URLhaus Database

You are currently viewing the URLhaus database entry for http://ffvgdsv.ug/ac.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:371186
URL: http://ffvgdsv.ug/ac.exe
URL Status:Offline
Host: ffvgdsv.ug
Date added:2020-05-28 14:02:18 UTC
Last online:2020-06-07 12:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Status unknown
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2020-05-28 14:04:02 UTC to abuse{at}grandcosmetic2[dot]ru)
Takedown time:9 days, 22 hours, 47 minutes Bad (down since 2020-06-07 12:51:55 UTC)
Tags:AsyncRAT link exe

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-06-01n/aexe fa667b8bf441a650c170af2b2241e1fa08b7d16af2347bbef0a1d59e847a333dn/a AsyncRAT
2020-05-31n/aexe 05404bf1466a99647a2f82fa5323d023a5c5e4c9081d34578306299e65d25402n/a AsyncRAT
2020-05-30n/aexe b5a30ad37aed3f9118c8b35c746e64b13bc4d82e03a9a93dc5db166c022df463n/aAsyncRAT
2020-05-29n/aexe dd830efe44125a68c07907034f09ff8a40d4d29c54b4ebd89320425af9c5c90cn/a AsyncRAT
2020-05-28n/aexe 853bedab93069db2c2a507a8c0166bfd8af03223d8d710b7421a17724c603467Virustotal results 11.43%AsyncRAT
2020-05-28n/aexe 63795107b610200af5c2e29112e6e945ee4dfa962116baf6ed9955a4ed82717bVirustotal results 32.88%AsyncRAT