URLhaus Database

You are currently viewing the URLhaus database entry for http://103.232.54.88/OneDrive/vbc.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2522592
URL: http://103.232.54.88/OneDrive/vbc.exe
URL Status:Offline
Host: 103.232.54.88
Date added:2023-01-30 12:12:08 UTC
Last online:2023-03-15 21:XX:XX UTC
Threat:Malware download Malware download
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2023-01-30 12:13:08 UTC to hm-changed{at}vnnic[dot]vn)
Takedown time:1 month, 14 days, 9 hours, 7 minutes Bad (down since 2023-03-15 21:21:07 UTC)
Tags:exe Formbook link opendir Quakbot link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-03-01n/aexe ee62bac96fdf6c8fa0bf931f53a9858584cbe77e814f3e0a08a9a0fcb1fe55f3Virustotal results 36.23%Formbook
2023-02-26n/aexe 736330aaa3a4683d3cc866153510763351a60062a236d22b12f4fe0f10853582Virustotal results 2.82%Quakbot
2023-02-04n/aexe 8c87827bbac63acadbfbabca6bbc54937e956d28025c8d71ebbbb403679dd728n/a 
2023-01-30n/aexe 67cc4306421a289d79bfd855c3da5e7ccbfe55e8eef44fc6c48aea748848ea5bVirustotal results 24.64%Formbook
2023-01-30n/aexe fd57c25c7f4a591450adba8e8f2755e6a8ef62e9e28b745eae0a7369dc5ef4aaVirustotal results 30.00%Formbook