URLhaus Database

You are currently viewing the URLhaus database entry for http://tomasoleksak.com/wp-includes/zm2ga7ha2l_5q8wl-2798/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:196874
URL: http://tomasoleksak.com/wp-includes/zm2ga7ha2l_5q8wl-2798/
URL Status:Offline
Host: tomasoleksak.com
Date added:2019-05-15 21:20:13 UTC
Last online:2019-05-22 10:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: p5yb34m
Abuse complaint sent (?): Yes (2019-05-15 21:22:14 UTC to abuse{at}websupport[dot]sk)
Takedown time:6 days, 12 hours, 38 minutes Bad (down since 2019-05-22 10:00:55 UTC)
Tags:emotet link epoch2 exe heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-05-17l00ltqx_8469.exeexe 48ebd06305d102461a3f3028734536b8b631b88685ac819509b17036520ab378Virustotal results 27.14% Heodo
2019-05-17ri7immx0v_0421760988.exeexe b67a225f8f16872c2bd1783d3a3987f5914224596e4be00fe2023bd65c074c8aVirustotal results 32.39% Heodo
2019-05-1794vvtq6_2.exeexe 6dbfcdafa6bbdcad57f7fecb66ac35b425dd37040cf6f019f02e08d8322ba9a0Virustotal results 34.72% Heodo
2019-05-174uc6t_6888661.exeexe 415342ef18bc4ee2d492937886fcb388c2fca0e7ec3b82ab710b1e44a6078783Virustotal results 33.33% Heodo
2019-05-17xmy8gd_0442921083.exeexe 5003644186b5b4432496b335655c5efdb873d1b5d01abde1dd0515492225f01aVirustotal results 45.31% Heodo
2019-05-176zlux8gvf_33695.exeexe 628d94a3edf66fcac9e13e9fb8077d292599beee4d1e2c03036e60a52c5df5afVirustotal results 38.03% Heodo
2019-05-17fm9jz4tc_6297949112.exeexe fd885abd3c3895240c31fbdfba3d7126459b13cde19049b75075d5c9f3429a43Virustotal results 37.50% Heodo
2019-05-17tenh3642o_63054.exeexe b09685c63c725b0b310fdf63789f02133348d960651e2d3201baeec8697889c9Virustotal results 32.86% Heodo
2019-05-17sz19m0bdih_01.exeexe 498c9cbc13bce6b86375d876acab26cf6b1884d06206aa1355755860f3509a05n/a Heodo
2019-05-177h_501123.exeexe a61829118a21a1425e9cbfcd03f5faa04110dd8bdf807779dab93b284f20bdf1Virustotal results 29.17% Heodo
2019-05-17ih2hl_61870623.exeexe 02f85b5194f77857079cdbbe491f750ede1ae6f8996c6a71dc463c80b0c73b98Virustotal results 29.17% Heodo
2019-05-17h37rdn7st_96.exeexe 3a55f6c56e928d658f0ff035d17dc8761e1ff095ba80db6d528573c26abe9ba3Virustotal results 29.17% Heodo
2019-05-17kjx34vi2_518496941.exeexe ed96364977f181ef7733a8b9a4940d2a529c7a1fd6cbb78130acb9c3cd60d4b9Virustotal results 36.62% Heodo
2019-05-17b2ye_870760606.exeexe 204945ee1e17cb2684da4b1508ed2117f612d41b7f2f59d55a625db7fb5fcf36n/a Heodo
2019-05-17rqeopzdx7v_3660.exeexe eeaa43d154db6f483d7c70dfd79897cd5fd7555439219c8bae46cc2de700f074Virustotal results 30.00%Heodo
2019-05-17iilu_62.exeexe a75409c3e5590c092af6770e88b632fcc85e93ae3b2985d3520e981e4926a4acVirustotal results 33.80% Heodo
2019-05-17nrvrl_991.exeexe 1001cfaa1f9df7bee979a80241bdc0dc69fb03870d18a095f7125d6670db9597Virustotal results 29.17% 
2019-05-17s9bcj_92.exeexe ecf2761f512e8508644abaa8b4b6eabcd526fa1199a840bf6a1376a58875ffa6Virustotal results 29.58% 
2019-05-173qpowfnxqn_57742.exeexe feee487ffb84ccfaf11643d2a8a84c146c6caa2cacefa41dfa77578ccdcd0580Virustotal results 28.57% 
2019-05-17o0_19.exeexe 6b41d80cc553fe9cf5bd205420da184c8f2e852192448302e9c053039190e806Virustotal results 30.99% 
2019-05-17i_903796449.exeexe fc64a7f68969210d1cc6a382ac9ccb9ee44ff1e661ae7e95fc21c87aa09bfddfn/a 
2019-05-178_7370446.exeexe b07751e2d8f02638024ec922a8db2a9071c8787eaa353425dc795c0d45114bdaVirustotal results 30.00% 
2019-05-17jm_796356175.exeexe 4415c821d0d79d7aa1da02200223a2ea40ce5b7f2c074d68dd14c423c7912124n/a Heodo
2019-05-17r0df5q3_689591435.exeexe 36c80ecfbf1e171fcb9a350e7fe7aef664038ebdb3236886d68ba91cba6c1618Virustotal results 30.56% 
2019-05-17vun73x_43.exeexe baea1d3a3ac681b1ee4df16c86614f9ec005a6c88d29a2c91373c430c8e6285an/a 
2019-05-17xrz_0.exeexe 6f46b194cf2e55c06686748b3377df2b436598f6019d0f3f8918c27ff5923743Virustotal results 33.33% Heodo
2019-05-17uvi1y_94051926.exeexe 29557f865ff994fe3571f42a8c11b600444fe7d93d6fc75eb8632e7b5b23ae14n/a Heodo
2019-05-164_6439666.exeexe 272321f92286fd7ecc98cea2a3214977a8f8fb50f87a393c920efece6948b626n/a Heodo
2019-05-16vz5_5879145.exeexe e004166dbf864fecae459c859c03eb00152ea3802e397a7b2a24e450ebff0a3aVirustotal results 25.00% Heodo
2019-05-16ahm1p9chk_1.exeexe d83d63e9bb613739bc645a539ac0aa0e3cc86031552a589bdb91726bff852008Virustotal results 25.71% Heodo
2019-05-161uig_67542.exeexe d51177ce71693687ae8dd9aa92801955a0a65df8a6cbb828b525e025bf669db6Virustotal results 29.17% 
2019-05-16yvj1u_92091082.exeexe 4e3ed90b70c43fe0075609314118d9bbf155ed834264a7be0c10a91ac4576adaVirustotal results 26.39% Heodo
2019-05-162o_113412.exeexe a4324a5694e039ade44547da239b469b5588162f5fbfe8663981b9e0a626b4cdVirustotal results 25.35% Heodo
2019-05-16t5s5v_5150772834.exeexe 861c52f8e0d84217ca92aab1dcd4e42599eaefd7e759a64976b05777a1757322n/a Heodo
2019-05-16hgi167vx5_782.exeexe 596d96acc54e7c52acbd8a9d59111de00b53348bb7b25c5cb33a6458cbed5c4bVirustotal results 29.17% 
2019-05-16xv_9129505505.exeexe c38fbe7ee85e7a39587205c15ca49edfc9b541c007caf082733a72ad882aa35dVirustotal results 25.00% Heodo
2019-05-168u7_5563.exeexe 4e0cbe8131816cc51ae1d75c543d7068426b47d0e18593324f46f389c3ab88c0Virustotal results 26.39% Heodo
2019-05-16bnf3zdrge_199968.exeexe 2bc618ed051add34f04239c807a208fb4dd58408a47024370c105f3148aea822Virustotal results 30.43% 
2019-05-161htnsg_9049721.exeexe b0b1d7c641c06e8eaa10b2c29e5b002904e18819f3fceba937bea36ad644bbfen/a 
2019-05-16db_06620.exeexe bdf21a35e671e0a3801bc3d73374249322aca669c6c0e485b20699bede73e5deVirustotal results 30.99% 
2019-05-168u26dmu6yt_01609.exeexe 33700734c04513e137018848ede2277b6fd5da77fe6bcb3bb7c2807c4e6d2a60n/a Heodo
2019-05-16mnth9_52990.exeexe 7198d36a4c08fed0877df7f8ba65c60f775247f35bdc58fc1da51a3913115005Virustotal results 25.35% Heodo
2019-05-16tf91eme_45.exeexe 79f742ec11932710511e31609975a87d298763fcdeb8539eca49401d9d3aa426Virustotal results 29.17% 
2019-05-16o5nvl_6498.exeexe d113b87148ff747a1d9156377d577c29f801019539cbcccad51ee6c4d805e85bn/a Heodo
2019-05-16lprncynh_586923315.exeexe 105ad5e8672a34acd1fc97bada4c81ec51aa582205c1873456c26f84f03319baVirustotal results 30.00% 
2019-05-16lvxws0vpwj_53692.exeexe 78e172fa1e5ddd4b3be046d73ba1ea25d624e78e51984b99e39b8c1f2b1329fan/a Heodo
2019-05-16x4xa2mwa2c_063333.exeexe fb2f5fc662265a2cea088c5d341341015e7520661cf9a5f75b854abf0646f72fVirustotal results 31.94% Heodo
2019-05-15k_024.exeexe 4fd7e69b107fe0c6493339f845a3c6482f6ab370f35952a13bff026b6c9a7cf2Virustotal results 25.00% Heodo