URLhaus Database

You are currently viewing the URLhaus database entry for http://fgkala.com/AhWb7DIv2lcAW/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:119640
URL:http://fgkala.com/AhWb7DIv2lcAW/
URL Status:Offline
Host:fgkala.com
Date added:2019-02-07 21:08:08 UTC
Threat:Malware download Malware download
Google Safe Browsing:Clean
Spamhaus DBL:Not listed
SURBL:Not listed
Reporter:@Cryptolaemus1
Abuse complaint sent (?): Yes (2019-02-07 21:10:08 UTC to report{at}parspack[dot]com)
Takedown time:7 hours, 10 minutes Good
Tags:emotet epoch2 exe heodo

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTSignature
2019-02-08Gdv_uSKO11P.exeexeb6443dadabc0432a7c31781ba0bc48679de619e7e68af7b843b0a3f01add69baVirustotal results 16 / 66 (24.24)
2019-02-08XpzraVF8jPTVM.exeexe4211604dd322ab26ea161a892d6c46452c50eae54b36bde0b223259fa70e93daVirustotal results 16 / 70 (22.86)Heodo
2019-02-08nFBbefIDYDU3_tzouUW.exeexea7634a45a13d2733b890233f2c0f365bc824a69338d6e777d9a2461fb4a56e99Virustotal results 14 / 71 (19.72)
2019-02-089lEI6LPAdCFfrY.exeexeb5db2ff8b8e854bb976b0bae2284480877be87ef2d4d53e9b2aa14bfaeeaf8cfVirustotal results 15 / 70 (21.43)
2019-02-08P9uc3puhQTI4_r70m.exeexea0b2871629346d43c1a802d7f922012eb925d9b4122f006f5ead8803a8dd4826Virustotal results 14 / 70 (20.00)
2019-02-08cy0s3Qp4_Q3RYvm.exeexe2e095c498ddd273459c3a9a3d39f57bc4e1f303920dd1ccd361ee98fc1231b5cVirustotal results 13 / 70 (18.57)Heodo
2019-02-08oqyE5RJJ6ewwM_G5VIftXO.exeexef9cd76422ed79661ce4bec3c451394d3b1002b49346f9e717a1c4cd0cfd15d4fVirustotal results 14 / 69 (20.29)
2019-02-08oqyE5RJJ6ewwM_G5VIftXO.exeexef9cd76422ed79661ce4bec3c451394d3b1002b49346f9e717a1c4cd0cfd15d4fVirustotal results 14 / 69 (20.29)
2019-02-07rq3RMfVBbgBD_3sd.exeexeb3e1b368ed5d6afbe3c8ec9652e1035ad11d2d4e181d6a457691c2cdae6a9e0dVirustotal results 14 / 70 (20.00)
2019-02-07BZvHiLCC.exeexead2e9d5d78e7da9e43bbf155e2845424715f728ae2bed08e592328eaa0a8a220Virustotal results 12 / 70 (17.14)
2019-02-07KA1sUF7_BK.exeexe5f3d079e4e4f5652d07c51a3303d1bdf788568c146feca045a84b747984a2c2fVirustotal results 14 / 68 (20.59)