URLhaus Database

You are currently viewing the URLhaus database entry for http://myagentco.com/new/vkn/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:269650
URL: http://myagentco.com/new/vkn/
URL Status:Offline
Host: myagentco.com
Date added:2019-12-16 11:16:23 UTC
Last online:2019-12-17 12:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2019-12-16 11:18:12 UTC to abuse{at}nl[dot]leaseweb[dot]com)
Takedown time:1 day, 1 hours, 30 minutes Poor (down since 2019-12-17 12:49:00 UTC)
Tags:emotet link epoch2 exe heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-12-17k73Xarutr.exeexe dc97b633864d1943ed00ecfe5573eae93d4990b8ba6c826fb9fffcc025943188Virustotal results 23.94% 
2019-12-17nJs19xsx.exeexe 0af1d57314643bf8de79f8713c744fb6e879d55c0041c094125f853c853a7da4Virustotal results 19.70% Heodo
2019-12-17z6YYa10axDgm.exeexe 0db30161fb6210d1fdc8f289808781df1e86bff64e01b9e5cb30a7784c7c111fVirustotal results 14.08% Heodo
2019-12-174.exeexe b1ca0021fbc132e8512763f4f89b050723785546bdc4cd268d32cd91ab997af1n/a Heodo
2019-12-17dGfSMRGswAoExt.exeexe c0387b9e9844cf7455fcfa7864c8006e6bf71bbbfdc71ab2a1ba1e7a48fdacc8Virustotal results 21.13% Heodo
2019-12-17Egw.exeexe 91226be1f27326ab68356cb699a0f4f777038e6ea3f9873a762a93a17c431a4eVirustotal results 18.06% Heodo
2019-12-17kiNUDwThyQntyImCHk0t.exeexe 552700ce1285d58cdd4248dc27435bd82f25b5e8084af9f30a8354203b2d89fbVirustotal results 14.29% Heodo
2019-12-16cSUpQ0RO46c9.exeexe eadcb188c02e020974485e168ffeeaa2002f55a551866e355e5da7487e95edd1Virustotal results 13.89% Heodo
2019-12-16xai2BnQvjdZDqA5FwLfN.exeexe a516df17a9de309019a29e8cc93157cee35df356d0020d471487ff0c8fb83ba1Virustotal results 11.43% Heodo
2019-12-16XWRB0NyMZUUCmyDLUTa.exeexe 246725393e6808ed0f92da5011fdc84e2fa39d38f6c91c05adecf81986e6a43en/a 
2019-12-16WXIaqaOQu4n6M.exeexe ec1aaa09dfac133eea76667688386406829711df11bcf4276d8a27df266ed27dn/a 
2019-12-16rOb.exeexe c9696a532a21aef06ee9be34d2b32e8d2120604c2a4719dbde32ff44b0ae24cdn/a 
2019-12-16tFp7otXoNMED.exeexe d72f5d97f9e33efec95d4fffe97cbdedd49d429b9a84da0064fa578dfebdc75bVirustotal results 15.28% 
2019-12-16SVOvzyOCKtKGHL.exeexe 69de1911504a18351eec68da0ddcc5ce255577f49f5608527a5a7d56bedf445an/a 
2019-12-16ijcmTr4y3nQ59F.exeexe 115f8610c71137465d8252c0a2099905e838608ac27d1c18c17abe33b093c5ebVirustotal results 16.67% 
2019-12-16OCkkVhAEM6jK.exeexe 626b08c4abed8b13d03e896d3032d612deae540d9bceb8036276711b9afc99b4n/a 
2019-12-16VMrV9aOBlUZtCQCw.exeexe 65d316c9eb4e4df55e360b5e81c1bacdd1985f23a67ef04071681b9364ce15e9n/a