URLhaus Database

You are currently viewing the URLhaus database entry for http://hdmilg.xyz/obinnazx.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1541498
URL: http://hdmilg.xyz/obinnazx.exe
URL Status:Offline
Host: hdmilg.xyz
Date added:2021-08-17 11:15:03 UTC
Last online:2021-08-30 02:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2021-08-17 11:28:02 UTC to abuse{at}serverion[dot]com)
Takedown time:12 days, 14 hours, 32 minutes Bad (down since 2021-08-30 02:00:14 UTC)
Tags:32 exe Formbook link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-08-26n/aexe 475032f04ff405e24ecc5e2a93fb9c0c5fc037cc59e06b1772a8e60bc2dcadd1n/aFormbook
2021-08-24n/aexe 468008f5f4996c03b06d6e74a95469acee7a352f8d6bb5e718d86707da7c7c0an/aFormbook
2021-08-24n/aexe 8d6843a7f3cf4ffef14d352860728eba74509878e32a29fb52fa398218a68f57n/aFormbook
2021-08-23n/aexe f5c01bcb12e33b32123e1345f1320bc5c4137cb26df006a6ec8a508fdaed4016n/aFormbook
2021-08-23n/aexe 501242ffaabd951fbd62a6b12cfe8955915f65acc7d6c99effd41366054ccdcan/aFormbook
2021-08-20n/aexe bd344e9b926eee15597f199bc4d8a8b368a881dd572ed2d8a57a1200c767b0fcn/aFormbook
2021-08-19n/aexe 42c87021e56190f67716d25a66a6542bd352a66c6c352d74c60af681a187d336n/aFormbook
2021-08-18n/aexe 006dac8da13a28a8c98c6ec8ef112ee55544e0c4676cd2ffb393cb3cd66ebe15n/aFormbook
2021-08-17n/aexe ecacac4e9f514e780ff7124b6fdd97251dcec9947d5815166b2b57d2a41ddf0en/aFormbook
2021-08-17n/aexe f37a8771594f5f11d6ce79551120f5d5c74ed90ae6372b98724864f07023cc34Virustotal results 47.76%Formbook