URLhaus Database

You are currently viewing the URLhaus database entry for http://nbs.vizzhost.com/drop/84tor which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2113028
URL: http://nbs.vizzhost.com/drop/84tor
URL Status:Offline
Host: nbs.vizzhost.com
Date added:2022-03-23 23:51:12 UTC
Last online:2022-07-13 11:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: AndreGironda
Abuse complaint sent (?): Yes (2022-03-23 23:52:06 UTC to abuse{at}dataport[dot]com)
Takedown time:3 months, 21 days, 11 hours, 34 minutes Bad (down since 2022-07-13 11:26:17 UTC)
Tags:ps1 RedLine link RedLineStealer link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-07-11n/aexe 0a793e20d06fb350fec92ea275cdd882b75f00b34317a8cbf8e2618e52176787n/a 
2022-06-28n/aexe d7580bba8149209e8f47b77eaadc7452627ec05a2142251325f8aa45b055b5c8n/a 
2022-06-12n/aexe 705de9b881ca759bea6de4552fbd0e53e39fde49b3f344a733c52eed326ba9f4n/a 
2022-05-17n/aexe 0b7dc66757f069ae674479e41e4b2ab17d66d5ad3722003feb13ca3f2005a656n/a 
2022-04-06n/aexe 0200431b94084f2b3509336ae5f27a034c8d93b8281d3a45e010299a051f2e8fn/a RedLineStealer
2022-04-02n/aexe cb251a74f070627242e875b62f022098e19c1f9cd653d40b47bb5e5f5bdc9badn/a 
2022-03-30n/aexe 71dde2fc30c31c903066ada95dd124f8581f6b2d066ed4087bf6e936a9f867edn/aRedLineStealer
2022-03-27n/aexe 1aef580d3dc585182ed2bd1250b0a5c018d38569c8f949192bc7b36496bf76a0n/a RedLineStealer
2022-03-27n/aexe 94e6fcb9617692473e065b6302b1d7d31c54fa61bd2be5a8fb52b9c0310207d0n/aRedLineStealer
2022-03-23n/aexe 04fd37d37934ec89447d0756b611c568f5e27240bb2f1f0a952c31e0d5fed9abn/aRedLineStealer