URLhaus Database

You are currently viewing the URLhaus database entry for http://216.170.126.121/hkcmd/vbc.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:847208
URL: http://216.170.126.121/hkcmd/vbc.exe
URL Status:Offline
Host: 216.170.126.121
Date added:2020-11-23 18:53:13 UTC
Last online:2020-12-14 14:XX:XX UTC
Threat:Malware download Malware download
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2020-11-23 18:54:03 UTC to abuse{at}colocrossing[dot]com)
Takedown time:20 days, 19 hours, 48 minutes Bad (down since 2020-12-14 14:42:16 UTC)
Tags:AgentTesla link exe Formbook link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-12-11n/aexe 85cbb4b449fccbb1cbed7ad7f28e052e23bcdcafa1f1e101f5220e82c0c15bccn/a 
2020-12-10n/aexe bd5a3777ff53017e45b4e368fe411e0672060d188bde66db5019bd7c0e47a220n/a
2020-12-09n/aexe d6815935b80fc0d39cceab37523c71add55b175d975fa0d42169894b551e27cdn/aAgentTesla
2020-12-08n/aexe dcb39be80203e5de62b87f99b5fe21eb25556d58c9d654156850995e86f1f4ban/a
2020-12-07n/aexe b3169da25d6a50990a664203361eac74ab36b8f9412e46fd89e19f450993e307n/aAgentTesla
2020-12-07n/aexe a9af2bddccc4126a93f8b0a3413df57fd0f70d8829c8cba61c8aae21c07423f6n/aAgentTesla
2020-12-02n/aexe 2a798a46c6a6da27a64f279677a8cc55661b5a55bee72567e4c81d192e3b8b9bn/a 
2020-12-01n/aexe 8fc887986434ba9d0851604a04a6c7a2024449ec968a3c0a6639619b08e492d0n/a AgentTesla
2020-12-01n/aexe b4d883a2d3e4c0e69077ac58d4ce6e532ab2a52f79777d8772889fb74cad44b8n/a 
2020-11-29n/aexe 82040800c523daba670a61ed7dc7b455039f2b76a97c67a10b0cf55fda30a440n/a 
2020-11-26n/aexe f592906b568c6138386673b45e8acbec69cc736394c29be98fbb1925a39cf23an/a 
2020-11-25n/aexe 9f5779b1c4f0c33f93c5745623a806b3a3de57f574b05bbd15a46c3b64eea592n/aFormbook
2020-11-23n/aexe e78b5071209858cdcb5ce02f7df3c3fb857088f7088b964791d289c789451e67Virustotal results 11.27%Formbook