URLhaus Database

You are currently viewing the URLhaus database entry for http://87.121.221.212/dollzx.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2685600
URL: http://87.121.221.212/dollzx.exe
URL Status:Offline
Host: 87.121.221.212
Date added:2023-07-19 06:03:06 UTC
Last online:2023-07-26 07:XX:XX UTC
Threat:Malware download Malware download
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2023-07-19 06:04:08 UTC to abuse{at}des[dot]capital)
Takedown time:7 days, 1 hours, 39 minutes Bad (down since 2023-07-26 07:43:53 UTC)
Tags:exe Formbook link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-07-25n/aexe 9cd1b016ff9416679f96b8047284684816dc8dc5c61d698f2ff69a3d200477can/aFormbook
2023-07-24n/aexe c5ae9a42b26b2a0c9b7ab0e75dc45ebb11c69276345a8e8dcd6367599569fbc5n/aFormbook
2023-07-21n/aexe 19bd89de510244c45e606f377bb6e643d0f36913e3c3c20e75b029dbc6ed04dan/a Formbook
2023-07-20n/aexe 0d663085dd23b062cb98cf61cdcf3f1b8e342d80239b25a304ce51d46ab3ff92Virustotal results 28.99% Formbook
2023-07-19n/aexe 514296a4695033c9454b509d153dcbbdd3d821736f0cdb79bae13ee302351de5Virustotal results 16.90% 
2023-07-19n/aexe c250549bfd9382d9489d8a0905c0b8bde28ec07f5af5d8b92e4ec8eb6cc72248Virustotal results 27.14%Formbook
2023-07-19n/aexe 09a46413e5df831a43d988315fc1973f8ec5124fa4d984c84da40d8a2b15f1baVirustotal results 35.21%Formbook