URLhaus Database

You are currently viewing the URLhaus database entry for http://rem0925.duckdns.org/31agosto.vbs which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3619990
URL: http://rem0925.duckdns.org/31agosto.vbs
URL Status:Offline
Host: rem0925.duckdns.org
Date added:2025-09-08 14:53:18 UTC
Last online:2025-11-23 22:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Abused domain (malware)
SURBL :Blocked
Quad9 :Blocked
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: BlinkzSec
Abuse complaint sent (?): Yes (2025-11-23 19:53:14 UTC to admin[dot]internet{at}telecom[dot]com[dot]co)
Takedown time:2 months, 11 days, 23 hours, 43 minutes Bad (down since 2025-11-25 03:48:00 UTC)
Tags:RemcosRAT link ua-wget

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-11-2331agosto.vbstxt 37fa5a4fd4cc772735a96fef23037e24c503ff7857858c80e68ff28d5c77ad79Virustotal results 23.33% RemcosRAT
2025-11-1931agosto.vbstxt 073e4daf286173372555f2c0525977bb8164febab473bdb3b29add90c2667acbVirustotal results 20.97%RemcosRAT
2025-11-1131agosto.vbstxt cb0ec11df5fb97d727bea30c9d207c70cb6508e3159b2a9d9dad062d39d78750Virustotal results 20.97% 
2025-11-0631agosto.vbstxt e2ae3121af3fd9874ba17612b0c012ca1962dfd918cc1d479384dad7bf469c64Virustotal results 20.97% RemcosRAT
2025-11-0531agosto.vbstxt cdf18dce59da13a347c6d2d60a0bf6190228b46e595863308769a1cb34ca5fd0Virustotal results 22.58% RemcosRAT
2025-11-0131agosto.vbstxt 71fc5b649c4ca8ada3d1b6cfdcc52337504238fcc4a705d967f6a4e54b49d4d5Virustotal results 20.97% 
2025-10-2931agosto.vbstxt 09106cfe70aef62ac9c44088a6f3522fb9fa3868e5a2bdc331c4fb0b5bf84e4eVirustotal results 17.86% 
2025-10-2731agosto.vbstxt 859de7f0b61c2ce5e61b9737583fb72a80b0219c13c200a2d0de3e0da7f38307Virustotal results 27.42%RemcosRAT
2025-10-2731agosto.vbstxt 2612e4114bd164430b644d83bfc3f3ad50b160a245af5c9e30d5f96de84c8ff2Virustotal results 17.74% RemcosRAT
2025-10-2431agosto.vbstxt 29258ce3918dd64f9c36bcec4d356f3b3c7b58b90141d8b14d35d94c42d79be4Virustotal results 16.39% RemcosRAT
2025-10-2431agosto.vbstxt 79cb8e37238bd08ef54dd85c868a7b7b5062d3275820a9b541ac5219e2f78ccbVirustotal results 17.74% RemcosRAT
2025-10-1831agosto.vbstxt b835e4e06da50e5f51090c7a7e942d77c0b0f72a2e4ec73adb1c4f92e0de9955Virustotal results 20.97% RemcosRAT
2025-10-0831agosto.vbstxt 540ec378cbd516ca43ee050f1cde867abee50480e3b33bb216af9dd4b98cf1f4Virustotal results 24.19% RemcosRAT
2025-09-2331agosto.vbstxt 029a67953833635a2dd1ce8b836d312737ad032b4068e5c7417192544f336c60Virustotal results 25.00%RemcosRAT
2025-09-1931agosto.vbstxt 8a16ca84f43f9b9830f8fbd05b931d0c858e1158a5a1b8511d3b9a4c982217c1Virustotal results 8.06% 
2025-09-1931agosto.vbstxt fc16aa2bb6ca67bff10d49a775a41a2e7aaa85d35581fd664042216acf722ab6Virustotal results 8.20% 
2025-09-1431agosto.vbstxt c62e04f87c433c259d9dbcafecbc70a782ff4fbefd62d270239d7998363262fcVirustotal results 20.97%RemcosRAT