URLhaus Database

You are currently viewing the URLhaus database entry for http://bank0106.duckdns.org/31agosto.vbs which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3724301
URL: http://bank0106.duckdns.org/31agosto.vbs
URL Status:Offline
Host: bank0106.duckdns.org
Date added:2025-12-03 16:57:12 UTC
Last online:2026-03-05 20:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Abused domain (malware)
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Not blocked
OpenBLD :Blocked
DNS4EU :Not blocked
Reporter: Riordz
Abuse complaint sent (?): Yes (2026-03-05 15:23:12 UTC to admin[dot]internet{at}telecom[dot]com[dot]co)
Takedown time:3 months, 2 days, 4 hours, 1 minutes Bad (down since 2026-03-05 20:59:31 UTC)
Tags:huntio RemcosRAT link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2026-03-0531agosto.vbstxt beb6979d6de1fca232dff618fa0bf08b636886cc035af89dc8729176843907c1n/a
2026-03-0431agosto.vbstxt f27704629a4b9f59c0c17c892c783b874e750c3de4fbfb306e1712bceafcce7fn/a
2026-03-0331agosto.vbstxt 5583e2a4d20099931da85dee9e423858d0f8beb0453b1cbcb4b3d206f7a07591n/a 
2026-02-1731agosto.vbstxt 7e194ba0193ee43bc6e1c0c56ab9a6517226460eaa5e80cd72e35065ec4da73bn/a
2026-02-1331agosto.vbstxt 2e3f965c20292e150eed42ad4b390712e966b815f200f928e2cbba62e9c43031n/a 
2025-12-0531agosto.vbstxt 77c1d0751cebaa15074b84ae860ac17111b966e50b647a6d2677fa9a6b341040n/aRemcosRAT
2025-12-0331agosto.vbstxt 8126e512019b0200882c2584f42511bc07ab7e0d88d711623f67b1635ea6e835Virustotal results 24.19%