URLhaus Database

You are currently viewing the URLhaus database entry for http://kizitox.cf/brownzx.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2039565
URL: http://kizitox.cf/brownzx.exe
URL Status:Offline
Host: kizitox.cf
Date added:2022-02-10 10:47:04 UTC
Last online:2022-02-23 07:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2022-02-23 06:52:07 UTC to joost[dot]zuurbier{at}verotel[dot]com)
Takedown time:12 days, 20 hours, 57 minutes Bad (down since 2022-02-23 07:45:17 UTC)
Tags:AgentTesla link exe

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-02-23n/aexe 0703de1e7a681eeac51ea409b707c66a2494735fe462e6aabc07972b556056f5n/aAgentTesla
2022-02-21n/aexe 4d9af34549295c37f8465de1459abc67b3946273ee3a60a7661d3a67e9a8e501n/aAgentTesla
2022-02-21n/aexe c75f3148d54132fb9267a1365d0650d7af3d43309922ef9706dc32cd893a12cbn/aAgentTesla
2022-02-17n/aexe 77873fe7bf938d5cf7c1de867e1c26fafac159ec4367abe40d046b7c5cc89bc8n/aAgentTesla
2022-02-17n/aexe d9b31e8998e83db9f999b763fdf8dea5dbbdc77666aa0a0edde1f7e565e42f8an/aAgentTesla
2022-02-14n/aexe c2f845522bd4c5c8f5cd282843a13e56f8deef0b24627fe92e3157a8be4a718fn/aAgentTesla
2022-02-14n/aexe 85e5b23cfb7fa5d56e2ec01d701d1ffe555b66ef37fcce39be1107e7f4ebb664n/aAgentTesla
2022-02-10n/aexe f770cbc399220f73d1edc6755c93c16bb33d1b31553bf682cc7595ddc93bf7c4n/aAgentTesla
2022-02-10n/aexe 0e4bb24b6acd34e75e07882e19b700eec8fcb6e0308e20021364694736358da4n/aAgentTesla