URLhaus Database

You are currently viewing the URLhaus database entry for http://indiaohc.com/file/a/vbchost.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:811332
URL: http://indiaohc.com/file/a/vbchost.exe
URL Status:Offline
Host: indiaohc.com
Date added:2020-11-12 18:12:05 UTC
Last online:2020-11-17 10:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2020-11-12 18:14:03 UTC to eig-abuse{at}endurance[dot]com)
Takedown time:4 days, 16 hours, 37 minutes Bad (down since 2020-11-17 10:51:07 UTC)
Tags:exe Formbook link opendir

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-11-17n/aexe dd1b3508cfb8aeb7f9ec8ad9a96bda852f499fb57b8cce55d076e1ce20d89dafn/aFormbook
2020-11-16n/aexe 4701e1d0065893d2d05cc0450f8f435e2644299b1beae3d4dd1a9758514d1d6fn/aFormbook
2020-11-15n/aexe 558c5ff8f9a54cbc67df9d042a6c4339a38da73f0c7ed688f601f0ab2317dfdfn/a 
2020-11-14n/aexe 3f4cad2de4aeefbfb460004d2def53d35d8b162cdd8a859cc503e6a04dcd38d8n/a 
2020-11-13n/aexe 57301abeb4136878b4dcc359b4261e88d4b25307474bdb324aa502d42695c296n/a 
2020-11-13n/aexe b3aee81bf14dc528f5a67bdb9f651365ea73298c455cbe6d1830b122ab88e899n/a 
2020-11-12n/aexe caed3382f2c691a1a3b7b424c7f00fd3d1bafb3a34f23ee424bcac165b6edf04Virustotal results 23.61%Formbook