URLhaus Database

You are currently viewing the URLhaus database entry for http://87.121.221.212/catzx.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2677382
URL: http://87.121.221.212/catzx.exe
URL Status:Offline
Host: 87.121.221.212
Date added:2023-07-06 05:58:06 UTC
Last online:2023-07-26 07:XX:XX UTC
Threat:Malware download Malware download
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2023-07-06 05:59:05 UTC to abuse{at}des[dot]capital)
Takedown time:20 days, 1 hours, 21 minutes Bad (down since 2023-07-26 07:20:08 UTC)
Tags:AgentTesla link AveMariaRAT link exe

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-07-24n/aexe f11effedd26a33c4be549c3d28e0cc01b576095c586322c1f187e2b933b9443en/aAveMariaRAT
2023-07-24n/aexe 4cc70af8bd8923b6f4e0ffb4b999917b1d9b114caaa2fa50bc623fe70c71e7fcn/aAveMariaRAT
2023-07-18n/aexe d897fd5f225b3e98711f48de2e746b6cddc669e198bd1a2629cd732bcbc4b9dfn/a AveMariaRAT
2023-07-18n/aexe f4aea6928690e0fc30b1c51a782340ec830438cb07492a54bd6f448eea6ed9a3n/a AveMariaRAT
2023-07-13n/aexe 383e4628013d70518a2572896f1b982b045ce39761e3480184519b42d71a2495n/aAveMariaRAT
2023-07-13n/aexe c0ee769f085dd3cea7755a01e6294ecf18c4f3448b4bbbcbbc6eaa0b8529fdbcn/aAveMariaRAT
2023-07-06n/aexe d6318d749c05b8db21c9d1f0cdcbdc2000f25f56ee154f58004e86b782722a79Virustotal results 42.25%AgentTesla