URLhaus Database

You are currently viewing the URLhaus database entry for http://198.46.174.165/771/vbc.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2517296
URL: http://198.46.174.165/771/vbc.exe
URL Status:Offline
Host: 198.46.174.165
Date added:2023-01-24 15:53:11 UTC
Last online:2023-01-29 18:XX:XX UTC
Threat:Malware download Malware download
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2023-01-24 15:54:05 UTC to abuse{at}colocrossing[dot]com)
Takedown time:5 days, 2 hours, 48 minutes Bad (down since 2023-01-29 18:42:45 UTC)
Tags:AgentTesla link dofoil link exe Smoke Loader link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-01-26n/aexe 93b17c9c6d764b7e218d2d1669e8bd68059da3fe346936071b012d22d52fb35en/aAgentTesla
2023-01-25n/aexe 92f5bc1c04cfa529056b7f6cead4ec4aa2ce280ea51b166e4f62b7c40e0e32deVirustotal results 11.43%Smoke Loader
2023-01-24n/aexe 700b8168cefa395c3598eaa9cfd929ecf0a990448f38f2974f2c710e0926e6dcVirustotal results 21.13%AgentTesla