URLhaus Database

You are currently viewing the URLhaus database entry for http://garenanow.myvnc.com/CIG_MHKD.dat which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:128114
URL: http://garenanow.myvnc.com/CIG_MHKD.dat
URL Status:Offline
Host: garenanow.myvnc.com
Date added:2019-02-16 17:15:50 UTC
Last online:2021-04-27 18:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Blocked
DNS4EU :Not blocked
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2019-02-16 17:16:02 UTC to hm-changed{at}vnnic[dot]vn)
Takedown time:2 years, 2 months, 21 days, 0 hours, 53 minutes Bad (down since 2021-04-27 18:09:14 UTC)
Tags:emotet link exe heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-01-22n/aexe 50ba75c95d2b8fc7045821fc5b928b72615be6744aa9dc9a43f6b7a6d7df6258n/a 
2021-01-05n/aexe 716216084a19a0d174226c58fd48a01047207952f1d04f4328d1a74e9abac693Virustotal results 16.67% Heodo
2020-12-06n/aexe 8e6fce21be22581f878f2388a70156153c2af107b68d42689a1faee706869bd1n/a 
2020-07-26n/aexe b3688d1832ff63204dfdf25fe7698700ab2faba504a9e83b65e41e9426686eben/a 
2020-06-29n/aexe 67c4377ac19f874137b3ac4567de87b62c26ddf843370a7e09c9e39793472fe4n/a 
2020-04-19n/aexe 521bf8e81660784b24eb6420a2b0819f7c2c514a3288181e5940b9e4c43498d3n/a 
2020-02-10n/aexe f8aa32d88540d486d711dc042ec51d4a90cf335c300109c36eaffb1f76c15f20Virustotal results 14.71% 
2020-01-24n/aexe f544ceda344e824def6bb5793cc4aba765f42416f813703237239da18247c8f5Virustotal results 17.39% 
2020-01-10n/aexe 311dca44685527515bfc01d6c9a1e6b46b57c41fee56f1ddd5cea11328ff1e82Virustotal results 16.92% 
2019-12-20n/aexe 8e1297fcfd77235e204a3665df44fd5dd5b464a972dd8f856916937ed1607152Virustotal results 15.15% 
2019-11-25n/aexe daf81cfcca8e52797a01334d9d948429b7e1ebfb8dbb6df965aecec25a946fffVirustotal results 18.31% 
2019-11-19n/aexe 08e9bf83fd8489ebd9a42e19ce7244592a2a1016e80c0b5d3cc7f2306ee3350eVirustotal results 17.14% 
2019-10-23n/aexe 13870ef190925063bf7c11309b51f17b47f7f1d4e1c2e0cb3a9bd7ff977ad7eaVirustotal results 17.91% 
2019-10-14n/aexe acdeb369cdc33dfaa2a63cd228fef32cefdae7d1efb4dfc989671f50d2bb314bVirustotal results 16.90% 
2019-09-10n/aexe d3b860c799d8ddd20c6c066165129902bff32be038224a76a16245a666bc9973n/a 
2019-08-18n/aexe c8d26ea629c1ba1987183e07dea768c6869b2b9176114ee2a81e02c0cb80e5acn/a 
2019-08-18n/aexe 8bef6234557d872c163022195d318d4a9237ded299a377642a930d77027665adn/a 
2019-08-16n/aexe 1d5cf060ade203dcb58c508b7ce93c9a0d7a16c672354816504a6db8e6851776n/a 
2019-08-16n/aexe 8eaf1f96baf19da449f3a2dbee50830baad97ebf36d654ae5d81090a5e1d9229n/a 
2019-08-16n/aexe d800daa35cea2a1be1b29ef95fc17622ab79d9dec6475bd9b619ceb0dd502edbn/a 
2019-05-10n/aexe 3256537bc8f099ac72ddb564d547d5b96e6dabe080383e95f64cfb3c065fb9d8n/a 
2019-04-02n/aexe 9b3ae4c5527b74391965435605293ae99c24d557db1e62f6541272f2121930b8n/a 
2019-02-24n/aexe 29e0374a105fea9130acb3690ca69fc53e1c16cabae72013f84ba9781be9f27en/a
2019-02-24n/aexe f04fc2438ebb599145169cf9efecf9e70820681a9cb6dd592a109dbc5f0591a4n/a 
2019-02-23n/aexe d9d19e25e6b4dca70569cc76ab369ebbb036d5e631b9c366ae27e356c43594f4n/a 
2019-02-16n/aexe b870157d5c7f707932cdd55ec273e5d14dd6e309cb3c1cf1971f2928fc960492Virustotal results 40.58%