URLhaus Database

You are currently viewing the URLhaus database entry for http://thecyberconxion.com/PUqUUe/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:20138
URL: http://thecyberconxion.com/PUqUUe/
URL Status:Offline
Host: thecyberconxion.com
Date added:2018-06-15 18:31:43 UTC
Last online:2018-09-08 07:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Not blocked
Reporter: JayTHL
Abuse complaint sent (?): Yes (2018-06-15 18:35:45 UTC to support{at}colocrossing[dot]com)
Tags:heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2018-07-041877.exeexe d2974ee670177b3548d9c4c8c6bd8425c3e55e4fe56ed759d421a39117d347a5n/a 
2018-06-30n/aunknown e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855Virustotal results 0.00% 
2018-06-301877.exeexe 61615a1a2775ff11a7bbb15e4bfd219701606426ff0d4e39e0efbf80f9ceaa4an/a 
2018-06-27n/aunknown da5ca2649089e81a08861dc1fafe00583bddbc45b2818fe78b41323feaab7281n/a 
2018-06-261877.exeexe 13df7ad03f06aead1dce14fbab8878062f8e6329feed9f037eaf8901ffebccb1n/a 
2018-06-221877.exeexe 8dcd5c85cc3e945855fee6a2756ba801f9cba3e11cd8efe16b6119dee7becad8n/a 
2018-06-151877.exeexe ece2a89aa4bdb318370bc75458d7d790791d7b46287888d40b555e3b7726b228Virustotal results 61.19% Heodo