URLhaus Database

You are currently viewing the URLhaus database entry for http://cynorix.com/netTimer.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2733729
URL: http://cynorix.com/netTimer.exe
URL Status:Offline
Host: cynorix.com
Date added:2023-11-22 22:50:10 UTC
Last online:2024-04-19 22:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: andretavare5
Abuse complaint sent (?): Yes (2023-11-22 22:51:05 UTC to abuse{at}aptum[dot]com)
Takedown time:4 months, 28 days, 23 hours, 20 minutes Bad (down since 2024-04-19 22:11:38 UTC)
Tags:AgentTesla link dropped-by-PrivateLoader njRAT link Phonk

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-12-20n/aexe 8bc0ba263542eae45e77d3afe10718324a0f3ca61cd6995309f81e93d5639f29n/a Phonk
2023-12-17n/aexe 67c9e7e65b92b06d35146dd9e895cff8aba6914b19499dc6de9144bf0c17c3c2n/a 
2023-12-16n/aexe 37a1bf9b3ac3853e6a7d70c2bd7050f88117378c63d8e94c0cf7d4fd8ad67396n/a Phonk
2023-12-14n/aexe 530d483aea51d161151b66fd42a86a5dc44db87a4b5640183c3effe6286533f3n/a 
2023-12-12n/aexe 66859748469fd2a38ed41c31d23c5af44c86792c58f943cb2be6891637fd3314n/a njrat
2023-12-11n/aexe ee9386158971feeef97366397c2edc80f9419f8efa4ee174c996d6a3661723e3n/a njrat
2023-12-09n/aexe 0935077c48020cded9538925a4ed667ec0cb228a9eb77dbd7bca98eec45dbe4cn/anjrat
2023-12-08n/aexe 7229c22dfd34e71d0b66b8b8114a5241d34a4a96e231eed3aab50b6ff0dbce26n/aPhonk
2023-12-07n/aexe 9bbaf4cf4269a265ae7a9b5574741b771bfb444d299198e0962827a47ec9aa2bn/aPhonk
2023-12-06n/aexe e4502034c8c9f54e1164c27a004178a7dd63cfac8c2f8811476aeef0a15b0697Virustotal results 18.06%AgentTesla
2023-12-05n/aexe 2af00f3896464c393ce7f3e22317856155c2532c0c87a911703d1feedd242120n/aPhonk
2023-12-04n/aexe d24be360ddb8ea8b74ccf513c139dcfa56eda3f156b3c5eafd469876a546d383n/aPhonk
2023-12-01n/aexe 4991ad7da11f0a8fa7b06ba980a38c53dcdd188f4f81ff2eb532399df39fea00n/aAgentTesla
2023-11-30n/aexe 8bd14d2df867a0163651188bcf79b801d3dc683d2797840c5822b6fbf996ba76Virustotal results 25.00%Phonk
2023-11-29n/aexe 48445024105791ab8b37eb5292e8fbccd1c32896a0f91185d9981f3c8e636e39n/aAgentTesla
2023-11-28n/aexe d6a97630bdf41188120a543b8faab162ca5abf0ebf9651223a0f8dcd75f3e118n/aPhonk
2023-11-28n/aexe 0aec7e0749d1c1c975ddcfcaea469789b79e717e8715c14f204d680fd340fb32n/a 
2023-11-27n/aexe bfd23b8d4186146b217f7ea98bfab2eb73ea46d4316d0eb41ffbd374718dfc6cn/aPhonk
2023-11-26n/aexe b4b63cff8a641f25803ccc47f679132870ea27ebed3bdc75bf847b732a0b90b4n/aPhonk
2023-11-25n/aexe f4a9c54fcfd61cbb3e3e46332f3af3a29b70d4ef2090eeb8e338924e2cf5a762n/aPhonk
2023-11-24n/aexe 1f3b7a5b5dcad705398697e8cf460beab8a73d05d299a6dbbebe96f10b8a00b1Virustotal results 23.61%Phonk
2023-11-23n/aexe 3c47f28be9b0985a64ec458337ff217346a69d670cdc582f6813f32e8d75ed52Virustotal results 33.33%Phonk
2023-11-22n/aexe 52561ff3d9b1ecac75cbdfb406992f710551148dd79ee5e5370efde2e9cdfa82Virustotal results 37.50%Phonk