URLhaus Database

You are currently viewing the URLhaus database entry for http://208.67.105.179/workshopzx.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2381424
URL: http://208.67.105.179/workshopzx.exe
URL Status:Offline
Host: 208.67.105.179
Date added:2022-10-21 01:56:04 UTC
Last online:2023-01-19 16:XX:XX UTC
Threat:Malware download Malware download
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2022-10-21 01:57:09 UTC to abuse{at}serverion[dot]com)
Takedown time:3 months, 0 days, 14 hours, 32 minutes Bad (down since 2023-01-19 16:29:34 UTC)
Tags:32 exe Loki link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-11-12n/aexe 7a7e88e959629f49839851dc15c7a3b3e95abbf2bb8b37e231c7ab158c692e67Virustotal results 22.22%Loki
2022-11-11n/aexe 009cfbf74ee1e04d0e460513ac510c75662f25ff95061bf76eac19f35af9ea2dn/a Loki
2022-11-09n/aexe 1f27dff3378ce1df663d2955c9e5ae3101217d4bf3fbb4775667b1bc1a634a1en/aLoki
2022-11-08n/aexe 4ef4a35ee59acbff14365a9f6e3185577c3a7c985b8e1e0953f0516b32b551fen/aLoki
2022-11-07n/aexe c3c720e8f32e486e0cae98cdb616cdb7db11dc5799f718baa174babeeb881442n/a Loki
2022-11-03n/aexe 7ff6db698e42f1e0226e53c665495440ad2fe012ddc34195c7b3404b218575a5n/aLoki
2022-11-02n/aexe 8d2ba9b02b30bec1bbf690035f4a38cf321d66d576ebb021b850174af4cfb6fdn/aLoki
2022-11-01n/aexe 6a50ac50c3b2bf6314e78f2e41cfcc9da05e62871471174eedbf6910591855afn/aLoki
2022-10-28n/aexe 664fa909aa18b744809679fb4957cdb9e4d3d1c7ce1856c1833288e0aed3fbd1n/aLoki
2022-10-27n/aexe 3c84ed0c88de55b0bd435af4c371a14330000fbc509219057c3261b1d38500d4n/a Loki
2022-10-27n/aexe 0eb523d3af5f79e9adad994ae39f2f2b2dc1c407ffa5396c1a77235da0d37246n/aLoki
2022-10-27n/aexe 6f9089980d95e32929dd5f46e01f943881b7cf31afe9b1919bd4a9970c2f1df9n/aLoki
2022-10-26n/aexe 96ef8b8b81fffb5b0257b9fcf460826d1ed921fc43921b5f6a404e3962355728n/aLoki
2022-10-26n/aexe 778807b493972df8b1bf1c2ee373464fda64b16276940f61b3d7461f1dcb8106Virustotal results 30.43%Loki
2022-10-25n/aexe 662de564c6929db4b21fad64764456ff756074a380001dbeee8448a4b9cb5d75Virustotal results 15.49%Loki
2022-10-24n/aexe e72ee2ac674e92852ed5ef5f9febed94faf336781497dbf620eef0d440144d7cn/aLoki
2022-10-21n/aexe d6ee7e162094507066f286166d32f20121d3b238a2dd28e9248ecae31cee2bfdVirustotal results 35.21%Loki