URLhaus Database

You are currently viewing the URLhaus database entry for http://167.88.170.23/swo/sw.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2536806
URL: http://167.88.170.23/swo/sw.exe
URL Status:Offline
Host: 167.88.170.23
Date added:2023-02-11 08:54:06 UTC
Last online:2023-05-27 15:XX:XX UTC
Threat:Malware download Malware download
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2023-02-11 08:55:09 UTC to admin{at}frantech[dot]ca,fdias{at}frantech[dot]ca)
Takedown time:3 months, 15 days, 6 hours, 9 minutes Bad (down since 2023-05-27 15:04:09 UTC)
Tags:AgentTesla link dcrat eternitystealer link exe

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-21n/aexe 4c0f274e3694fbabe53bf4160108b37353cbe110eab6effadfad8dc1f868d49en/aEternityStealer
2023-05-20n/aexe c87944569ee3472607f5c02b5d249c6d817de90c4c143349a0905b2a8c6284efn/aEternityStealer
2023-05-19n/aexe a7e94bfa4f3e2ae3a8615624beefe81cf666789586ea9aa76885ef3e2f30bfe8n/a 
2023-05-19n/aexe 3ef7c3f390fb85fb3205da8d268b1831091914d04592ed2e2d3a9ba17539d20fn/a 
2023-05-18n/aexe e5fa8e9899e8d56149452a34fc6bc6b66bd9c8d69a31cdb1fbf5a90e9db6a454n/aEternityStealer
2023-04-14n/aexe afc694e2952df47cd0b26fb64fbe82e2fa576f61d45225f190c4604f36a87e5en/aEternityStealer
2023-04-12n/aexe ca340847c4e52b6bace03551e5e49eac1d96f6e46940c57ac90bd128f9b795b8Virustotal results 40.00%EternityStealer
2023-04-10n/aexe 2b14b9728155381d588e6e960f4073b70ad8144aa74042b8c25a97211016e0adn/a EternityStealer
2023-04-08n/aexe 43d252805faac982741d6ad405c322a7a2ade61c4c3fec418d47b09843deda4fn/aEternityStealer
2023-04-07n/aexe cee47a59d39ea4da5facfeb62f67b0f1dce28b39863e66c22efee52eb6498647n/aEternityStealer
2023-04-05n/aexe 5837870868a86382aef92c68f51c5dc00662d2f7d9fcdd094db20f1b24400ec9n/aEternityStealer
2023-04-05n/aexe 23f09d9012c25fbba5f04b0648379e4c8a42ce2a2c30beffe4532b712907e1efn/aEternityStealer
2023-04-04n/aexe 2aa35b363c35704fcf2b482009ce8c2687fbe39654039d65259c72dc126a84e8n/aAgentTesla
2023-04-04n/aexe 37a886a40a122580e20971a7523cf43b6bc6b658bb12c76e05dec21b1a547ee1n/aEternityStealer
2023-04-03n/aexe 595556574c59022b9837a133c53c0a229eed297a9c338b70e8acbd99abcfa51bn/aEternityStealer
2023-04-02n/aexe c1147a4f1f5430a49b73a9c0d7c86f5b47f6040eea6fa7e62f1fabbc54d65ef8n/aEternityStealer
2023-04-01n/aexe 2a4f1e3392e1eda87e63960c956e1eb8059cb998640dc9c0629626d95bdec53an/a 
2023-03-30n/aexe b3b2dc3be1936fdb02be2e420f7264bbe124f8e98e4c9a52b4793106bb283f73n/aEternityStealer
2023-03-29n/aexe 46304a058536faf4eb1f49b67b6f4571f12921ae147e110813525639d1c8a878n/aEternityStealer
2023-03-28n/aexe 5d5ba4fa49441043304c8ef33dd2237d3c1e1272ef520e3c32eb936859984b15n/aEternityStealer
2023-03-26n/aexe 069ed36bdd5046201359415dab896f99f2e5adb89eb54c2e652786e0ccd79330n/aEternityStealer
2023-03-12n/aexe 7b3eed5a83ba7d77cf91e87d1d200d0211fa8e3c9eaa557996ba9487023b28d3n/aDCRat
2023-02-11n/aexe e4aa364614621c16aa32375dba2ef49f4aadc0c4d460d25d9ef0b644398e5dfaVirustotal results 77.14%EternityStealer