URLhaus Database

You are currently viewing the URLhaus database entry for http://wizecenter.com/js/wevtutil.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2314943
URL: http://wizecenter.com/js/wevtutil.exe
URL Status:Offline
Host: wizecenter.com
Date added:2022-09-27 05:41:09 UTC
Last online:2022-12-12 03:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2022-09-27 05:42:06 UTC to ip_admin{at}csl[dot]co[dot]th)
Takedown time:2 months, 15 days, 21 hours, 26 minutes Bad (down since 2022-12-12 03:08:29 UTC)
Tags:exe SystemBC link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-12-09n/aexe 47e787cc180584d092625dc6d1f2a45bb74863e52dfb979df77dd009a58e3c9cn/a 
2022-12-08n/aexe f3a4e046e3365310504f7ac3e641b71002c546405433ec9107f3a4b0ac9a2920n/a 
2022-12-02n/aexe c1a0dc599f2b8d68f2074f63f1a848af967a76282a97248afb47bd569a04978an/a 
2022-11-29n/aexe 0b9da2faa81aedb87f26b6056aa454df954cbf5cddb708b4969de572b9ad1436n/a 
2022-11-25n/aexe be5f8d212924c1288da9a0a5584fb5dde34190ee1b3b538698d2705193ea9a91n/a 
2022-11-17n/aexe f5afc0bb14d6b8671233c316a1783fe29d18ba81b4da9d8f7447f7b5b803433fn/a
2022-11-13n/aexe 6d888359132674ecadcd8f4f38046715066f4e78e4a716f7b9af54ca222031e5n/a 
2022-11-05n/aexe 484d11e898cf0177e08969ff714bcc44772bfa36e9053174bad68962c5e150c1n/a 
2022-10-20n/aexe a01ed34717351896151b38a3c997f494829c032ec652cc8d1e4f58e809282ff7n/a 
2022-10-11n/aexe 2a0ed46578efcbead37a68c322fb8765d5455debc5462af316484eebc566dca7n/a 
2022-10-06n/aexe be2706bd7abcbe5f2cd2d991c160fb6818fe08bbb63ea794e5039d1781725845n/a 
2022-09-27n/aexe 715a725a1a6ae5c7d3437b0c2914afef7d585aafa068e2d2e9331826000e1bacVirustotal results 14.08% 
2022-09-27n/aexe 7dd44d3b3df4f14474d20ffa23e2fb20dcf22ed3a1458b345a1bd85563ac4a62Virustotal results 33.33%SystemBC