URLhaus Database

You are currently viewing the URLhaus database entry for https://profithack.com/wp-content/themes/sketch/SkhHEA/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:178679
URL: https://profithack.com/wp-content/themes/sketch/SkhHEA/
URL Status:Offline
Host: profithack.com
Date added:2019-04-16 13:08:11 UTC
Last online:2019-04-20 03:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2019-04-16 13:10:07 UTC to abuse{at}amazonaws[dot]com)
Takedown time:3 days, 14 hours, 29 minutes Bad (down since 2019-04-20 03:39:51 UTC)
Tags:emotet link epoch1 exe heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-04-18Wu7K9dASA5.exeexe 1b6aa692ba88e13ddec659e9c601d305146fba99e16181467cdfe49c7b109918Virustotal results 18.18% Heodo
2019-04-17VhaG4blkHw.exeexe fe7f3c4e834e67b455d62b5ddfdfbe27acf699641e163038e4e320c310f44ae0Virustotal results 30.43% Heodo
2019-04-17yNSBAWzcrb.exeexe ac9915fc4b0a1fdc1a853e119d0508e290952d43ee16e0abae3cff26c2ed6471Virustotal results 28.36% Heodo
2019-04-17FbOWxvBEJOky.exeexe 06b0aacfa0b6ec7017e1ade64a4bfdc0a8d76fc74772835dd44134b40833b9fbVirustotal results 30.00% Heodo
2019-04-17gZWXZqP2L8.exeexe 50843f1c34dbe3de77a86615f7cc0064ebdabca83d2248dae7b93fbf8c7bb80eVirustotal results 39.73% Heodo
2019-04-17HaWkJ7xAz.exeexe cabd6a707a679f24d05dc9017033592b7edefb0d4ff28ab374db176c5488ca42Virustotal results 10.61% Heodo
2019-04-17CVlMQBR7YbL.exeexe f349869e1e5d51c932e1645562ba7bfe325faea0f049e81703325207c71103beVirustotal results 37.14% Heodo
2019-04-17MBbMI1kk.exeexe b1ff5735dbe2912987c40cd61f8b68ea0f3eeff34d4bd724586b623d7f43f18fn/a Heodo
2019-04-17M1EF4nXwM5ot.exeexe 377ca271dd3000fe310674488c93822601be7434325661f4158e8e64e83ab247Virustotal results 31.82% Heodo
2019-04-17HCHy0ISGdBZ.exeexe bb300d2ea6fa05c0c2895f629d75e743555cf36b56ec9eea9fd69f90d72b5b38n/a Heodo
2019-04-17ckJsqESN.exeexe 440034f771a69ca41a4153902ff29b17f66c75079c223ae7947766ce7ba568d9Virustotal results 32.84% Heodo
2019-04-17AI1kfvnBae9.exeexe 1ec9145cc88f7e619398955d6377ea4a6aa2f5fc8d53b87a467468d284352d61n/a Heodo
2019-04-17neuwsC8lO.exeexe 83647c0694695ea763d0a7382a53e95d7715e9052227efd4b610d4e65229f730Virustotal results 30.30% Heodo
2019-04-17eIFW8lHv7IK.exeexe 86814aaa96560342434fd38b84e6be4f1bb2f4e9656e03de086765e8facafacfn/a Heodo
2019-04-17NtjM6ygZy.exeexe 0911c843ef0b50a6b7359384d774350c43ea81970e47b6390782a3b59619df23Virustotal results 32.35% Heodo
2019-04-17jFRrRQzt.exeexe 25806bac5ca5b7b3dc6f1cdcbc4d72ade84828ae4173a858c3e9fe028d51b7e9Virustotal results 30.88% Heodo
2019-04-16HZD7ZsorJk.exeexe 42d5b442bcba882b9b67d483d983812918c8f16bf244617e5125e54ed39c45b4Virustotal results 10.61% Heodo
2019-04-16NJsamFQnc7.exeexe 3d5d6478be30722d9bd8db096e17faa2d028a430bd584ac5204041d69106d33en/a Heodo
2019-04-16ol95xgzUFW.exeexe d41ecd67cd6ce7e26a4ad38afa7ce3a91ee198443cd1cd59c65c94f159c80f91Virustotal results 31.43% Heodo
2019-04-16fHowqHbWk.exeexe c481b71e426986b974b3b8a3438ed20e02acceb15e3cef087df32ee7663f34f5n/a Heodo
2019-04-16VExkff1Us.exeexe 4bba21068231dfd43232ff7dc61e0a7fb17195c86b4acebcf0bc395e24fe9a94n/a Heodo