URLhaus Database

You are currently viewing the URLhaus database entry for http://healthdataknowledge.com/uzTxQ/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:22469
URL: http://healthdataknowledge.com/uzTxQ/
URL Status:Offline
Host: healthdataknowledge.com
Date added:2018-06-22 12:04:06 UTC
Last online:2019-12-01 07:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Blocked
DNS4EU :Blocked
Reporter:Anonymous
Abuse complaint sent (?): Yes (2018-06-22 12:04:57 UTC to abuse{at}godaddy[dot]com)
Tags:emotet link exe heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-11-30n/ahtml db2d78b7edd0ab880b1863bd2aab814fa05301e0d469e801f91778b7602c609an/a 
2018-06-2222806.exeexe 8ae59b74f2fbaf64c3911018652c9dd5ccdf4d3d51c27b8489be15b2c78134efVirustotal results 20.59% Heodo
2018-06-228158.exeexe 31ef1df22b0208fb3770fefb4e442972c7ed5b293a47f230da39319e0cc122f1Virustotal results 36.76% Heodo
2018-06-2212390.exeexe 7dea82604572705f4329aad4e519a7bfb87bd5175ad9fd8436628b5934e6a226Virustotal results 41.18% Heodo