URLhaus Database

You are currently viewing the URLhaus database entry for http://79.110.48.52/ngown.vbs which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2715526
URL: http://79.110.48.52/ngown.vbs
URL Status:Offline
Host: 79.110.48.52
Date added:2023-10-01 20:26:04 UTC
Last online:2023-10-16 12:XX:XX UTC
Threat:Malware download Malware download
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2023-10-01 20:27:04 UTC to abuse{at}rocketdedi[dot]com)
Takedown time:14 days, 16 hours, 28 minutes Bad (down since 2023-10-16 12:55:04 UTC)
Tags:vbs

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-10-13n/aunknown 22734b9b24dc967fbfc8daa59e23649ddfcae534d3c26be8debbd9f3700edc7dn/a 
2023-10-11n/aunknown 3437e8d844eefb326f05b1e150df4afde2a3bf9401b0580f3ca9e023da24fca0n/a 
2023-10-10n/aunknown 81c08b626b502bd21d5d900e25eac6568a8b7728abbcbf88602f31fa0a6ec587n/a 
2023-10-09n/aunknown 779ad4729d590316c649b47d0fa8ae5a5f7dec2806587cdfcc7ae0b2d25d5f20n/a 
2023-10-02n/aunknown 0e8a5d2484b16fc4ae7ad63dc99739798dcdf82cba36f78faeafc65be766fbd3n/a 
2023-10-01n/aunknown 8dde88fa96e319ef378bf3bd65116fec46f5be9cde673361535892dd8334662dn/a