URLhaus Database

You are currently viewing the URLhaus database entry for http://omegagoodwin.com/GbpjbAyhJpynWwk_d/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:119398
URL:http://omegagoodwin.com/GbpjbAyhJpynWwk_d/
URL Status:Offline
Host:omegagoodwin.com
Date added:2019-02-07 14:23:21 UTC
Threat:Malware download Malware download
Google Safe Browsing:Clean
Spamhaus DBL:Not listed
SURBL:Not listed
Reporter:@Cryptolaemus1
Abuse complaint sent (?): Yes (2019-02-07 14:24:11 UTC to abuse{at}amazonaws[dot]com)
Takedown time:16 hours, 29 minutes Good
Tags:emotet epoch2 exe heodo

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTSignature
2019-02-081zfcVukBuY_JO6bEavXJ.exeexe79ad7039d62343412b4e6384ca1b4cc25b76b9220d4a44b5e4a751c283b878bbVirustotal results 16 / 70 (22.86)Heodo
2019-02-08f7fksLz.exeexe85ea4203608cae3df7050692686ce306f0cd5597f50d8792076be5ff2db20b8bVirustotal results 21 / 70 (30.00)Heodo
2019-02-08gw3bNfWVjQS.exeexeb6443dadabc0432a7c31781ba0bc48679de619e7e68af7b843b0a3f01add69baVirustotal results 16 / 66 (24.24)Heodo
2019-02-088fQCwWQ_KL.exeexe4211604dd322ab26ea161a892d6c46452c50eae54b36bde0b223259fa70e93daVirustotal results 16 / 70 (22.86)Heodo
2019-02-08PMvcBVpOr.exeexea7634a45a13d2733b890233f2c0f365bc824a69338d6e777d9a2461fb4a56e99Virustotal results 14 / 71 (19.72)Heodo
2019-02-089kyt.exeexeb5db2ff8b8e854bb976b0bae2284480877be87ef2d4d53e9b2aa14bfaeeaf8cfVirustotal results 15 / 70 (21.43)
2019-02-08NWhL6S9eREM_OJ.exeexea0b2871629346d43c1a802d7f922012eb925d9b4122f006f5ead8803a8dd4826Virustotal results 14 / 70 (20.00)Heodo
2019-02-081fLCD.exeexe2e095c498ddd273459c3a9a3d39f57bc4e1f303920dd1ccd361ee98fc1231b5cVirustotal results 13 / 70 (18.57)Heodo
2019-02-086pRf1k9u4E.exeexef9cd76422ed79661ce4bec3c451394d3b1002b49346f9e717a1c4cd0cfd15d4fVirustotal results 14 / 69 (20.29)Heodo
2019-02-086pRf1k9u4E.exeexef9cd76422ed79661ce4bec3c451394d3b1002b49346f9e717a1c4cd0cfd15d4fVirustotal results 14 / 69 (20.29)Heodo
2019-02-077807ZiEiXqGdUtt.exeexeb3e1b368ed5d6afbe3c8ec9652e1035ad11d2d4e181d6a457691c2cdae6a9e0dn/aHeodo
2019-02-0703EL_54d9ymP.exeexead2e9d5d78e7da9e43bbf155e2845424715f728ae2bed08e592328eaa0a8a220Virustotal results 12 / 70 (17.14)Heodo
2019-02-07qtiZ5BL_8MLtp.exeexe5f3d079e4e4f5652d07c51a3303d1bdf788568c146feca045a84b747984a2c2fVirustotal results 14 / 68 (20.59)Heodo
2019-02-07s66jhAZMyfDcnI68.exeexe12357ddadd777ff66a5750b6cf33da0a00c33baaf305484df3ee94c41eb22d9aVirustotal results 15 / 70 (21.43)
2019-02-07VwoaY4DrseF_ZIgd.exeexe92e07ace02e9d24d7b78e6bc214f7abdee1ec81fa49935ccbca9432052fa3477Virustotal results 17 / 68 (25.00)Heodo
2019-02-07klRU3efeS_F.exeexe249c8bff2086bcd504c50ec0edc9fcf0cf9066b326cb98f6bbfa0804f10b6d12Virustotal results 15 / 70 (21.43)Heodo
2019-02-07nbBRzXXXqGLf_PCx.exeexe126134f7ca749b74e16fcfd8bebd5c2efb871333c7b351d4e3974c7e74b495dcVirustotal results 14 / 70 (20.00)Heodo
2019-02-0753SvYTdjqt_NFFepN.exeexe3cf7fe61c438e8a7bcd0474e06771ac11235d7953ca72f41837d836b2e7f58feVirustotal results 15 / 69 (21.74)Heodo