URLhaus Database

You are currently viewing the URLhaus database entry for http://www.giztasarim.com/wp-includes/n7jjP/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:177834
URL: http://www.giztasarim.com/wp-includes/n7jjP/
URL Status:Offline
Host: www.giztasarim.com
Date added:2019-04-15 14:21:03 UTC
Last online:2019-11-30 15:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2019-04-15 14:22:05 UTC to abuse{at}hetzner[dot]de)
Takedown time:7 months, 19 days, 0 hours, 46 minutes Bad (down since 2019-11-30 15:08:20 UTC)
Tags:emotet link epoch1 exe heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-11-30n/ahtml 80d0468dc01beaff9a3167c32bf6a28ccc5ef428eb52333c6b79107234553246n/a 
2019-04-1643RRxtrqUv0.exeexe 78f0c413b223100dd826bc79f8ec414df59a58cfd45b9ece44cba6e5496a3332Virustotal results 26.76% Heodo
2019-04-16rZpHVaV58DU0.exeexe c314782026b00ad239ed6027aeb3c286965f100eb3fbccd9afb0632c69ec6ba6Virustotal results 28.79% Heodo
2019-04-16zwPMnck3a.exeexe 709b787c36e539bb2c5b84b9c40ce3ca79c981135033510b89c228ed52fc31d9n/a Heodo
2019-04-16bjS5opaQJCds.exeexe 8811a56af2c26f013d6da5424934ab1ed001302d10f8fb65ea0861858d352727n/a Heodo
2019-04-16d0Z54u2VnH.exeexe 73e50b086081be79c2da708e551a0b41721a86f9d333e1de24807c67a743db06Virustotal results 28.36% Heodo
2019-04-16uBODiBkiT1mj.exeexe 9a3ed17a2ae6e086d0787395a7b21e4be371f17c6cd53fb8620608d1b4fda989Virustotal results 25.76% Heodo
2019-04-16W8n8SQEf03g2.exeexe ebe0f57ed883e2872d1de34a7814c36ef7abc07af270d3c8e6b03fd0354f245eVirustotal results 24.24% Heodo
2019-04-16fSgYwrRx91.exeexe ffd91f5b0f1f5a60a0122df54ea232e7dbd5cd73c53527947a4402d09b36d989Virustotal results 29.58% Heodo
2019-04-16NEDHH7x8WjXb.exeexe 367b385d7a197203ec90f7b0516a8aa92db726c8f6944bd0ba0c9553e6bc60b1Virustotal results 23.08% Heodo
2019-04-16LwvbR0JwW3m.exeexe 851769b13473a8b83663ad672968cb4990e13f70ae0b71d493cdc3fd0ea02884Virustotal results 24.24% Heodo
2019-04-16cSPZS9jU55g.exeexe 7c200cfe6a8167514c27cbfff4f2d9fc5282594987b6d98247339b1539104941Virustotal results 24.24% Heodo
2019-04-15DfCIw85bl.exeexe ebe8c427f8776f11e574c18819c9320137df02e11502286ca03b24152f42250fn/a Heodo
2019-04-15vGdziA086N4s.exeexe e6c75619f49b86d8948ac05bc53f2874a996c716e7e0d373f193a95557674425n/a Heodo
2019-04-15rwR7ryImQoo.exeexe cfe23ea4a472ee779283c6e74103b958f7c5f9221791014e467c3ee298afc245n/a Heodo
2019-04-15NYdpCnDRSGGT.exeexe 9311f8df7df03cbe1aec54d6c45412ff8e9382fd4f7034b685426154ac595056Virustotal results 25.37% Heodo
2019-04-15TEginsj1.exeexe e7610a464a6fe8384c0b96c8b44cf2f8d1ce605fd8d53df52bf74d35f111dc44Virustotal results 33.33% Heodo
2019-04-15sFX32yTc.exeexe 8cd663e0121abe3839e11942739e74b590f53ca5f4d539f149eaca8439878f1fVirustotal results 31.75% Heodo
2019-04-15xwFpniZuZ.exeexe bf2f9e1394ae7e555c95c6f6b181ea7950ead0956f6558568fc27397e9db8166n/a Heodo
2019-04-15fICv6xVX.exeexe 3bc25c41487f06d4865b116f68ee18af090ea349f211178d27d936840829c633Virustotal results 33.82% Heodo
2019-04-15JQwW4RXf.exeexe 1e4606b8aca9b5397b7f5633024260a07f7ebb775905efd7d817edda9b79cb55Virustotal results 25.37% Heodo
2019-04-152OxR5qls2O.exeexe c4c33bfb5e84f3961e9834a14ee90946e96e775d622127108820fb2d9cfbf037Virustotal results 25.76% Heodo
2019-04-15OW2dlBCQuL.exeexe 95702e9b62c6af63cf324e329afdbce3cf6d5da34e4628028b398807a7fa6d2bn/a Heodo
2019-04-15cSEkHNs4.exeexe 3dcd53cebe096099252446c77a3c7d9fd7a260a19b9746405ca54b2cfbf523f7Virustotal results 26.87% Heodo
2019-04-15INa1KBH5foT.exeexe 8d987721249a14ff61b043c4f1ad88fab1ffd5b234db094506bd1c501ac3576dVirustotal results 28.57% Heodo
2019-04-15spAX5yb7H.exeexe 1e0a8d8a705eeff5fda9b9ef09bcb315e5eb8c6b976311e2dbcbe7bce6121e43Virustotal results 27.78% Heodo