URLhaus Database

You are currently viewing the URLhaus database entry for http://208.67.105.179/arnoldzx.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2550028
URL: http://208.67.105.179/arnoldzx.exe
URL Status:Offline
Host: 208.67.105.179
Date added:2023-02-24 13:51:04 UTC
Last online:2023-05-17 08:XX:XX UTC
Threat:Malware download Malware download
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2023-02-24 13:52:06 UTC to abuse{at}serverion[dot]com)
Takedown time:2 months, 21 days, 19 hours, 6 minutes Bad (down since 2023-05-17 08:58:26 UTC)
Tags:AgentTesla link exe

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-03-25n/aexe e3928bbb3f5c9d07d47db48ba6c4325b663894e15019a220bacee24653b4c4f5Virustotal results 30.43%AgentTesla
2023-03-24n/aexe cf2168940995549a47e170ff65e038af63a8217526c9dd292eed8f98957750bbn/a AgentTesla
2023-03-24n/aexe 44cd3156a05ff1743293ce200af477ba072b1825e1d7e54e54a9e3b15f51710aVirustotal results 26.09% 
2023-03-23n/aexe 936cdcfc8c162d9f0d0b0d7bd19fb18d6a495f5acc22d77606904e373948f5a6Virustotal results 20.29%AgentTesla
2023-03-07n/aexe 901bdc59c476cc6bb91e7bd3716436f972c176094c4479a8309e5560362192ecVirustotal results 19.12%AgentTesla
2023-03-03n/aexe 36075d007622f34891717891ecee08fe809a9521a21bd26cffdcf2f6c88ae707Virustotal results 21.74%AgentTesla
2023-02-28n/aexe 19146932c4a283f9e7580b7c6c729f81e1e3c7ad6012556f0b7059d8c4af559en/aAgentTesla
2023-02-27n/aexe 363294418c47b12daa154b5fb57a760f647c8d075ac95e9fc8748e50c4796faeVirustotal results 23.19%AgentTesla
2023-02-27n/aexe 28203ed5a65e2654fb018737aa689e2b052aabfdc58b8516c02c370910b17f14n/aAgentTesla
2023-02-27n/aexe 2c73667284b4bc9649c15b60c5988e276c78c1fd114135096d60361a8e8fbc11Virustotal results 21.74%AgentTesla
2023-02-24n/aexe e8e74c50435b7001dd34443af3a942c9b3ca32e7e460bcb0fb08ad965d725024Virustotal results 47.14%AgentTesla