URLhaus Database

You are currently viewing the URLhaus database entry for http://208.67.105.179/kingzx.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2374605
URL: http://208.67.105.179/kingzx.exe
URL Status:Offline
Host: 208.67.105.179
Date added:2022-10-14 06:39:05 UTC
Last online:2023-01-19 16:XX:XX UTC
Threat:Malware download Malware download
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2022-10-14 06:40:14 UTC to abuse{at}serverion[dot]com)
Takedown time:3 months, 7 days, 10 hours, 15 minutes Bad (down since 2023-01-19 16:55:45 UTC)
Tags:exe Loki link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-11-01n/aexe e4783150c3d2ad19ee394065a0d6539c9fb55732baebef9333e8afa4ab685da4n/aLoki
2022-10-25n/aexe c785631dbed84132de4f54bae4de7000bc26c4ff9eceb7287b410f97b6b820d9n/aLoki
2022-10-25n/aexe d94577457b28a4417c565d6056905a6c0261910893d63c56a4a0ad2b6c0cbdf4n/aLoki
2022-10-23n/aexe 62d434175db4c17d8929a824c03b51a8549a72031ec8906a4cb4f98dc0722ecfn/aLoki
2022-10-18n/aexe 3e5a0216036da703094d996421d7ccc309fd5eda00a96c1ba181233db4e68650n/aLoki
2022-10-18n/aexe da23e2678600b4217b37b34a1906c801ed57317ead38cf0f08ad8b3a2ec4604an/aLoki
2022-10-17n/aexe 235a2eba9174296d64fb42698880d264141c3bb831c2b3641d8547c18f2c9603n/aLoki
2022-10-17n/aexe 99e99e77ccea24f827ec3238ba2a80a0aff9fb9581dca07652e8f2de89092046n/aLoki
2022-10-14n/aexe 4002e586708b06d736116dc9a9fb158af379f5347f8650ff452245b521eb9a18Virustotal results 23.61%Loki
2022-10-14n/aexe f595db97f3132c2e3a3187f5562695a97e55327907571d0604f3b83f4a6a3be0Virustotal results 36.11%Loki