URLhaus Database

You are currently viewing the URLhaus database entry for http://87.121.221.212/prosperzx.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2677380
URL: http://87.121.221.212/prosperzx.exe
URL Status:Offline
Host: 87.121.221.212
Date added:2023-07-06 05:57:04 UTC
Last online:2023-07-26 07:XX:XX UTC
Threat:Malware download Malware download
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2023-07-06 05:58:05 UTC to abuse{at}des[dot]capital)
Takedown time:20 days, 1 hours, 34 minutes Bad (down since 2023-07-26 07:32:23 UTC)
Tags:AgentTesla link exe

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-07-21n/aexe 68db7d218ca6c3232ac48d4190b983e1e72df4d7252cdb477686eb951a45c287n/a AgentTesla
2023-07-21n/aexe d2b61a6de6f1774a56349e16fc219e981e61b25619216171b1fb6f880f1d78fdn/a AgentTesla
2023-07-20n/aexe 70ca2ab7bb701077c23a75215927d1e42ada6bfc5335e6855a4f8ed4cffe400dn/a AgentTesla
2023-07-20n/aexe d03d5540e306dec9970fea11519f479cdd8764f3c61f80189995bfb90e31d7feVirustotal results 26.15% AgentTesla
2023-07-06n/aexe f5ec888bc571c15fff6005a9d59f84882a51d3af61c88267b910433ffac393daVirustotal results 42.25%AgentTesla