URLhaus Database

You are currently viewing the URLhaus database entry for http://alhjchfstdyonlinedst.dns.navy/ahjdoc/vbc.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:969697
URL: http://alhjchfstdyonlinedst.dns.navy/ahjdoc/vbc.exe
URL Status:Offline
Host: alhjchfstdyonlinedst.dns.navy
Date added:2021-01-18 07:32:06 UTC
Last online:2021-01-20 13:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2021-01-18 07:34:03 UTC to abuse{at}vnn[dot]vn,abuse{at}vdc[dot]com[dot]vn)
Takedown time:2 days, 6 hours, 20 minutes Poor (down since 2021-01-20 13:54:20 UTC)
Tags:exe Loki link opendir

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-01-20n/aexe 9ce52a3a4f3ed1d30f11aa216b5f8a22a318df2bcc17654c7c735d140690882dn/aLoki
2021-01-19n/aexe b8a2d4913e6415895cc93065001f694f0e6e46dfe42bf6ee885c6da54a4c6f9an/aLoki
2021-01-19n/aexe 7c3de3a3f171afad1d2e31f88fcec1138aa19808b06b4b75b4a85e84d14dfbf8n/aLoki
2021-01-19n/aexe 5300dbd276102e75b19e72d15e5bc074836699355253dddebe335278f1718701n/aLoki
2021-01-18n/aexe 75d7024543612e06a86e65db83ebc4d66cabfd675c38d7b990f9926578340994n/aLoki
2021-01-18n/aexe 1c92e75853c17bb45af6a066b89e395f3e0d1cb07f2f0b1bc61d2e069bba29aeVirustotal results 14.81%Loki