URLhaus Database

You are currently viewing the URLhaus database entry for https://byh.ajn322bb.com/files/pe/pb1109.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2449245
URL: https://byh.ajn322bb.com/files/pe/pb1109.exe
URL Status:Offline
Host: byh.ajn322bb.com
Date added:2022-12-07 05:35:21 UTC
Last online:2022-12-08 04:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: viql
Abuse complaint sent (?): Yes (2022-12-07 05:53:07 UTC to abuse{at}cloudflare[dot]com)
Takedown time:3 months, 1 days, 9 hours, 50 minutes Bad (down since 2023-03-08 15:43:27 UTC)
Tags:dropped-by-amadey fabookie

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-02-27n/aexe f3f4a20f4471c88df72a19a76e50142a151e16dc72198bded026c3ae419ba6bfn/aFabookie
2023-02-26n/aexe c050c02a2fd775a9125ab9e0367ff5e89cbbbc40384814243aa77441cc4a718bn/a
2023-02-20n/aexe c6c5a6dd55da221e7269b2af1627026fc5256ac9091c6ccd2f4e0d4869c50dd3n/a Fabookie
2023-02-16n/aexe eb965b9e400f2b30b4099f869266b20a880e6cc8c2fe2709144f19325c7ff1bfn/aFabookie
2023-02-11n/aexe 7ddef240da75c36d17a3eacf16873d767ab23a30d8369f10f1dbbe88573b0a2bn/a
2023-02-11n/aexe 049cd9c4000ae59133dc94683891e83f48cb427d34552b4da2a4de0b0970a7f4n/a Fabookie
2023-02-05n/aexe dd4d73a7dea669a1218471a8a1f6871e3a6de5017d26606fa20100bba119e89bn/a Fabookie
2023-02-02n/aexe be9cc0a55e0f3bfb41b3dbf9fc944751606e3ce2aba29bc6f984150ee9e8d250n/a Fabookie
2023-01-30n/aexe ff7e57585d400320dbd916fa6adc150df75714bd17c5f51f8cd446f65c24dd7an/a Fabookie
2023-01-24n/aexe d2e91f316762cebcf4cf3e2fc64ce488c75d7707491f79e4ad20f3301ab07d46n/a Fabookie
2023-01-18n/aexe 55d48f81aa6e29e7ef2a380c5d1efd05fd71754a87a5af9138208f9eb96bf99cn/a Fabookie
2023-01-17n/aexe 9cfe0a73fbe0198ed123b0e909b7c8aeda2a2ce41925455ab98184e69d13aab0n/aFabookie
2023-01-16n/aexe a906a6e0334673a89ff44f6aa2b8662dd70ee3e4af943ecefb2546c17363608bn/aFabookie
2023-01-10n/aexe b2e8ebd666613954ad32def91756ca93dfd258e889fef76dc7eb7b76e5349d8en/a Fabookie
2022-12-26n/aexe 26345f5a92c20d902b02815e42ac9eda5299f4647eaeddc3eea5b68c940a9547n/a Fabookie
2022-12-20n/aexe eb620b00119bb7123b15c5d276a6534d310ff563122b963460b3ad19aa6003a2n/a 
2022-12-18n/aexe aa552c88f04e9dae3adb94bce48cf51c05d962bcbfa45eefc85fa05ca261fe0cn/a 
2022-12-12n/aexe 34bef535c27f1f019e0043b2a5613ef7698b0639b3eaa8240155c0d439b759d2n/aFabookie
2022-12-07n/aexe cc65124164f81d4c678d7b4d4bb7a1f9fb09bfbd5da3ff6e481f07fa9bcac023Virustotal results 32.39%Fabookie
2022-12-07n/aexe ed9ef547b26d9501c67479d225d44a8fe29ab122c22426b3d9620b6eef8b6dbdn/aFabookie