URLhaus Database

You are currently viewing the URLhaus database entry for http://103.232.53.228/msnserver/vbc.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2447268
URL: http://103.232.53.228/msnserver/vbc.exe
URL Status:Offline
Host: 103.232.53.228
Date added:2022-12-06 07:27:42 UTC
Last online:2022-12-15 03:XX:XX UTC
Threat:Malware download Malware download
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2022-12-06 07:28:05 UTC to hm-changed{at}vnnic[dot]vn)
Takedown time:8 days, 19 hours, 39 minutes Bad (down since 2022-12-15 03:07:51 UTC)
Tags:AgentTesla link exe Formbook link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-12-07n/aexe 6c2ccca3064d2d2f17e9cd5222df4efbd2b21dc5bd7acf5b0fe57edeccd037d3n/aFormbook
2022-12-06n/aexe c5066450d674e2d7729d0acb5d3b571c948064c68bf82efc27497b56ddfb562dVirustotal results 29.17%Formbook
2022-12-06n/aexe 2c4a2cc243ae3181ece66667f70d020931b62714e6a0f96ae9e2bb134cf480e1Virustotal results 30.43%AgentTesla