URLhaus Database

You are currently viewing the URLhaus database entry for http://94.26.90.80/VisualCode.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:3527463
URL: http://94.26.90.80/VisualCode.exe
URL Status:Offline
Host: 94.26.90.80
Date added:2025-04-27 07:24:07 UTC
Last online:2025-05-06 19:XX:XX UTC
Threat:Malware download Malware download
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2025-04-27 07:25:10 UTC to abuse{at}virtualine[dot]org)
Takedown time:9 days, 11 hours, 35 minutes Bad (down since 2025-05-06 19:00:12 UTC)
Tags:exe Vidar link xworm

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-05-05VisualCode.exeexe 2ab0b721edb68a11acb2301cdcdf2ce11c12cb6f7b4704ea7f432010c2d23653n/aVidar
2025-05-04VisualCode.exeexe 4e78c3de2b0347f498ed404869731f1e6f04a67713dfba349b4c7e43e8d7b937n/aVidar
2025-05-04VisualCode.exeexe 880671a7d7b53ac357683c5036019eb5909b7466d29d7e8aad555bccfc38b703n/aVidar
2025-05-03VisualCode.exeexe 52bed218acd17c9e6f631c7898db8b4e9785fa61ec7506d99ed223d4df1734dbn/a 
2025-05-02VisualCode.exeexe 23076d148144e0ca92d69bf92edd6cd8b4cc99749c3d50f3af0ab05c58a2efe7n/a
2025-04-30VisualCode.exeexe 26790a672c3c832a6b0365fd01cc81b2f91d6112891a7d30077ada26f1625173n/aXWorm
2025-04-30VisualCode.exeexe f59acbf94f25b7abbbb9986c9eb2a6d135173901ae90a56625e0822228f0d105n/a 
2025-04-30VisualCode.exeexe 33a1cd793d9966e4f9bd7e5d5a3416725ffd05849ede6e30e415f5c099f4382eVirustotal results 37.14%XWorm
2025-04-29VisualCode.exeexe 6de943d7dac05c1415b6a760d9398ae5071b63e43293a634dc6c3014e0025697n/aXWorm
2025-04-28VisualCode.exeexe dc411841c3a1714fba35a1535d8563869b6ec3fc1cb87a9f56d057657a546077Virustotal results 63.89%Vidar
2025-04-27VisualCode.exeexe 25a584d6f2b3ddc098a7573303c47ff3b884313e44c5288b621f9c151c52221dVirustotal results 58.33%