URLhaus Database

You are currently viewing the URLhaus database entry for http://54.169.166.69/debit/debit.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1630843
URL: http://54.169.166.69/debit/debit.exe
URL Status:Offline
Host: 54.169.166.69
Date added:2021-09-18 16:51:05 UTC
Last online:2021-09-22 16:XX:XX UTC
Threat:Malware download Malware download
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2021-09-18 16:52:03 UTC to abuse{at}amazonaws[dot]com)
Takedown time:3 days, 23 hours, 48 minutes Bad (down since 2021-09-22 16:40:34 UTC)
Tags:exe Formbook link opendir

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-09-22n/aexe b438197380888791997705ce5dfb8eadc354f559f9ec8f00629c9ef56b7589d1n/aFormbook
2021-09-21n/aexe e911d332af82b2e6fe66b7d2df23b5a9ba0443ea8f83500ae17c6af1f65d401bVirustotal results 20.90%Formbook
2021-09-20n/aexe 6a031ff99c704ce956ff83791f0face2196fef52ee2672d860dce78e917b8f77n/aFormbook
2021-09-20n/aexe 7ed2e1a088d8af23bee0d7b23fe435a181f597991cebfffbcc1ed43f31198f87Virustotal results 8.47%Formbook
2021-09-19n/aexe e94b8626361ef2ef783dbb4c5662c62a2f27f79e7453b0831805a04541e0ac12n/aFormbook
2021-09-19n/aexe bb913402040958a639d6c22b1df958de0aa304d51c00eb5aaa106077edb85310Virustotal results 20.59%Formbook
2021-09-18n/aexe 3884e83634368ece061a97583d17bfdfe4247af9f8d507f4b594eaabf499e1c9n/aFormbook