URLhaus Database

You are currently viewing the URLhaus database entry for http://195.82.147.93/adm005/052925-sg/ittechnical.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:3556650
URL: http://195.82.147.93/adm005/052925-sg/ittechnical.exe
URL Status:Offline
Host: 195.82.147.93
Date added:2025-06-03 06:25:10 UTC
Last online:2025-06-15 16:XX:XX UTC
Threat:Malware download Malware download
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2025-06-03 06:26:06 UTC to abuse{at}dedbro[dot]pro,admin{at}vaultdweller[dot]net)
Takedown time:12 days, 10 hours, 15 minutes Bad (down since 2025-06-15 16:41:50 UTC)
Tags:exe opendir ResolverRAT

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2025-06-05ittechnical.exeexe 9981f433a0c08809fb3e0f31e3d20fb59e66df0f3b3c62100a7af11f770c583aVirustotal results 25.00% ResolverRAT
2025-06-04ittechnical.exeexe 098bfdea315e85cc9a1765a5d52b1b13a337d55fa27877e0c8894d5d5d3a6e38Virustotal results 27.78% 
2025-06-04ittechnical.exeexe 40b7bdf78cfa9be46ccbe9279bcdb909c62f9df037c63d6d7cacff7edba41e47Virustotal results 29.17%ResolverRAT
2025-06-03ittechnical.exeexe bd3d34f20e7017f275e2569ec357031e8d01f41fdcc4c7bd693340c86e426991n/a
2025-06-03ittechnical.exeexe c1dca23a37750e7d9ed551b3529cbde04edbc84d066bc8074b1ccdef0c9ebc94n/aResolverRAT