URLhaus Database

You are currently viewing the URLhaus database entry for http://198.46.199.226/007/vbc.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1707177
URL: http://198.46.199.226/007/vbc.exe
URL Status:Offline
Host: 198.46.199.226
Date added:2021-10-22 07:40:05 UTC
Last online:2021-11-05 04:XX:XX UTC
Threat:Malware download Malware download
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2021-10-22 11:54:07 UTC to abuse{at}colocrossing[dot]com)
Takedown time:1 month, 19 days, 22 hours, 30 minutes Bad (down since 2021-12-11 06:11:30 UTC)
Tags:32 exe Loki link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-10-25n/aexe 6097e25849b5bf3300c6910609433cdbf5e61d7528f7eb8cad999da9fe31e79dn/a 
2021-10-22n/aexe f4728c89a37c15000ba3dfab265fcc966103d46fbfde3ee1083f5b65c4398d1en/a Loki
2021-10-22n/aexe ce7e05df71270d0aed71ab8af1de1f152fbdfeb10d781fe26e3f8c58c3fa899an/aLoki
2021-10-22n/aexe 0fa8577fe39341b7a5ee9c4fcb1e1b1cdef037fe71fcda4b03da5317f86b41d7n/aLoki
2021-10-22n/aexe 57d150bcae39d813be70575f5ce56f3bb16949517c9c7136cc069e0339c68a18Virustotal results 26.47% Loki
2021-10-22n/aexe b956abf18efefee9eefdde9925e2f0d906fd60f0fe33f4b4b312df4877aeffffn/aLoki
2021-10-22n/aexe 0ce3973ea9753623ddefa07e57ab2549971425741b7292675df1c093fffb6fc2n/aLoki
2021-10-22n/aexe 973cf901e982219a28db36b7120f924ad2c5d79f4561eb43c7274f91f8edd454n/aLoki
2021-10-22n/aexe 86319581747b4164071c0364257eb113bcb5165ee6a8a92c19b0cbda54be46f9Virustotal results 32.35%Loki