URLhaus Database

You are currently viewing the URLhaus database entry for http://80.76.51.248/ndert.vbs which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2702780
URL: http://80.76.51.248/ndert.vbs
URL Status:Offline
Host: 80.76.51.248
Date added:2023-08-08 13:42:06 UTC
Last online:2023-10-13 23:XX:XX UTC
Threat:Malware download Malware download
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2023-08-08 13:43:07 UTC to abuse{at}des[dot]capital,abuse{at}serverion[dot]com)
Takedown time:2 months, 6 days, 9 hours, 24 minutes Bad (down since 2023-10-13 23:07:17 UTC)
Tags:AgentTesla link ascii vbs

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-09-12n/aunknown 67b46e8b6396e16c79a74c084b0d574437833191297b288bbe76c1c40c61e7e9n/a 
2023-09-07n/aunknown ca08741af2baef842b0dba26699e6fa67b807d9b19c17893b7651b77bd6f5f03n/a 
2023-09-04n/aunknown 061c500b833a76cab9092de14731aab7e47112ed471ba9dcb68ea0884c90395an/a 
2023-08-29n/aunknown 3348d905f2a387fdd3aed70781eb48616399a78d9c50bdff695720d1facd95a5n/a 
2023-08-28n/aunknown 2677ac52033a1a7a7e5ee73009fd8f35bbf6c980768115e28d1af94217497d65n/a 
2023-08-24n/aunknown 5d0226e7aee258274d9ea003193a8695ba9219fa0b3d974a4cf4e75fe896d169n/a 
2023-08-22n/aunknown 1da996fb888b13eb6f4ba2d1536f3530e77175503689e3969cda92b2f6d41479n/a 
2023-08-21n/aunknown 12a92b166160042683b12591071b5b81302ea8b7d8a3a5bd9768420ba230dca6n/a 
2023-08-15n/aunknown a239bd4deaaf044025dc8fbc05b3f0907dcde7d68e3f42cb3a86027bb490fbe9n/a 
2023-08-14n/aunknown baf99b66700cb93ece3c7b0b137027191b133f2a9aa5bf0e7e1f8703abbf2b88n/a 
2023-08-09n/aunknown cc7d199eef90bea02fb21ecea5b93d3886d95a1341fbc78cf90126662b35aad9n/a 
2023-08-08n/aunknown 041ece5cb885377a936ec4e9d10374ebaaa615dc47a56e775a474adec788c49cVirustotal results 25.42%