URLhaus Database

You are currently viewing the URLhaus database entry for http://greenplastic.com/hUYu36qNEQ/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:105403
URL:http://greenplastic.com/hUYu36qNEQ/
URL Status:Offline
Host:greenplastic.com
Date added:2019-01-18 11:31:03 UTC
Threat:Malware download Malware download
Google Safe Browsing:Clean
Spamhaus DBL:Not listed
SURBL:Not listed
Reporter:@Cryptolaemus1
Abuse complaint sent (?): Yes (2019-01-18 11:32:04 UTC to abuse{at}liquidweb[dot]com)
Takedown time:10 hours, 45 minutes Good
Tags:emotet epoch1 exe heodo

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTSignature
2019-01-18wsE4DY61A.exeexe46286ab7852adc8cc09aa9097f063c2d0c5fab402126f0d0688f9373376bd7cdn/aHeodo
2019-01-18zqMr8ZZv.exeexe2e4d3cf77a6027ed130bd30354ba64722aba1cede2b156a1341df16f5516d819Virustotal results 16 / 70 (22.86)Heodo
2019-01-18pxRjKZit.exeexec3524aba4c3b593992e147eff7a8cdded09b1d2c0409a42febc267e7fcc2257eVirustotal results 18 / 71 (25.35)Heodo
2019-01-18CeEX1p6A.exeexeaf3c3c42f0a36e2b0963df7475b2c8f473b39397d881310ed3966a66cb2972d1Virustotal results 17 / 72 (23.61)Heodo
2019-01-184aAfWKym.exeexe07988cb424a21ad690cdedae338b7b0a4e80be37a5930e3753701d7bacd4e268Virustotal results 17 / 72 (23.61)Heodo
2019-01-18lkzLE9f2ZIML.exeexe8a60dc9876ad042a6c957db6414918f33b932aa1fa0bc56799100968d2a992abn/aHeodo
2019-01-18QQOMIaP1Be.exeexeee93d002cdc0dd18df0d0fc664c872d242d5f65847816f39e2483ee51ada15d8Virustotal results 17 / 69 (24.64)
2019-01-18l65kpJLO.exeexe7dd6da158e2dabf19aebf2a8c26b63869b25cea4a3c442573f97d5003d72da8eVirustotal results 16 / 71 (22.54)Heodo
2019-01-18DhDX0WrTYWJS.exeexe9fa8b87ced8b5e051e51210ed34bb58af7c27617f9b20f39cda4551b8c13acf5Virustotal results 15 / 71 (21.13)Heodo
2019-01-1891OZNdiTX.exeexef1516b1c8962893cd2e6da611f7857ff2e04a01040719b3306231a6cca80a9e1Virustotal results 16 / 71 (22.54)Heodo