URLhaus Database

You are currently viewing the URLhaus database entry for http://107.173.143.36/881111/vbc.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1858335
URL: http://107.173.143.36/881111/vbc.exe
URL Status:Offline
Host: 107.173.143.36
Date added:2021-12-06 11:38:03 UTC
Last online:2021-12-24 09:XX:XX UTC
Threat:Malware download Malware download
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2021-12-22 10:57:35 UTC to abuse{at}colocrossing[dot]com)
Takedown time:17 days, 21 hours, 26 minutes Bad (down since 2021-12-24 09:07:51 UTC)
Tags:exe Formbook link Neshta opendir

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-12-15n/aexe 528a540044eb5dfab9ecbd301a63c69c930eea01e090eddd57a38e2cccb325acn/aNeshta
2021-12-06n/aexe 7bfabb3e53f70e2ad39155a8af8d7e27a07ec01b0ba8faed52cb569e4f78142fn/aFormbook
2021-12-06n/aexe 8a0fb297baf6f3affb73e0c20116dec0bbbae0292fcbffc3948051555df5099dVirustotal results 30.30%Formbook