URLhaus Database

You are currently viewing the URLhaus database entry for http://paxz.tk/simonzx.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1970259
URL: http://paxz.tk/simonzx.exe
URL Status:Offline
Host: paxz.tk
Date added:2022-01-12 09:11:04 UTC
Last online:2022-02-15 01:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2022-01-12 09:12:07 UTC to abuse{at}serverion[dot]com)
Takedown time:1 month, 3 days, 15 hours, 54 minutes Bad (down since 2022-02-15 01:06:41 UTC)
Tags:ArkeiStealer link exe OskiStealer link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-02-08n/aexe b460f5424b6dc0b64a0196aef8c983ad2a0e63c92b2907173b42e215ff97898dn/a ArkeiStealer
2022-02-03n/aexe 9eaf0df03b713a2db74c928a0114e4f71ad5d5904abe1be89452925fac951098n/a 
2022-02-03n/aexe 833932f7e822744af70adb6a8ab9ffe0a742d08c0c56d45d0f3af9bceb57a84en/a ArkeiStealer
2022-02-02n/aexe f4112faf7476b5132e97e1822ab118742924603900d01370ce0c66dfcbc1e41bn/aOskiStealer
2022-02-01n/aexe ce3c4fb15c6d4b7e2ab54a661876fd5b13a44ceac8b1da89ee67b43012138568n/a OskiStealer
2022-01-27n/aexe da802ea908cc5dc0d777563ceb63c57eb2faefc5332c608c9619f0443d42911en/a OskiStealer
2022-01-26n/aexe 531a77c7c5cbcc69c60240cdf4a15690bf0275460fc58fb821090e162bcdc3fen/a OskiStealer
2022-01-21n/aexe 7e8c03c14af669186fa20036d5360860d85130ef6bd375d75add1833c0c758cdn/a ArkeiStealer
2022-01-21n/aexe e2d736aa3991b4b9d09ec99401ea45bea6cc317f3470e2a71105f1aac46d1ff8n/aOskiStealer
2022-01-20n/aexe 8621834afe5c047bf4da6854172f7174f26047a37c21b6944c70307ff3eca3a7n/a OskiStealer
2022-01-17n/aexe 03c7d0b8c8367c4e83f98b05895aba07b794910b68e83a702bf5ae5bb3e7e16dn/a OskiStealer
2022-01-17n/aexe f7a423c9fd6cf87566b34d2dab352a81821ba3737864cc1abec2593429965300n/aOskiStealer
2022-01-14n/aexe 0684e1cc2787745123b0d2454c847a318cb3753f95257648678b336e9ba17d1dn/a OskiStealer
2022-01-14n/aexe fefbd146f307631bbf60d9d0e0260f9240afbb5d2a22b9dfd4d5623f16c9dd58n/a OskiStealer
2022-01-13n/aexe ab65d6eee8d3fef8fa8709054023cc39a0ab2b532245f61681f3e318908e6357n/aOskiStealer
2022-01-12n/aexe 0cf47ee37fd8ac01c75b6ea18f80d2647df7dee7235e5e22891bc8b3e8587a28n/aOskiStealer
2022-01-12n/aexe aced60ae902ad2acddb74c078406a2f9d669609f6571505754d4b78e3b439305n/aOskiStealer