URLhaus Database

You are currently viewing the URLhaus database entry for http://87.121.221.212/yugozx.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2685759
URL: http://87.121.221.212/yugozx.exe
URL Status:Offline
Host: 87.121.221.212
Date added:2023-07-19 11:35:08 UTC
Last online:2023-07-26 07:XX:XX UTC
Threat:Malware download Malware download
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2023-07-19 11:36:05 UTC to abuse{at}des[dot]capital)
Takedown time:6 days, 20 hours, 10 minutes Bad (down since 2023-07-26 07:46:51 UTC)
Tags:AgentTesla link exe

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-07-25n/aexe 2c738c2b15bab621c7f94261438463073c45ec6b30c922bf65d7857e177ee1ccn/aAgentTesla
2023-07-25n/aexe aa20731e5adf5003b9fae77ddb9cf1284f0089aaf435f63a92bc2b17e6e1048bn/aAgentTesla
2023-07-24n/aexe 21275ed11f8b1b1b08d98607acd7c5ae3e1ad733782f91daf53be5b84feb0bd5n/aAgentTesla
2023-07-24n/aexe af093bd71cb66c24a34d31d6efa125d86e6ffa89bfbfad9d20658889553e133dn/aAgentTesla
2023-07-21n/aexe be1c1cfdf14a54f47c0798c833d6c885e3be90a06b87678bf894c14768135b6dn/a 
2023-07-19n/aexe 9db20870570e93875292e6a6a5f7683982cbe675135032c7dafc2b9704f3cb06Virustotal results 21.74%AgentTesla
2023-07-19n/aexe 9f08469a0b761c0d950446b84a2cdba032bc93c0f92abbd63352ec399506248dn/aAgentTesla