URLhaus Database

You are currently viewing the URLhaus database entry for http://opsdjs.ug/asdf.EXE which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:265916
URL: http://opsdjs.ug/asdf.EXE
URL Status:Offline
Host: opsdjs.ug
Date added:2019-12-10 07:43:06 UTC
Last online:2020-01-31 09:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Blocked
Quad9 :Status unknown
AdGuard :Blocked
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Not blocked
Reporter: abuse_ch
Abuse complaint sent (?): Yes (2019-12-10 07:44:02 UTC to anti-spam{at}list[dot]alibaba-inc[dot]com)
Takedown time:1 month, 22 days, 1 hours, 16 minutes Bad (down since 2020-01-31 09:00:17 UTC)
Tags:AZORult link emotet link exe heodo link NetWire link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-01-31n/aexe 09170e5598886a1400515aa1602528ad5ad71f41c64fe09e6b4b077733c936e7n/a AZORult
2020-01-29n/aexe 33213133169a1b08b81678b638afd7448d37a971597042b3249929f2cf682f63n/a NetWire
2020-01-28n/aexe ef62095cf2c827cfd45d035096773a2c30c70861b3a3776d23832a6495a17d6fn/a AZORult
2020-01-26n/aexe b27883e89ed153db85cbe210ba3d91380f531f1ef5fe442c64f2adff296d79a2n/a NetWire
2020-01-25n/aexe 90d438ce609e3e42e1b1e27bda1d365fec0f66633056ba2aab88deffc6c0f1dfn/a NetWire
2020-01-24n/aexe d56888a8c3cd173bc2a6b361a0d3aeb118057bd77c504078761654ccf5e521aen/a Heodo
2020-01-22n/aexe 44838267b16fb5c6372236f9ef7f7779514aa7e4c917924d9578451690633362n/a NetWire
2020-01-20n/aexe a239800ea1ebd0929d5c45098a0b0d0500af7730b257a45edcf33cc056523258n/a NetWire
2020-01-19n/aexe 7be2b5ca507bf3c9ceb4b574ce47ca3912d937d18262699b8bf8471e95b6c134n/a 
2020-01-18n/aexe c233f592fbd3df949c2c975e7b66e81628ca222ef5fbb683bc6998bbbb6b4baen/a NetWire
2020-01-16n/aexe 8276e83172c7e2926173b54882c650b4006ce8071af8a3ece40327f76988c4a2n/a 
2020-01-15n/aexe 0c1dd1a13fdc7f78156c31d611861418eb6f321d6599d403bf14438b9efd63ean/a NetWire
2020-01-09n/aexe 0fc2b3ff4fa03037a8d8e1f252031c5ba54830d5ab44479bbb802eeb42fa0a32n/a 
2020-01-09n/aexe a1c5e43dbaf910d5976bb021033b9c8186416b9716a6b334aab0f2e0fded96a1n/a 
2020-01-07n/aexe 06e4ea47467496fecf113e561ef5b1b271465cd34089e0af28345f3a977684a4n/a AZORult
2020-01-05n/aexe 29acb9330982e1ffb937e0fc69460707b5d73233ce248be45012007c889117b8n/a NetWire
2020-01-04n/aexe fe6b64288fe8fc5f4ac39f34268456bea1d6979d9cd009d7a90f640a3f03ac21n/a AZORult
2020-01-02n/aexe 8c5864c3ca1e0734303490ed98f67a77be40861e3f2a3e0105b55a851a27c492n/a AZORult
2020-01-02n/aexe 4bfa8cb41a7595f0bf7529458f53bde186295be2b6b79e73cb13860bcaf50926n/a AZORult
2019-12-30n/aexe 62cf5d850852db26471f1cf27c21714df56304d88542a4da759aed9bf1d23516Virustotal results 13.89% 
2019-12-28n/aexe dbd03103d0717090cc103fcbf486e841c944f86c4f612213c44432834013b727n/a NetWire
2019-12-27n/aexe 091cac798e2f462ff049228592f8030b02d0abdcf0ccbb5a3d295dd253d7964bn/a NetWire
2019-12-26n/aexe 2e6b9a4e166782970f85e370ee4e438dafd341dfd36714e0583b1e8ccc411847n/a AZORult
2019-12-23n/aexe eb5e5bec2673d38b599eb424ecc1a1ee4e8973a4df47b512306f8d75d59f115an/a AZORult
2019-12-21n/aexe 091b5e35ddd17d844ee48848fae5916f151374baff2b7efe035d69e18ddbf66en/a 
2019-12-20n/aexe 6cd8e461d36325ad9de40ae5394b51356939cfeff3814006a744c0dd9c09f31an/a AZORult
2019-12-18n/aexe bf299cdb30fdb087802c3cd10723938161bbcc5057a093660a64f40a59e1f0c4n/a AZORult
2019-12-17n/aexe c5a5d7e3c9430413d3e72764a39b9dd5e12efdb2addce60e90d556fb7f344ec0n/a NetWire
2019-12-14n/aexe ae46cccedbff0bcb36f7918056742940efd9dd5314a4ee0c63eac63dc53ee3afn/a AZORult
2019-12-12n/aexe 8dec2d3baeb5b504676174cb07b53eafaedfdcb595ca82e372414597b74c7063n/a 
2019-12-11n/aexe 0c2e117336db3a2efdcc2e75428635d7814d3de0be02a38d67ab2cfa9292eee2n/a AZORult
2019-12-10n/aexe 58aca1f5365f26452072f2c166bc89a3665732973517d5a74eadc5bea3a84337n/a