URLhaus Database

You are currently viewing the URLhaus database entry for http://208.67.105.179/obiozx.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2545950
URL: http://208.67.105.179/obiozx.exe
URL Status:Offline
Host: 208.67.105.179
Date added:2023-02-20 16:35:08 UTC
Last online:2023-05-17 12:XX:XX UTC
Threat:Malware download Malware download
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2023-02-20 16:36:04 UTC to abuse{at}serverion[dot]com)
Takedown time:2 months, 25 days, 19 hours, 57 minutes Bad (down since 2023-05-17 12:33:47 UTC)
Tags:AgentTesla link exe SnakeKeylogger link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-03-14n/aexe b2b5cd070a9c6b85d3ff1b547c5e4d88bd9f1cf7d6fd2fdae2213774e3573f0eVirustotal results 22.06% 
2023-03-07n/aexe c0d69c07096000d15184964499d68e91874da06fc8d461ae8b4bc376ea72fd30Virustotal results 18.46%AgentTesla
2023-03-06n/aexe 769d0e9720bbc74f76e295710fbc77d8cb3998353ca7084bc121e780c9b1f3efn/aAgentTesla
2023-03-03n/aexe d03b8c0fcbbdc16e4c7d5794c037ad639ce4c55aa42fc1905c179c4213d0b04fVirustotal results 17.39%AgentTesla
2023-03-03n/aexe e1332c9ff034ded7f31b405f082cba3f67c5bf23f679e08643907ff26679cbfbVirustotal results 27.14%AgentTesla
2023-03-02n/aexe 15852a249bf70514a6c961426ec261dff37d2a6bf8588d6f9775b8107a8c973fVirustotal results 30.43%AgentTesla
2023-02-28n/aexe ecbabefc35b4504815ec14b5efc94cd6e8df5d69b015505b4231814933fad14bVirustotal results 24.29%SnakeKeylogger
2023-02-27n/aexe faad2c66c89bdb9f36653c0068f3fe34c03e88b7ea0cdadbc5f14005612e409bVirustotal results 25.71%SnakeKeylogger
2023-02-27n/aexe 4204afba15557ddd3a55db25af90f65073c7948ad2619b2a298c40a85c892681n/aSnakeKeylogger
2023-02-27n/aexe e35243e69e01391bd0e35adeb074f6e2dcfc28226d149543f4e1c891ca58bfa9n/aSnakeKeylogger
2023-02-23n/aexe 4a59447d218d3dcb2cd42ee9d9a6b22cbfd4300c5299f91c58d0630ad946de8bn/aSnakeKeylogger
2023-02-23n/aexe 81d94c6c2ef79e622d1ef007c3c0be9b218a2b418833d958c20a52ae8906dabfVirustotal results 21.74%SnakeKeylogger
2023-02-22n/aexe 071eb944862ebe1d549a43b3ada9bad840b5b5cfa6b0af60fb56047b15998b35Virustotal results 27.14%SnakeKeylogger
2023-02-22n/aexe 097be91c4c13ed0f50682d1ea4506bea2d1c748606be4a42ba2b221eb32fbfe9Virustotal results 22.86%SnakeKeylogger
2023-02-22n/aexe 69e0ff8d0af4ba0a6a027aea1fa32d52d321ad1b9a4f1da70d7f9b40422c4a0en/aSnakeKeylogger
2023-02-21n/aexe 5a74ab32430162909d85d60b449e81d61e891d3be7a69404d4c2d644d773ddceVirustotal results 26.09%SnakeKeylogger
2023-02-21n/aexe e45af7f5388dd4a3dedc03eb45e0323604259960647e68d2c3865d0d57e04163n/aSnakeKeylogger
2023-02-21n/aexe 3ad0abf36d88941f6ed14a2d1b54532a619d23db9cad1831920643d41f925b7cn/a SnakeKeylogger
2023-02-20n/aexe 647e39f441013552972e4ec5edbb53cc10fb3c4e026eb634a736a97a41253064n/aSnakeKeylogger