URLhaus Database

You are currently viewing the URLhaus database entry for http://qureshijewellery.com/css/ly399/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:192242
URL: http://qureshijewellery.com/css/ly399/
URL Status:Offline
Host: qureshijewellery.com
Date added:2019-05-07 10:21:21 UTC
Last online:2019-05-16 16:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?):mail Yes (Ticket DCU001368804 created on 2019-05-07 10:22:05 UTC)
Takedown time:9 days, 6 hours, 33 minutes Bad (down since 2019-05-16 16:55:15 UTC)
Tags:emotet link epoch1 exe heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-05-14ll0er1fooup.exeexe 92e71260c774bb2f8447e651f6a8c5aed6835166e17a50c9bd61d883ea239431n/a 
2019-05-092qrvtas.exeexe 3478eb7d70c27498d0c4bd842f41313c3223fcb9a572a6b57460fb556cf4a866Virustotal results 21.92% Heodo
2019-05-08ek679io1b1.exeexe af50c77e63620eccb3be78fce0ed3de6bf9aa6812fbd7e503e6488abddf31a4bn/a Heodo
2019-05-08tyna94mc.exeexe 31122707059551ca6e0ec57b54ed2f6f25804300fd48b3b4f625248a6de46662Virustotal results 26.76% Heodo
2019-05-081eo1valc5g.exeexe 5d12c17afc1f063befa9c8ab90506541fc16669e089cae72ddf81bcfac442419Virustotal results 21.92% Heodo
2019-05-082y8iz92v9xxvd.exeexe 07ce4a0ed15c447c45977c355001f83ab849186d834294550ee6e208e27ee567Virustotal results 20.83% Heodo
2019-05-08kykuv2van90qx.exeexe 1d6458fe846c15db8207de992b6d921735c94ca7f690935df33dac708c86098aVirustotal results 19.72% Heodo
2019-05-080f92c.exeexe 172591f8375a492a1f99412e8b103300efed99734db0781f6abe69105be97636Virustotal results 21.13% Heodo
2019-05-08g2m0i2r.exeexe 112397204a7a02d203165df3e229695e6ff76fa0dfeab7bb839cbb26f64837e3Virustotal results 22.22% Heodo
2019-05-082015x.exeexe 4d2cdf092f3cac112ca493ab8f3e327b5d168068a4a70c8ac8a4f5ca91965bc5Virustotal results 20.83% Heodo
2019-05-08lfec2.exeexe 018995f0893b0284f20fadb3bb62e522ec42ae7bd6b8a89b53a0af8ccbc0d896Virustotal results 20.55% Heodo
2019-05-08cysmfx6d379kgvm.exeexe 8cf26504fbcd56d97155dbab115ec79ce8ba71b77b9ecc56b6336b5e0ca24a30Virustotal results 19.44% Heodo
2019-05-08n56vioi7fnun1un.exeexe b3575c7a95a2d0811e785ec4e4321e9c8f8b344c5195b7f82328815b3959c39fVirustotal results 26.03% Heodo
2019-05-083xajz7y.exeexe 9e1b5c16cfad4919489e562d2d2c4d29634fe08dc58db81f90c47082c5d85091Virustotal results 15.49% Heodo
2019-05-08r9nn73yg9c6m5.exeexe 286a32016dbe0cb7eef1c0a0bc4439e013da1ae84237dee5315280052db36786Virustotal results 16.90% Heodo
2019-05-08mbyecj28nl7evo5.exeexe c3e0530a6b190927531c5e1d35bb983d82914d4035dd3d9e7a1671e051710300Virustotal results 21.13% Heodo
2019-05-08j5puj7us4p0gi51.exeexe 5493f7935a9ccade975afd856c5e1b39b23ef892931bd7176a585fae5212efbfVirustotal results 31.51% Heodo
2019-05-07e8mnjgh1ezeqvlp.exeexe a827731f3da0eff519b4e96e2d5e633e4fa0f2e8e82cb5b7e5a64d20c407496bVirustotal results 31.94% Heodo
2019-05-07idaf4lyp.exeexe 3469d5bfa61f7e84a98d6748569b50c260f94f042e497c02def3ed8d8fde48ceVirustotal results 15.49% Heodo
2019-05-07gaoa2k1q.exeexe f56a73bf66d6c1be6f7bedfb44cdf8345ef1ebf02d23dfcbb8e5039059f7676bVirustotal results 14.93% Heodo
2019-05-07egk62ao7v09hm.exeexe baf87664de51eb7174ad309af2f084f5031befc20431a702d6002b97d9d18f27Virustotal results 15.71% Heodo
2019-05-07cgqysqx8ct.exeexe e5dc23492f536cf2d9d73c18ad14122c939848210993ed2f4c48b5bc86ec5b3fVirustotal results 14.08% Heodo
2019-05-07cwy4frge.exeexe c1c4ed791fbd68993a3cd0093288174f6a3c3e1cb06aabd298cea8dbe2f039cdVirustotal results 18.18% Heodo
2019-05-07ei83lwsh0.exeexe 56581b9bb0e8f3fc68af52f4e7a477100917002d39d1ed6d9c99c93d564cccacVirustotal results 30.56% Heodo
2019-05-07fbkrp0e0k50u6k.exeexe 52b066d409317a60a631d93e867178f396d72a7756a02269dbbb7ac41075c522Virustotal results 31.43% Heodo
2019-05-071dp1ll3jrg1s1.exeexe 19956e187ad07f2f83e0869756523b8aed0149c5dec74c5f9c168254f503ebefVirustotal results 30.56% Heodo
2019-05-07y8rb4effgr.exeexe b71faab0d27ca3d22f45d332d9360311208b9be64b149e943be5856dda924f5eVirustotal results 26.39% Heodo