URLhaus Database

You are currently viewing the URLhaus database entry for http://198.12.107.117/av/vbc.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1628584
URL: http://198.12.107.117/av/vbc.exe
URL Status:Offline
Host: 198.12.107.117
Date added:2021-09-17 20:57:04 UTC
Last online:2021-12-04 14:XX:XX UTC
Threat:Malware download Malware download
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2021-09-17 20:58:01 UTC to abuse{at}colocrossing[dot]com)
Takedown time:2 months, 17 days, 17 hours, 34 minutes Bad (down since 2021-12-04 14:32:12 UTC)
Tags:32 exe Formbook link Neshta

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-09-26n/aexe a0a1e9b62191e07ea98956e62287d3a9fadc0b6dbd7d6e60a755d2396b35fad6n/aNeshta
2021-09-17n/aexe a41ba93183d03c4cf6b138170fab1d15c306918bb4acd1c2cbc3ee53765e5564Virustotal results 62.32%Formbook