URLhaus Database

You are currently viewing the URLhaus database entry for http://103.147.185.100/0365/winlogo.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2142630
URL: http://103.147.185.100/0365/winlogo.exe
URL Status:Offline
Host: 103.147.185.100
Date added:2022-04-12 12:03:12 UTC
Last online:2022-04-29 02:XX:XX UTC
Threat:Malware download Malware download
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2022-04-12 12:04:13 UTC to abuse{at}vnn[dot]vn,abuse{at}vdc[dot]com[dot]vn)
Takedown time:16 days, 14 hours, 22 minutes Bad (down since 2022-04-29 02:27:07 UTC)
Tags:AgentTesla link DBatLoader link exe Formbook link ModiLoader link NetWire link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-04-28n/aexe f77fecc8b9559f6280014094e4173081d223404a449a3663491d27ec240e3d69Virustotal results 20.29%AgentTesla
2022-04-28n/aexe 9658e75c5de5da2ecc81f1e621f47a5582f0a32ef5a0b7bab05878521c52cf86n/a AgentTesla
2022-04-26n/aexe eac6427faa4ba824dda50c1c814dd4eb5cd6970aba9ddbefdf59d19625568934n/aNetWire
2022-04-25n/aexe 3a07d1cbc8052ba733faaacff6b69858057ad8efc52583a78fcd98f6e96be88fn/aNetWire
2022-04-22n/aexe bc43be5068b67c7cc3c27c943ae7cf4b912112d57358b699584b5053a4684eben/aAgentTesla
2022-04-22n/aexe e442a4dc2f37134a0ab4b7827df67b69785cfe3d467c6866241c4e27c702b1e7n/a DBatLoader
2022-04-21n/aexe 02a4cf01a65e70746623eeef46cd1c31646c23f667a90dd7ad3823772364500dVirustotal results 35.29%DBatLoader
2022-04-14n/aexe 26b24f28b0173c020071085d65b260207d5856a8a93c1c1acce7d5cca5e8835fn/aFormbook
2022-04-13n/aexe 6b4ef82671bf1f16a6ff5b200050c92fcd0ac7a203dace1219375a72d6fd49f1n/aModiLoader
2022-04-12n/aexe 75b7d30e6f26fbb3fbac284ed75356cc874e73365764130209d4937d80a6c80dn/aFormbook