URLhaus Database

You are currently viewing the URLhaus database entry for http://185.215.150.204/file/dog.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:990233
URL: http://185.215.150.204/file/dog.exe
URL Status:Offline
Host: 185.215.150.204
Date added:2021-02-04 11:33:06 UTC
Last online:2021-02-16 13:XX:XX UTC
Threat:Malware download Malware download
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2021-02-04 11:34:02 UTC to contact{at}heymman[dot]com)
Takedown time:12 days, 2 hours, 22 minutes Bad (down since 2021-02-16 13:56:54 UTC)
Tags:AgentTesla link exe opendir

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-02-15n/aexe 1268e6e0265bdaf979d45098051a38eaf3915765e6b5ffe928101c68e0065012n/aAgentTesla
2021-02-14n/aexe 7c67f745b24145c055e9423ec63cd3a488eb99d960cf49b85b57d08d71b5ed0bn/aAgentTesla
2021-02-09n/aexe db33d1e7f7eefff11196927bca2e400e4950e3d78316cd17d220b85ce00dd465n/aAgentTesla
2021-02-08n/aexe bd4f9c3b773d0d0b385d03313943d7dadf1475cbacecfdcc91bb65e993cfdf1en/aAgentTesla
2021-02-07n/aexe 15732badaac520545535ae6bf64ed43f06e06a13e9e827f1fb7d5f47d250f4afn/aAgentTesla
2021-02-07n/aexe 240998f4dac039389827c0310bee7242077196a88d4113977769e03f4a8a0fdfn/aAgentTesla
2021-02-05n/aexe a3fa345d4d272ddb13e0e3141bf18eac8521acaf8eb2eff8d3395f056740c2bdn/aAgentTesla
2021-02-04n/aexe 5ac5eee21d5a32eb57d80ff83da21265c7d11c525f6b57ed124a266ce04fee54Virustotal results 25.71% AgentTesla