URLhaus Database

You are currently viewing the URLhaus database entry for http://208.67.105.179/petercodyzx.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2447567
URL: http://208.67.105.179/petercodyzx.exe
URL Status:Offline
Host: 208.67.105.179
Date added:2022-12-06 14:28:03 UTC
Last online:2023-05-17 12:XX:XX UTC
Threat:Malware download Malware download
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2022-12-06 14:29:07 UTC to abuse{at}serverion[dot]com)
Takedown time:5 months, 11 days, 22 hours, 29 minutes Bad (down since 2023-05-17 12:58:34 UTC)
Tags:exe Loki link SnakeKeylogger link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-11n/aexe 48126bade2c358e81979fb248b18b9509cc48a30b989c647e176d3be65463722Virustotal results 24.29% Loki
2023-05-11n/aexe 6b41898312ff983ee925ac7ef87299885f0c6cdeaf368bf1ea643bbe01ef9ab4n/a Loki
2023-05-09n/aexe 4d77048f6a96f7552112cbb6e8488ad65fe462e22008529f5d9444d9b16890a2Virustotal results 32.31% Loki
2023-05-09n/aexe 28a4489a297705ee3a1b429ab4799eceed929b25592a0bbf4aca2dea07ef719eVirustotal results 37.14%Loki
2023-05-04n/aexe d9fcc1602122022a5c2ad597168eed6137a55b2356d767f5a877083c99989561Virustotal results 24.29%Loki
2023-05-03n/aexe 19af5e15b1e1e9b6eb90f2a93f290ae53cb2ebdee29f972cfb3bf9e9dc38444eVirustotal results 28.99%Loki
2023-05-03n/aexe 3f22bd2e20b994c404cdc3fd87820817b32c3471d003c3156186ecac22936022Virustotal results 34.29%Loki
2023-05-03n/aexe 3c306b96216641fbd00d7d7f3259f7285174cf8d5032ad0de6c70af5622f87d4n/aLoki
2023-05-03n/aexe 894cd5c6a63bd35486dd0e8e51a7562a8abd6655d405a588dfedc262b2d3713fVirustotal results 32.86%Loki
2023-05-02n/aexe 1b0e7b89d2ffa10bd99d75c31e4b06c5a05e978e8b601bf6b6bb29294a27a3b2Virustotal results 30.88% Loki
2023-01-24n/aexe e2129c0979e137c9a442721f9198c70fdcbdd0356df14a3d4e35c994614d03b0n/a Loki
2023-01-19n/aexe b7836133ecd9f40f9fdd396ec3cc51992d69b81688b7b3e0de53d20c080d09e7n/aLoki
2023-01-19n/aexe 9d1ef7527f27870acabb3066ff486e312887c5f3e34578da8729b2b460c66acdn/aLoki
2023-01-18n/aexe 101d8857d8ca67256ce3fd72da19bc291045403bed786495aa916a572a780db5n/aLoki
2022-12-14n/aexe 36888f542fa2706a42a56ecdd6743a5c1dbc99de0011c12026f36cf47c072fdcn/aSnakeKeylogger
2022-12-12n/aexe 99979bba5d3651b7c6da4c590184aa65a70f3cf06405796d098c8917919589e5Virustotal results 27.78%SnakeKeylogger
2022-12-12n/aexe b7dc980c140f80ce041218ee58ba7fcee5c770abac4ce0c5d7fec9d545e708b7n/aSnakeKeylogger
2022-12-10n/aexe 887a72c6d2185c86606b4b80560d5f22fd8c87b261c392bf460c39df861e07b7n/aSnakeKeylogger
2022-12-09n/aexe 7db45a54b5f18064cdb02e35b051b9f1daf43c10dce1f95fdd16cba8ecd15bfdn/aSnakeKeylogger
2022-12-07n/aexe 7bdf551e6d5e28b6b3ac52b80c90364fa24f3701b15bd37ed8a99c3a9204424dn/aSnakeKeylogger
2022-12-06n/aexe c53982a042ba3b6bcdb766a0b174e92ac62ae9578ec4a25209c7bfea42a06880n/aSnakeKeylogger