URLhaus Database

You are currently viewing the URLhaus database entry for http://107.174.138.190/455/vbc.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2040361
URL: http://107.174.138.190/455/vbc.exe
URL Status:Offline
Host: 107.174.138.190
Date added:2022-02-11 07:29:06 UTC
Last online:2022-03-15 05:XX:XX UTC
Threat:Malware download Malware download
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2022-02-11 07:30:19 UTC to support{at}vpsace[dot]com)
Takedown time:1 month, 1 days, 22 hours, 26 minutes Bad (down since 2022-03-15 05:56:32 UTC)
Tags:AgentTesla link DBatLoader link exe opendir

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-02-24n/aexe 1ab08ff78c810840d30067ed8d90256d7074767daa4cfe798bd527b5f1953485n/aAgentTesla
2022-02-22n/aexe cd1f59f90ff20758cf3b925e4eb7c5a3f4b8b49d2375e2f656f65cde8e2d6aaen/aAgentTesla
2022-02-18n/aexe aa5d2a0b371efb331119271dcbfcf4d8451ce1a4b87c786f6676a5234fd9c450Virustotal results 21.74%DBatLoader
2022-02-16n/aexe 26f0ffa6247c055c490ae60d93a9e284e96d821152afeb384a007e698c143b36n/aAgentTesla
2022-02-15n/aexe 971c5350b47c5f1710f23ba9dc46bdf2db53789fbf049c5442c56543d432b095n/aAgentTesla
2022-02-15n/aexe 547c44993cbbcad4856b44898aa0f25f4e3e4f6af156bb060887ea4e355d32a7n/aAgentTesla
2022-02-15n/aexe 8b32ee76afb9fe5273edbed09d3dc1685bb67dcbe2e9f286ebff82b28b1274ffn/aAgentTesla
2022-02-14n/aexe bb324ac6fc91d827646e61d40b5213f55ab7359d611559d876825fe7d4cd0b57n/aAgentTesla
2022-02-14n/aexe cc5313731cc90260365ff92927cdb316bd2d3d77a68622216e117c813a77af56n/aAgentTesla
2022-02-11n/aexe 9f6eff0ba2e16b8b35a9cca149a305912ab74d1436f91426feb14e891e42d478n/aAgentTesla