URLhaus Database

You are currently viewing the URLhaus database entry for http://santafetails.com/lKcxC0V/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:17474
URL: http://santafetails.com/lKcxC0V/
URL Status:Offline
Host: santafetails.com
Date added:2018-06-11 22:28:08 UTC
Last online:2018-09-08 08:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2018-06-11 22:30:21 UTC to postmaster{at}myhostcenter[dot]com)
Tags:emotet link epoch1 heodo link payload

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2018-06-1355240.exeexe 5789dc19ecf21dcd96a72497ec9a384d52dd010b4cb9cee04c0c2062ac09fa66n/a Heodo
2018-06-135131.exeexe 6774210237275d00e197c23a867d6d07e1b27909c3bbeb2efa5550a94486dee7Virustotal results 22.06% Heodo
2018-06-1323681.exeexe 26d5725f7b9028b03df9cd6bbbb08fbbb78d909d5f8f3b6fe923285dce6a25b0n/a Heodo
2018-06-135934.exeexe 32f68f3984d3cfc94e777422ce214c62a6f4785d2e4fda2ffc76262cbbd0a90cVirustotal results 22.39% Heodo
2018-06-132266.exeexe aea946c7340536eca6efeda0a141af8f332585877c29bb0fcb6985d42f239ceaVirustotal results 22.39% Heodo
2018-06-1377776.exeexe f3224259ff8945620e9044ed6fffa77802d14bc17f4664aa8a5fb4381d018320Virustotal results 19.40% Heodo
2018-06-127979.exeexe ece2a89aa4bdb318370bc75458d7d790791d7b46287888d40b555e3b7726b228Virustotal results 13.64% Heodo
2018-06-1276935.exeexe 91d0f65b0e9f62ccb7817030967cde51c8f4806a8acec6deabec39c7d8adb416Virustotal results 22.39% Heodo
2018-06-1282259.exeexe 3fcf3ae01c2ba136c6ceb20935ec0275dcd00dace3957e3005014e39f9c2ca3bVirustotal results 19.12% Heodo
2018-06-121972.exeexe ebe4ed8c191c7c09e706d9409b49f559fb8ab85ecf4966963c7f1a434e54e99dn/a Heodo
2018-06-1256991.exeexe 8e6abdbee16746ed9871ae0a6717d207d1554b4ff9f86e5e53131438670fa702Virustotal results 20.90% Heodo
2018-06-124297.exeexe efd5ac975d25e7809b72f3e6266aa8a2024b14200ad2278a48fcd3bfcd222c8aVirustotal results 19.40% Heodo
2018-06-123533.exeexe fbccfdd2652ade38aa944ce9487c04ded6030fb3544a9a4063be26b4de65dc9fVirustotal results 17.65% Heodo
2018-06-128968.exeexe dc4f23daf0f5326820cc3f78824f01b3a7b9408def51d195fb39b5f267d64188Virustotal results 19.12% Heodo
2018-06-122585.exeexe f46e79228cd43d9a1c6f0d66d6a8fcedc59f9d809fae2777d2c5a1055d7951b3Virustotal results 19.12% Heodo
2018-06-1256638.exeexe fa7e7c12effa59d195bb566b3e058abf9e67584952d12df61079c03a55f29de7Virustotal results 14.71% Heodo
2018-06-126232.exeexe fb5b7e13aae69d11fd9ffefb9644959725dc67eb08dae460cf1e12b256c6be72Virustotal results 23.88% Heodo
2018-06-123467.exeexe fb41b48e5e8daddf05f3701f3e457ea0a4607e86ceec29c5876eee8f1c9aea4dVirustotal results 23.53% Heodo
2018-06-128752.exeexe 9ff133c0b53741687a968d3225e6151c320108a9e7529ce165f13431efdf1255Virustotal results 20.59% 
2018-06-124990.exeexe a0e0f4bb383522745f357f9394e1b6a5954f06d5f9b9f23404a5c03f1373f18fn/a 
2018-06-119969.exeexe da538002c6a54f5e391353318852d95de93c765c0d70247e441dd0209f83ff2aVirustotal results 20.90% Heodo