URLhaus Database

You are currently viewing the URLhaus database entry for http://208.67.105.179/hussanzx.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2283205
URL: http://208.67.105.179/hussanzx.exe
URL Status:Offline
Host: 208.67.105.179
Date added:2022-08-29 07:38:04 UTC
Last online:2023-03-08 22:XX:XX UTC
Threat:Malware download Malware download
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2022-08-29 07:39:07 UTC to abuse{at}serverion[dot]com)
Takedown time:6 months, 11 days, 14 hours, 51 minutes Bad (down since 2023-03-08 22:30:32 UTC)
Tags:AgentTesla link exe Formbook link RedLineStealer link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-01-13n/aexe 306886293861cc5086f510c84661f1921e680e945052667f5f4ab1f6ef5abec6n/aAgentTesla
2023-01-12n/aexe 4d96f10c0d981a5016b8ce1d1406f01e9edd3dba186eef964b270100f9ae3831n/aAgentTesla
2022-12-14n/aexe 0a5dfd2ea65587c41b17a2d29a316c769fb79835a6f02a885b9ed7efb2924e45n/aAgentTesla
2022-12-14n/aexe 2eeab86f3dd887a83b5a84d5d92d0442777b057ce256706c33c570360d9207a7n/aAgentTesla
2022-12-13n/aexe 588f2a7d8c7000fe6b8b2db410b51d0178c3129cc31ea448aa31ee4d25f5bf19n/aAgentTesla
2022-12-13n/aexe 256e56ffdee9c01af0bcc8b98eec7db32002cbd03adab70e47c79d63cdeb32ban/aAgentTesla
2022-12-05n/aexe 2c83d1e7a65b44f21c8ec5ca5aaae329d698dba9ac591ea6ecbee2d14c6e1150n/aAgentTesla
2022-11-23n/aexe 0fab061bcbc9c0e72f09c58b7a8a64a173d8ca0a6fe29b0dab924dab467a6a7cn/aAgentTesla
2022-10-31n/aexe 238b4099a93a660196226be1081118df1cd8b02131c8dcb8e8280ae2757d3d3cn/aAgentTesla
2022-10-31n/aexe 488f78702474c9f057ef016f49999c955ed3f315bfc9cdee58164850edcc86f7n/aAgentTesla
2022-10-30n/aexe 7773c82869650303e9f60d548bac39f1e88a860be35ce83a1a3f9c700b4fb7f1n/aAgentTesla
2022-10-27n/aexe ab380ec497114c124eaabbb96f643cb20dfb24d0618be4934c19c4062f82fa71n/aFormbook
2022-10-27n/aexe d3ac6ee117f0730de44c66fb589edbd070425e076f7c5de26480f1956a075a2dn/a 
2022-10-18n/aexe 2245bf156417ad067db2163d23eb95772269af952be2af6af857596bcaa8efean/aAgentTesla
2022-09-08n/aexe 29f9c2e5e05bc0c3f5df610af9fa619974498ad3f9b8b8b359da00ca26c3a4b4n/a RedLineStealer
2022-09-08n/aexe d9779496de7a75637eb3847b19de20512f2c7cf7cbf535dd2d840d3e25cf34b9n/a RedLineStealer
2022-09-07n/aexe 7c08292b29166884cd6cb1eebacd79f6fef57230b7cf5b48f8fa0c1eb43c118an/a RedLineStealer
2022-08-30n/aexe 4071a5ec0cb3c1c0c8b0413d179c05476a2ea21ea182b9cc2251f77d3a991801n/aFormbook
2022-08-29n/aexe 5eb1a18db0df2e76ba5dd1a7181988ea26e386d0066b011563af9972719c1ebbn/aFormbook