URLhaus Database

You are currently viewing the URLhaus database entry for http://89.208.107.122/zLpx37ep7aQl9MzpcONiUr9Z74tbmB.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2410330
URL: http://89.208.107.122/zLpx37ep7aQl9MzpcONiUr9Z74tbmB.exe
URL Status:Offline
Host: 89.208.107.122
Date added:2022-11-14 06:12:08 UTC
Last online:2022-12-12 15:XX:XX UTC
Threat:Malware download Malware download
Reporter: tcains1
Abuse complaint sent (?): Yes (2022-11-14 06:13:21 UTC to abuse{at}aeza[dot]net)
Takedown time:28 days, 9 hours, 38 minutes Bad (down since 2022-12-12 15:51:44 UTC)
Tags:exe

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-11-21n/aexe ec902cbb6d777887ac0baccc92845a17290bada34d44bd64e8169bcdb4e809ffn/a
2022-11-17n/aexe a220bec90eecce861ae545ebecc585ef97375cfcd3a5dd81809d35bc2874b9a0n/a
2022-11-16n/aexe a7b9f85870179430e1d8776a0fe5b2bfde0dfee26a168c5ace0287a7a461835cVirustotal results 61.11%
2022-11-14n/aexe 9a9b6177e715c7461d686b2773507d48c7ee7ce96e26aef62b25e0249e392fefVirustotal results 47.89%