URLhaus Database

You are currently viewing the URLhaus database entry for http://garenanow4.myvnc.com/cig_mhkd.dat which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:128291
URL: http://garenanow4.myvnc.com/cig_mhkd.dat
URL Status:Offline
Host: garenanow4.myvnc.com
Date added:2019-02-16 18:10:30 UTC
Last online:2021-04-27 18:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2019-02-16 18:12:02 UTC to hm-changed{at}vnnic[dot]vn)
Takedown time:2 years, 2 months, 20 days, 23 hours, 52 minutes Bad (down since 2021-04-27 18:04:54 UTC)
Tags:emotet link exe heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-03-11n/aexe 5227cd35a46a9effc896466ced309d515c187f147fd5037b0671f9786d0d7723Virustotal results 27.40% 
2021-02-24n/aexe 7000bff2d44881aeb80e9d118990eae4d8e7db0ed388df644aa4091ab6ad6a84n/a 
2020-12-05n/aexe df003c4fa3f8eab0fe766f2d8e19dd5684006a3d05ad6fe4e1c30b72e4fff52fVirustotal results 19.18% 
2020-09-09n/aexe 716216084a19a0d174226c58fd48a01047207952f1d04f4328d1a74e9abac693Virustotal results 16.67% Heodo
2020-07-23n/aexe 311dca44685527515bfc01d6c9a1e6b46b57c41fee56f1ddd5cea11328ff1e82Virustotal results 16.92% 
2020-03-23n/aexe 08e9bf83fd8489ebd9a42e19ce7244592a2a1016e80c0b5d3cc7f2306ee3350eVirustotal results 17.14% 
2020-02-10n/aexe 43e19ec2464c09a2e70fed0dd5e863e87b6e35f501eed48f6d66f0f272804d17Virustotal results 15.71% 
2020-02-09n/aexe 3b328144f7037f657ec78140d2be428dadfd45f104573c33e5420aa59a1d8919Virustotal results 17.65% 
2020-02-08n/aexe 691ce5d0f56b958c34ff9907205c35aeda9b9cc0696c4376b7362556f0c65133n/a 
2020-02-08n/aexe a48517e963cd249601c03f97046275d4f4c6b04f973705a984f3503ff1a25e70Virustotal results 16.90% 
2019-12-19n/aexe 13870ef190925063bf7c11309b51f17b47f7f1d4e1c2e0cb3a9bd7ff977ad7eaVirustotal results 17.91% 
2019-11-20n/aexe 2d49636a60663209d428f007f3b22963910b3ef3e23e3ae321b1cef364e22481n/a 
2019-10-23n/aexe d3b860c799d8ddd20c6c066165129902bff32be038224a76a16245a666bc9973Virustotal results 21.43% 
2019-09-30n/aexe 0e1dda907a15dc7405a749bcca9fad5bea6be044efbbd55f6c7a2f3d345048dan/a 
2019-09-15n/aexe a5569f61a85c973b1ae5a6f8289755191d6250ca6108b3bce0ce759342275d4an/a 
2019-08-10n/aexe f3b3d6b925064a7e9d728e2b42d318240526ce7181e859feab0126f51b0ea9ebn/a 
2019-05-03n/aexe acdeb369cdc33dfaa2a63cd228fef32cefdae7d1efb4dfc989671f50d2bb314bn/a 
2019-04-02n/aexe 220c0ac833e9b2be5578726401a7fba4ebaa9e30a438d44355bdeb69cea8df6dn/a 
2019-02-24n/aexe 29e0374a105fea9130acb3690ca69fc53e1c16cabae72013f84ba9781be9f27en/a
2019-02-24n/aexe f04fc2438ebb599145169cf9efecf9e70820681a9cb6dd592a109dbc5f0591a4n/a 
2019-02-23n/aexe d9d19e25e6b4dca70569cc76ab369ebbb036d5e631b9c366ae27e356c43594f4n/a 
2019-02-16n/aexe b870157d5c7f707932cdd55ec273e5d14dd6e309cb3c1cf1971f2928fc960492Virustotal results 40.58%