URLhaus Database

You are currently viewing the URLhaus database entry for http://23.95.122.119/50/vbc.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2073568
URL: http://23.95.122.119/50/vbc.exe
URL Status:Offline
Host: 23.95.122.119
Date added:2022-03-03 09:25:06 UTC
Last online:2022-04-07 05:XX:XX UTC
Threat:Malware download Malware download
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2022-03-03 09:26:10 UTC to abuse{at}colocrossing[dot]com)
Takedown time:1 month, 4 days, 19 hours, 56 minutes Bad (down since 2022-04-07 05:22:12 UTC)
Tags:exe Formbook link opendir

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-03-11n/aexe 67e27b7d6665351e8cfef328924fa39f06ca60d4cb40287936293d4f2daff84en/aFormbook
2022-03-09n/aexe ef808aede6f70068b433647ba15f37e8b2b207b3bf1bd2e8d623ca0b18a64f5fn/aFormbook
2022-03-08n/aexe b9ed36a21e09ff33bef163a4b8f5f041bcc51ef24b12b66e4192a3dc529ba5f5n/aFormbook
2022-03-07n/aexe a85b95364a9cfc74c4219a544a20deca3f2a30b666aa1f84073fc1f56e1330b2n/aFormbook
2022-03-07n/aexe f650e9f530f5a236b1d52f1324ae781103540d2766d3cfac9e547bc071263a3fn/a Formbook
2022-03-03n/aexe 988d086b6ca75da2fca905b090c6f20b21749335f7e2ee99d8dab2001d4667e3Virustotal results 35.71%Formbook