URLhaus Database

You are currently viewing the URLhaus database entry for http://hdmilg.xyz/catzx.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1544357
URL: http://hdmilg.xyz/catzx.exe
URL Status:Offline
Host: hdmilg.xyz
Date added:2021-08-18 14:52:04 UTC
Last online:2021-08-30 02:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2021-08-18 14:53:03 UTC to abuse{at}serverion[dot]com)
Takedown time:11 days, 11 hours, 13 minutes Bad (down since 2021-08-30 02:06:04 UTC)
Tags:32 exe NanoCore link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-08-27n/aexe 14451edae10ff52ecbee2e6588d9de9ce95162d06c13dea3ee5d0ebbd64bd283n/aNanoCore
2021-08-24n/aexe 3df79d186d0c86afa373fda6463964d5f09e0e669af0c7e85f783701dea87789n/aNanoCore
2021-08-23n/aexe dbfc1426b8273f1490e9f8b61929a3e00fdeefaaef7a4400a1dae2ed2f953a38n/aNanoCore
2021-08-19n/aexe 01fdef2521090cced120589336b3c76f3129dc9498ae78c9daa180b586b6eef6n/aNanoCore
2021-08-18n/aexe 5823ba75ead5c5eed57130fb89476810971e082fae64c2dfc6a2bd146588083fVirustotal results 27.54%NanoCore