URLhaus Database

You are currently viewing the URLhaus database entry for http://107.172.73.195/0078/vbc.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1722888
URL: http://107.172.73.195/0078/vbc.exe
URL Status:Offline
Host: 107.172.73.195
Date added:2021-10-28 09:37:05 UTC
Last online:2021-11-15 13:XX:XX UTC
Threat:Malware download Malware download
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2021-11-02 08:26:06 UTC to abuse{at}colocrossing[dot]com)
Takedown time:18 days, 4 hours, 11 minutes Bad (down since 2021-11-15 13:49:09 UTC)
Tags:exe Formbook link opendir

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-11-03n/aexe d6742c917817f02e01ba40c61606b3707f373bb8d1f525b75b72b1802cd9b290n/aFormbook
2021-11-03n/aexe 9f71ef7a27369674f7f5bb4f6203358a6485fcbd0c25f0c80272364716a73dean/aFormbook
2021-11-01n/aexe 1aa28435e63887b1ee372f54ce2e926888d19f5d3d3ab4d35d39da4b5272d721n/aFormbook
2021-10-29n/aexe 60b7ee7c678553708c9ef357f9922acea8736a66ba9109eed68a7b2680bc8c68n/aFormbook
2021-10-28n/aexe 9e68a0780d3c86c44563ecb3ff063bd0daa87fa141de7e1022fa285f812dacaeVirustotal results 31.34%Formbook