URLhaus Database

You are currently viewing the URLhaus database entry for http://robbiebyrd.com/fonts/dkra921_6lqtntd23r-9620475/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:203194
URL: http://robbiebyrd.com/fonts/dkra921_6lqtntd23r-9620475/
URL Status:Offline
Host: robbiebyrd.com
Date added:2019-05-28 22:14:05 UTC
Last online:2019-08-22 16:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2019-05-28 22:16:02 UTC to abuse{at}ripe[dot]net)
Takedown time:2 months, 25 days, 18 hours, 28 minutes Bad (down since 2019-08-22 16:44:50 UTC)
Tags:emotet link epoch2 exe heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-05-30k3ms_0086512.exeexe 837d4d8f3f8fe6d7e2562ed0e453397aaaa8a59c3c4ea830e6264a7c01d0c1fbVirustotal results 39.13% Heodo
2019-05-30d7_7.exeexe 5cde05d5a2d2ad486ad3cb6ff037cd3cce010d94457a1f62d12defd23f48f250Virustotal results 32.39% Heodo
2019-05-307lz87jr_468.exeexe ffefd2bb524d00e8ae376e141cf8a3a2e4eb18155bc3481fbe75204551515867Virustotal results 36.11% Heodo
2019-05-300exr90nj_834735643.exeexe c74c0b7952cdc83e9bbff05d47706e843f82e3ad8f5255ad9d34c4836acb3379Virustotal results 33.85% Heodo
2019-05-305p_4423.exeexe 918f7497fff8ead22e8de20ed06728ccc8637a17b9ad56c77e0b01b826ee267dn/a Heodo
2019-05-30t_083.exeexe 4764ec39155c325c1042604fc7b97630c62c1352b5150d610bf2e2e6237c31c4Virustotal results 33.33% 
2019-05-3083u5i_9859292.exeexe 7898789fb638224b50460ed58607bed96b0103894fa520b8ec781fd07a7ae225Virustotal results 28.77% Heodo
2019-05-30kubv_304865.exeexe 13e3c76d38458d365bf51dd93f6ecb43f02268abe352cfdd695cb787e8c7a0a4Virustotal results 30.56% 
2019-05-30vdczq_2487279679.exeexe e2a925e4d7f56eaf6803456847049924903495b13af99231494f4d5ce53d7341Virustotal results 29.17% Heodo
2019-05-306ujpha_41459017.exeexe 2954417ff120e2338545fd4257921761a222832e9a50bb14f012da546f4748a9n/a Heodo
2019-05-302uyb_1209.exeexe 7cddc630aa79bff608bc97a2e6c1751954c5c9126b88b5b9c63a670d8bd68db3Virustotal results 26.76% Heodo
2019-05-306_01.exeexe aa9cedc16ac1c23231d438c749e1e4d10a64a18d44e164bee54ccc739cbb7018Virustotal results 29.17% 
2019-05-30zf_10917480.exeexe 0c1b1a60c57effac5806d2877c46fa38977448a9ec6bfc41b51432bd94377cddVirustotal results 26.76% Heodo
2019-05-30x2iltqm1_160866817.exeexe b65379f11aa7875da82797a5133cefb62b8eddaa8cc774bbbc4afaded1ff3ff6Virustotal results 26.03% Heodo
2019-05-30kwtl_07050660.exeexe e724abc62c654a0115800185ab2354446d4f696777def7f062d98c971d9a4e75Virustotal results 26.76% 
2019-05-30dnn9zer_6032.exeexe 66edbd54b9283da3b83e8fd81f0a9722f3447b308c53eb817707bfe75921d014Virustotal results 26.76% Heodo
2019-05-30jkwogosy44_4.exeexe 9563f71380f0fa02034d0554151872fe6a637ad0036a764b781cbee0e1c250d0Virustotal results 36.11% Heodo
2019-05-302ypnj_7995477436.exeexe ee4d3c418d065b701851fa607a325308e113f99d8fab479a6b93f4f929f75a47Virustotal results 28.17% Heodo
2019-05-3099_756432.exeexe 57f0449b822e3de6a4653fe43571f7e547116e337e52acfd3aaee3b38a55c74eVirustotal results 27.78% Heodo
2019-05-302lzh1_6.exeexe ef3b8194d9f0872f20d80f2a19983539be6a83f3b504a4e9185f1b784f385b16Virustotal results 29.58% Heodo
2019-05-30o_4.exeexe d0de6fa065bca9517222e815dcf73ac54b23f1df219c0ffafc5c2d6b9d826e6fVirustotal results 32.39% 
2019-05-30zn_29.exeexe 9564796f42342e0a231269486e1faeb1995973abeb3769c926bc4c73d686da96n/a Heodo
2019-05-30nxqvo0e6o6_6086652308.exeexe 8f831df11feeadcf237b038c432d4fe706cf9afcb940c4e88c165a9d1930e9faVirustotal results 27.78% Heodo
2019-05-30xv_8137342441.exeexe 5b2d5986c950662faa5f3e2caa6d9e1cb5649aeba1fcecd360f7628d32a7d808Virustotal results 26.76% Heodo
2019-05-30fs6gry3iua_77275845.exeexe 23af4fccf4ecf994e93c39b21a85b9562179764d733cea3093f1c91ae28c1574Virustotal results 26.76% Heodo
2019-05-29bn35r_28.exeexe 4422c70a46ae30c8b4e198d88b210001784d14edae31a5b41d271c5f36988b1bVirustotal results 23.94% Heodo
2019-05-298y31da_2259937894.exeexe 79dd32af2ad9878c7fe2311e6ce290f8bb313b0f240f3517b5ac6c2bbae887d0Virustotal results 22.06% 
2019-05-290985y0yh_0676076.exeexe 6116b8b34753bf6c393f7c34b209f34cc582ada6b5d259a71d26d58fbec4da87Virustotal results 22.54% Heodo
2019-05-29u1qy0t_25226592.exeexe 2a56c5e001a8f1f1d2984b83983d2faf412686cc3ca8354176bd01bd665aadb0Virustotal results 29.17% 
2019-05-29kzf_4392334924.exeexe 2c4eefa44987a71690b58dae201cbe79c135c498b670683b690d18f86a96d1eeVirustotal results 25.71% 
2019-05-291_98241768.exeexe c56db25233f20888525f027aaf9d24a9e111798dc4d24454ca79f1ec434f06d0Virustotal results 21.13% Heodo
2019-05-29wwic_6.exeexe 5be764f22ff7428d95e3437186a8f540f2c00b3a613f76857f49caa6af7e2294n/a Heodo
2019-05-29qwa6m06_79.exeexe 8c444330d522b540eebc8fd67814ef4ab8cba6705f5b856b32d5b7508f0f6a1cn/a Heodo
2019-05-29g4qt4_3662713118.exeexe 0203632d35ddac01f92b4e959d592185f673b1dfd0007d9d5cb63676450e9270n/a Heodo
2019-05-2904r_6875428.exeexe 7221a5ac575f1c4812be871a2ba7cfaf793d95e510e330da59fe5329dda3fcb6Virustotal results 26.76% Heodo
2019-05-29rizqkj_3.exeexe af94cf9c09c1b4cfe24e9f829e6d178df48a317d52581b82b1260877bc7972fdn/a 
2019-05-2852qar8n7_2523826378.exeexe 30cb3c94df5b47c8968914604e4dae683d947c188c1a97dd103668274ce90a89Virustotal results 42.25%