URLhaus Database

You are currently viewing the URLhaus database entry for http://zang1.almashreaq.top/_errorpages/arinzezx.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2728622
URL: http://zang1.almashreaq.top/_errorpages/arinzezx.exe
URL Status:Offline
Host: zang1.almashreaq.top
Date added:2023-11-06 17:04:06 UTC
Last online:2023-11-06 18:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2023-11-06 17:05:08 UTC to abuse{at}cloudflare[dot]com)
Takedown time:20 days, 8 hours, 56 minutes Bad (down since 2023-11-27 02:01:33 UTC)
Tags:AgentTesla link exe

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-11-17n/aexe 471cc066a5f5828095b8a36548de488db6b0c06443f2d295cc7268910436eda2n/a AgentTesla
2023-11-17n/aexe fb20fa45defe3cda5fabd30fafd0bf1ceb899bfc96a8ad9945e6e621680a03c3n/a AgentTesla
2023-11-17n/aexe 06b95d49cba7ae37865a35cc4c974e15ef69ebae50c76a77aecb30b76c29c76aVirustotal results 19.72% AgentTesla
2023-11-16n/aexe ef839e13f74839a9e35611726eaa3a559f138fd6e757a8d20e2bfbfd96234dd0n/a AgentTesla
2023-11-16n/aexe 726edebb30a1ff05c20e5b8dde2d8daa76292df86cf8460514489959c3fa916dVirustotal results 25.00% AgentTesla
2023-11-15n/aexe 83a565cdf4654762c4041ead879568fae43451f84ac37d4c940208ba85975910Virustotal results 30.56% AgentTesla
2023-11-09n/aexe ed92cfb02cdacf96f67a4a7c97e0f26d37e7349be99aa8fc105bd3a608186e25n/aAgentTesla
2023-11-08n/aexe 864b16c46566bed7fe31f96fa00130d943ddde3446f5399cfe39c893556a2c05Virustotal results 26.39% AgentTesla
2023-11-07n/aexe 980870b8c7eb0b7115be4990d310697314c0fd125b5e83302408da3f22437335n/a AgentTesla
2023-11-07n/aexe 0632b3dd2a74ace52b9ad7267851f42bcac9a5a68e92b7eeeaed6b24077b73d7n/a AgentTesla
2023-11-06n/aexe 3c3e556a7ff5b9d5d7deb289a9172ee262f0aae4eeba873fd98a6107ec488378Virustotal results 37.50%AgentTesla