URLhaus Database

You are currently viewing the URLhaus database entry for http://23.95.122.119/421/vbc.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2082243
URL: http://23.95.122.119/421/vbc.exe
URL Status:Offline
Host: 23.95.122.119
Date added:2022-03-07 15:43:05 UTC
Last online:2022-04-07 05:XX:XX UTC
Threat:Malware download Malware download
Reporter: AndreGironda
Abuse complaint sent (?): Yes (2022-03-07 15:44:07 UTC to abuse{at}colocrossing[dot]com)
Takedown time:1 month, 0 days, 13 hours, 49 minutes Bad (down since 2022-04-07 05:33:07 UTC)
Tags:exe Formbook link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-03-11n/aexe 67e27b7d6665351e8cfef328924fa39f06ca60d4cb40287936293d4f2daff84en/aFormbook
2022-03-09n/aexe b62b705aa470519a3b6c702ae56a4a236aeda179a66a5626cc9f63cce7c0f7acn/a Formbook
2022-03-09n/aexe ef808aede6f70068b433647ba15f37e8b2b207b3bf1bd2e8d623ca0b18a64f5fn/aFormbook
2022-03-08n/aexe b9ed36a21e09ff33bef163a4b8f5f041bcc51ef24b12b66e4192a3dc529ba5f5n/aFormbook
2022-03-07n/aexe a85b95364a9cfc74c4219a544a20deca3f2a30b666aa1f84073fc1f56e1330b2Virustotal results 20.59%Formbook