URLhaus Database

You are currently viewing the URLhaus database entry for http://axis-gps.com/pzdjz/hgpu56/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:265427
URL: http://axis-gps.com/pzdjz/hgpu56/
URL Status:Offline
Host: axis-gps.com
Date added:2019-12-09 15:00:23 UTC
Last online:2019-12-11 16:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2019-12-09 15:02:08 UTC to abuse{at}hetzner[dot]de)
Takedown time:2 days, 1 hours, 6 minutes Poor (down since 2019-12-11 16:08:35 UTC)
Tags:emotet link epoch1 exe heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-12-110q5wiji5hcnpk8.exeexe 2a29aecc334cf89b9a4454412c39cb70d9018c8a5af5ce6b229af3098c15b6ddVirustotal results 12.50% Heodo
2019-12-114ut6sfcjbd.exeexe f1efd6909ab67ccc0e4c42dea33c852bf50514909ea4ede8e0dbac1c311d4314Virustotal results 9.86% Heodo
2019-12-11j45mhz.exeexe b68645c3d069d9d14d4d6cd97fd927b66a5873ea8672681680f596381f8fe9feVirustotal results 11.27% Heodo
2019-12-11esvnvee.exeexe f3f0f8469aae4354a97974161df582e87dfeaccf59706e182aa9fe527aa72c47Virustotal results 32.31%Heodo
2019-12-11vek5y7cmmr0b.exeexe 09657cec5b44424aee6d77af666a891b73696ea679043610fbaa969c5b12b884Virustotal results 30.88% Heodo
2019-12-11jxfc8e7eph.exeexe 63e7d854c1d8244bf30b9c63c1ce8d6927cdc800b70a667943fd212a26a82ca5Virustotal results 21.13% Heodo
2019-12-11xqtfhk1.exeexe cc9aa8c990e6486cedda59214a6cccaa2ec46b9c08c2c31c14cfe2535863d143Virustotal results 20.83% Heodo
2019-12-11lkde4k521zmor.exeexe e9b6e8154c30b6e4549940a4a6bd53e61026154a3544b6a39d0866908e946cbcVirustotal results 19.72% Heodo
2019-12-11pjqenxf.exeexe b0e3264735ff29669202b2570cd113ab386816b46e07f9ea55c26bac5bf451f4Virustotal results 16.90% Heodo
2019-12-11fw3fvftwj.exeexe 4e96a5795507bb0aa699c680482180eab15f85fc361ed63203ac9611e959eb97Virustotal results 18.31% Heodo
2019-12-11qvhv8.exeexe 42472ad6c850df6775c9f714d52d8fe7741494d66e9a11ae6cc4e4f7f789ebdaVirustotal results 16.67% Heodo
2019-12-11mdhwsbf.exeexe 4370cdb3f8cc3146b305ad81bd3c98c0954bfab7b605ba6f545a2a9cd0b829c3Virustotal results 18.31% Heodo
2019-12-10214x6yufaymc4d3.exeexe bee656496d688ceb8896a3f61dd7045a999676a03f1eeec4cb1d825e7e0491faVirustotal results 21.13% Heodo
2019-12-10vrp9cto2c.exeexe 0d6236e8cf79f00319b8e321f8b731728e492e711c360bd7d347d872a71d15beVirustotal results 18.06% 
2019-12-10obk64sl3zru6.exeexe 11b4aa4bbd32eeaaab85b18773e46a9e85cda8b9ef43d1eb6b6b426f03c2d9fbVirustotal results 16.67% 
2019-12-1041wlvxt6v794.exeexe 068b07ba57e5d67f642fd4ab40c883124789f42826e60369f46f323d73fa0808Virustotal results 21.74% 
2019-12-10a88ddvhsv04.exeexe eeb9be7e91202f6b164dcd1da16a82d0aa28ca8b8ba47789006518278d843d00n/a Heodo
2019-12-10wj9d6f69j4myhg.exeexe f325c55069e8a5da47b217f05293baec07ff9def5a8052cfe7f24f68bd7e51bfn/a Heodo
2019-12-10zgks3afg.exeexe 778ada308065de8002f07cdc0db9bac7ad887424b1ca530a1cb8317f8c4c2f2bVirustotal results 12.68% Heodo
2019-12-108zgun8blc71gc.exeexe 6adea29c5b39c66c328ab584a10ec080e57a4b0e01459d40104f8622d81b7c06Virustotal results 11.27% Heodo
2019-12-10t4ocgc602iz93f3.exeexe 4f3b146702244539fe36879972f3e1c6a84edf6df5c48fde9ff6ae8a68493fafn/a Heodo
2019-12-10ew245943xxy.exeexe 77bfbe46f460ac1e41a8800f8abac8b38cb1c00ae6717ef5b80c77a9a6c84d4bn/a Heodo
2019-12-10di09l62o6otcl.exeexe c61ccc3afbfe93a2f0bc85fa4a2c98de8e11aaeb32ecbaa8003e0867129a116aVirustotal results 16.90% Heodo
2019-12-09cwylcp49qsx9wk.exeexe 679b2f7d00d0da4c0ab5835f38c2e07bcb5006aed55281fc50688bc580a5033fn/a Heodo
2019-12-09kjz8huxrj61u.exeexe 612183baf8f0cf80717ab7943df3a9ee16a89af588975b98963ee8f3a2b77e1cn/a Heodo
2019-12-095coqfmz2cj.exeexe 06c3820a1ff44ddb689c82fca3e5b94f331f9bc10add2ad479c0db87c0484841n/a Heodo
2019-12-09a7117ritzj.exeexe d7f856e700e4b5d58d3a75c932c7014136d398dfb5c87b3e7fcd49ce360dea68n/a Heodo
2019-12-092w38ynxm.exeexe 67d3873a07ba4fff8b114566bf9baf8e8e810b13b6fb0ed7e4ebba04504e9341Virustotal results 18.06% Heodo
2019-12-09zvqeje9k.exeexe 458725ae5769bb6b789d4810ce0a87e9c08c878b98c9d4fdb1de3013e7e90105n/a Heodo
2019-12-093gao2b1nl7cscl.exeexe 84a1a4433ab7619bf39e78eb9881a5d10b9afb43c9ab133c3220e16398932e3cn/a Heodo
2019-12-09jpgkoyft8.exeexe b3b264c718e7dc08035ef88ec17a4bbdc53ec52b98d891b862443c8aedfccec4n/a Heodo