URLhaus Database

You are currently viewing the URLhaus database entry for http://46.29.235.52/vjgg.exe#space which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3158708
URL: http://46.29.235.52/vjgg.exe#space
URL Status:Offline
Host: 46.29.235.52
Date added:2024-09-05 22:42:05 UTC
Last online:2024-09-17 07:XX:XX UTC
Threat:Malware download Malware download
Reporter: Bitsight
Abuse complaint sent (?): Yes (2024-09-05 22:43:07 UTC to abuse{at}gir[dot]network,abuse{at}globconnex[dot]com)
Takedown time:11 days, 9 hours, 4 minutes Bad (down since 2024-09-17 07:47:39 UTC)
Tags:dropped-by-PrivateLoader exe Vidar link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-09-06n/aexe 97eb9202d98aa1d2ff12cbc779f715c8262b1c2281128b7ba26df7d1ed4930cbVirustotal results 33.78%Vidar
2024-09-05n/aexe 656c58153302a82bdc4994a170163628f1aedd101b0efe6471b5af0d4173c1f5Virustotal results 37.84%Vidar
2024-09-05n/aexe cb9ca223f5e98809598485f85c430f7fea0cdb6b2d767da0611ee0380036a024Virustotal results 38.67%Vidar