URLhaus Database

You are currently viewing the URLhaus database entry for http://paxz.tk/famzx.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1866451
URL: http://paxz.tk/famzx.exe
URL Status:Offline
Host: paxz.tk
Date added:2021-12-08 18:22:10 UTC
Last online:2022-01-12 03:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Status unknown
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2022-01-07 21:34:31 UTC to abuse{at}serverion[dot]com)
Takedown time:1 month, 5 days, 0 hours, 11 minutes Bad (down since 2022-01-12 18:36:17 UTC)
Tags:32 exe Formbook link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-12-15n/aexe 5bc7c416b8a3a003225a4427ec7d1824af457dadb326bfb277f3224b6ccc7707n/a 
2021-12-14n/aexe 3a536da54a1cdf554d1fe3301c4a7936f889a7c86e166cb081429450e97cd4f6n/aFormbook
2021-12-13n/aexe cbd396c4d213963131aafd5e6505c51a3d1307d593c7aa749c32790d229b2ee0n/a Formbook
2021-12-13n/aexe a5ad2e2a940e084ddec9db413a6c44a30b6029c8cf2bafb1320d67b1c60280e3n/aFormbook
2021-12-10n/aexe 4ae2cc851969d2bf66879df62acb3860edf32e3224b3a81460fc84ca476cf8e4n/aFormbook
2021-12-10n/aexe 84f01d9761a5e76774cac6a3a21c50e3b653f725276d32ea3a10d7ec00e14c99n/aFormbook
2021-12-09n/aexe 54562896613b429de9564f501b6d277537a57dc5d0a9bbaa5260e3ffc055a543n/aFormbook
2021-12-08n/aexe 039cb9fe74c15a9ef07f795f41f1a05bf2adad49566c866f94befed5815503e4Virustotal results 28.12%Formbook