URLhaus Database

You are currently viewing the URLhaus database entry for http://abass.ir/arinzex/arinzex.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:413156
URL: http://abass.ir/arinzex/arinzex.exe
URL Status:Offline
Host: abass.ir
Date added:2020-07-15 15:50:17 UTC
Last online:2020-10-23 12:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: JAMESWT_MHT
Abuse complaint sent (?): Yes (2020-07-15 15:52:02 UTC to solisomama[dot]john{at}gmail[dot]com)
Takedown time:3 months, 9 days, 21 hours, 2 minutes Bad (down since 2020-10-23 12:54:53 UTC)
Tags:AgentTesla link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-09-16n/aexe da84ebc8503de1b6c7d4388b75738b72ae8c2a84746bc34d6ca07266b8917ca0n/aAgentTesla
2020-09-07n/aexe a5602ba2bfa6fcd7b914266f63da512b1c212c75406731aaefa9fcbcd785a57dn/aAgentTesla
2020-09-03n/aexe b37aa300f8b16e6d0cd3b76a05fc8afeafb7073efbf0af568a404d42d78c5650n/a AgentTesla
2020-09-03n/aexe d2bb06dc3882c72e26ed7598fee37d128955c229246225ed393d90bd2a4eb1ddn/aAgentTesla
2020-09-02n/aexe a84cf81fa2d7790ea8f5d59354fa47d2067a12c89c2d975ee2f3b9547765be1en/aAgentTesla
2020-09-01n/aexe 65bdf218a95af52100c20e6f146a7acf16aa0ed0a34ddc7f4a68c66554b648dan/aAgentTesla
2020-08-31n/aexe 4a13387b2810ec95d4e71453874e8c8d7ea0b1c32b372f3868d1029881c51f4cn/a AgentTesla
2020-08-28n/aexe 0dcd99459b8b5d93d62d9a7ea91595013d94e2c5694ee8e0f07af527a2def414n/a AgentTesla
2020-08-28n/aexe e6cfb2bd5365c897d8821a96df1404d15babbacb963c27f78f50140da1142f41n/a AgentTesla
2020-08-27n/aexe 788328139dee5d411351af97eea2c029cf17fef8445f1d08b507e74dad9dcc5en/a AgentTesla
2020-08-01n/aexe efd2d3e972be81b3e8ec64715209b93d363ced0cd6ba9f80c55a64392822cedbn/a 
2020-07-24n/aexe 6217014140111bab16773db0c55412b34877e6896b7d6a1ff78d68b67d751432n/a 
2020-07-23n/aexe 19d2a50445772cfeb04968775a012dfa90d18a4b6113e72b7b69184228962989n/a 
2020-07-17n/aexe b95b85db69683148cbeaed280288dfe933144070e166be1a86150dac69e48e0an/a AgentTesla
2020-07-16n/aexe e7222d2eac52ce9800910488ac24d0bc175a09d33e8859359a43025e01a26c33Virustotal results 21.13%AgentTesla
2020-07-16n/aexe 6c14f83aa09c4b45b49bc66096834c964a934f8d171733babb829aaf1f6d579en/aAgentTesla
2020-07-15n/aexe 1be4755bd4fc1b80618ed465341e1662158281e6a741d5b2279b7bfceba25ad7n/aAgentTesla