URLhaus Database

You are currently viewing the URLhaus database entry for http://binatonezx.tk/catzx.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1705793
URL: http://binatonezx.tk/catzx.exe
URL Status:Offline
Host: binatonezx.tk
Date added:2021-10-21 18:12:05 UTC
Last online:2021-11-04 07:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Blocked
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2021-11-04 06:53:18 UTC to abuse{at}serverion[dot]com)
Takedown time:13 days, 19 hours, 56 minutes Bad (down since 2021-11-04 14:09:09 UTC)
Tags:exe NanoCore link rat RemcosRAT link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-11-04n/aexe 333798a41d8e9cc730990a7245605653f6d557ee4ac156159cb166a7a8d0afebn/aNanoCore
2021-11-03n/aexe 854daa5bc3e8c73739f723bd1d86158650ad02d84cf53d4cd9083d3de11d6410n/a NanoCore
2021-11-03n/aexe de85e766c15d1b3910453571db1cf2a12edd88e53432ea87ed8c388263baf140n/aNanoCore
2021-11-02n/aexe a43b98094d763b02b040b6f290fecc44dca9b38341066370bec61e244b469486n/aNanoCore
2021-10-26n/aexe d4ee80500d9c280e85b290b467592a5910e9d4ee127cfda17ad40467b2c88942n/aNanoCore
2021-10-25n/aexe f36d8a41a02e62f440bb279927ee75b8cf680345d59cff1692b20e7b97d7c952Virustotal results 44.93% RemcosRAT
2021-10-21n/aexe dae8f3e0c1152d769be3a1951287cfe91c365f60c4bd772b2dec8686f52c167en/aNanoCore