URLhaus Database

You are currently viewing the URLhaus database entry for http://hairmaxsoftware.com/software/D2g/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2576659
URL: http://hairmaxsoftware.com/software/D2g/
URL Status:Offline
Host: hairmaxsoftware.com
Date added:2023-03-18 21:16:08 UTC
Last online:2023-03-19 16:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-03-18 21:17:05 UTC to abuse{at}inmotionhosting[dot]com)
Takedown time:19 hours, 41 minutes Good (down since 2023-03-19 16:58:44 UTC)
Tags:emotet link exe heodo link zip

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-03-190yru7YqavJux83P1gLpnhezfR0WfDlakY.zipzip be61a644a5628af836c31999fe086557299fd03a191d09530a42c43fdc994963n/a Heodo
2023-03-19vSJJ2uV6yUO9vsBuRYEsIs1.zipzip 1788dd53cc40c7e90ee78abd3359d443634554fa53afaeb50eae4ae6e97335f0n/a Heodo
2023-03-197PCxBKNRZklQfPu6gOvsGg.zipzip 7d32e76c1926b13ca4c53be8cc97198bf20c2fbd8e2c9059b6d48f6b8113dcean/a Heodo
2023-03-19sjjtwN1WZ1TUBdd.zipzip 04a95cb0c9112e2ed0f508ec0c74929eb5004415532d47e1b89b1d8c7831b362n/a Heodo
2023-03-19z6J6Yvw.zipzip 1e14be915ddbda0a3bce27f9aae927edf7f4c713f449f6027b02f9ae2d1cee41n/a Heodo
2023-03-19SGMxydctplGfMI.zipzip 063697eafd3493a9fac109a81566287ef326bc87d7b6ca508c14e13dfb19b70dn/a Heodo
2023-03-19IzJumX4enIMQpaWf.zipzip d2c5dfd1a79b7b3bc1d973a3079eb9db7934caf3c907959668474a818375f4c2n/a Heodo
2023-03-19ofIDYDU3.zipzip 059efb61e6ac1967f94665d4ec1e0adb9ae47d13920b5d308306d735e2a22744n/a Heodo
2023-03-194JGvQJertJvaByVW5jcGAzbj.zipzip af68e7b3fd40de9c56f886a3a70460991611190ab037f4a996146bce87609520n/a Heodo
2023-03-19IXIrkQlbCCFM.zipzip 76fbc6eeedd6a05c77649ded97e928d9d5ab6a07adf5ca69bf19bbcd591e4baen/a Heodo
2023-03-18ApdYcN17WET.zipzip b5c43726ac6b60ef52f82821006c0bfc97c1fc6e897c4aae306c57e01b3acde4Virustotal results 28.33%Heodo
2023-03-18IVNovCXFarvgr.zipzip 38f8671b7e43e062faed32d5f0712d32c37b5a06b2032dc733d43ebf60f6ff1aVirustotal results 31.15%Heodo
2023-03-188VVvxfSdZaJGwBLw4W8QHypxvN.zipzip 60b1afa336edfa0c8a45ec274513a18fce3e6365d76723f16bf7dd5e66216336n/a Heodo