URLhaus Database

You are currently viewing the URLhaus database entry for http://103.167.92.57/explorer/vbc.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2018347
URL: http://103.167.92.57/explorer/vbc.exe
URL Status:Offline
Host: 103.167.92.57
Date added:2022-01-31 12:25:06 UTC
Last online:2022-02-06 02:XX:XX UTC
Threat:Malware download Malware download
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2022-01-31 12:26:21 UTC to hm-changed{at}vnnic[dot]vn)
Takedown time:5 days, 14 hours, 0 minutes Bad (down since 2022-02-06 02:26:26 UTC)
Tags:exe Formbook link opendir

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-02-03n/aexe b16d2a78f80531520e667edc5262172ef8c9258bb7e6e95801b3c93a2adcfefcn/aFormbook
2022-02-02n/aexe e5ba1cfe2454e107c54219a4368bbe6921069e3e51608079bbfcfc0593caa4a0n/aFormbook
2022-02-01n/aexe 2f9798283768d3d6f0cd95b710f69697f8d3ee8c98b33cf9b2a6c9f870e035f1n/aFormbook
2022-02-01n/aexe 88bdebfec843e9f4ee4687b3a9a3bc80ac9d4890c5bbead14b996e50732b41a6n/aFormbook
2022-01-31n/aexe dc6726c9222c4d86d9d1167ab0a6bea35dfa47f17963aa8e9f15c4fb855069b9n/aFormbook
2022-01-31n/aexe 8914ac5f2053aa939614fd8a33bfc801699662512d4c2a6dada77f0916e04f51Virustotal results 33.82%Formbook