URLhaus Database

You are currently viewing the URLhaus database entry for http://mazzglobal.com/_dsn/vnpvtjWCmO/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:12246
URL: http://mazzglobal.com/_dsn/vnpvtjWCmO/
URL Status:Offline
Host: mazzglobal.com
Date added:2018-05-23 19:55:11 UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Blocked
DNS4EU :Not blocked
Reporter: oppimaniac
Abuse complaint sent (?):No
Tags:exe heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2018-05-25631520910713.exeexe a7d4f956de668ea5d95d8304ece4bc57f1768c637a1877daff53ed36c5a7967fVirustotal results 26.87% Heodo
2018-05-2542452284.exeexe db74a54b7cf3e52765a4c075a7d052de2b3132313181debdd496fa58ba57e666Virustotal results 16.67% Heodo
2018-05-2542687495224.exeexe 4a6f2b46610b24982ee51fa3d95c01ada94fea8ce5dceebe8a0b3524634f4817n/a Heodo
2018-05-24996607265411.exeexe 8120c164a58573af091e0d1301f29533a00d3ae90f292cad37b612c9bc75198bVirustotal results 20.31% 
2018-05-249714051423.exeexe 10ac357fa15539c2286447894efd1d086d9aee34a462653dbf687e6908c0436dVirustotal results 18.18% 
2018-05-2404473314787.exeexe 702010c2052bdc73f48655759f3098708ee62849dd42907e751a70e2c1645cb9Virustotal results 13.64% Heodo
2018-05-230217718494.exeexe b9c8c84d80b742d81269b98c6356e8bfe6572ba2107284227dbeae127ad4bc2fVirustotal results 15.38% Heodo