URLhaus Database

You are currently viewing the URLhaus database entry for http://194.180.48.59/hussanzx.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2640007
URL: http://194.180.48.59/hussanzx.exe
URL Status:Offline
Host: 194.180.48.59
Date added:2023-05-24 08:44:03 UTC
Last online:2023-06-24 10:XX:XX UTC
Threat:Malware download Malware download
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2023-05-24 08:45:08 UTC to abuse{at}des[dot]capital,abuse{at}serverion[dot]com)
Takedown time:1 month, 1 days, 1 hours, 40 minutes Bad (down since 2023-06-24 10:25:45 UTC)
Tags:exe Loki link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-06-16n/aexe e9104c6f82a1b8c52bb881161440b8b1a8e3bf358cd60672dbfc14a2bc12518dn/aLoki
2023-06-12n/aexe ff927067632cbc9312282420e5ed0e75505e871970b76c169cd57f0ca52c3d84n/aLoki
2023-06-12n/aexe 4115b8dcc5fe1686132189b3fb783c4e017d34581688618358dd93c76075f0c1n/aLoki
2023-06-09n/aexe b0fd06eb989e91464f06adbe44109286942dd3fff9b8a20b627a4e2294e25e42n/a Loki
2023-06-08n/aexe 685c97dd81f1bb439eac4c6d919b325fab8c891c34f06303e190db3275ee694dVirustotal results 21.13% Loki
2023-06-07n/aexe 6053c4c96027a86c60053056dc1f2a90142179b628d82f4ac73315ddf36bf544Virustotal results 26.76%Loki
2023-06-07n/aexe 936b0a2add95132c07e4bc7ab3864171e397b5917bf193f7ff99484c2058816cVirustotal results 27.14%Loki
2023-05-30n/aexe 95b8e0bead7a576cc494ab4f34737a966d60abf551dae5e68c44a3be895c4913n/aLoki
2023-05-30n/aexe f35069a8c9913f373bd8c843ef28608eacc15cb0015c8142f3597a41688af6dcVirustotal results 21.13%Loki
2023-05-29n/aexe 4bfb034ba82b58966a05d36c77d359fa5d2e133a58e40f4aaed49850b048fa7bVirustotal results 23.94%Loki
2023-05-29n/aexe df136852c31f18226fc9d9735395f8f91dc15d0a158f415cc80d1ae7db749106Virustotal results 21.43%Loki
2023-05-26n/aexe 85ca69302b422ba0c29e29ea68f250ad6db23721f15abe418097cdc6e815ad60Virustotal results 19.72%Loki
2023-05-25n/aexe 23121b11791efe3032215c26e00aa3fde4a05ae9704b44a42ea3f30e2f057de0Virustotal results 24.29%Loki
2023-05-25n/aexe 94301a0bdd439668bb98c0dd4575a134b4e189bba14a882a3d7e04f6ad8e2865Virustotal results 22.54%Loki
2023-05-24n/aexe 433eafc4e6bfa4748bfe8f5a69bd4de4214e6292f3aa48f9be3d12427fe5fe7eVirustotal results 29.41%Loki