URLhaus Database

You are currently viewing the URLhaus database entry for http://protestlabsmovings.es/mgbohy/Frityp.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:253056
URL: http://protestlabsmovings.es/mgbohy/Frityp.exe
URL Status:Offline
Host: protestlabsmovings.es
Date added:2019-11-10 11:18:09 UTC
Last online:2019-11-12 10:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Blocked
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2019-11-10 11:20:02 UTC to audit{at}ntx[dot]ru)
Takedown time:1 day, 22 hours, 49 minutes Poor (down since 2019-11-12 10:09:06 UTC)
Tags:exe Loki link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-11-11n/aexe 4bd34301092b32567930a690b77b2341cc4e48be131f735098987be62fbd5428n/a Loki
2019-11-11n/aexe dbb13b8375f032e1549bc5469f261076439822fd2967921cffea3ac25f65354bn/a Loki
2019-11-11n/aexe 76f5382294619ddf7df60b12e706dead2fa1d2988b2721488848d6b31f7a32c1n/a Loki
2019-11-11n/aexe 1024baeefe54ba599f925f49fa7a19470bef896cd9ae894c1f721b7d78f3715bn/a Loki
2019-11-10n/aexe eae4a6a3711cb56d463dd0990dbd69948e61bfcae5aadfbf9cadb9489f8f96c2n/a Loki
2019-11-10n/aexe 2e4792c7f5d828e310ce9cf2b7446e137d4033339a38fd15409bdbdf9cd0decbn/a Loki
2019-11-10n/aexe fd7bf26f625259baa40c0ffaf193eba0f72c01e99a83b752b8546a231dd8d548n/a 
2019-11-10n/aexe acb2866a268a1814d9e67da6b151e494ffa21498b3b37d57d0bb8ad7c525ee94n/a Loki
2019-11-10n/aexe 82a8653192b32aa5215458ed3518e3ef38c022de0c0c91119d22c73f184a592an/a Loki
2019-11-10n/aexe e1189905a962cbfbbd4e5d0e69a0cd7a12cdf1b47608e95899103a98675efa10n/a Loki
2019-11-10n/aexe 2b8895004f21ae10dd35787385807ea83303eb8730f4a6375f159a7788bef7bcn/a Loki