URLhaus Database

You are currently viewing the URLhaus database entry for http://208.67.105.179/mollyzx.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2282012
URL: http://208.67.105.179/mollyzx.exe
URL Status:Offline
Host: 208.67.105.179
Date added:2022-08-28 10:47:04 UTC
Last online:2023-03-28 01:XX:XX UTC
Threat:Malware download Malware download
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2022-08-28 10:48:06 UTC to abuse{at}serverion[dot]com)
Takedown time:7 months, 1 days, 15 hours, 8 minutes Bad (down since 2023-03-28 01:56:28 UTC)
Tags:32 exe RedLineStealer link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-03-28n/aexe 1f0e9f0b8f2ede84ba3303ec9101ae43d66e1780d40c9387da07873834dc9317n/a
2023-03-27n/aexe be79e1d0618a893153a049271268fac39ca9007bae26ecaeb73df3a455fb90b1n/aRedLineStealer
2023-03-16n/aexe 43cc3367378c0f20ca0dc208cedb128dd7446323207e92a303997f4443be4ed9n/a 
2023-03-15n/aexe 4d057ce2ed42fef558a4900373b21be29787d6932e7e98207dc5def3b07fa9dfn/a 
2023-03-15n/aexe 26db7e781fd0408fe4565c52762742e53f430fa6bb8971e67478867adb583930n/a 
2023-03-13n/aexe f967178a4931562f6e35cda78c4ee5bc7f9c853909316ffac565df80965a87d2n/aRedLineStealer
2023-03-13n/aexe 93e9f66877d4686da3806d8716035c2cce73d7b3c888a65c8fc51bcd5f94904bn/aRedLineStealer
2022-08-28n/aexe 41f4917b832db8cffd2cee0c2fb72db48853147e7f933986bb30b808df2adc16Virustotal results 34.29%