URLhaus Database

You are currently viewing the URLhaus database entry for http://208.67.105.179/kellyzx.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2259322
URL: http://208.67.105.179/kellyzx.exe
URL Status:Offline
Host: 208.67.105.179
Date added:2022-07-20 13:52:04 UTC
Last online:2023-05-17 11:XX:XX UTC
Threat:Malware download Malware download
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2022-07-20 13:53:04 UTC to info{at}serverion[dot]com)
Takedown time:10 months, 0 days, 21 hours, 58 minutes Bad (down since 2023-05-17 11:51:50 UTC)
Tags:32 AgentTesla link exe Formbook link Loki link SnakeKeylogger link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-15n/aexe 8ac0763b0509962eb0a279639ec077b9de3a6089994ca2222788da921f8e587cn/aLoki
2023-04-30n/aexe e4355828a192e2a9680ccde52befb9d6431f21f69572156cba5197409fc7cdb6n/a Formbook
2023-04-28n/aexe 3e48c872f879fc29b5440b844c42780669d2c2d3c219806d0c02c4839482c86fn/a AgentTesla
2023-04-28n/aexe 9d1779f9a627d5d1cd19c2a1f74f71eddb92cc11d8757d4ea3a2e7b315f4186dn/aFormbook
2023-04-24n/aexe f877daae32612cf737745b22467c63f63e1961a6135289125dd228604fa0c29en/aFormbook
2023-04-24n/aexe 02ea9a838872751f53f53611015ee23062c2cbc9b71a962caf500e54a145e87en/aFormbook
2023-03-27n/aexe 15ff16c0806c71acd981ad9f9a8b6bd31b2c4b9300b0dfad04a8e547e0d8226bn/aLoki
2023-03-27n/aexe 4e03dfc5f70361b7adea720dcf58b2183dbc3ecab58bc8718c2432cd6a3ff7d7n/aLoki
2023-03-23n/aexe b078eb9c9dbfecda42635246799bd361b9adf674d9d4df1f30b40cf8f0626764n/aLoki
2023-03-23n/aexe 719a6c8ab99e16c34830555b9f8b2dd2f1bed3264a4e7a8c741a2f6375385a21Virustotal results 26.09%Loki
2023-03-20n/aexe bd39fed12fc1628ea0d32be8de963054fba43b2786e173ab93df9bba9421c07aVirustotal results 27.54%Loki
2023-03-20n/aexe b3a1c3ff31e1f815319893fed73ab7a707a1fdb9729acf60b10d97669be9b991n/a Loki
2023-03-19n/aexe 7aaedf8e1c200b793a2da307849e2c8f78436747c77e86fb09c50b74d8e0e951n/aLoki
2023-03-17n/aexe 0040c8a0a4f5fdc9a18c894965f3d97ca4a92dc97b97c324f934a4978430bbebn/aLoki
2023-03-16n/aexe 6f92e8de3481ed505e266c14e97aaf56bee9d7678c33308cf327a3909f5323d3n/a Loki
2023-03-14n/aexe 477bff731f5b9fe04439d6e6628bc8af74416663ea3482860cdab25c75ae6a5fn/a Loki
2023-03-13n/aexe 173952920e98d333f02cb393c478ad2aab3030410c063c91b6668f4e5854c703Virustotal results 43.48% Loki
2023-03-13n/aexe 1f9306a8710aa6e2dd1aa8cbed8009479a3f87a67eb7a206ea994ae7f11c1c29Virustotal results 23.19%Loki
2023-03-13n/aexe 59756812bcaf8868c6b929998cf8abcc8748cd7046026b0eced151e29e433100n/aLoki
2023-03-10n/aexe 1a4cb882dbff14000f8050dd777ad91390ef18c824fad6a75239c9df1865e5a9n/aLoki
2023-03-09n/aexe b53d6ce1c2366c6c8eae28514dc9aa86b0dfa7f6c18ace6df1db1681f295955cn/aLoki
2023-03-08n/aexe 3adfe49939de14f4f61573e4dfbbd7e47845d6b2b71a8b1d9849776da20acdeaVirustotal results 30.43%Loki
2023-03-08n/aexe 4cfeafd256d56b8d617006bb48351e85a46b7f278d3363c0712c3277036bf7ecn/aLoki
2023-03-08n/aexe f5f266dc641ff0991027fb2c539423a86db1a2cbb8b8c57d0d628a0b13bafc86n/aLoki
2023-03-03n/aexe 2ce452da51ffdeed905e03d198db2d6931d31bf7ba64d23e59abc6937004aaedn/aLoki
2023-03-01n/aexe 1004c0413336aec1c5d34dc6cfe493d6928b1550874454efe7355d0c011f44dfn/aLoki
2023-03-01n/aexe 2d608bc71f7bc5345161dbcafd234dd45058d585a0dc2750906b1079cfb4bfe1Virustotal results 30.43%Loki
2023-02-28n/aexe 95709146a788e3cae6af75199ba67b1aa327c8fe1c605f2cf8341861389cd011n/aLoki
2023-02-21n/aexe f6484b4fcbe0540db14d4dc0e16280ae3916f63668b6ccbe95aa692bcae52c50n/aLoki
2023-02-20n/aexe 9648c89260bd6b10ead179a82a4387d1880af502c849a7fba0cc3c932a4d44c8n/a Loki
2023-02-17n/aexe 50ea6e82b9cf125d35e10d066e15cf1efea3cf48afa838bb72809367e60d0eefn/a Loki
2023-02-17n/aexe 519ce7c158cc6efd1c30436ec5b237fda2915964c888fa83b7c12c2e24a1573bVirustotal results 36.62% Loki
2023-02-16n/aexe 9e0b361effefa25b4c44bfe40419f010d5db51fad24175180e47870a33949d1dVirustotal results 26.76% Loki
2023-02-16n/aexe 3ff129da1bffaa9e882a0f1a3f83dd8e10307d3aa5e0e0a4384b3e6de3dcd825n/a Loki
2023-02-13n/aexe e0012a37abf360a40a1908969dd4b34f9abd45d074be84161da714327eb3e2a2n/aLoki
2023-02-13n/aexe 551ea82313ce0400560a5aaa288b8ad8c80e6e1ff329b6574ebefd24463b2c14n/aLoki
2023-02-11n/aexe ff0b68504322c7b426a61ec212c9530dca511bd2e3b7cf91ea87a2ec84de4486Virustotal results 26.76%Loki
2023-02-07n/aexe 0d98a179bd6affe49d2aede0bb1db2709c1a0419f6c51dd79867974744bc7c44Virustotal results 20.00% Loki
2023-02-03n/aexe 0b31e3396946781f4215290726981f96511ebc2d286a56d911e102ee7145c6een/aLoki
2023-02-02n/aexe 6deffbb2c41517cfcd64d62f5b4c159c5fb88b5157fa44877960c490ff23278bVirustotal results 31.43%Loki
2023-02-02n/aexe f151c4d9ea6f201827c1b36d882505af0e6ab2760c961595fcce8bcb4924a24eVirustotal results 45.71%Loki
2023-02-01n/aexe b9ff83bfec02bbaba2e8966e3923e08238e295dc9e66b139df4ba1c3f024a8d9Virustotal results 31.43%Loki
2023-02-01n/aexe 73a6100eaa8300bd7adf9fa67eed914ef1e31f543cad2c6aafd5010b590f2ba3n/aLoki
2023-01-31n/aexe e7ecce5580d7ffce80b2921d953d528aeb9c1f724a49d91db380478c5423c3f2n/aLoki
2023-01-31n/aexe 2a1e3d8cac1bc3a9ecf929736afce96f3af7eef91faacf66af7e3511ef072cf7n/a Loki
2023-01-30n/aexe 1fdc4438d95bee4acbc67ddb7f04a003cda5e7dff7833a7e8cf6d10f68d812c9n/a Loki
2023-01-27n/aexe 376b4b5c353b5bc460e6197d9bbea4728f8d5e2d3481f2fce574cedbe6b0de54Virustotal results 31.43%Loki
2023-01-26n/aexe 75810d481132b97e8f2f43404e06b9bc5b66477856c078c7f39469e0b729d3f5n/aLoki
2023-01-26n/aexe 9fab36962c0d264fca98c96f3355f68921e89a0f4a6a7aadf8391b1b6e119331n/a Loki
2023-01-24n/aexe bebd6ef2da61bf1bf472df8e69c8c64c7f8b6907af2e246bea91cbe7f877169en/a Loki
2023-01-24n/aexe 78e5d7d0502977044109013b3946c9e65c4b96771b2e23c159db32499f08781bVirustotal results 24.64% Loki
2023-01-24n/aexe f39f40001ad8e45df9e7e75c00cbb15734d735390885ea7320c8786c6445a3e6n/a Loki
2023-01-23n/aexe 57cdb4d1bc88747a4552289f269a58948d096853d812b2224feab1751d974c30n/aLoki
2023-01-23n/aexe f96f2dc00edf430af1b60c783867a75415e55965fbabea46318ebbef910d9a76n/aLoki
2023-01-23n/aexe e1b43a4ba3e06006328305893b4af467d63aeac6d0c9e43057a20b883e67c89bn/aLoki
2023-01-19n/aexe 9b5f04b58d83c067c57bd8fc882566c2d11e082e7fcfc80bb235d7ad1fb2753cn/aLoki
2023-01-19n/aexe 61fbde7746915c8226cae278e4194426b1b7211cb1c6755667d86f02a05594den/aLoki
2023-01-18n/aexe 59181328ea5b20dbebffa92c11f3ffa3616cdc8529ae91c3794186055867c6e3Virustotal results 33.80%Loki
2023-01-17n/aexe 07d6addb52e531a21877d4a71131fd16f3117a0576c0aa3849c442bc6f0a6428n/aLoki
2023-01-16n/aexe eeb800f752648769bd2af8b1e03aa8be27d4458efe9e0450e8a24e860425b0e7Virustotal results 40.00%Loki
2023-01-12n/aexe 66bb9199ec8427d9425197aa3c8d006f4cdd8b1fa535e0de5312b3bddd832aecn/aLoki
2023-01-12n/aexe 4337ccc0329004c467b984ac20a8f86bf743a3e344900a6fadf4f73b2cfa0446n/aLoki
2023-01-11n/aexe 09427baaa4e10ede078546157e86d570b5d1acf2b4196fddc3e88afe2448f5fbVirustotal results 27.14%Loki
2023-01-11n/aexe e9511e82695b2fcbfff9fd605278da2f663b29fd785d048d04e8dff8cec3965dVirustotal results 17.14% Loki
2023-01-10n/aexe 1421401fed49a2dc8f783cb79c0fe97a9d5607a44ecb3eb1973cd29fd963d573n/a Loki
2023-01-10n/aexe 6f7d710effbef4c9dde9997af6ca7790d879e8e190b21bd5a43e099b27f6eb8an/aLoki
2023-01-10n/aexe 9ae97e832eb469696126acef1245094cee8c496f2cd4e0ae68cd3b923d7117e2n/aLoki
2023-01-10n/aexe 1c99a914285fd2e4bbf9c25627a9155db90d7859a1e17e127eb29ba0adc4ae0bVirustotal results 25.00%Loki
2023-01-09n/aexe 61a6189c8bf0e10eb20156d9c8847d3849d5307822ecea88bb3421835a347fb3Virustotal results 13.04%Loki
2023-01-06n/aexe 2d83164d1358ec644bb36c5edd0c16e115510789fea78f6a009a5969a74cd9e9Virustotal results 14.49%Loki
2023-01-05n/aexe b771e31ab81f3702874eae3ce829258d08bf907025526130200270bab84313b7Virustotal results 34.72%Loki
2023-01-04n/aexe 9b177dcbfca54547e5463b68394e110cf7ae94aadadfb71e574d7dbd400b606bn/aLoki
2023-01-04n/aexe 1174716367e078b3f32472d55a8c3ec6a32ecf9147136e69757c59107675cb9cn/aLoki
2023-01-04n/aexe 70dabb45f084552f369259ea389f33f8c6ce35fe48c5a6a61e2047336d9b289cn/aLoki
2023-01-04n/aexe b4a8bff73daec1d7ac6f97d580bfb42e3dde3119d1b60a8608bfbd5f3ef33e9an/aLoki
2023-01-04n/aexe 4f3f8153b0841789234621447e7cdf6754b4d8494482853304a849d1ef2c0d89Virustotal results 26.23%Loki
2023-01-03n/aexe 262db217348c0b57a70f2390dbdbb9ce7f921babf00e3fb8087c30c1b146be09n/a Loki
2023-01-03n/aexe 8b935c37e193eddd81430065706492c65d86bae340c19efcbe702fce64b65779Virustotal results 31.94%Loki
2022-12-19n/aexe 6de94580f0ba28d95b9a5fb28f54e29343caee1a7999a09ba44d96c0a2906ccen/aLoki
2022-12-15n/aexe 9f13fbee557bfe16923893caa81176f959f83ea3eb102af82f99e52da6ea33c2n/aLoki
2022-12-15n/aexe 2f94ffede2d8d42125e672769acfde777fecce817bf363b63aaac942002e8afeVirustotal results 22.54%Loki
2022-12-06n/aexe 81af61de86ef938368314b6b20c7748ee37cdb092b3fef0e0e134fcdeed748d6n/aLoki
2022-12-06n/aexe 11680eba11fe74333b1d17eb1b3c488ce0c51ccd7e766b8e204b6eac58314f97n/aLoki
2022-11-25n/aexe b6ef25dd3fa238bb429f290b0b77d5127bd8dfcbf631c88fa0acc1411e944e4cn/a 
2022-11-25n/aexe 22d9d96fe042841c8a547ab29fbd9e9f68104ad166c6add9f4c597d59f2788f8n/aLoki
2022-11-25n/aexe 036d2934741edd1cfac3d1addda35e808ac96b41612e51f504e31113ab249ef3Virustotal results 29.58%Loki
2022-11-24n/aexe 48474203ae61c55adc1b79d747c7323900246cec6eec74354dee61e378b648efn/aLoki
2022-11-23n/aexe e466f2b15d2b1e07e1bfd641af82e1261d70b92afe9bc656c0e5daa8297bccafn/aLoki
2022-11-21n/aexe 8325e49180840f7c62839f6dcccc78ff1236fb5262811e019c3cc41de65db0e7n/aLoki
2022-11-21n/aexe 2550002ab980043e574d7da8c1276f042313f872f042874fa7c1cc06b5b3b8b6n/aLoki
2022-11-12n/aexe d10b38c3f8fca46c0aba17adb7e513cd28eb277faf3517a0f61c82f222258ce5n/aLoki
2022-11-11n/aexe 7853266273121287cf3d28f06acf4ee31e45c96f79aa579be493aa086300b6e7n/aLoki
2022-11-10n/aexe 7859a51adc3e36b592d77875091d0b044e05ef27c48131f507eb9b7b32716a00n/aLoki
2022-11-04n/aexe d67c3acb3dcc0cc6e02616d47e310b44f759a9bf694c72f8fe93dc5428034ce7n/aLoki
2022-11-03n/aexe a276bad5addfffd45b7d075cc251bf4503db389cec1671ef1e2ab48cef66579fn/aLoki
2022-10-31n/aexe d487bf902cec912284ea567e44b6070591f96b9385beccc9e29d745026eca3c1Virustotal results 41.67%Loki
2022-10-25n/aexe dbaf6b7b3a59ffcc8cee70bea12b6587a8ab8dc6555c0d3687f90bda81ed497fn/aLoki
2022-10-17n/aexe 14cedec0ff58499a2c848be21db81b7994db93a87471335cb75fdb2d76bddbb3n/aSnakeKeylogger
2022-10-17n/aexe 1cd11ad996e455358e0cb8d892cbaa71e56de1e68104960facdff14d2338f17bn/aSnakeKeylogger
2022-09-14n/aexe 03ffca49340bceb491bafa53ebd2a70794fc9e2b35aa8e96c2798861e53649b3n/aAgentTesla
2022-09-13n/aexe 987f41a67a02acb443c36197e830746de0322907e614e7b9a83455fc061aa5acn/a 
2022-09-13n/aexe a45c241155a8e3e260c6285d58f4caadab4be426cd0780f414a73078209182a0n/aSnakeKeylogger
2022-09-13n/aexe 5943ab4bece9dd119390d0e395ceace1b35127e62bc18bf92cb8153e071e5aa2n/aSnakeKeylogger
2022-09-09n/aexe 91850c637078fff475f58ef183a281cd43b9c62ab9d976ec4c032ca1469258abn/a SnakeKeylogger
2022-09-08n/aexe 31169b8099ca603cbbab3654a5beedf5196dd2208d8a1329c66e66220dfad2c3n/a SnakeKeylogger
2022-09-07n/aexe 74be943dc609e0f46ffc2dea393bbc77c03fc02b16d343b82fe241cb29477255n/a SnakeKeylogger
2022-08-18n/aexe ff8be6b71a5b86e14911006a75fde5e209b02385786b116a11ab8a35baf12a0bn/a AgentTesla
2022-08-16n/aexe 7a5370d19ce2a7c66d909d987795d63778163efab160baab01f02d0d91780036n/a 
2022-08-15n/aexe 71e8630304180faef084dd7631f3d75ffeca9df2a17c4c2f7a5731f01f001fd8n/aAgentTesla
2022-08-15n/aexe 5a5cd2b40792bcfb719052f9197a97be6556eb8011dc6dd9eec82fdeeca40188n/aLoki
2022-08-15n/aexe e870c0afe41d48f6bc1c2395e390bf9d0d29dcd486536bd64a0c223fc436cc36n/aLoki
2022-08-09n/aexe 00064ab13de50919fd7a194903538834e1f2c40486741d8a54574d7f2a9afa60Virustotal results 31.43%Loki
2022-08-08n/aexe 7fe71b0145d6661eb8dd8105fd1c4743219094a1fc19706a07bea9ab9680c0d6n/a Loki
2022-08-05n/aexe a3ead9c121e87f40828415dda3cc3d549d7416e9e8893994e8bc0d7ef82dfc8en/aLoki
2022-08-02n/aexe e162c72dbedbd5315003a22584f9b085b62825cea6b63b953802742fcdd3ae51n/aLoki
2022-08-02n/aexe 2ce332fdfa27d644d82c4f0dfe157029d97d081e7a0702bbb158734602d924cen/aLoki
2022-08-01n/aexe 939a1faecf6a917c40445811d81955641a3c1c62a834f750a6d508996582b4c6n/aLoki
2022-07-27n/aexe 8897d225b0a6b62cf5dff9e0fcbfab992ab3cbea225e858319d273e3fe6a747en/aLoki
2022-07-26n/aexe 9657634e776807bea270fc249315502e4e8eea293acc1150e60adf700c4cec91n/aLoki
2022-07-26n/aexe e039acdaeff157a82dd7205cffb812a4a928d81a1e62830326754e59114b4769n/aLoki
2022-07-23n/aexe 167e1602584f6d3b4469d284ff6713162f26eeb2cd2ee97db23368d9c156325fn/aLoki
2022-07-22n/aexe 7d3b6edcec8f32a79d7eb90b0458ebf1f2d379917cc0f851d4c283fe326f390an/a Loki
2022-07-20n/aexe 446c060e55300baf7e43219df0e15bf88d93bb9af538a1da35155063d84aa9b4Virustotal results 25.37%Loki