URLhaus Database

You are currently viewing the URLhaus database entry for http://paxz.tk/arinzezx.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1881596
URL: http://paxz.tk/arinzezx.exe
URL Status:Offline
Host: paxz.tk
Date added:2021-12-13 19:13:10 UTC
Last online:2022-01-12 03:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2022-01-07 21:34:31 UTC to abuse{at}serverion[dot]com)
Takedown time:29 days, 23 hours, 45 minutes Bad (down since 2022-01-12 19:00:48 UTC)
Tags:AgentTesla link exe OskiStealer link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-12-22n/aexe fc55c796977aaab2254fd98cd04595c9eab86f459f3288f5f33d8fc9f050fdc4Virustotal results 36.76%OskiStealer
2021-12-21n/aexe b2dafd61635cef83c7e4b00dbcfaac9b3947f9abc8004b2b5b1fa5387d7a34e6n/a 
2021-12-21n/aexe 07d250428849ee0b3cfeeeb7ebfcfc639f9e982b073511d0ef9683326bb5c024n/aAgentTesla
2021-12-20n/aexe f1906e7c1f553e89b0743948e90897525b75e7b10b6a3f5d44bd5cc2a5db7fb1n/a AgentTesla
2021-12-20n/aexe f411a891458ad9af503c3aa7dd10d4dd8e3420bff17c6cbca280ac34af9dcca0n/a AgentTesla
2021-12-17n/aexe 3cfcd1f17964ccc961760915dc1c28f9f8ca1e0cd0ed5704dcabc927deec5635n/aAgentTesla
2021-12-15n/aexe 96fa76114086e00d9f783d0a6049c026539df96af4203377d7b483a83545bb8an/aAgentTesla
2021-12-14n/aexe f1d4702560e79b469a93b684001204a80f726894f42f09df5f404bd34e875707n/aAgentTesla
2021-12-14n/aexe 8204419239c93019d42b550cd7d46159d54cb1e89ee84055c90b71688a6a5fc5n/aAgentTesla
2021-12-13n/aexe 1681a54061e896e569da0e4dc9f222f0e59d8edc28199fa2d24011f348984843Virustotal results 26.15%AgentTesla