URLhaus Database

You are currently viewing the URLhaus database entry for http://84.54.50.3:36118/vtshfowlzpky.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2640557
URL: http://84.54.50.3:36118/vtshfowlzpky.exe
URL Status:Offline
Host: 84.54.50.3
Date added:2023-05-25 05:53:09 UTC
Last online:2023-06-03 23:XX:XX UTC
Threat:Malware download Malware download
Reporter: andretavare5
Abuse complaint sent (?): Yes (2023-05-25 05:54:05 UTC to abuse{at}delis[dot]one,abuse{at}des[dot]capital)
Takedown time:9 days, 17 hours, 8 minutes Bad (down since 2023-06-03 23:02:11 UTC)
Tags:dropped-by-PrivateLoader

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-06-02n/aexe 922b061a9d5008e6ad595c3593147d4e145f8c3c240fd3ce47e1c7347ec17e76n/a 
2023-06-02n/aexe a33535f73c158a7c30371705b0216dc9dd37821aaa2d9f2d42f430feacf414a6n/a 
2023-05-29n/aexe e45a6861b5c947be70e47e1616b2b2c5b914098cb2e8b38373656d827a1e5140n/a
2023-05-28n/aexe 87c2e26165a8e2f24b03a5dda8ffbd969a53b5070f1e03303b5eb0d598b9a47bn/a 
2023-05-25n/aexe 68ec885eabd2ac076ea588d4cf827eaa83e518d5a4c0578ee73bf0daa4ef9b67Virustotal results 26.47%