URLhaus Database

You are currently viewing the URLhaus database entry for http://twizt.net/newtpp.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:2567668
URL: http://twizt.net/newtpp.exe
URL Status:Offline
Host: twizt.net
Date added:2023-03-12 17:41:07 UTC
Last online:2025-06-24 15:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Botnet C&C domain
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Status unknown
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2025-06-23 19:02:12 UTC to erishennya[dot]res{at}gmail[dot]com)
Takedown time:2 years, 4 months, 2 days, 22 hours, 59 minutes Bad (down since 2025-07-02 16:41:06 UTC)
Tags:CoinMiner phorpiex link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-06-23newtpp.exeexe 81783b558904becc5b86553faba9525070de5f43339766eb1c025bcfbfe1eef8Virustotal results 83.33% Phorpiex
2023-11-07n/aexe 789dcb2ef828eee82749c3ff3d08ac19d68ff06ad13ca1718c2ea47953775b3aVirustotal results 77.78% Phorpiex
2023-08-16n/aexe d2b6791fb169c2c87d9fbc2846525dbbbecef3bf112259214b1b4da907d580efn/a CoinMiner
2023-05-28n/aexe b5bf9b891fdd046d626082bad71ef887a9fcafca9cdfd6887d2e60ef6d4a0462Virustotal results 61.97% Phorpiex
2023-04-18n/aexe a5aaea0dfa0b04345d700f049d5a2772e441e8b27d21ce33a23e5418457d280eVirustotal results 58.82% Phorpiex
2023-03-22n/aexe b09663d3fd327fb84cb3aa1ffef1f57916cf1ac0f4c7cc18c6e27ae052e7c5eeVirustotal results 56.52%Phorpiex
2023-03-21n/aexe 4531e904b29a577272454de8f8084d86fbe2903f16c00d2fa63d1ffe5244ecc1n/aCoinMiner
2023-03-19n/aexe 93a04cf96668f35ce41a1b884d45036484bab8b1c62f156c74da73a9b06c8216Virustotal results 63.77% CoinMiner
2023-03-12n/aexe ce87790b45cd1822a71e4d81733ec535a8aa5c42ec48f3593b14c5049ab635e6Virustotal results 67.69% Phorpiex