URLhaus Database

You are currently viewing the URLhaus database entry for http://florestaxis.com/cbfsd/iA4HTDSZ3k0XFD2m235o1wJMYw4LI0G1CtHNvSFOIGIg/qU2STVjHI3jOYvRag0ieGLuZQvKUOsWWbkpz4kZK4b/97086/nbdRmR3/Zn5a0hw9TkCa8DB2GNc80TDg5xBOnOkAQixWY7sJJ/izzLtuT6BVV0xRecCKVVHAAR6PkgGrIPNTSNgan/IkfbvjGO0qobcg4DyUX11Z/67688/zas8?user=IevFn6nc1K2n8i which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1705730
URL: http://florestaxis.com/cbfsd/iA4HTDSZ3k0XFD2m235o1wJMYw4LI0G1CtHNvSFOIGIg/qU2STVjHI3jOYvRag0ieGLuZQvKUOsWWbkpz4kZK4b/97086/nbdRmR3/Zn5a0hw9TkCa8DB2GNc80TDg5xBOnOkAQixWY7sJJ/izzLtuT6BVV0xRecCKVVHAAR6PkgGrIPNTSNgan/IkfbvjGO0qobcg4DyUX11Z/67688/zas8?user=IevFn6nc1K2n8i
URL Status:Offline
Host: florestaxis.com
Date added:2021-10-21 18:03:08 UTC
Last online:2021-10-21 19:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Blocked
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2021-10-21 18:04:07 UTC to abuse{at}pq[dot]hosting)
Takedown time:1 hour, 21 minutes Good (down since 2021-10-21 19:25:14 UTC)
Tags:bazaloader link bazarbackdoor link BazarLoader dll

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-10-21zas8dll 314ee4498e3c38629b9e6b5b852739642a0df45c361491cd5c06cf173ce6d2a7n/a 
2021-10-21zas9dll cd18e2bebc72f731a5dbe0588ab3633b0421f45fa205cbb674f231d56f4a4e5an/aBazaLoader
2021-10-21zas8dll 00fbf51ea8f709a859e453e68434f095ec842084e74823a84a8489166489be2en/a 
2021-10-21zas9dll 6959f898fa31e288f5809e3a6a9f8cea6986be342f516633ce797fb7fa38ee0bn/a 
2021-10-21zas9dll 8eeaefba12e79c929fbd4f48902a34e324779a2a22b2c58bc3bbb7ae88d867fan/a