URLhaus Database

You are currently viewing the URLhaus database entry for http://208.67.105.179/assadzx.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2350848
URL: http://208.67.105.179/assadzx.exe
URL Status:Offline
Host: 208.67.105.179
Date added:2022-10-05 10:38:04 UTC
Last online:2023-05-17 11:XX:XX UTC
Threat:Malware download Malware download
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2022-10-05 10:39:12 UTC to abuse{at}serverion[dot]com)
Takedown time:7 months, 14 days, 0 hours, 30 minutes Bad (down since 2023-05-17 11:09:33 UTC)
Tags:exe SnakeKeylogger link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-03-25n/aexe e3605326017c58a3ef50367f4821255161997f87c615c126c981526127392d3eVirustotal results 70.59%SnakeKeylogger
2022-11-21n/aexe 603c65b2b09350e082988218579ccbc2ae98de0b93d6b188311dc37d6777658bn/aSnakeKeylogger
2022-11-21n/aexe 1ad913d0f719ce584b3935974d1b486817eb47ea8800714689255f689d02b629n/aSnakeKeylogger
2022-10-07n/aexe be452978570f98c28041125b3de4ddb8263365287c228fb4d926f48bc4513eafVirustotal results 18.06% SnakeKeylogger
2022-10-06n/aexe 1c6d0f62104c9b85fe56f0fd508fdd0b922b701174abb2572b318f1fddcdd881n/aSnakeKeylogger
2022-10-05n/aexe 261ce3dde64688de99a1875dfab6e2e02f341937c9e245f6e63f7ee81d02d891n/aSnakeKeylogger
2022-10-05n/aexe 0851d388f1916b3a14608a238bb54d138a3279871ed7f4210a65538325a478e8n/aSnakeKeylogger