URLhaus Database

You are currently viewing the URLhaus database entry for http://172.245.214.178/101/vbc.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2615629
URL: http://172.245.214.178/101/vbc.exe
URL Status:Offline
Host: 172.245.214.178
Date added:2023-04-21 17:32:11 UTC
Last online:2023-05-23 06:XX:XX UTC
Threat:Malware download Malware download
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2023-04-21 17:33:05 UTC to abuse{at}colocrossing[dot]com)
Takedown time:1 month, 1 days, 12 hours, 52 minutes Bad (down since 2023-05-23 06:25:25 UTC)
Tags:exe Formbook link opendir

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-04-24n/aexe 9242b1d497cf232d201183851b93b19046929e39e5e512b87ea42f616d0784a4Virustotal results 20.00%Formbook
2023-04-22n/aexe 19c3ce3581116a2ced5ef524dfcdf6a559647b9ac6c47b2eb88156cb0ffdf539n/a Formbook
2023-04-21n/aexe b4c98e5f455268459dbf8afce9997b4c4355ec30601dd290979a310773f0ed99Virustotal results 21.43%Formbook