URLhaus Database

You are currently viewing the URLhaus database entry for http://87.121.221.212/obizx.doc which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2676806
URL: http://87.121.221.212/obizx.doc
URL Status:Offline
Host: 87.121.221.212
Date added:2023-07-05 03:46:05 UTC
Last online:2023-07-26 07:XX:XX UTC
Threat:Malware download Malware download
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2023-07-05 03:47:06 UTC to abuse{at}des[dot]capital)
Takedown time:21 days, 3 hours, 36 minutes Bad (down since 2023-07-26 07:23:32 UTC)
Tags:AgentTesla link RTF

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-07-18n/artf 592c5d47b909ad9ece554b27fdb17cea5530da799af2bfd84bb3004a5710ca71n/aAgentTesla
2023-07-17n/artf 7c58eed1d9cdea2185170b62d033d2ed11347277f9c9853b88ae16fde08fd332n/aAgentTesla
2023-07-13n/artf 867bedbac9a7a430af4558f4825f80e13ae8b38eaa1dc27863bc7a7491e9ad32n/aAgentTesla
2023-07-05n/artf 741f2c4f961034604f560c89ada5369e772eac51def7ebd6b4ac7840f8d0562eVirustotal results 47.46%AgentTesla