URLhaus Database

You are currently viewing the URLhaus database entry for http://147.45.44.104/prog/66e877203afd3_vfdsofa12.exe#d12 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3177155
URL: http://147.45.44.104/prog/66e877203afd3_vfdsofa12.exe#d12
URL Status:Offline
Host: 147.45.44.104
Date added:2024-09-16 18:30:09 UTC
Last online:2024-10-14 20:XX:XX UTC
Threat:Malware download Malware download
Reporter: Bitsight
Abuse complaint sent (?): Yes (2024-09-16 18:31:11 UTC to karina-rashkovska{at}ukr[dot]net)
Takedown time:28 days, 1 hours, 56 minutes Bad (down since 2024-10-14 20:27:27 UTC)
Tags:dropped-by-PrivateLoader Vidar link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-09-28n/aexe 9249d0a5d1727b7108f14a91755043fb0452f19bbb46d01cea3b585c522f3372n/a 
2024-09-27n/aexe ca4f1459aebb1f70f5f30d1be794c69c7aeea1f6c0086e37a6b2efb36102c537n/a 
2024-09-16n/aexe e4c2d3c019cf5161619d1f6ef5a76d7fb68f0cc9d4b0d004653e38bff42edf19Virustotal results 41.67%Vidar
2024-09-16n/aexe 47d267262b6da219ba13c4e7345290cc4feb26a62f6eff09f711223dc7dd6402n/aVidar