URLhaus Database

You are currently viewing the URLhaus database entry for http://uzmandisdoktoru.net/_wildcard_/c52633/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:189715
URL: http://uzmandisdoktoru.net/_wildcard_/c52633/
URL Status:Offline
Host: uzmandisdoktoru.net
Date added:2019-05-02 19:27:19 UTC
Last online:2020-02-18 20:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2019-05-02 19:28:08 UTC to abuse{at}megatrhost[dot]com)
Takedown time:9 months, 22 days, 0 hours, 37 minutes Bad (down since 2020-02-18 20:05:16 UTC)
Tags:emotet link epoch1 exe heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-05-058ttgncqki0uum3.exeexe e0743e395630cc035a7dfc418016cfc3a1006ae5cc55beae1e900b4f6b3e3899Virustotal results 27.40% Heodo
2019-05-04dtuqaae4afn05.exeexe 161ecb52e3cc9a5c9adc651152314cd58d376aed8b8dc1feccca6a140572542cVirustotal results 27.78% Heodo
2019-05-04r637rig4bbfvxb.exeexe 49e92c6c178810e71a0aaac8d5bbb71d83f41029284ee9c68bdf48a4f8ad77bdVirustotal results 25.35% Heodo
2019-05-043m6ai2kqr04.exeexe fc380ed01f80f2af4815b19b82390537bcd20ab28430d1ffd9e3d7242815a700Virustotal results 26.76% Heodo
2019-05-038uqavoviig45.exeexe 030e33195e3c5b1e74cea75e010d10cf77c6a2fc43ab43f0a679f16361a1cec6Virustotal results 26.76% Heodo
2019-05-03kbcvy.exeexe 58f5fc039e9bfe941b00a764a9e80a45e9620932ef4a9d5f7812f05fff8f2556Virustotal results 36.23% Heodo
2019-05-03l597wt8ge9dk5.exeexe aec7f3a8926b4ae3cca4393f7635923876a35651e2f3498ec54da21e4bd559cfVirustotal results 74.65% Heodo
2019-05-03pbulbf.exeexe f241cf5e46d3297068c912e494c24da89027214f0304e931b4264f2842f39f65n/a Heodo
2019-05-034g1t2v16uba24x.exeexe 0ba0daf5e3f4827061d73409e21586dc045391e78577715c28ab200dcd9735b4Virustotal results 34.72% Heodo
2019-05-03kntgkju9027csz6.exeexe da4b1fb3370e167261ff2587c46c89fc40e2c70da32dddc4c660aaa8446b766cVirustotal results 35.21% Heodo
2019-05-03walkbkjz99io.exeexe ea63926681a2d16721667a129c94ee2b23cb2f3fd955059441416516cd7b0b5aVirustotal results 35.21% Heodo
2019-05-03onqprbxxxuj.exeexe 4e4f9411522231673592553cf411ad259df71315f6cea558de651e96a6f79e92Virustotal results 35.21% Heodo
2019-05-03kzqvql96ngusiwz.exeexe 58758c6332283a94cf30d675646e5b3348f97233c2f651b191d1d5a4d1b685a1Virustotal results 31.94%Heodo
2019-05-03ynijq24qj2.exeexe 38617dc95406d5afe4c3fb498be29149dd30582110de6489d2e811e537d781d2Virustotal results 28.57% Heodo
2019-05-03aobq26ni61qpg7.exeexe 3c60a4f27654e2c960b48e8763ab39511983c9e83cd788aeb289c458c4a4a344n/a Heodo
2019-05-03ma9jtxi.exeexe 2ccb29523f4e91779df87fc1cd2ae2c97bc6af5b7c306d976cfe56d30db200aaVirustotal results 27.14% Heodo
2019-05-034zyb8.exeexe 524595e8058c627c9706c8b9d7dbea10a3efbb019364c943c39e790bbe4ab34dVirustotal results 27.78% Heodo
2019-05-03f504w.exeexe f555a7f464a82d1e953faaab7262577d04a024233c3ad4fa8b10cf7673ad6a8cVirustotal results 28.17% Heodo
2019-05-03xzzebl.exeexe dcdae45723e0425a87fb09c218a9a0179d3c386ae29a9767aed0c74d446b9eb7Virustotal results 25.35% Heodo
2019-05-032mock0vz.exeexe 8cdf908dea2509c7b5688e4d76bed0287717ab6d8c2b0f7ad97c2848ddf6b5caVirustotal results 25.35% Heodo
2019-05-03pl1rd.exeexe 04f38a4b742b88b501a3ed1949023ba9c92619dad4bb293c5903142f90fe9700n/a Heodo
2019-05-03op4mcr.exeexe 568d7b11f7989feb867ee6c9839d6eb9b7b9b6baa46837ceccf4085b7a91076bn/a Heodo
2019-05-03qpmfxdxk.exeexe bd12a552b826f4ece4698d6d6b69420e44f2671b93825b700f9bfa4ed4936c02n/a Heodo
2019-05-03v6nl2r9dfuv.exeexe d17ebe662f643cf09eeb752c5c762ff4bed75dabd4e4b7490622376dc7e38447Virustotal results 23.61% Heodo
2019-05-03t3fvx14.exeexe de4510ddb3bae906a10446c0858a587b1017028e7d35131812f7026473a0ca21Virustotal results 24.29% Heodo
2019-05-03h9agar.exeexe b9b4beb9f6b55ee5066b4ba0b87cc2cf0dbcdae67de621fcf104ca1bae24d680Virustotal results 27.78% Heodo
2019-05-02ctqvi3tiybmz6.exeexe 864f5badb39b5785404d804530ee1c4f8017f433949a82e5d50705c165720bb2Virustotal results 26.76% Heodo
2019-05-0243ta7pnq35d.exeexe 3741bbd22b53cf49f0b880bafba60ceefae13255dda495247e1c6272d890d3deVirustotal results 30.99% 
2019-05-02n632mwjz0dcd.exeexe a5679ea7d82a2a6af0f79a3382e73ef859545e8f375595cbb85b072d79a96a8cn/a Heodo
2019-05-02b8i2dw54.exeexe ffbaba3df6fc217783b117a25e9ce24bf400dff5482a00193707ae0d3d8ebef9Virustotal results 24.64% Heodo
2019-05-02guvt8qtpyvn52z.exeexe aa31ca1a02c0c7d9d9393fe24bb0b17cf5366e02fd71a630ca4e2fb5647c63e0Virustotal results 28.57% 
2019-05-02wi50hw1a.exeexe 2bbf431e5764d340352da793ef5dfd90b4aacaabee7a20bcd90f4d0cb1496067Virustotal results 27.54% Heodo
2019-05-023l2xuf.exeexe 4fac13173ada1e96e17a0d53076adc66b9bb41048ce4e56f59500adc5cb85fecVirustotal results 29.17% Heodo