URLhaus Database

You are currently viewing the URLhaus database entry for http://194.180.48.59/buggzx.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2639338
URL: http://194.180.48.59/buggzx.exe
URL Status:Offline
Host: 194.180.48.59
Date added:2023-05-23 06:34:04 UTC
Last online:2023-06-24 10:XX:XX UTC
Threat:Malware download Malware download
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2023-05-23 06:35:08 UTC to abuse{at}des[dot]capital,abuse{at}serverion[dot]com)
Takedown time:1 month, 2 days, 3 hours, 52 minutes Bad (down since 2023-06-24 10:27:20 UTC)
Tags:32 exe Loki link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-06-12n/aexe fb5cf6c33427be9bdc75a7ea976fee2098fd24ce86fcfeab1affe3b4a61c6bb9n/a Loki
2023-06-08n/aexe e12863c4673cdd7799f70bd49c9513e100e1180633e267a766fdc423bcefeb52Virustotal results 18.57% Loki
2023-06-08n/aexe 3aa560b5c7d301d160777776c03f2466bb51e359659606b656c1b5a75a47d16bn/a Loki
2023-06-07n/aexe 2ac116c14a2b1b8d8ec037c8dbab63b7f0f20882c35db87c02b84a97dd1a4afaVirustotal results 29.58% Loki
2023-06-06n/aexe 85cac45b94051a335ab31389735fba52182b1f0ccf268ea17b14c9616b4efbddVirustotal results 23.94% 
2023-06-06n/aexe 326c41a3d6737e5cea2518e5e92235e3493b4902e431b74a9df18554f5e7cf8an/a Loki
2023-06-05n/aexe 6e3ec98c689625cbf1f0cc19b03b5931eff4f13cb424c17268e48d3e0d30b592Virustotal results 18.31% Loki
2023-06-02n/aexe 3ff330baafd20beeb871620073c8ee64224e42cbebce4f4d2894ba43ab81faccVirustotal results 22.54% Loki
2023-06-01n/aexe 35f8249dcc0a9db5364012333117d0aa047736b59d7170c1099d07b0fdd8c9b5Virustotal results 32.39% Loki
2023-05-31n/aexe 059703b7a182a2e9be1567e72d10891b7e0bf8dbe2df1db6268207bf96e7030cn/a Loki
2023-05-30n/aexe 585c45e49cf368bfa01201ff86fc2f8c350251d6d57bb2108bb9467122da19ffVirustotal results 28.17%Loki
2023-05-30n/aexe 1d6de95e78840fbd65507d670acc21095bcfa0204d76d8fcc2db9885170d00cbVirustotal results 21.13%Loki
2023-05-25n/aexe ab5432315ab5e547d7e2aa8f3678009b20511ab1d7cf4e7133a45e543fca9594Virustotal results 28.57%Loki
2023-05-23n/aexe f5f8336ecd53fa4fd9538a8e116d6506e92bb23ce8622fd43af78d4388810ba9Virustotal results 30.99%Loki
2023-05-23n/aexe 1964987cfdeab183649dba44d74471c768673ccd9ef1e97e3061d5a397baed63Virustotal results 22.54%Loki