URLhaus Database

You are currently viewing the URLhaus database entry for http://ptbsda.com/wp-includes/cs4uz68285/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:261107
URL: http://ptbsda.com/wp-includes/cs4uz68285/
URL Status:Offline
Host: ptbsda.com
Date added:2019-11-28 13:16:09 UTC
Last online:2019-11-29 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?):mail Yes (Ticket DCU002131399 created on 2019-11-28 13:18:05 UTC)
Takedown time:1 day, 7 hours, 50 minutes Poor (down since 2019-11-29 21:08:05 UTC)
Tags:emotet link epoch1 exe heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-11-29kssqo7xv2kbu.exeexe 9d6f14615046d30e9061f2ca83507dc32b9286e0523d830ad187010605b2dd72n/a 
2019-11-290a26h3la4lg.exeexe 9e367fc6621944c10a27483f2f2c46fd5ee19e43448c3b49830cf4739b80622fVirustotal results 14.29% 
2019-11-29gqydop9.exeexe eb1a7ce72c80e84fd893356872874f3fed7b5bc319356ebac42c38b5f22e3167Virustotal results 14.08% 
2019-11-294pf0qim.exeexe 6c443a892369be35974e459745acf7e00384dddbbd2647e7b1eb87f481a34e1bVirustotal results 14.08% 
2019-11-29s87n9oa5n3v7j8.exeexe 7e444d3e9bb093ec205f2fd5f0dd8d47ff4192b08d5ec66cd1ce7ff22ab1ae62Virustotal results 18.57% 
2019-11-29iuelpo1vqqpcuyq.exeexe 345fffb098e7dfc3c0c0c20f1fa010bca541f6e47e096d111e539f1f88f03c85Virustotal results 14.29% 
2019-11-29scl12gx5.exeexe 73e2c5e86b0bec237f7cb080840de9f9e7ccea4763486b27491033dd623a300fVirustotal results 11.27% 
2019-11-29d82onaelwngo.exeexe 31c5251f463af7523aa09c68be7cfd82257af814c4819f63b1eff3b700ae2215Virustotal results 10.00% 
2019-11-29c8eea9v3uibi.exeexe 9f4bbb49ab51041190a330b44be5f92dc1b79a29601ef1a214d2d9bd3941df9en/a 
2019-11-29ysd6xbg9.exeexe 04ed7e830a27a36ada06eda9a51844b0c35bcb2f739b2641dd093ac698666198Virustotal results 11.43% 
2019-11-297dh2bx.exeexe 6e6b79a9804f548b84ccf5631eaf64a3caf2f0c7fede98863ff3ea7171d3af7fn/a Heodo
2019-11-29k4helkuljf7q4.exeexe 82ddc1343471e88fd57d06b5150dfc8601a3a30ada2161291f80fee59ada1405n/a Heodo
2019-11-299hwo1c1m6.exeexe f19f904cb17748f5c20acf996c11964ffbdd632f48c9486d29dc5f824bf99991Virustotal results 18.57% Heodo
2019-11-29fcfp9ui9i.exeexe 170d294ad3d48237889f07f2bc20134a982f26b2a229285b2078f260df832d3cVirustotal results 17.14% Heodo
2019-11-298nrbrmtrnb7.exeexe 64f59531a8ed8db369f47fcf391b2a3d06abbefe1f8ae31e2db3086202e202f2Virustotal results 15.49% Heodo
2019-11-29h436k5aq.exeexe ddfe799b8016a219d9ffa94ee3dac44de4a100057364b30c313c00ae36052c54Virustotal results 13.04% Heodo
2019-11-29cfnt0ypfunsic.exeexe debe625f98b4aa4ec1fb5c7576028791396c26cca668e20acf9f8c9d1421e0d6n/a Heodo
2019-11-294b71q9itqjt1i.exeexe 82384750008cddfc1613cc5d324fbee4b5996adda39f9c645001f90840e6032bVirustotal results 15.71% Heodo
2019-11-28fpymcpcuos6rd.exeexe 4fe8b272f0b976a2b0a504f96ad7be8bbf5cf4501d2148b64bef85baa240b5a4Virustotal results 14.49% Heodo
2019-11-28es44a.exeexe eb4ff21fc0f1e6e12e63fd137ab876af3009786c2cb7eb9e1f048bcd97b7b753Virustotal results 12.86% Heodo
2019-11-287ad96qoh.exeexe d5c6c84759d2968ab27ede1d449b85c8df7d09ac35df0452aa5fc739a8a5fa0an/a Heodo
2019-11-287oll1yfzy7uj7.exeexe 83957bdbd73062a34e210ed5be969dab09d245ce525f66f04be6e6a2bd44b221n/a Heodo
2019-11-28xd6u1km8bhk7nm.exeexe 1a72639e4c2cd3f1bde64134c81b657fa9f1374d46660c23f417bcae97928a63Virustotal results 21.74% Heodo
2019-11-28tm4t8h7dxfo8.exeexe 69b447466294cefbf9a594634c2cc385edc3f80f62a0524a145b2de487feab7an/a Heodo
2019-11-288k343b8y.exeexe 325328a94c05a5a7e9d747f6d9c0f3d5ab9deb62c179e2f98826b7c78772a3b1Virustotal results 14.29% Heodo
2019-11-28s6h3ps27v.exeexe 919b9b8c2ad1881fa0a7bab0554ed48b9422d01a4b016e4e812812c4b1dcab8fn/a Heodo
2019-11-288ykyaii7rb1.exeexe e3c4521c113245a96b4d4ebbfbbe894a891bdcb8e165dacc0dc29e733e37f431Virustotal results 14.08%Heodo