🤲🏼 NEW | abuse.ch Community Hub! Earn recognition 🏅 for the malware intelligence you share, climb the leaderboards 📈, and connect with like-minded contributors who share your hunting focus 🤝. Ready to unlock your profile? Go to the Community Hub →

URLhaus Database

You are currently viewing the URLhaus database entry for https://enwps.com/cgi-bin/AgFpX/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry



ID:261113
URL: https://enwps.com/cgi-bin/AgFpX/
URL Status:Offline
Host: enwps.com
Date added:2019-11-28 13:17:14 UTC
Last online:2019-12-06 00:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2019-11-28 13:18:06 UTC to abuse{at}ctrls[dot]in)
Takedown time:7 days, 10 hours, 57 minutes Bad (down since 2019-12-06 00:15:34 UTC)
Tags:emotet link epoch2 exe heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-11-30WOCYbdNOWDBWpVeY.exeexe f315173a8deb4b39d6acb228c0567f1058bc3ebaabaaa823bad4702013a077b2Virustotal results 30.00% Heodo
2019-11-30vXL.exeexe 164736682da3b45e8b30236d20d08e417aebdd02afeba970864cbc603bfe1443Virustotal results 18.31% Heodo
2019-11-30TNIXZrrx.exeexe d1fa2edec19fc1d70d03d722a8adbbba5e87abf854969de9137eaae7a5d19265Virustotal results 14.08% Heodo
2019-11-30Tu6aik.exeexe 405e128059fb837ba499423d6eea75963c68d95ab053a8c7f8922f40333615d0Virustotal results 17.14% Heodo
2019-11-29F6tPft5zf2r8T10JtXh.exeexe 3e43f169fff80ab556934ffe8c36a39e52bc8b25c3c7acc6c501ebbfdca5142aVirustotal results 11.43% Heodo
2019-11-2946jNIj.exeexe a150ca2548283a40a2e8540bf7773008a5757f115352ee56be6d678d19e037cfVirustotal results 18.31% 
2019-11-2986GTm.exeexe 906448d3eba0c01ba0f6ebb45caaa543e4cff4d961316e0f4ae47bae3469ae15Virustotal results 14.49% 
2019-11-29W0CJXo7EoQJXdpev0Bs.exeexe ae84c6b2787d5e31ef3cef6a0bc01491e8c61d41337c9a82c2401b5de2173c42Virustotal results 14.29% 
2019-11-29NL.exeexe ba89fccf00aff3700c8cf86e4860dff92db2e15ae793e1a9db8e6b3dc45d5b3aVirustotal results 14.29% 
2019-11-29ui.exeexe e4b5a3cdda9f984f7620c18d7bd7ef793f6a9b11e654c36ee552097cacb151d5n/a 
2019-11-29UFXijZJTTSi.exeexe 7fad2d96dc83822b295d15af0ef0641e8ad8b15e86dcdb9dcee6c9e9940fe0aaVirustotal results 17.65% 
2019-11-29lKn1Fm.exeexe 644e0fb2a60b4d28d7601b434cdaff6ce00d925153dc18bb5a4c8c942e37a369Virustotal results 13.04% 
2019-11-29HT2KKtD.exeexe d682f3c64649f71a767788f24916865e58841549d25e0a3c2aefc1bb1b006ce0Virustotal results 11.43% 
2019-11-29300W443GRX.exeexe 43890c100fe165d6f2bfd29c392346f2ac0eb8c445787bec557f15cd94ea3bdcVirustotal results 10.00% 
2019-11-295.exeexe 8bb38c95b74dba27aba6eb3e05989148f70050cc52861fe8bb6541f8ebcc5fe7Virustotal results 10.00% 
2019-11-29vdf4IC.exeexe 9db5bb25d09ea5efbba25673dfcbed2b4ee0d8737b12bd94db1782f7c37c8d13Virustotal results 11.59% 
2019-11-29gCz3.exeexe 5cf06cbf9ab530a686766ffa014d58f68dabb8d17fd1cb8f33ff0561183d334cn/a Heodo
2019-11-29IbVf2nvheRoW.exeexe 399bd44ce25739fffc95a6c3afb2ead07ae5357b2bc990abeff0e8d20313ffb6n/a Heodo
2019-11-29SrmCLSm1eN0nd5f7y.exeexe 74e72443dc4adf2a1b47a18dbba948901ae001845465a1c31b537925e18f75fcVirustotal results 18.84% Heodo
2019-11-29w3ieiCuRCfOzD.exeexe 0c7500dc3c228153b4f7e6cbf91ff5f9deced67d56c4826ab4f41a94b6de4246Virustotal results 16.90% Heodo
2019-11-29E5YKBzEDt11xKi.exeexe 76865c526bc58acbf69d760776e7e342b02a33bfb8c712d7331035e419ec440dn/a Heodo
2019-11-29kxtVnMpuaVTf.exeexe 57c3d8abb16a65d8df4a2663592691c2d85bc1f753469eea2d2c8f6ce83e9cf2Virustotal results 15.71% Heodo
2019-11-293kSLPCmYey.exeexe c94e0bb35eda2f62b848d1c16e8be2243b9c8599e23cd62f1f8d61d63f6e010bVirustotal results 15.49% Heodo
2019-11-28riXH9eR69O.exeexe c36e0807e0065c5f600672d437333f44f9b70f68e952739aa755a10f2169820aVirustotal results 15.71% Heodo
2019-11-28H6bnun9T30zQ.exeexe 669e44514d193d6219ce164de7ae31b54a6af5c10603d425dabead03c1335c12Virustotal results 14.29% Heodo
2019-11-28k.exeexe 222ceb852a8bafeb27813e5858f9911a1eb653eb7b38cdd82bb0746b23cda609n/a Heodo
2019-11-28kfuZ.exeexe 9359172be64ab9d86f799b8805a39bd86831508df675ffa91682dd814754248bn/a Heodo
2019-11-28M0vEC1R906A1t.exeexe ee092a5f79fcb0293af8f72b9364f5a1c6bbe52dd608194daf358aa0ca6762d6Virustotal results 11.43% Heodo
2019-11-28y5q8GARjU9DUU0BNAxhW.exeexe b66e83a99ad9df293f644fc3f3cdbd4a14fe77d1dceb59e0d177009a4571f747Virustotal results 19.72% Heodo
2019-11-28DbCfPe1XoMYsiiBFF.exeexe 1e9784b107b4179cac132150cde2793fcd5b2284fcc25775fd60d9aa80dafec3n/a Heodo
2019-11-28HKEphhMABdQe.exeexe 61adaade22cc33e09b5eec2598b55c5d6ceeb33000a3d1f6d657c3b09ad52f1dVirustotal results 14.29% Heodo
2019-11-28FlmwFJJ.exeexe dfdb5c18ee621858c20ae5427bf4d977e1df456e3c99aee6a11458980cee57e0n/a Heodo
2019-11-28O6VkXLxTFp.exeexe 31a3c8bb624ef3bfafa78351a471ec21efdc17af3a695e71bd682c14cab224f5Virustotal results 12.68% Heodo