URLhaus Database

You are currently viewing the URLhaus database entry for http://208.67.105.179/cheziezx.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2541852
URL: http://208.67.105.179/cheziezx.exe
URL Status:Offline
Host: 208.67.105.179
Date added:2023-02-16 08:57:04 UTC
Last online:2023-05-17 11:XX:XX UTC
Threat:Malware download Malware download
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2023-02-16 08:58:07 UTC to abuse{at}serverion[dot]com)
Takedown time:3 months, 0 days, 2 hours, 3 minutes Bad (down since 2023-05-17 11:01:37 UTC)
Tags:AgentTesla link exe

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-15n/aexe f392bf66abf26a0f59adc3b8155e231a0405bb17384480a4b2cd2ca1ec39162fn/aAgentTesla
2023-04-26n/aexe 5d6f44a539104b85e47d5dab1e00e9698dad78112826fede759996f431d87109n/a 
2023-04-17n/aexe 34d1e9c4e769bbae5f256b28c1e7adbf6366cdf75eb143bcc0ddfbc7b94acca2n/aAgentTesla
2023-04-17n/aexe 875f736e15e9825359679dd4482ef43a0d4ac3274c9ea4b3a8df90fa5d9ed47cn/aAgentTesla
2023-03-20n/aexe 306a4b507ed783c41a906281904642730d4887aac6dcd5d3ee7ba066d0a51efan/aAgentTesla
2023-03-20n/aexe 6fbcada3a3dcc462ba4848000d47ee4487632488cc2e5841af7516027649d6f7n/aAgentTesla
2023-03-17n/aexe f5d87682a45a92cc4dbea8ef788846df4492501ffea1ef1da4fbe7372ee5f44dn/aAgentTesla
2023-03-16n/aexe c20c406573105725a8bedbd6528b1cd762c0d28251c37764c711374524c266bdVirustotal results 35.29%AgentTesla
2023-02-20n/aexe 26df14221150501b7d3e3beed30d5555bbc7210450d9d4641ba86de6e7d2d08cVirustotal results 23.94% AgentTesla
2023-02-17n/aexe 43f96a960cc901527092ae8bae99d72caf7386797888505af6aa69df82ef8ddeVirustotal results 21.13% AgentTesla
2023-02-17n/aexe eacc1b5d6c31bce1b1a606c891c1f53214ee957bc6b66092fae704cd4075cb47Virustotal results 39.44% AgentTesla
2023-02-16n/aexe fe8ad5aefb473a10223ebc4f1a2be102a064519a09137f173562f0491b4dc2aan/a AgentTesla
2023-02-16n/aexe 63270f24d9f755948af60b672941497a7ea5e745d0c68ce6d061b617d363847an/aAgentTesla