URLhaus Database

You are currently viewing the URLhaus database entry for http://208.67.105.179/blessedjayzx.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2627529
URL: http://208.67.105.179/blessedjayzx.exe
URL Status:Offline
Host: 208.67.105.179
Date added:2023-05-09 06:52:04 UTC
Last online:2023-05-17 12:XX:XX UTC
Threat:Malware download Malware download
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2023-05-09 06:53:06 UTC to abuse{at}serverion[dot]com)
Takedown time:8 days, 6 hours, 6 minutes Bad (down since 2023-05-17 12:59:34 UTC)
Tags:exe Loki link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-05-17n/aexe fbc0622102a8df643f49d647f235095ce0eeb850ba966598e5753f001f3f4aedVirustotal results 23.94%Loki
2023-05-09n/aexe 23dbc26b804d9759bf1071f4972658b648b6aa0ffe4a68986282c38fb9702ecdVirustotal results 40.00%Loki
2023-05-09n/aexe d1d7a83580ad42bb3161a92105ba3ed7308cdce0f65cec403462b5d2c3493705n/aLoki