URLhaus Database

You are currently viewing the URLhaus database entry for http://192.210.215.11/zoom/wordart.js which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2907626
URL: http://192.210.215.11/zoom/wordart.js
URL Status:Offline
Host: 192.210.215.11
Date added:2024-06-26 09:14:06 UTC
Last online:2024-07-13 01:XX:XX UTC
Threat:Malware download Malware download
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2024-06-26 09:15:15 UTC to abuse{at}colocrossing[dot]com,net-abuse-global{at}hostpapa[dot]com)
Takedown time:16 days, 15 hours, 54 minutes Bad (down since 2024-07-13 01:09:41 UTC)
Tags:AgentTesla link js opendir

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-07-09n/ajs 2eeec947de3dee177c0a5ff2727e98953d0285f174b43074fee0a6e909c1593an/aAgentTesla
2024-07-04n/ajs 106e5d2356c57555ce0aa1c55daae0df8615344336b11e4848663581fd55d73dn/aAgentTesla
2024-06-26n/ajs bda41855e4097f9c42ee5b4f4883f421822f27b5d705ef84f58ceac2215845bfn/a