298c5808302e8b6424ad3aa1bf1c338Virustotal results 44.29% 
2022-10-01n/aexe 9a81a9c84d36a49be8286458ce7c919538647711b28fedae9b5521762ff76030n/a 
2022-09-16n/aexe e553b05dd2afafadb6ad38d3463056e50cfa31ba3ac5489a7a114ec35ef10194n/aRecordBreaker
2022-08-19n/aexe 65020d58d04109f2e8f46d12e43aeee9e98ec182db4bd4a2b2c336978e696c06Virustotal results 67.61%AZORult
2022-08-14n/aexe ea34b776b896df9512f0aab37e3b0d56ff012a0906910a957db335f9e7dcf2d4n/a RecordBreaker
2022-07-10n/aexe d75d7b0534ff648f16f5751be79a2c23158b6412a780180aec78c77c7e95071dn/aAZORult
2022-06-25n/aexe 6887d3d4d5baa135418c2305915c56b448960d03c427f6c63c430465ddaa6547n/a RemcosRAT
2022-06-20n/aexe 2ced9b36b931b73b1d325bececd01f0e4fa6bd0fff98f8b76f2f45b473311cd0Virustotal results 51.47%AZORult
2022-06-03n/aexe 34ba222ef969f09ecca5506cbada7c346469a96a6af0cdd21146d4435196dedaVirustotal results 71.21%AZORult