URLhaus Database

You are currently viewing the URLhaus database entry for http://paxz.tk/emezx.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1962740
URL: http://paxz.tk/emezx.exe
URL Status:Offline
Host: paxz.tk
Date added:2022-01-10 15:28:04 UTC
Last online:2022-02-15 01:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Status unknown
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2022-01-10 15:29:07 UTC to abuse{at}serverion[dot]com)
Takedown time:1 month, 5 days, 9 hours, 46 minutes Bad (down since 2022-02-15 01:15:36 UTC)
Tags:exe Formbook link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-02-08n/aexe 1575198d7ad60f56d2a14359f82de8b6d0a5fc3278c1b6dc55716b17873ab54fn/aFormbook
2022-02-08n/aexe ff3f7736a06e89ae300270369d83b922423c8a840903b30a8a21365c4b0b0628n/aFormbook
2022-02-03n/aexe 0e8333bd57ef2ac051d65249e88b4fbc2e648951e5e417cc807bb9e23edffab1n/aFormbook
2022-02-01n/aexe 117dcca8729805b9ed11e45f46e55a4c1e7700340bfe160a45afc14a97f27e41Virustotal results 30.88%
2022-01-31n/aexe b45a38f7012d02b12d3613d25450847d87c14c9b3207380594fc5e1f1b1728d9n/aFormbook
2022-01-26n/aexe c6e101b1f3ef37505f4cae99303735cdbc09b0ef4f33f1d3f27742722e8276b4n/aFormbook
2022-01-25n/aexe 08fe866e85b6ecd9e1176df7b9c5053ed7e954695df5b3e05bba8ddd6ce59365n/a 
2022-01-24n/aexe 97541ac8c52aa0d9b24dc374b62445716ab7dbc795d90b6d4372f104b0a3df2an/a 
2022-01-19n/aexe e9843d569f5bdca339208ffb80c5c0c9a92f20c85828d03b5cdfc9c37bbd598en/aFormbook
2022-01-18n/aexe 1c0e03f910a70b5614f9b9b75ff74414a6bfd6f10d4f9bbd9dec78024f4da7bbn/aFormbook
2022-01-17n/aexe 9e54c12e7b23d9988514b9aae1e3593b0a08814357860ff270f42014914b0a1en/aFormbook
2022-01-14n/aexe 2cc19a1277ca2a6507fee58c641a74ce8c08285f033ca4771e7825f025274572n/a 
2022-01-12n/aexe c3e318eafb968f401d5165bb17e765613339ce25e4e48e99ea734580fae06d84n/aFormbook
2022-01-12n/aexe 243bf6298e6d09d6b1defc371150fa5e0b34942eb6f2d616c187fa3fd7f44fbbn/aFormbook
2022-01-11n/aexe 1c26112880679a9c6c7e310dedd154aa6e8afadf0117a8c1ff4bc53b2fd2cedan/aFormbook
2022-01-11n/aexe 792da7aa197387f9c6f08b7827cf2b8681ad0629cfd5ee84ef7f849785a384bbn/a 
2022-01-10n/aexe 7cb0a06f7d34e3e89e90112768ff4a8c66897ea5a10a880c9aface1d544c3b2fn/aFormbook