URLhaus Database

You are currently viewing the URLhaus database entry for http://kizitox.cf/mazx.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1862603
URL: http://kizitox.cf/mazx.exe
URL Status:Offline
Host: kizitox.cf
Date added:2021-12-07 12:22:15 UTC
Last online:2022-02-23 07:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2022-02-23 06:52:07 UTC to joost[dot]zuurbier{at}verotel[dot]com)
Takedown time:2 months, 17 days, 18 hours, 40 minutes Bad (down since 2022-02-23 07:05:26 UTC)
Tags:exe Formbook link OskiStealer link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-02-14n/aexe 9bceb9680d39094087add5289a7e19aa93168faf9c5f2465700b117d59e8d841n/aFormbook
2022-01-17n/aexe f6d8915ec4a2d2a53c0c13e1835d7a6ee450e26feee30e255a58190bf65791ean/a 
2022-01-17n/aexe 6e4c0932d94224a224d70c20525c97091f1f0cdeddb85db920904b380c5a58dfn/a 
2022-01-14n/aexe 8608543ec69faa2bb43ed728578f160335faff82191fb6d7d6203d27d942b013n/a 
2022-01-14n/aexe a9917f48cec74bf2e14a43e9a2a965ffd0aa6166123c19aedee92027617caca5n/a 
2022-01-13n/aexe d07c78ca44c6b0f13f00ecb09e9716eb8d85d6a9baac7eca18c08477f9972840n/aFormbook
2022-01-12n/aexe d67dff51d41111e44fe4dc61b5c741d7cae81e1397dbf55bdd3bd0dc144f342fn/aFormbook
2022-01-12n/aexe 5c3579c7b2c142c402b4956cb0ce490a3933a3b1ea4d5f937037b117fbc1497dn/aFormbook
2022-01-12n/aexe 28323d3c8fd1339a7d4f0ebad6ff377545e88c15fdca9b2f21cdd7c72c07622en/aFormbook
2022-01-11n/aexe 0ec8298ba8059d8c33be39267f283d9dccdc43896608615be6bf75a925f31afen/a 
2021-12-23n/aexe 952277c9dfd5bc4d0ccaf19fd51f58c94bf5993705b150168e3395dab1943a41n/aFormbook
2021-12-23n/aexe b1e658a2886741cb4883dac05d48a62e8d01f6f84af78f2ef5beb78ced173c8an/aFormbook
2021-12-22n/aexe a65e0c7aa04fbcc56fac5fec78b13d51f6c17fe0ba7f34a58a0529bd414048f2n/aFormbook
2021-12-22n/aexe db31c01119f54e596eccec7e9d909d3344f42e82db94f348cdb0ace3d8ba9babn/aFormbook
2021-12-22n/aexe a935dbef689be51af328c3a8031bb2dc129bebfac862eee9d5fb697353167169n/a 
2021-12-21n/aexe 90b68aa14301d8c578cb7f9a4e3536b54c399f346aed82f19682604f31823cd5n/aFormbook
2021-12-21n/aexe 66ea17dd934b61690c120c2083e9abd8e101451abace91b06da234b230219658n/a 
2021-12-20n/aexe c6d16f64d58f54592313a34ded50de14653de6a481e68e5d441942abee0571d3n/a 
2021-12-20n/aexe cb13b76515eda9a32e999b61c7e11e01de16ebeaf9ae6c503a1a0d238bc5bf37n/aOskiStealer
2021-12-17n/aexe cabe623befbaa25599e9c97bef6be8175332b29c6571a2c8e755c7a732beedbdn/aOskiStealer
2021-12-15n/aexe 3a1643bbeb085792684f579b51b1da8d3adbd40e0e4815ab6d92d30d5c7e1f33n/aOskiStealer
2021-12-15n/aexe f62eb2c218ce5b7958aa7fcd2aa5c604fcc571e10bb4c373bb396d9e85733e44n/aOskiStealer
2021-12-15n/aexe 9dd038396c2faf0ea1ed0294cd424f26d2a40579d040dbbb29967e89e662d167n/a 
2021-12-14n/aexe fb142a5509971d78923e077c658479a60287c1e6d921adfc75f3a426b5ffab7bn/aOskiStealer
2021-12-14n/aexe 125b5a322966a51616fad074a1d5aa4dd1979ff453889d55b01aedd9fa54262en/aOskiStealer
2021-12-14n/aexe 931f271552b5170cbcee380f9fc5742d890e9063181645f010cf0b942ea2787an/aOskiStealer
2021-12-13n/aexe 662cd105cb4bb0060036ea229c5a391a932ba4a9fbb5cb6020ba027026085058n/aOskiStealer
2021-12-10n/aexe 6e41fff4d9580d662f41a2204af6713baaa1a93e37df719bdd7ddd7613c2ff90n/a OskiStealer
2021-12-10n/aexe 5e90017c211f7f6fb00a452e7cc887b8da779dc03314c004ef609d37a7dcc8cen/aOskiStealer
2021-12-09n/aexe 692f3c6667e00facad6f7f400d646d5fe7db1407ba798a472671ebc51e881085n/aOskiStealer
2021-12-09n/aexe 96d8f77904387c5513e92733b0714987fdb476d6330c08c5404806b60f22af6fn/aOskiStealer
2021-12-08n/aexe f3f0ab143a33d2bc569578458a11bd1572935a7811d1ce82cc5d20116fe79e50n/a 
2021-12-08n/aexe 8ba6f9c5088b8d80e0fface51143b20c82aae00bb8d7453747206497a8788e31n/a 
2021-12-07n/aexe ee9121d0904d76f5c88787d7fc7aa6148ac059b72cd3e87f14a77f640a86ef6an/a ArkeiStealer
2021-12-07n/aexe 78acc7d2e613bc812bb1234cb88b6516f957e7ef6980dd211fdbb9f4741f88cdn/aOskiStealer
2021-12-07n/aexe 2e6bebcaaa746b7ab28bf74c49dc0b92b88f564f5b05d6cc414ea1d4aa5f10d4Virustotal results 34.33%OskiStealer