URLhaus Database

You are currently viewing the URLhaus database entry for https://a.pomf.cat/ioxyfx.dat which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:568468
URL: https://a.pomf.cat/ioxyfx.dat
URL Status:Offline
Host: a.pomf.cat
Date added:2020-09-19 15:21:47 UTC
Last online:2020-09-21 22:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: Jirehlov
Abuse complaint sent (?): Yes (2020-09-19 15:22:31 UTC to abuse{at}gigenet[dot]com)
Takedown time:2 days, 7 hours, 1 minutes Poor (down since 2020-09-21 22:24:13 UTC)
Tags:Ransomware

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-09-21n/aexe d67546c5afd72af72f442d9ac902e287cae8df2f8093af2628e58c09d7bae13dn/a 
2020-09-20n/aexe cd6f8109c5670f8cb48efdc4535da226ee5786553f342456680120e38f0ae3f3n/a
2020-09-19n/aexe c115998d2eaf05cb7e194a476959c3f9f9879c0e0809d031950abf2514878330n/a
2020-09-19n/aexe 18f4123ee42f5a29f8df7bd1cf95ab73441f082584f390aa218c2dd1134f4055Virustotal results 40.91%