URLhaus Database

You are currently viewing the URLhaus database entry for http://lagriffeduweb.com/clients/9b4djrm/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:248173
URL: http://lagriffeduweb.com/clients/9b4djrm/
URL Status:Offline
Host: lagriffeduweb.com
Date added:2019-10-24 03:57:13 UTC
Last online:2019-12-03 10:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Blocked
AdGuard :Blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2019-10-24 03:58:08 UTC to abuse{at}oneandone[dot]net)
Takedown time:1 month, 10 days, 6 hours, 21 minutes Bad (down since 2019-12-03 10:19:19 UTC)
Tags:emotet link epoch2 exe heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-10-26LviWc0Rcg.exeexe dd829ad524879f3494268c2cc58df69d9a52b345a9ad3c78bb628f9252943e6cVirustotal results 14.29% Heodo
2019-10-25LpXqzTCerGSEEpz9OGC3.exeexe 47dc1ff1c51a85698df20c253107b4a820999e3f7aba4cba81bec75c60b0b895n/a Heodo
2019-10-2594mkWqgrXAIn3.exeexe b2b4f99f9d3cbdca170c7e053f78349fa8477e45596e7b791b2b3b9a96c9d8efVirustotal results 17.14% Heodo
2019-10-251dKEfxMCa8azHJGP68p.exeexe fd61a6a2ebfb39fb2aada8e033835ed9913b827ab1fc180f50b3086064446b1fVirustotal results 15.71% Heodo
2019-10-25F.exeexe c134c7e27fdc8a88d1a75775b41ebf13d5a66e42050d0dc39771455c05e02edfn/a Heodo
2019-10-25OeaOOQblQczqjTngz.exeexe 41e0ae1c1f3137cd6a63d4dd586388878c7df93b3c9ba314103fb00991c2da62n/a Heodo
2019-10-25x.exeexe 514f013d9848a19291a2cad493a3b3a5c2f37661ff1a713eb21716b39e5afb5en/a Heodo
2019-10-25xYfEjcJX3ywwGCq.exeexe 4ed8e754f4ff4a177471f7eb1f2205cf5cb98ce3802d1931236ff92d3f3ee47cn/a Heodo
2019-10-25giC2BTGyd.exeexe a9e503ad0558a14d29df83a3cb4193fa5b9bf3be370fc356b8e922d4aaad34bcn/a Heodo
2019-10-25e4TplDLrESk.exeexe 5ed1d51382f493a1bd562f4716ab2b6029dda3d44587d2d3ae500e99bd1247c6n/a Heodo
2019-10-25u9j3TXoJ2aEXNf3Y.exeexe c7bb1fca0cea5898a23a38e2e4430114fec4af2f53b8d02086ed0f3d24663729Virustotal results 10.14% Heodo
2019-10-25gsFRTQ8.exeexe b17cb9569882ab3f112045f53221caf82166325ece975280d07bb38fd2d9edfbn/a Heodo
2019-10-24fIJFRmTHEYMUcgCuK.exeexe c9ed3a8a005878843bbc9e891c7e7b31ffb03412ce74da8792901cc3f31db8bcn/a Heodo
2019-10-24M1LZPc.exeexe 6237581adfd0e4553dc4289391204cd01a6a229538953a054cb4365ad16bf1bfn/a Heodo
2019-10-24Sf.exeexe 2d1e311fd79fd26ae1343578d54dff50bea8ee41c69356100c05e847e39e1ae4n/a Heodo