URLhaus Database

You are currently viewing the URLhaus database entry for http://103.153.77.78/cloud__to_drive/vbc.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2111141
URL: http://103.153.77.78/cloud__to_drive/vbc.exe
URL Status:Offline
Host: 103.153.77.78
Date added:2022-03-22 18:24:06 UTC
Last online:2022-03-24 09:XX:XX UTC
Threat:Malware download Malware download
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2022-03-22 18:25:12 UTC to abuse{at}vnn[dot]vn,abuse{at}vdc[dot]com[dot]vn)
Takedown time:1 day, 14 hours, 50 minutes Poor (down since 2022-03-24 09:15:18 UTC)
Tags:exe Formbook link opendir

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-03-23n/aexe 1ec4e796b48dd7c62c66782d6f8ce9af457275bf7690afb1e8cb331e9d0bd39bn/aFormbook
2022-03-23n/aexe 3d5b5fd7346a2b3a5950888dc55d1434e6bbba21dcba56a5d26e38163db8a523n/aFormbook
2022-03-23n/aexe 26d982ec1bc5ff7c9ba9796e6287c23036c03ca8a0f5b3c353a370f90255e369n/a Formbook
2022-03-22n/aexe cd8517b48008d82b4246f4fa0dee41f6510127486f8c1e24293174c794f35684Virustotal results 29.85%Formbook