URLhaus Database

You are currently viewing the URLhaus database entry for http://amazingmike.net/NZ54/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:12564
URL: http://amazingmike.net/NZ54/
URL Status:Offline
Host: amazingmike.net
Date added:2018-05-24 20:02:52 UTC
Last online:2018-09-08 06:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: oppimaniac
Abuse complaint sent (?): Yes (2018-06-11 10:41:03 UTC to abuse{at}nedzone[dot]nl)
Tags:exe heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2018-05-267186.exeexe 89246ddcd97bc0645d5aac8a785e738dfc089e38425756f71a5e63b6fb194099Virustotal results 30.30% Heodo
2018-05-2672840.exeexe 4c64be374c11bd68c40e59bd478517b0ed5a8d7a70a4aca6c61650de4544c845Virustotal results 18.46% Heodo
2018-05-2549021.exeexe 5f321fc562f81d55a5a712ba24d8748543cfc51eca79a28b0bcd03542ca8aeceVirustotal results 18.18% Heodo
2018-05-2521365.exeexe e3cdb79e04862207a53e801440c5d92bff9c56fb54cdbaa7914f44244a6fe064Virustotal results 20.00% Heodo
2018-05-2595490.exeexe b7fab8bd7cfc07cf11cbf012b9d926cc4953df301b4d5bf8df12106d9d748acan/a Heodo
2018-05-2443723.exeexe 9f3cca63365e646140eacac2144c90bf48555e3e254dca8b4cc833d83ba911b8Virustotal results 19.70% Heodo
2018-05-2468321.exeexe 2f4370d9dbdf3fbf3a2cec9dde67b059e81a03269dbb16da8d38c72a3a5ef076Virustotal results 19.70% Heodo