URLhaus Database

You are currently viewing the URLhaus database entry for http://87.121.221.212/damianozx.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2682452
URL: http://87.121.221.212/damianozx.exe
URL Status:Offline
Host: 87.121.221.212
Date added:2023-07-14 07:52:04 UTC
Last online:2023-07-26 07:XX:XX UTC
Threat:Malware download Malware download
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2023-07-14 07:53:08 UTC to abuse{at}des[dot]capital)
Takedown time:11 days, 23 hours, 40 minutes Bad (down since 2023-07-26 07:34:00 UTC)
Tags:AgentTesla link exe

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-07-26n/aexe 48eef18edcc14ccc129e3e475e15bb2f16b33e8acb70e0aac29670dd0ce68161Virustotal results 25.35%AgentTesla
2023-07-24n/aexe 7aceda8fea4cad8f6077aa809bcb427bc896e8f0639aa20fee3013eb077199ben/aAgentTesla
2023-07-24n/aexe 99867d6b9ab9654b849966da0fb19d10c1cc63078538a850ee0def53b457e0e4n/aAgentTesla
2023-07-18n/aexe 9e948efb303da97d8bc0a90d8b3b039f5c20fa20cd5aa6a6ef2757664815775en/aAgentTesla
2023-07-18n/aexe 26d32f64e3ae6e01d62458970aabbfc4277ae575feb738b436049caeb923b11dn/aAgentTesla
2023-07-18n/aexe 8fd3fe63894b618245c1f7ae22b1c53e7a7fadfc009bac8de2c33b4a53e75a05n/aAgentTesla
2023-07-17n/aexe 160bfb11197e225ff012d552955f6233cd8955bcff3f731a5d05acb0db5b4de6Virustotal results 28.17% AgentTesla
2023-07-14n/aexe 0a5188523ed7718ee6e6d98d0a1e0dd78bd1dbe95133310066dfa8568ae9a0aeVirustotal results 33.82%AgentTesla