URLhaus Database

You are currently viewing the URLhaus database entry for http://192.3.101.160/428/vbc.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2579641
URL: http://192.3.101.160/428/vbc.exe
URL Status:Offline
Host: 192.3.101.160
Date added:2023-03-21 10:31:05 UTC
Last online:2023-03-23 09:XX:XX UTC
Threat:Malware download Malware download
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2023-03-21 10:32:06 UTC to abuse{at}colocrossing[dot]com)
Takedown time:1 day, 22 hours, 58 minutes Poor (down since 2023-03-23 09:30:56 UTC)
Tags:exe Loki link opendir

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-03-22n/aexe a0ef0f452724443925f9eaadbdedbfe2f8b4726083dd64339b6fe5b61ff8b640Virustotal results 39.71%Loki
2023-03-22n/aexe 06fbd1900a9a993402efb677573777a39f6f691d72816b47d7431ac2d50ad71aVirustotal results 39.13%Loki
2023-03-22n/aexe 140d4eba0a888ce6c948c02141b87249a2dfc7500d7072c1af38a117c3e2b009Virustotal results 39.13%Loki
2023-03-21n/aexe 410ac5c6ae8518b18513c6ca3695e5099648f159f6365a604bc6026f55f28a04n/aLoki