URLhaus Database

You are currently viewing the URLhaus database entry for http://admindepartment.ir/bigmanx/bigmanx.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:386530
URL: http://admindepartment.ir/bigmanx/bigmanx.exe
URL Status:Offline
Host: admindepartment.ir
Date added:2020-06-11 07:49:11 UTC
Last online:2020-11-11 00:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Blocked
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2020-06-11 07:50:03 UTC to mehmet{at}vitaminbilisim[dot]com)
Takedown time:5 months, 2 days, 16 hours, 45 minutes Bad (down since 2020-11-11 00:35:29 UTC)
Tags:AgentTesla link exe

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-08-07n/aexe f7670fa48ef7237b7e2f1335a5a3b15d87743555193eb62cbc46852025679c78n/a 
2020-07-22n/aexe db62b328c542a7bcdc583d45c26524db74ffd5a6d4041ba79cb9740414f1404fn/a 
2020-07-19n/aexe 90f5da63d24d5db165b564d84ec4cfed902eb79ddd08d6e554f04b34057c323an/a 
2020-07-03n/aexe 00f87bd21e6ee8cb152f24a64cfde3cb6bf18fd33d9892de0b7367d01b0b2a63n/a 
2020-06-22n/aexe 0a27b8ba18a4aab66654c3c43fa4a3cabb797b129f259ca21059d6657ed4c2e3n/a 
2020-06-11n/aexe a29e7c6a9409274fe7bba3af7d5c4443e128d0c16ebfef06b80bf7070cd10136Virustotal results 84.29% AgentTesla