URLhaus Database

You are currently viewing the URLhaus database entry for http://zzz.alie3ksgdd.com/m/okka25.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2705396
URL: http://zzz.alie3ksgdd.com/m/okka25.exe
URL Status:Offline
Host: zzz.alie3ksgdd.com
Date added:2023-08-18 20:48:07 UTC
Last online:2023-08-19 05:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: andretavare5
Abuse complaint sent (?): Yes (2023-08-18 20:49:07 UTC to abuse{at}cloudflare[dot]com)
Takedown time:3 days, 17 hours, 2 minutes Bad (down since 2023-08-22 13:51:43 UTC)
Tags:dropped-by-PrivateLoader fabookie

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-08-22n/aexe e41f5729a7ff7cc2b251abbd4de70d237239e4486c37bf47bc53ac3ed44f620dn/aFabookie
2023-08-21n/aexe d117e234ed8a65fe05b3e3adbcb47f04be934572084706b86a3ba5a42eae2629Virustotal results 22.86%Fabookie
2023-08-20n/aexe 81b5941968b524ce0c043f6a431d362ae347d9c25e7b1b1fde151241abd68056Virustotal results 15.22%Fabookie
2023-08-19n/aexe f422f73ee1f1f5d1a31181d93384c7a81527c71cb95c04a6bd8b5859f9dae942Virustotal results 19.12%Fabookie
2023-08-18n/aexe 33a6a6fd4d40d8a987cc5614b36b72bc5bd50ccce2dd0a228776793ab9b4d1c3Virustotal results 56.92%Fabookie