URLhaus Database

You are currently viewing the URLhaus database entry for http://binatonezx.tk/stanzx.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1715581
URL: http://binatonezx.tk/stanzx.exe
URL Status:Offline
Host: binatonezx.tk
Date added:2021-10-26 12:39:09 UTC
Last online:2021-11-11 16:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Blocked
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2021-11-11 16:47:03 UTC to abuse{at}serverion[dot]com)
Takedown time:28 days, 13 hours, 20 minutes Bad (down since 2021-11-24 02:00:45 UTC)
Tags:exe Loki link OskiStealer link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-11-23n/aexe f325e082eec367b50da21082c80def6eb63525d6208cbdb83fdc639a504f558dn/a
2021-11-05n/aexe 1b460067b459e534d61cb6b04f5bf21e645988cc96bab9e80be3727a5255ab2dn/aLoki
2021-11-04n/aexe dcef9f58160b04b10345a6dc503c0f4aef91722f4a11d3e199f40ca26732c557n/aLoki
2021-11-03n/aexe fa96070efd7b2eb92a14d382b871438fb12fbdbaf4738b56616e55ce84fb9513n/aLoki
2021-11-03n/aexe 78275c4299a8959d17cf695e4e4cebf40a993a487b9ceba5fb51fd1108b5c55cn/aLoki
2021-11-02n/aexe c0da4c0b6cb2aa9075ba97d26e74218473192c84a278c060df766bd206970e96n/aLoki
2021-11-02n/aexe df7bd2c90ea6f49bfc10b72bd88b7d2e99469098ba29e1e7a294d97c46cd30b2n/aLoki
2021-11-01n/aexe 4521caaf2855413ad4c51362b81665dccbf5f874c92b90ff0bff67131be46938n/aLoki
2021-10-31n/aexe 0d00a8419b5dcc7b772e00202af8ead65484164ede2106532397fda1c724a439n/aLoki
2021-10-27n/aexe 66a1b49f893976a60ca25813345ea54a5582acf7a5a0821c03cc45bcfc89b5c5n/aOskiStealer
2021-10-26n/aexe 12ca573395abe2197dd8e264d780b988830337b1ba66723c2ced6a0ce51993cen/aOskiStealer