URLhaus Database

You are currently viewing the URLhaus database entry for http://192.3.122.180/55667/vbc.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1799312
URL: http://192.3.122.180/55667/vbc.exe
URL Status:Offline
Host: 192.3.122.180
Date added:2021-11-18 11:19:05 UTC
Last online:2021-12-02 12:XX:XX UTC
Threat:Malware download Malware download
Reporter: ffforward
Abuse complaint sent (?): Yes (2021-12-01 22:17:03 UTC to abuse{at}colocrossing[dot]com)
Takedown time:24 days, 18 hours, 50 minutes Bad (down since 2021-12-13 06:10:39 UTC)
Tags:exe Formbook link GuLoader link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-11-25n/aexe eab40778e702a859cc33abcd92e796755e95e8fdb0eeb7c5243b7c1866751bb0n/a GuLoader
2021-11-19n/aexe 42f055e13d54083b128b406d8e9c7e6318a6b72ea51433e74c7b00d1f8bda169n/aFormbook
2021-11-18n/aexe d423efa269caa735e023f1046e157e9ae9e0abe43339cea4ef9311109db0cb6cn/aFormbook