URLhaus Database

You are currently viewing the URLhaus database entry for https://91.92.42.46/proceso.vbs which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3854212
URL: https://91.92.42.46/proceso.vbs
URL Status:Offline
Host: 91.92.42.46
Date added:2026-05-27 20:25:07 UTC
Last online:2026-06-04 20:XX:XX UTC
Threat:Malware download Malware download
Reporter: DaveLikesMalwre
Abuse complaint sent (?): Yes (2026-05-27 20:26:11 UTC to ripe{at}evro[dot]net)
Takedown time:8 days, 0 hours, 7 minutes Bad (down since 2026-06-04 20:34:05 UTC)
Tags:base64 Encoded opendir rat vbs

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2026-06-04proceso.vbsunknown d816827cc6ddf1850ccbb25aaf3c774c9a175b6dc4c3cc3b3f87828e43c3c975n/a 
2026-06-03proceso.vbsunknown a9eaa6e29c7e255c1f99751e641760967bf6a73cb144ae9f2aee3f6098bfa1fan/a 
2026-05-29proceso.vbsunknown 9abce7f60bca6a836f866651ce01c9842e2b30a423a6a42708f7369fa25419b1n/a 
2026-05-28proceso.vbsunknown d3a8ca5f782261ce47a843c35fb1f614300fb418b041c2f8a76e20288310cbdan/a 
2026-05-27proceso.vbsunknown fc9d1c156432e1468870691b1eacbfbec2147e986ed2f9dc0fb716fcd8aa2ab0n/a