URLhaus Database

You are currently viewing the URLhaus database entry for http://185.156.72.8/zx.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3544057
URL: http://185.156.72.8/zx.exe
URL Status:Offline
Host: 185.156.72.8
Date added:2025-05-15 14:00:11 UTC
Last online:2025-07-02 17:XX:XX UTC
Threat:Malware download Malware download
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2025-05-15 14:01:10 UTC to erishennya[dot]res{at}gmail[dot]com)
Takedown time:1 month, 18 days, 3 hours, 11 minutes Bad (down since 2025-07-02 17:12:16 UTC)
Tags:exe

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-06-13zx.exeexe f88c1e227e3a959aa8609eae1a6ec68ba088ad9b261b99f6b91fa6deb796dd15Virustotal results 47.17% 
2025-05-26zx.exeexe d11dbedd31e4160759479636d6f0ed10bd9be3f76cf3c004b34151fea1fda9a6n/a 
2025-05-16zx.exeexe 0171a1264d70ae0a7aff31bc92682837ad9789359f5c868467e1c2190d8c05e3n/a 
2025-05-15zx.exeexe ded9ff2c8ba0bf3a8fb85f871dc00623868f3333305a32b29a3052821234485bVirustotal results 38.89%