URLhaus Database

You are currently viewing the URLhaus database entry for http://103.167.92.57/cloudspace__/vbc.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2055511
URL: http://103.167.92.57/cloudspace__/vbc.exe
URL Status:Offline
Host: 103.167.92.57
Date added:2022-02-23 12:46:48 UTC
Last online:2022-02-27 15:XX:XX UTC
Threat:Malware download Malware download
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2022-02-23 14:04:07 UTC to hm-changed{at}vnnic[dot]vn)
Takedown time:4 days, 1 hours, 20 minutes Bad (down since 2022-02-27 15:25:06 UTC)
Tags:exe Formbook link opendir

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-02-24n/aexe d8f888158556fe3971ae3904db9268b95c1d7f3ee1991dbd04002e018b65750fn/aFormbook
2022-02-24n/aexe c146576ec1b3b983291dfcc520a24f9e1f7a22ad33c49baef056ef1a8533a6e7n/aFormbook
2022-02-23n/aexe 7eb60b42eb8755d31d411c32b45f7431eb9e084fb0749d92c83ffe2598b6564cVirustotal results 23.21%Formbook
2022-02-23n/aexe 96077c533e59e3b8cf38826e5e37e35f1f2eb44d356eae6575223158b565198eVirustotal results 28.12%Formbook