URLhaus Database

You are currently viewing the URLhaus database entry for http://lattsat.com/wp-content/j_2W/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:175445
URL: http://lattsat.com/wp-content/j_2W/
URL Status:Offline
Host: lattsat.com
Date added:2019-04-11 10:14:04 UTC
Last online:2019-04-17 13:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2019-04-11 10:16:03 UTC to arsaeed{at}comsats[dot]net[dot]pk)
Takedown time:6 days, 3 hours, 24 minutes Bad (down since 2019-04-17 13:40:12 UTC)
Tags:emotet link epoch2 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-04-124_I.exeexe 425c301edea2502bef8c8f0aead837bc6e4452c376ad20e83c143204e4cdd4e3Virustotal results 29.17% Heodo
2019-04-12FT_Sj.exeexe 24fd0a934d147dedbcd423bde854e99537f5cd3e57dc74140341511b6d7ad76eVirustotal results 31.34% Heodo
2019-04-12m_X.exeexe 2d3f84a7e9953030171b442de8da76f3f1704f9c88331f9032d227ba5d752a30Virustotal results 30.30% Heodo
2019-04-12QsW_8DZ.exeexe ba99494d8081f6d0c0214682894a5ca06fd66b36e403063de1165d2b495a888cVirustotal results 27.27% Heodo
2019-04-12T_v.exeexe 1b6ec27192c194272240dacfdd95779f3a99a462873b1be429e477c8b1be6af4Virustotal results 28.36% Heodo
2019-04-12Sa_LcA.exeexe d326be444609f229cde9c7a7636ca6f8de884eb63ab4a8742f0060fc57541e43Virustotal results 33.33% Heodo
2019-04-127Q_Zu.exeexe 5b11d2e3fa5be94754e90e06701af00fa2457e137fc8486867fd382cbc202bc0Virustotal results 32.84% Heodo
2019-04-128F_1.exeexe 541e590028d769e4cccc599a60ce8ba9f8890e35d3c9cc165c6cf5a268b9a461Virustotal results 31.34% Heodo
2019-04-12b1n_Pv.exeexe 5e4c7cb98b8cc0776e5a046696c504a7620e97db3e939b58dd300936faf49e45Virustotal results 30.88% Heodo
2019-04-12Oir_Na.exeexe 03746dda7dfa03d1181d8ad6d08aec9d5c51d519a2495436befa4b19ee16b664Virustotal results 31.82% 
2019-04-12707_zc6.exeexe 8c010398e05a3da8993fec9db378dff1f8c485fa12a118f007dd697c7392a037Virustotal results 31.34% Heodo
2019-04-12S8M_ami.exeexe 9591f8b909521ea45ca14264d3f954c0b995ee094d0af8f9e56ef3746f34a439Virustotal results 28.99% Heodo
2019-04-125rE_1Xq.exeexe 6544616fa35e9c27ddc6c8182ccc900da879ab55444a196bfa3c6a0faae9827fVirustotal results 25.76% 
2019-04-124A_z.exeexe 849990c1576a1eb7b4eae4deebcabaa1e247d2d5199758d7235e0d7a199b5deaVirustotal results 27.69% Heodo
2019-04-12ZZE_M.exeexe 1071dfcc1a3db60ea9a9098b1a2c71f505db5a23d8af39417cafa9f8ee674dbcn/a Heodo
2019-04-12tAD_h.exeexe 164d7e4ea13034d1eb1d82f83cf305a824d06924e1ed82273ddc745ba0e3873cVirustotal results 26.15% Heodo
2019-04-12a_X.exeexe cf9680862fe2fd55fb6599de4e50b6a64187802a9a5c076ac431e75514e2aebeVirustotal results 26.09% Heodo
2019-04-12KR_v9Q.exeexe 62c53b7253f7424450e98a5602b75f456fab65c32ce69f42804fb33128d477cdn/a Heodo
2019-04-12YnD_oI.exeexe 5383442ae675559357c87a8fcb51186754abea77ab399e4eda1a0df735342580Virustotal results 25.00% Heodo
2019-04-12d_Xd.exeexe 97f42d4301cfcfb19a1cb2db752a15e33ed058218add9dcb27a50ae0938e925eVirustotal results 25.37% Heodo
2019-04-12V_x.exeexe 4d489c9ca5492c8d0a227acd068a87d09b5138e15f609790637f90df0b1ae54fVirustotal results 26.76% Heodo
2019-04-12uO_oJ.exeexe 4dd0be546adc42f4e3759c969a478928d939026d7fe75f6af76c623103f6d567Virustotal results 24.62% Heodo
2019-04-12mx6_NW.exeexe b12a68abb69358e95057d3d0e20e39001e53c762cff7fa9677027b32534837ebn/a Heodo
2019-04-12w5q_g.exeexe e04ba14197a03f8bd13daa202aea1abebe6919d37d2f262c2be783f648f48d7bn/a Heodo
2019-04-12z_R.exeexe 9aae4f8ced53039132855595f286dfce0c0de836328fd9a54450368c2bf41066Virustotal results 30.30% Heodo
2019-04-12N_Vjd.exeexe 617199dc689e4306f56d255ccae1fea7d34b6f8b59c189e1e587f09238cf3d9dVirustotal results 31.34% Heodo
2019-04-12VQ_9T.exeexe 3d58cd46c4c1c0107212182e79d47cc673cb69f4930062a47aed67e8ab569305Virustotal results 28.36% Heodo
2019-04-12tKL_8.exeexe 179ac6a40323c17dfce919ab62a0087ebbb45eef72cd6f553e8ac6c7a4c916e7n/a Heodo
2019-04-129_x.exeexe cbc368283e48f17f1ffadfc032af5754a625f1ef78f7c462ae832305e3eeb712Virustotal results 30.77% Heodo
2019-04-12Y_T.exeexe df92b20e6c7ba24e760b462f5d4347f50ef6ea4a0682a47806dd2474d779f07aVirustotal results 30.30% Heodo
2019-04-12i2_z8F.exeexe a2d9466c9fb5238b4220cae4f66b5b27980b8898266ddc510fa815a66d73a917Virustotal results 28.57% Heodo
2019-04-11Koy_zV.exeexe a6136fb7a9dac83c57fc65d1205cbc1259878783f6070216214c5e7945afa33fVirustotal results 29.58% Heodo
2019-04-11F_6.exeexe 4f91f9b80eeb1b8ebc20ca72b65a30e513142eba990cccb720e93cc8cb17c90fVirustotal results 28.36% Heodo
2019-04-11ns_gV3.exeexe f3649a0ab0068c11b7d28916039f873fbd082709e46cebc2a20709471f86d0e7n/a Heodo
2019-04-11FyY_w.exeexe 01bd8997b64d5d1a00ff2af084c08793f12c9a6e70f071c411b1c86e6daaca25Virustotal results 26.39% Heodo
2019-04-11pr_fd.exeexe 17e3a91e97e4a4ea983199136f11f4c0368eaa929e16fc45751a00bc0b3517e5n/a Heodo
2019-04-11I_ya4.exeexe e589f89237672cb6a30d8bd7305283c2d1dcd466adac1551eff06c3e5caaa8ffVirustotal results 25.37% Heodo
2019-04-11C_9v.exeexe 1febf4ebc138dd01f1a4e9e302ffaeb5207f8a3e7de9e790a8755b5d125d67b8n/a Heodo
2019-04-11Wv_E.exeexe 29746f5d709e39cabbbfb8ec99e64484eac31c67ae5d636e3a6800163a285a11Virustotal results 30.00% Heodo
2019-04-115n_y.exeexe 8fe1b648bb963640509516b6eebabe1b6cc52e501a947969c09f144daa50600aVirustotal results 16.18% 
2019-04-11pE_VW.exeexe 18137d4455b629d8773c6d07063b7e5511fb29d886968426b0a4feaeca884d2eVirustotal results 26.87% 
2019-04-116P_hw.exeexe 2aef44b6a6c4930a800b94ad9bcac822e9f35336f05bcf7f3f674a893f825281Virustotal results 31.94% Heodo
2019-04-11YFa_Kce.exeexe c8853c1dac9968b936b915dea200de3917922f38fac823f21527bc964660d0b0Virustotal results 27.54% Heodo
2019-04-11S_PV.exeexe 8ba86faea8164cef76893cbd3a2c111f17fb85fef2612510a3b004a8b25c0fd0Virustotal results 25.37% Heodo