URLhaus Database

You are currently viewing the URLhaus database entry for http://85.202.169.21/obizx.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2251461
URL: http://85.202.169.21/obizx.exe
URL Status:Offline
Host: 85.202.169.21
Date added:2022-06-28 05:44:04 UTC
Last online:2022-07-16 17:XX:XX UTC
Threat:Malware download Malware download
Reporter: JustaguyAA
Abuse complaint sent (?): Yes (2022-06-28 05:45:07 UTC to abuse{at}serverion[dot]com)
Takedown time:18 days, 11 hours, 29 minutes Bad (down since 2022-07-16 17:14:26 UTC)
Tags:Formbook link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-07-08n/aexe 696ea6f69112d4d80b34a8dc589c16db71217fc6aa75567cb081bd02c56612b2n/aFormbook
2022-06-30n/aexe 712d9e2373914cd9231c6c55a5d919efa6df53194b2c06b03695501dde071760n/aFormbook
2022-06-29n/aexe 9e5b0125b1b62ac7d0db3277d4e269c52901b9e39bdf989f17e4672dee18f9c9n/a 
2022-06-29n/aexe 7952c76d1d86927893a2ef8ca0a23bb1b45af38565f2ad9cea09a942bd5059f8n/aFormbook
2022-06-28n/aexe b2834803a56b0fcfa98844491234dff7ffb74afd7e3adf821446f8c18955b585Virustotal results 29.85%Formbook