URLhaus Database

You are currently viewing the URLhaus database entry for http://uzoclouds.eu/bbb/bbb.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:323456
URL: http://uzoclouds.eu/bbb/bbb.exe
URL Status:Offline
Host: uzoclouds.eu
Date added:2020-03-10 14:33:05 UTC
Last online:2020-03-23 12:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Blocked
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: HeavyMetalAdmin
Abuse complaint sent (?): Yes (2020-03-10 14:34:02 UTC to noc{at}dedfiber[dot]com)
Takedown time:12 days, 22 hours, 15 minutes Bad (down since 2020-03-23 12:49:03 UTC)
Tags:Loki link lokibot link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-03-19n/aexe 43dcdf7524532ab5955dd2f737ae74d93c031de9a3e5f039a7c980511d8551b1n/a Loki
2020-03-18n/aexe 8787d71a3a429d5d3050e351e241721f56576470457a31da410785bc696236b8n/aLoki
2020-03-17n/aexe c9f2ba8d2fcdf0b87e01eae922de1c147dcb52337b437cc2476cdc51a27a3a2aVirustotal results 28.77% Loki
2020-03-10n/aexe 57b8f7f9eceb5c0311c1ff7a0e13535a26d098a0fef8f9f754f8e5cbacf22953Virustotal results 35.62% Loki