URLhaus Database

You are currently viewing the URLhaus database entry for http://208.67.105.179/mannzx.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2264671
URL: http://208.67.105.179/mannzx.exe
URL Status:Offline
Host: 208.67.105.179
Date added:2022-08-04 08:58:03 UTC
Last online:2023-01-19 16:XX:XX UTC
Threat:Malware download Malware download
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2022-08-04 08:59:05 UTC to abuse{at}serverion[dot]com)
Takedown time:5 months, 18 days, 7 hours, 53 minutes Bad (down since 2023-01-19 16:52:21 UTC)
Tags:32 AgentTesla link AsyncRAT link bitrat link exe

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-11-30n/aexe ab27365a66cf91a2dcab667e60b0df2cf52b95931025f7a3a44f797e05349c09n/a 
2022-11-30n/aexe c689320e65372ee1c390aaee635c53cbe931d6830b32794c77631362131f4a71n/a 
2022-10-11n/aexe 413df54020a07f08c1f1155d3a6673354016fc5c2cc000639a5d0f2927818635n/aBitRAT
2022-09-30n/aexe c1f82f877f15a6a264c4dcae43543039fefc9bab0cdb8fedd281960245315df3n/a 
2022-09-28n/aexe 4691e86098f4a2fe6ed76c46dc7584ae25d9396b06427a47a00ce1156d38f12bn/aBitRAT
2022-09-28n/aexe 5e1ea26f5575e26857b209695de82207a04de0b0dc06f3645f776cc628440c46n/a BitRAT
2022-09-05n/aexe 9b3a33bec9cbf501ececbd64393c1a5608dbef293e69e86f175eb524f86cfdc6n/aAsyncRAT
2022-09-01n/aexe e8b15948351e4c8b67c73da3c3693b04d50348791370e607a25b884683d2ea46n/aAsyncRAT
2022-08-25n/aexe 256c62be3480944cb7652df294eb74aa39a0310e4194e84ef3ecab922fa9a5aan/aAsyncRAT
2022-08-22n/aexe 4911951897ce0b0c6326caf90c0c50118a870662bd210e1d431d98ed0e8ac0b6n/aAgentTesla
2022-08-04n/aexe 5cdc52c95c1bd415cb817c3a075c8d0de69af4bfed2809cfd0f47179800e2352Virustotal results 39.44%AsyncRAT