URLhaus Database

You are currently viewing the URLhaus database entry for http://192.3.141.146/https/vbc.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1384457
URL: http://192.3.141.146/https/vbc.exe
URL Status:Offline
Host: 192.3.141.146
Date added:2021-06-21 07:12:04 UTC
Last online:2021-06-23 06:XX:XX UTC
Threat:Malware download Malware download
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2021-06-21 07:13:02 UTC to abuse{at}colocrossing[dot]com)
Takedown time:1 day, 23 hours, 15 minutes Poor (down since 2021-06-23 06:28:51 UTC)
Tags:AgentTesla link exe opendur

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-06-22n/aexe 9a3a9756be606378ddc0e6abd21550aa28fbdd58cc78ac3658cf35027ff87627n/aAgentTesla
2021-06-21n/aexe 37534d1bed90b4a2b138f6734968b2acd4a2629c117edd680e3fb52c4afa739fn/aAgentTesla
2021-06-21n/aexe 5ec8862ce178a2021c0e1a77a38d6265bbaf3afe4800e7dfe4b45554f114d752n/aAgentTesla
2021-06-21n/aexe 17143eb0ac72237157015c82aea83c0d16f94df25478110f25651089185ba9bfVirustotal results 34.78%AgentTesla