URLhaus Database

You are currently viewing the URLhaus database entry for http://198.12.110.183/www/vbc.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1346800
URL: http://198.12.110.183/www/vbc.exe
URL Status:Offline
Host: 198.12.110.183
Date added:2021-06-09 16:52:04 UTC
Last online:2021-06-16 21:XX:XX UTC
Threat:Malware download Malware download
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2021-06-09 16:53:02 UTC to abuse{at}colocrossing[dot]com)
Takedown time:7 days, 4 hours, 45 minutes Bad (down since 2021-06-16 21:38:17 UTC)
Tags:exe ImminentRAT link njRAT link opendir rat

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-06-16n/aexe a1007c26d93accc03216acbd119e10061e0e34e584aed88e2e6bc3330567a80fn/a 
2021-06-15n/aexe d60e5c1906d5a872d5342c64ab76b0417420c6324c495629be60fee5fcce1f2bn/anjrat
2021-06-13n/aexe d06bf46134637fe7693805e68ae257316cdac00c612828b7183b4164633674f2n/a 
2021-06-13n/aexe 0bf2aa0539156c46c1ea0ddd318405a5cc2ef1810b5d9ca624ba37c6aa78f8a7n/anjrat
2021-06-11n/aexe 76c683c5ba49a8b33bf040fd6c337959b960915354a89aac81ebfa394a1c89c0n/a njrat
2021-06-11n/aexe d3f57f5027e10407c2f35edf1c9619bf6556113d13cdf12b33764a29b3561dccn/a 
2021-06-10n/aexe 70604fdb475300c8b3c695402b2721ec3d355962e2e0d2d164a1e4ab6911b449n/a njrat
2021-06-09n/aexe 9f505b6b238543bdf2f4dedea6e0d2d2b72f285ebcea82b76311878975857b62Virustotal results 17.39%ImminentRAT