URLhaus Database

You are currently viewing the URLhaus database entry for http://222.186.172.42:1000/SJZ.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3303912
URL: http://222.186.172.42:1000/SJZ.exe
URL Status:Offline
Host: 222.186.172.42
Date added:2024-11-25 07:19:12 UTC
Last online:2024-12-30 15:XX:XX UTC
Threat:Malware download Malware download
Reporter: Joker
Abuse complaint sent (?): Yes (2024-11-25 07:20:17 UTC to anti-spam{at}chinatelecom[dot]cn)
Takedown time:1 month, 5 days, 7 hours, 57 minutes Bad (down since 2024-12-30 15:17:38 UTC)
Tags:BlackMoon malware opendir

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-12-29SJZ.exeexe 88544c1dbd1112933110c44bfb4a5a26c8e0d4c3663a79ea69eb5ca5f52ef18dn/a Worm.Ramnit
2024-12-27SJZ.exeexe c6144d4dbe1652ed11890d201dddce2a43a0b3787a1e794eec13a7fe8dfcf537n/a Blackmoon
2024-12-26SJZ.exeexe 86524fc456c0a5f64e7ae05e55abde5a199a2bcb9467582324a82162d3908962n/a Blackmoon
2024-12-25SJZ.exeexe af177c4d2e22dcba3e5baf073141aa94867ef65a1965b80166454a9c82719f28n/a Blackmoon
2024-12-24SJZ.exeexe 1b3d98bb2e5f43d064b31d8963b0177c5cdc51da23b3479b3f701f39bf8b408en/a Blackmoon
2024-12-21SJZ.exeexe 601e041beac39bde9b005c62c793d41c4a2925b951f340fafbbf7fa4012b4888n/a Blackmoon
2024-12-20SJZ.exeexe dafe8095ffe50d13c3061c886aae97041ed604c262017532e1c315b9e586f362n/a Blackmoon
2024-12-19SJZ.exeexe 80d4a6c897700b162fe4cc7176a17a81b62cd740b45a0ac4cd9bddd89a55be69n/a Blackmoon
2024-12-16SJZ.exeexe c6022a79cc2b3ca8d78028411d2a57e2e8f6a99f4193a0c7a54603693cf5f6fcn/a Blackmoon
2024-12-15SJZ.exeexe 5d1c8fdd1f57578ef6e28c6ce10a929b29a778f6c00b6732b87a61c679b046bcn/a Blackmoon
2024-12-14SJZ.exeexe 261f5bba43c7f4982d969c1ee7c1bec97c11ea2d88a35798d8a1b6adfb4122efn/a Blackmoon
2024-12-13SJZ.exeexe 4f8cae65e231bac1593fe4770f5290e25ba2d36ae36807609662468911adfff1n/a Blackmoon
2024-12-12SJZ.exeexe 41029a62029a03a24bfa17ae3e34878e5d05f29b46e60493fd24703e9a0e03a6n/a Blackmoon
2024-12-11SJZ.exeexe e38e84844f02319b5e213396e3e35ef4afd6f6d7857f741a6671f89ee45fdff4n/a Blackmoon
2024-12-10SJZ.exeexe bfcbf277cfeae60c080ed422c7cfbc7d701c575f558745c05c92cc020914a91fn/a Blackmoon
2024-12-09SJZ.exeexe 4784c04a1980da154c80073dfceb643b2647b1a8cd66db2136e131d4cb93dbc1n/a Blackmoon
2024-12-08SJZ.exeexe 2cf551a10591c93ee0a9a18947c614f2b4fdf6ffdeedce3119fd67a8d0aa7321n/a Blackmoon
2024-12-07SJZ.exeexe e3753f0269c5aa4ca28c2762bb65705b9a39e731a510725ce0490bbd10b71273n/a Blackmoon
2024-12-06SJZ.exeexe 796ecb4f6b0f49e1758c0a6acc40dd970e1758c9ecf1b86fd4d6b58047842944n/a Blackmoon
2024-12-05SJZ.exeexe aad4324afea299831739e9453a09df0ee91d0f1dc93303f6252abaf201b42a3dn/a Blackmoon
2024-12-04SJZ.exeexe 51c23b60eb1b2a96574476084ef297d7741bf01f702dc1c094a79e51838f9583n/a Blackmoon
2024-12-03SJZ.exeexe 5944ff1e7bee8656783dd0e2ff03486868a3ab0897a4b8428c7b8cf2ed283d6en/a Blackmoon
2024-12-02SJZ.exeexe 6bd4883fb1815bb6598655b03cbe93ea20d496ae2956386d39bb0ef9abad528bn/a Blackmoon
2024-12-01SJZ.exeexe fd4a0d4ea948961decf0e05242b883a77fe200c8ace5a3dc69225783930e0986n/a Blackmoon
2024-11-30SJZ.exeexe 537f919b410193fdb95e5a8161940b0e78f3f3253c9b011ec9f89818a58b1a27n/a Blackmoon
2024-11-28SJZ.exeexe bb3ae501fa67b576d480bfb488165a6afa0b4219b0ca5bd77ccb8fe4565d4098n/a Blackmoon
2024-11-28SJZ.exeexe e38f97c9081fa6f4a19c61bd0be8e87ae29a28af2ab6ed2ee598010e0424f9ebn/a Blackmoon
2024-11-27SJZ.exeexe 1cb32cdb6123e919b24ba7c8f0f8c8861e99cdc1294111121d50bb52c06720e1n/a Blackmoon
2024-11-26SJZ.exeexe 62d193b3ac7f4d08ef7b8ff03a253d95e7bb90f60d60e8ec5f430a6f5361669bn/a Blackmoon
2024-11-26SJZ.exeexe d7fcd4795f878917f54fbe58077a402c58d88bece8de655ef0dbfeb1b837230bn/a Blackmoon
2024-11-25SJZ.exeexe 17d2cc3c376542385fe208dae85a0beaa1a0e95b7e1c56b5f13d3306abef40abVirustotal results 54.17%Blackmoon