URLhaus Database

You are currently viewing the URLhaus database entry for http://kizitox.cf/arinzezx.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2021905
URL: http://kizitox.cf/arinzezx.exe
URL Status:Offline
Host: kizitox.cf
Date added:2022-02-01 18:36:05 UTC
Last online:2022-02-23 07:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2022-02-23 06:52:07 UTC to joost[dot]zuurbier{at}verotel[dot]com)
Takedown time:21 days, 13 hours, 1 minutes Bad (down since 2022-02-23 07:43:30 UTC)
Tags:32 AgentTesla link exe

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-02-22n/aexe b82f39f20d1f898ec2843720c8624b8ceeef92fed8ad60e27c13e3fb5b8b2ce0n/a AgentTesla
2022-02-21n/aexe 0af8735ab46d033f1e1415f018dfb438d8a89882db217c724ca08d6b970bbc71n/aAgentTesla
2022-02-21n/aexe 746bfddb79f556256b54c2f1a98233a8f70275eac082651b344b0172ec8495ddn/aAgentTesla
2022-02-16n/aexe d8718664ac219fe7a9d618bd5daba699ef16692e178930d7847554d3f53339a6n/aAgentTesla
2022-02-14n/aexe c7306a5127ceb855a0a1c821756df7c06a8fa143a09217ae03c92acbfb95c1ccn/aAgentTesla
2022-02-14n/aexe 78f33a426b119c7dd6684b6aacfd22ddf2c9a6ae77a8423d06a947783a3ff7c1n/aAgentTesla
2022-02-11n/aexe 106ecd49755f648a93574dea5137e176422cf8a95d538e400fdd0dad9a081a4cn/aAgentTesla
2022-02-10n/aexe 04790a6422fdf4ec650cae6fd06225919959ffa5bdbaace6ddc806d38dade2d2n/aAgentTesla
2022-02-10n/aexe a7529794c9ce417bb106aadab6bbbb57c92a51efc640a19b714ee53f7110a1e4n/aAgentTesla
2022-02-09n/aexe 71ee1aae35cef3229e28dce8b67e84b9306a5898864a252e5794e62dac67f5e6n/aAgentTesla
2022-02-08n/aexe 6108451bc6172dff2d36a0e89492843db32052d8471be14c286f93913c815144n/aAgentTesla
2022-02-01n/aexe 15bc6b8e56a29f8e9d4b87890afb6969047ec2cc2ef739a30689987e7435abecVirustotal results 61.19%AgentTesla