URLhaus Database

You are currently viewing the URLhaus database entry for http://147.45.44.104/lopsa/66af4e35e761b_doz.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3101399
URL: http://147.45.44.104/lopsa/66af4e35e761b_doz.exe
URL Status:Offline
Host: 147.45.44.104
Date added:2024-08-11 09:49:56 UTC
Last online:2024-10-22 17:XX:XX UTC
Threat:Malware download Malware download
Reporter: abus3reports
Abuse complaint sent (?): Yes (2024-08-11 09:50:10 UTC to karina-rashkovska{at}ukr[dot]net)
Takedown time:2 months, 12 days, 7 hours, 27 minutes Bad (down since 2024-10-22 17:17:25 UTC)
Tags:exe Vidar link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-10-12n/aexe e282a390de4192790f67a2e3fe59504f733ad154df3e0d506e40770c5a22f14an/a 
2024-09-28n/aexe 06c48498ef52bc23b467cba65b505f1f38772a9c4f105e8d72e68a386bc3017en/a 
2024-09-06n/aexe 37da411c5db685aa77ce833ba781f956b1b3c3994a22b842c619642201fffa62n/a 
2024-08-11n/aexe 0843b763880a4e1b559d29140afff5cd867bcada20eda6db2524d4e5045af114Virustotal results 80.00%Vidar