URLhaus Database

You are currently viewing the URLhaus database entry for http://103.167.92.57/h0000p1@/vbc.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1901330
URL: http://103.167.92.57/h0000p1@/vbc.exe
URL Status:Offline
Host: 103.167.92.57
Date added:2021-12-20 09:18:05 UTC
Last online:2022-01-10 06:XX:XX UTC
Threat:Malware download Malware download
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2021-12-20 09:20:45 UTC to hm-changed{at}vnnic[dot]vn)
Takedown time:20 days, 21 hours, 3 minutes Bad (down since 2022-01-10 06:23:54 UTC)
Tags:exe Formbook link opendir

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-12-21n/aexe a3b37045cda16d5f9d09a6d8340a17ba1f78a24723c83a64eb0669b46804ab91n/a 
2021-12-21n/aexe 62a8d9c573e476376bcee82ee5f719e0598bf65be1f69c58a361d211c60f7e98n/aFormbook
2021-12-21n/aexe d8f9f18ca77ac63237fe6a694ec9e5a11984784eeff38d3494cbc24c5d2dfd13n/aFormbook
2021-12-20n/aexe 15b9254c95a968eda264a52b68c3b315261b7f74a81ce68e4ea25295c160b563Virustotal results 30.88%Formbook