URLhaus Database

You are currently viewing the URLhaus database entry for http://egbukachidieberedanielsgdmonni.duckdns.org/vbc.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:326354
URL: http://egbukachidieberedanielsgdmonni.duckdns.org/vbc.exe
URL Status:Offline
Host: egbukachidieberedanielsgdmonni.duckdns.org
Date added:2020-03-18 10:45:05 UTC
Last online:2020-06-30 06:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: oppimaniac
Abuse complaint sent (?): Yes (2020-03-18 10:46:02 UTC to abuse{at}colocrossing[dot]com)
Takedown time:3 months, 13 days, 20 hours, 9 minutes Bad (down since 2020-06-30 06:55:28 UTC)
Tags:AgentTesla link exe GuLoader link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-06-29n/aexe 94750c2deb968fcc6fa8df8438ec67e6fc4075503136b83883ca29b163559597n/aAgentTesla
2020-06-10n/aexe 738f04b7a8c6c4070be3cdffcba2de431b44497282f4612106c8e7f096daf110n/a
2020-06-09n/aexe 810641d0c62b9fc24c527b068b7875e4bfe83355522df837af947a021f9e2ed5n/a 
2020-06-03n/aexe 788509267cc4dee04ec0637def57aa2a35d81f16fdd32a8275a42de303898f8cn/a AgentTesla
2020-06-03n/aexe f218ca5df76d3fd3af680e0a732a71e441da31cdabfee7b9705afaa4c0037c12n/aAgentTesla
2020-05-31n/aexe fd082cd2d7dc7f49e080cfff1b34ee8253aad997e1afdf879405fb8ea6655e74n/aAgentTesla
2020-05-31n/aexe 6d2865589e86a2165f639cb417415eb23192d8a06387c5fa4a7eac14795101f6n/aAgentTesla
2020-05-19n/aexe 192d9e3f889ff6ba08ae15212e90f8ab77564f5a7e049862f05cf23bed2d3dfen/a 
2020-05-13n/aexe 714cd9a99ee1b6c08278aa56b348915b0072cc93ba78bf234a28c597486c22adn/aAgentTesla
2020-05-13n/aexe 0702729c34578ee78cf3cb883ee298fc4aa67dbb433981790605e4e4afb642ffVirustotal results 29.17%AgentTesla
2020-04-22n/aexe ad04cc440f46f16da51e57d34959fefdb888704052e317138c2bdc3f7d75dbc6Virustotal results 30.56% AgentTesla
2020-04-15n/aexe 2fd910434e03291b8aa3720b5d9136e3d504224f1cdb69d63e06753cfa82f085n/a AgentTesla
2020-03-19n/aexe e9562206911b00e6f2479459c556bb24609d7151196792c31b9bba547e9c161cn/aAgentTesla
2020-03-18n/aexe 5c86fcf32d1f15a745dd2f39989630ac310d1aee52af7b5f762f75f8855879abn/aGuLoader