URLhaus Database

You are currently viewing the URLhaus database entry for http://admaris.ir/atlasx/italianx.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:401255
URL: http://admaris.ir/atlasx/italianx.exe
URL Status:flame Online
Host: admaris.ir
Date added:2020-06-24 04:56:08 UTC
Threat:Malware download Malware download
Google Safe Browsing:Clean
Spamhaus DBL :Spammer domain link
SURBL :Blacklisted
Quad9 :Blocked
AdGuard :Blocked link
Reporter:@p5yb34m
Abuse complaint sent (?): Yes (2020-06-24 04:58:02 UTC to mehmet{at}vitaminbilisim[dot]com)
Tags:AgentTesla link rat

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTSignature
2020-07-25n/aexe 990694edfe4468de249af665ff4f08633f02c1b5349106b532b734533c115480n/a
2020-07-19n/aexe 782ae9c68607cbf399cf1397343740d4bccd37cb0a6d7d88effa5d48041afe67n/a
2020-07-17n/aexe e22db777ab5418e34773fa4c6837e2f3af5638d49569bc4fee5b9821042a0351n/aAgentTesla
2020-07-16n/aexe c4aeb26dbf763871a003bea68d96b7d6937437cfda61f18c36d1a72aa59667acn/aAgentTesla
2020-07-15n/aexe 3997d28fe31b4991f0ea9ab3c73b3bbdb83c9b48eb6cbe37ea1b5222b6b40fedn/aAgentTesla
2020-07-14n/aexe 62cc84a2034d35b26178ffd4d965c12745c2b9bdadbafd6c1b8295ea2404fd58n/a
2020-07-13n/aexe 06b1fc15f046059b3468ef90bccf5baa7961b81bd19f51eaf65e3d9e4217fb56n/aAgentTesla
2020-07-09n/aexe 923afe739adc8482ff3c6854a893e67ba74241aba874da9235765b862cf84977n/aAgentTesla
2020-07-09n/aexe b935dd350587bedc716c42aeb0e46d915f5e62900b327b78902fdf61984c3980n/aAgentTesla
2020-07-08n/aexe 4dd90f817154b87c0269aabb51365dfa4c57896449642d178ad19891e52b5affn/aAgentTesla
2020-07-07n/aexe 236d420995213528160fb6bb10de76e5210e4816712c38ae40b554787cfca024n/a
2020-07-06n/aexe d7aa2665c67f34ae4f7bc74803878b94c8a4d30685a8a49788deb58601495fafn/aAgentTesla
2020-07-05n/aexe ce566ac270e726742ad3bac9ecfdf8919aa93a2fda8df9ec1ac4337516c789dfn/a
2020-06-29n/aexe ddde9519c188d7ef44e9d8235066be5fe298e2089888749263531f014b8e4b5cn/aAgentTesla
2020-06-27n/aexe 438729a3edee9e6c01def41a4412ae6a387facac66000444e86ac7d56e2124e7n/a
2020-06-24n/aexe 9fb2c6d489d0d206f8fc5a28c3f228c9a2aef6f60fb74c23bdc510d848479605n/aAgentTesla