URLhaus Database

You are currently viewing the URLhaus database entry for http://198.12.110.183/vista/visa/vbc.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1400238
URL: http://198.12.110.183/vista/visa/vbc.exe
URL Status:Offline
Host: 198.12.110.183
Date added:2021-06-26 07:25:05 UTC
Last online:2021-08-06 15:XX:XX UTC
Threat:Malware download Malware download
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2021-06-26 07:26:02 UTC to abuse{at}colocrossing[dot]com)
Takedown time:1 month, 11 days, 7 hours, 42 minutes Bad (down since 2021-08-06 15:08:15 UTC)
Tags:exe ImminentRAT link LimeRAT opendir rat

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-06-29n/aexe aa7887ec53dce8c5b5b24952d301e8d9918a440df6d2362b077c8171f5376566n/a 
2021-06-27n/aexe 8067ef9073fdb633e0be1d590c03c0091b1801202ad070cf3872e8fda2a41639n/aImminentRAT
2021-06-26n/aexe 9a7301af530c1cea87de6bc6a1c788abffd2b2e5a548886052cf7004a98c2ff3n/aLimeRAT
2021-06-26n/aexe f69dca40d3749a62886676197f8bb325ff8fff7935aa9cba8834e109830e245dn/a 
2021-06-26n/aexe 4233d225c143d87e4f6b79476a69d54389e434053a787b83b41192ea110d0bbfVirustotal results 37.14%LimeRAT