URLhaus Database

You are currently viewing the URLhaus database entry for http://backgrounds.pk/zxcv.EXE which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:437013
URL: http://backgrounds.pk/zxcv.EXE
URL Status:Offline
Host: backgrounds.pk
Date added:2020-08-20 03:16:22 UTC
Last online:2022-08-20 18:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Blocked
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2022-08-20 15:15:06 UTC to info{at}kanzas[dot]msk[dot]ru)
Takedown time:2 years, 3 months, 6 days, 12 hours, 33 minutes Bad (down since 2022-11-14 15:51:06 UTC)
Tags:ArkeiStealer link AZORult link exe RaccoonStealer link RecordBreaker link RedLineStealer link RemcosRAT link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-10-15n/aexe a9c71d40732dfc31197255ec1f23483ea710b932f26274e11f396a21d0d27e47n/a 
2022-10-06n/aexe 599fa7fc07b1b8265ea936ce641733fcec03eb0fe8cc4822e5a752b6629e216en/aRecordBreaker
2022-10-01n/aexe 8e2d87f5f34b7764e66644f831467e469dcc18a30a17d02252880851f560783dVirustotal results 22.39% 
2022-09-16n/aexe 60e6da1143cb32a41ecc76952d3b4ae8a8910b790973473e61fc2eb147704af7n/aRecordBreaker
2022-08-20n/aexe 04fb5a1f6082a09a55bec26e0748918da0d1007e2a43c70723dc79cc7c413079Virustotal results 66.20%AZORult
2022-08-14n/aexe d81620ec69feb5e745b23dacc25b874cef4db7b0daeaefbdb739300838f4d343n/a RecordBreaker
2022-07-10n/aexe 28455b1a0b29240e95877cff96528b3a196f0cf3a63d9980dc70349cdc0e1e74n/a RemcosRAT
2022-06-25n/aexe 79103532395036c14b755d90f9cacfdec6b588f1b031a7cba936c1b9d2ef3b51n/aRecordBreaker
2022-06-19n/aexe 529586cbbd8586d7f33a3ea9bdd517b7ead617b4e12165106e81e4bfad859474Virustotal results 51.47%RecordBreaker
2022-04-15n/aexe df4876573295b4e7beb618db31a015ea617f61b811978bb168d432c4052f7731Virustotal results 51.43%AZORult
2022-04-12n/aexe fb368927d9051a0ed52610ad43849d1b0cdf2acee3bb1bf88c63e3fce54a4f0fn/aAZORult
2022-04-07n/aexe 0f63b4b4659449eee766610af817b786e9cd7622743851cf7b71430613d7521bn/aRedLineStealer
2022-03-25n/aexe 4f26b9b399e238579178958fc76c17ab1a605a33cb6bd6d47aac073596a2dee6n/aRedLineStealer
2022-03-24n/aexe 8181e5485c8c252628092084f37bd275eddc66d86d03bb07d149203be5e8a611Virustotal results 48.44% RaccoonStealer
2022-02-06n/aexe 857fc01da428dccc15e996c5e737eda4148df3676c987a4416c5bb0768ce982dVirustotal results 35.38% RaccoonStealer
2022-01-07n/aexe b8868eb87c7cb945704e2d0b8ec2ebdc890cd6df12f9ef0a7295582c7fd0cf1fn/aAZORult
2021-12-10n/aexe ed58ffee46a583c177c792b56c9fc20ccd9509d125f2e3fc90c4f48de7e2c2a1n/aRaccoonStealer
2021-11-13n/aexe e4649c5b452d75aa2cdfdb8bffed9dd6c558d3cb1225c877bf570abb7b106221n/aAZORult
2021-11-02n/aexe e688db3d0be7a10fa8ddd79918265cac9ef0949d7d07072f82aff9ae43d6fadbn/aRaccoonStealer
2021-10-20n/aexe f3be725453067dd4fd33c93d841f8bc707334cad295708f36319294405066346n/a RaccoonStealer
2021-10-08n/aexe 1748b08304d248899ba482858932847ed7b07258edc30ade300a021a622b10ben/aRaccoonStealer
2021-10-05n/aexe c676489a5be0d3bd669d9593af8cca317cd10ffd478a6ad63dbb5a18c6c10454n/aArkeiStealer
2021-10-03n/aexe 314afbf4a221c8ce6f8d2674277a3c2fb119c34222b5c3ed83afd79005e352f4n/aAZORult
2021-09-25n/aexe d3d844bca757cfac2bc5cd8cc9bd9d806358eb3af100fdecddb5d0848cd706afn/aArkeiStealer
2021-09-17n/aexe 2d7fcb87c1ac2786c319720a857328d19e7ac523396992b445fec60de47919dfVirustotal results 46.27% RaccoonStealer
2021-09-11n/aexe 42caa5a2e19134770914b3b33dffaceaae03a44fc52babd8abc250d7d7696945Virustotal results 54.41%AZORult
2021-09-02n/aexe b594ae37dfb90a402bda0803680b455ababcc67e1add26f3c3f8f192d97dbe2aVirustotal results 55.07%AZORult
2021-08-19n/aexe 547bf6d6ed5ae181513ed653109514c73e5f50c3ea3a094bcd382fbd3c4b4bb0n/aRaccoonStealer
2021-08-18n/aexe b7f7c6607354a0b83caccf57efef2d2447d212b7e0ee0f476abf069274cfd90cn/aRaccoonStealer
2021-08-16n/aexe 5e08ef6445c40ba0c1216c04291b0d9ef48f0983a9aebd25f214e6fc988daa53n/aRaccoonStealer
2021-08-16n/aexe 14a0d25b4d33216e9110c9588fa3168105efdad28827e772c4798337544eb708n/aAZORult
2021-08-05n/aexe 29cf2aec62c3504b1914484feff17ae470b51229b1df06f1a30334a08b6db12an/aAZORult
2021-07-31n/aexe e0b8c869d4a6c612c59a4a22eb1b61dbd751e7008dfdf8f9215621f95a484be2n/aRaccoonStealer
2021-07-24n/aexe d8ff9678e79ef65841256baae1bbbccea2ded7d6cb186e2abc2eb87ab0a867e4n/a
2021-07-23n/aexe 299c548532e82b62f4b52ad642613b9cecc89c9be39a1da630afbc06cb7cce85n/aAZORult
2021-07-15n/aexe 37ab9185008d63309815a1bc846dcc7067374a8833b49f2bfa6f96fd784f35e9n/a AZORult
2021-07-13n/aexe 797b77fe27e4112f2d295ec0390930bd120d1c9f09351568487b4d9ebbb805b8Virustotal results 32.35%
2021-07-10n/aexe 1e362e4d90f41b89342c39c6ac86bb507c7c8189080502bdbaab35483c00ecdfn/a
2021-07-08n/aexe eb9087aa8cfed42c217de2206a95a9f320e4850625175e52b53ce51224ac52c6n/aRaccoonStealer
2021-06-30n/aexe 69e75e57bc4a09c9a3d7726b28423d10df5b0224177ebfa43930668efd0af5dan/aRaccoonStealer
2021-06-04n/aexe 5a4f75c16948eb90210b50a2af901dad431a231d5a4406ce55dad0cd943d5cd0n/aAZORult
2021-04-30n/aexe a9b0a14beac57ba149a978c8f0996a4f4e70e003b80c67e631947c9dc3590154n/aRaccoonStealer
2021-04-02n/aexe f8a4c7152c005d747b7efda427cd7f87ed3a7897670caba390f7b9375b938b88n/a
2021-03-30n/aexe 0b02739c5fd7a7fa53410bc2287c42cf66a3a6d51ecc9570e76e4f0f8129f2d7n/aArkeiStealer
2021-02-16n/aexe d98fd8189273e4f4fcbb8b1d5b32459b5d7adcd6eaff9efef0c32ace0fdfab0eVirustotal results 57.75%ArkeiStealer
2021-02-09n/aexe d2c1530870532abdf2123652c9f97dc9de79dc8aabbb8cfd185b1011d6cdbb01n/aRaccoonStealer
2021-01-31n/aexe 471f481edf5103237c0ce99bebd099078a10b6fccc743bede0c38cb3f8c05be7n/a 
2021-01-24n/aexe 69281664db9f7088a1cdfbf5b3468170bdbeadeb3ce9f4db3ef114ef8828e870Virustotal results 41.79%RaccoonStealer
2021-01-04n/aexe 5db96b0ee43594af4cde84cec550269e66d311cfa59d63095a00c0b9d5e40f4bn/a RaccoonStealer
2021-01-02n/aexe 17e1ef78f68371282d030616c47734fa831864cac7fc0ed3171cdc0087bcc894Virustotal results 46.48%ArkeiStealer
2020-12-23n/aexe 50cae11649a917039a3fadf933dcf5d724ce0db6fbe4d29cb0aa590896849ca6n/aRaccoonStealer
2020-12-07n/aexe 0733d640a833a24e6c37c8085a6e22ba3245eee995c83edf79f20efa327d365an/aRaccoonStealer
2020-11-29n/aexe 13383a95305773d0defdd99d9d5d555eb72d8bea2265b44f133c56ffbdae2289n/a ArkeiStealer
2020-11-18n/aexe bad1feef0055835db4f894b4885b48d596788458bc9095d4c0af9ec36a97077dn/aRaccoonStealer
2020-11-10n/aexe 77d3172d77aa45c61b8563dcb13b26bd2f8f9fb4cbc2fcc966966a26f316ba56n/aArkeiStealer
2020-10-28n/aexe 7216531f7bdf08e92cf69d0754b27da97d716c62ec5294fa03ccebb7e652bfdbn/aRaccoonStealer
2020-10-26n/aexe c9c5b4b76ac69632d5f5931198adb5d21d214c72d8524ffc60d7d6bbcd44cf03n/aRaccoonStealer
2020-10-14n/aexe c3c2a6747a34c92023bef1d5abc604f697408e60ee64d1155af7a8c62727e894n/aRaccoonStealer
2020-10-13n/aexe c686c7b2fff2ad2853c1d450d44fcf96ff3df67f34205b6b4e0352153893c924n/aRaccoonStealer
2020-10-09n/aexe 033dd7d02172855d2e61e1dcfae24bdeb9136310503e06bf7079ef78db9422aen/aArkeiStealer
2020-10-08n/aexe ce4c9d123144cb01aaa09ecfc34a21b6808c8d891fdd777e3bc8736fc3d877can/aRaccoonStealer
2020-10-06n/aexe e3ac7d448906413ebbfefd0eea740b60a7748a156d70544e4a9b08c5a3ef637an/a 
2020-10-04n/aexe 61198dcb525d78061585053ddc30e99ca70842899622e333eb64d3b68ee7a167n/aRaccoonStealer
2020-10-03n/aexe 4d85505d2a4bb3b27a1f313b81a8198f1a725a6330fd93e21c06f3bfc4db8f7bn/a 
2020-09-28n/aexe dc3171271adef72e1faf51d68c3c76daaffa9f097ef6d51aa600c98f129209e8n/a 
2020-09-23n/aexe f539c1e201030689ba917991a929526485f79e99f421802a9a7dc4d9a962ecd2n/a RaccoonStealer
2020-09-19n/aexe 362d3fd69c524f00f783eda97ea2229b80573d5cd1e849d3a0d6a17034ebd38an/aArkeiStealer
2020-09-06n/aexe fccc12ba866c71644e8d877c8780ee0ba0178c1712b3c05f957f90f59de6d493n/a RaccoonStealer
2020-08-31n/aexe dec3cf3fb618a435846f123285aef58498af95552e12cb1f7285e5ba88a601f6n/a AZORult
2020-08-31n/aexe 1553300557f17e7cb62c914616267bc733854b98a0edc5215d901cc4f8e4d0f0n/aRaccoonStealer
2020-08-27n/aexe e3904895453928a24306c37594dc8696540cb1079f814cdfca9c0a7c7be8bd99n/aRaccoonStealer
2020-08-26n/aexe 5910272b991d8f96d67515878eaeb8bd961b858a230d29bd9d513fef2bdaad05n/a RaccoonStealer
2020-08-20n/aexe 38d0f6d2d2ccd86e63232e4c702202b167be54dd3c8e21d289f21f4d3775a1e5Virustotal results 58.57%ArkeiStealer