URLhaus Database

You are currently viewing the URLhaus database entry for http://103.167.92.57/____20388__0055/vbc.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1883873
URL: http://103.167.92.57/____20388__0055/vbc.exe
URL Status:Offline
Host: 103.167.92.57
Date added:2021-12-14 17:03:04 UTC
Last online:2021-12-16 12:XX:XX UTC
Threat:Malware download Malware download
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2021-12-16 09:21:57 UTC to hm-changed{at}vnnic[dot]vn)
Takedown time:2 days, 12 hours, 43 minutes Poor (down since 2021-12-17 05:49:54 UTC)
Tags:exe Formbook link opendir

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-12-16n/aexe 43b262f0fc6657ddbdef489ab15c945a4cec8a34afdf70ffbfa2bae17e60f339n/aFormbook
2021-12-15n/aexe cf3b369b7d0b7a81fde0af4a6415b4a43dd726e4750aba216ee21ffc0079f11en/aFormbook
2021-12-15n/aexe bada1121774aa2f95cba11aee3fb48c38c1a30f6995e9540eacfdaf400dbbd07n/aFormbook
2021-12-14n/aexe b70c26b8d08a6a17aed3e8372c24281f0efbd185592143d48bfbb38281688990n/aFormbook