URLhaus Database

You are currently viewing the URLhaus database entry for http://79.110.48.52/afk.vbs which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2711978
URL: http://79.110.48.52/afk.vbs
URL Status:Offline
Host: 79.110.48.52
Date added:2023-09-16 07:08:05 UTC
Last online:2023-10-16 12:XX:XX UTC
Threat:Malware download Malware download
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2023-09-16 07:09:04 UTC to abuse{at}rocketdedi[dot]com)
Takedown time:1 month, 0 days, 5 hours, 48 minutes Bad (down since 2023-10-16 12:57:16 UTC)
Tags:AgentTesla link vbs

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-10-11n/aunknown da853bbdf33704a10e92e99dbca2cf09592d231a919ee4a9a17fb2ad69a6e269n/a 
2023-10-09n/aunknown 5762f262cb729a4f3716184e948e8906943a32ffc80d3d2b5119c4f6c24fc360n/a 
2023-09-28n/aunknown d7eab76c8b3377c6be37eb7bc8736c5f83ce93a5e4ec01f5888a792ccd60a9b8n/a 
2023-09-26n/aunknown 031a342c97435b8048d17d3c82d7ad4d888bf1e9808673fb688e75ff7dc90d21n/a 
2023-09-18n/aunknown 399fe596e39633b32426c09d8b3bb72cdd5f9e87f16663376409842a2f08954cn/a 
2023-09-16n/aunknown 725f6eed21e9f667bb17ad39ec6db6dbeae479e33027eaacb19d431b84a334f1n/a