URLhaus Database

You are currently viewing the URLhaus database entry for http://pay.ayazprak.com/order/goo8.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2752155
URL: http://pay.ayazprak.com/order/goo8.exe
URL Status:Offline
Host: pay.ayazprak.com
Date added:2024-01-27 06:04:10 UTC
Last online:2024-01-27 06:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2024-01-27 06:05:11 UTC to abuse{at}cloudflare[dot]com)
Takedown time:7 days, 0 hours, 18 minutes Bad (down since 2024-02-03 06:23:47 UTC)
Tags:32 exe Socks5Systemz link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-02-03goo8.exeexe d705ef04ee8f9cea915320a998aa73e9cab8158ce3af8a21d174bb18b81568cdn/a Socks5Systemz
2024-02-02goo8.exeexe 13ec065be98fe2d9aa71006f8f3d0c1b519959fc66d36a3e9f6e7fcdd49d27ffn/a Socks5Systemz
2024-02-02goo8.exeexe d074e3e8f3f934029197717acd8da8511d69a322a5c95211279633d59543bba0n/a Socks5Systemz
2024-02-02goo8.exeexe 867399392470e2bc2825470361115a0242e5b99c608c48316035bc109eed34d1n/a Socks5Systemz
2024-02-01goo8.exeexe 251dc20962f6f250ccd72f7bfa8e685ae432213dace54d6b0f045cceebad6bc1n/a Socks5Systemz
2024-02-01goo8.exeexe 299c732cff86a55ed5ea9a040efd014750652e1e14a02e7a7ea6a15127c74045n/a Socks5Systemz
2024-01-30goo8.exeexe 32cb77b98b2f9846914c0670d86976fdd7a0c182fe7a9a1c657bd7651888f184n/a Socks5Systemz
2024-01-29goo8.exeexe 0b2913be25adab364a70ec6ee7b13fcd07a8378fd26066d66fa9890c2977df06n/a Socks5Systemz
2024-01-29goo8.exeexe 44c4b1cdedcfba0f5f95ddde7086aa667c401342393fc69bd172258c5625a359n/a Socks5Systemz
2024-01-29goo8.exeexe 78efe115ceda7d4864bad35ef716143b5f0356d1188f3a8d4e14c09e2941e43en/a Socks5Systemz
2024-01-28goo8.exeexe 99ad48bb2959f2df305d588091cda88ad9731c6e29a90898f2937ce48195ee60n/a Socks5Systemz
2024-01-28goo8.exeexe 5397f166a4f8f217b4515d9e044392bf93e5791f3852e0f0747839bab2e9c321n/a Socks5Systemz
2024-01-28goo8.exeexe 5cb8d9c59f0c20b5f36fc6d7d2678d6e171a65ff2555a4248685c94c9dc48ce6n/a Socks5Systemz
2024-01-27goo8.exeexe 9f32fa43962e28038c53462fba8935b00793e3d07cc2f7bbeaf0751bc0151ee6n/a Socks5Systemz
2024-01-27goo8.exeexe dc4f7ed505c4426d0e04c603b1489ee10e46c703fce2c2e427ea9f9ec21b3ec4Virustotal results 9.86%Socks5Systemz