URLhaus Database

You are currently viewing the URLhaus database entry for http://kizitox.cf/stonezx.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2021578
URL: http://kizitox.cf/stonezx.exe
URL Status:Offline
Host: kizitox.cf
Date added:2022-02-01 17:02:05 UTC
Last online:2022-02-23 08:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2022-02-23 06:52:07 UTC to joost[dot]zuurbier{at}verotel[dot]com)
Takedown time:21 days, 15 hours, 52 minutes Bad (down since 2022-02-23 08:58:27 UTC)
Tags:AgentTesla link exe

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-02-23n/aexe 96d9ec3b7719d17680ac51310318790e8fc421c597eeef6a6c0faf7e98f6c97an/aAgentTesla
2022-02-22n/aexe 8e84034de56dadce9b6cda58c7ddd1a50dcb3d6b24bf1d600bed6ac33c8596efn/a AgentTesla
2022-02-22n/aexe 59798244db2c64ef5c6202f2971657367795489627eb80c68059d59a026a432dn/aAgentTesla
2022-02-21n/aexe eeebafdcc22ace6f0dedc731533eed2ff840ba405d5ba544214eee816202bb40n/aAgentTesla
2022-02-17n/aexe 5315f5c3d90b0619976b8f8b2eef6e1624b5acb44100f74b9e2733cb4ac97d85n/aAgentTesla
2022-02-17n/aexe 8a4e21250c7411e253d17ef56bd2ede874fd945fbeed7948b39f4e3b147232efn/aAgentTesla
2022-02-17n/aexe c55a70b36ffc67d86e0a7be65f183e5998f1ab31b80b146799fb3329c59ffe79n/aAgentTesla
2022-02-17n/aexe ca05399827247f2e467aebe8d0518232987f054ad585effd519483129a0de15dn/aAgentTesla
2022-02-15n/aexe ecf0e7200d400b9e0d002725941d1e47c3e29bf31fa3a136067adb50d849daccn/aAgentTesla
2022-02-11n/aexe 6e622a85aa17a2a6a1c0d31020ae31c22e7137838749fd68357baa3f71a19158n/aAgentTesla
2022-02-10n/aexe 5ead2bbab2a7f637003d57c26d2165bc63892068a51d56152c1810411686699cn/aAgentTesla
2022-02-10n/aexe d2af8970263b4ce939f03b7a160feb738d7bb5879392b69955aa1592236ca2d6n/aAgentTesla
2022-02-09n/aexe 54b9e6d1e843ef9301d7c519a0bc0d5939150b7f6a4913d254015aa22ff0fb3cn/aAgentTesla
2022-02-08n/aexe 6ef9a256884b6732c9f867873067f1ea78cefa841255cd13a7a409cff8816e39n/aAgentTesla
2022-02-03n/aexe 27c7fb68f8ccfded8276a3b15893c20209e5d75b028df1934b9dad155575a8f6n/a AgentTesla
2022-02-02n/aexe 0042b3c103bb4632ae3b92fc91d99decf6d9adc1c1d065455a62295932422c07n/a AgentTesla
2022-02-02n/aexe e6cc0807fb1ea5a6c6f269e4ecef4739e60a8a48f54295954a2c092307c671e6n/a 
2022-02-01n/aexe 8a3e22fbbc6d90f4a9c44b2dee264cfd8f55da05932ed5853aceaf16565ad072Virustotal results 23.53%AgentTesla