URLhaus Database

You are currently viewing the URLhaus database entry for http://85.202.169.21/yugozx.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2248460
URL: http://85.202.169.21/yugozx.exe
URL Status:Offline
Host: 85.202.169.21
Date added:2022-06-23 13:49:04 UTC
Last online:2022-07-16 17:XX:XX UTC
Threat:Malware download Malware download
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2022-06-23 13:50:06 UTC to abuse{at}serverion[dot]com)
Takedown time:23 days, 3 hours, 27 minutes Bad (down since 2022-07-16 17:17:54 UTC)
Tags:32 exe SnakeKeylogger link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-07-14n/aexe a18de3e6fcd33b24740e042b105abf4c1bd06d7cf904a4ac83c25a4140431426n/aSnakeKeylogger
2022-07-14n/aexe d95742a0e8624458f314e4539abb1a2bfbb939d94bf1ff0a525a087453db7b28n/aSnakeKeylogger
2022-07-11n/aexe 6bacc8bd474bde817e968bcedfe508492a100eb73749894ba4b61b2f6d0dec0dn/aSnakeKeylogger
2022-07-07n/aexe 0fb0c020b97c509f0fed313a5653343cc0a9f5ebef8bc9c26335345e78f118dbn/aSnakeKeylogger
2022-07-06n/aexe 2d669d180c6b9a252551675b1ebf1f9a6945d455cd2365da1b60cf9ae8148f76n/aSnakeKeylogger
2022-06-30n/aexe cf4d4cc27ea8b85a2415f407895f481bc39bf8e96a0722aae9aceb3049efaccan/a 
2022-06-30n/aexe e18952a0d1fc42968af5f81865f40043ec2cdc986029088adf15098fd37bc99fn/aSnakeKeylogger
2022-06-25n/aexe fe8f94b75b067dfa0fb373ea8c05c4c18dbaec41cf83b2de27a02740ad6f43c2Virustotal results 19.70%SnakeKeylogger
2022-06-23n/aexe b61637ba04ff710d17dafb8d211b30833ec0ea1f3bd45b6314b2677a94a4164bn/aSnakeKeylogger
2022-06-23n/aexe a810b6847d8323278c0d90b96b2315ef77347ac13986adfad8254cdc478ace96Virustotal results 28.79%