URLhaus Database

You are currently viewing the URLhaus database entry for http://104.168.45.104/88775/vbc.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2348190
URL: http://104.168.45.104/88775/vbc.exe
URL Status:Offline
Host: 104.168.45.104
Date added:2022-10-03 16:54:16 UTC
Last online:2022-10-05 22:XX:XX UTC
Threat:Malware download Malware download
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2022-10-03 16:55:20 UTC to abuse{at}colocrossing[dot]com)
Takedown time:2 days, 5 hours, 57 minutes Poor (down since 2022-10-05 22:52:42 UTC)
Tags:a310Logger link exe Loki link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-10-04n/aexe 6bd5bbea9b02d99f157e191dbdfe2d772498c3443496738e2c8d92a9617a099eVirustotal results 20.83%Loki
2022-10-04n/aexe 132b2bec8d938eeff8eaa559349a7a2a272a957fef0e4f3e9bcb4241eadf7e68n/aLoki
2022-10-04n/aexe e0fe12504cc638820796299a68a761cfad56c38c3390f6ac010b40eb8daec63cn/aLoki
2022-10-04n/aexe 7fb1a3cb9b535ec86b38492201b523dc2f1440fd8d35ec0f017ea44594850600n/aa310Logger
2022-10-03n/aexe 12747522667ef5f859fa009d00dffa56f770b73b7b4fecd2c5250c449a7d142cn/a