URLhaus Database

You are currently viewing the URLhaus database entry for http://mhkdhotbot80.myvnc.com/CIG.dat which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:234198
URL: http://mhkdhotbot80.myvnc.com/CIG.dat
URL Status:Offline
Host: mhkdhotbot80.myvnc.com
Date added:2019-09-22 08:57:52 UTC
Last online:2021-04-27 18:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2019-09-22 08:58:03 UTC to hm-changed{at}vnnic[dot]vn)
Takedown time:1 year, 7 month, 13 days, 9 hours, 10 minutes Bad (down since 2021-04-27 18:08:48 UTC)
Tags:emotet link exe heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-08-23n/aexe 4beed861bf5ba2c121fa0bd64a7b24b381a30e5a0debfb3ba1312c6ecc52e1fbn/a 
2020-08-17n/aexe 918b2d9e349c39538693a5834da18335c0b24c4366400baa77c3782c8fa6a3dbVirustotal results 37.50% 
2020-07-07n/aexe a7d6e9e6dc0dbb74952e6352062e897920aa561afcc232110e22348d4d82003fVirustotal results 25.00% 
2020-04-24n/aexe 6efc2d11f1b36c58b65bbf91031ab89d34a0eba992e4e34e6b631775a26eab3an/a 
2020-04-23n/aexe 57ca6ea2918d2d31716193d0aefc888bfb3b7026331c3ed2fb2282b03b4ecc64n/a 
2020-04-06n/aexe 56a1faab757f5cea26125768462fc911e24ecc733ece56017b92b7de37c4fd57Virustotal results 15.07% 
2020-04-04n/aexe 311dca44685527515bfc01d6c9a1e6b46b57c41fee56f1ddd5cea11328ff1e82Virustotal results 16.92% 
2020-04-04n/aexe 83bfbfd9e52a1089bc5b4e97ba6b0a2a83c09224abfe742bc05f7191ec286108n/a 
2020-04-01n/aexe 23eeff7c90541ce1ba63b7a0e3041ed2927472a5e03e7cf743f7d7edb3c4a56fVirustotal results 18.06% 
2020-04-01n/aexe 9fc823298f9a5e307cf2f4e3fa07abebece477cddb969aff90847059833b8bb6n/a 
2020-03-23n/aexe 99fb10e215fdc44e7ee06eb197a5063752db0ebc38eb6f5416fe5e703c582a89Virustotal results 31.94% 
2020-03-22n/aexe 48c3884cab3e948c55087c3b3e42375801a4a68d0df0af65a0c291651db564baVirustotal results 12.50% 
2020-03-09n/aexe 315fc1236f58ee0e816de5a77616c18d315e102d0b573efed34cf6bf55c7d304Virustotal results 16.90% 
2020-02-28n/aexe 33b399b7216ad6cfa6d040cea17bec8e7639feec821bc75f09fc955a58a15429Virustotal results 20.00% 
2020-02-13n/aexe a5569f61a85c973b1ae5a6f8289755191d6250ca6108b3bce0ce759342275d4aVirustotal results 17.91% 
2020-02-09n/aexe 7d74908a870fdbeec9d6499a21bfb9e37c49d7e5d5e420247d0274d6fc79c76en/a 
2020-02-09n/aexe 6a674aaf07ecffce40d3ecad0b30fc65a7710a0534a0a78bc86be6dc8d0d57f5Virustotal results 16.67% 
2020-02-08n/aexe 3267b9ea45e58e249fdc6d5275b760a14d830862debc70028f480d446561cf61Virustotal results 16.90% 
2020-02-08n/aexe 971b913069c046150601bd353456169f494e8a1ddcd885c45a7ec01c722473feVirustotal results 18.06% 
2020-02-08n/aexe 8a79b119d4e2896803721eda237614ff1c1d5dd5fdfceceb3a8ca376d1558c87n/a 
2020-02-08n/aexe e5de9a44d3124bd49a6bc1964907d27ce16132a1f759b01b877af9eb02d6cda4Virustotal results 17.14% 
2020-02-05n/aexe df003c4fa3f8eab0fe766f2d8e19dd5684006a3d05ad6fe4e1c30b72e4fff52fVirustotal results 19.18% 
2020-02-02n/aexe 6ed1c6970b09e909e2db19daaa093ea98267171cabc990a6b36f72c73d528cfen/a 
2020-01-31n/aexe 716216084a19a0d174226c58fd48a01047207952f1d04f4328d1a74e9abac693Virustotal results 16.67% Heodo
2020-01-22n/aexe c8d26ea629c1ba1987183e07dea768c6869b2b9176114ee2a81e02c0cb80e5acVirustotal results 23.26% 
2020-01-18n/aexe a7a40db991b7e25bd929474c5adfb1d2174849d5b6e9d672da6e0d5a22c51ca7n/a 
2020-01-17n/aexe 44677d72e693e1f142d5b3de46216f02e42b7cb9c9e0b7b5b9440df694b3f1ffn/a 
2020-01-14n/aexe 3256537bc8f099ac72ddb564d547d5b96e6dabe080383e95f64cfb3c065fb9d8Virustotal results 17.81% 
2020-01-14n/aexe 4ee578d9195dcd3fd404c3171246da110e805e9c26da1b91c2af6ba69850033fVirustotal results 15.49% 
2020-01-04n/aexe daf81cfcca8e52797a01334d9d948429b7e1ebfb8dbb6df965aecec25a946fffVirustotal results 18.31% 
2019-12-20n/aexe d7d05a4c29f5df45c7e18ac868c70a4cacb5b0e53e7393c6ecddb37ed9b0d0c3n/a 
2019-12-19n/aexe acdeb369cdc33dfaa2a63cd228fef32cefdae7d1efb4dfc989671f50d2bb314bVirustotal results 16.90% 
2019-12-14n/aexe 9e0637568e7b4da9a911d9c110b439f297e6ddfc7b431ab05e768a33dfd7c700n/a 
2019-12-12n/aexe f4396a98186d5828f64788b5db9e8f6ff3aec4364dfee9c669f4cd55bfd0361dn/a 
2019-12-06n/aexe 8e1297fcfd77235e204a3665df44fd5dd5b464a972dd8f856916937ed1607152Virustotal results 15.15% 
2019-12-03n/aexe 08e9bf83fd8489ebd9a42e19ce7244592a2a1016e80c0b5d3cc7f2306ee3350eVirustotal results 17.14% 
2019-11-29n/aexe 8bef6234557d872c163022195d318d4a9237ded299a377642a930d77027665adVirustotal results 19.12% 
2019-11-29n/aexe e806822cbceef212b298c3c6bcbe9efbb71aff63da9241c4128e04c6af2b55afn/a 
2019-11-28n/aexe 52e489687427fe866ed5df2b71d9c2d52729d6220dcad4f8f0ad7bd8d0326f28n/a 
2019-11-20n/aexe f7c767bf7756401c0c3d58ac33e5b39ae6b24c6f0b8500308b18bc02a02b134an/a 
2019-11-19n/aexe f544ceda344e824def6bb5793cc4aba765f42416f813703237239da18247c8f5Virustotal results 17.39% 
2019-11-06n/aexe 13870ef190925063bf7c11309b51f17b47f7f1d4e1c2e0cb3a9bd7ff977ad7eaVirustotal results 17.91% 
2019-09-22n/aexe 29e0374a105fea9130acb3690ca69fc53e1c16cabae72013f84ba9781be9f27eVirustotal results 73.91%