URLhaus Database

You are currently viewing the URLhaus database entry for http://emgvod.com/uploads/logo3.jpg which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2755904
URL: http://emgvod.com/uploads/logo3.jpg
URL Status:Offline
Host: emgvod.com
Date added:2024-02-03 11:01:10 UTC
Last online:2024-03-07 09:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Casperinous
Abuse complaint sent (?): Yes (2024-03-07 09:06:05 UTC to abuse{at}rcs-rds[dot]ro)
Takedown time:1 month, 2 days, 23 hours, 26 minutes Bad (down since 2024-03-07 11:33:15 UTC)
Tags:cutwail link dropped-by-SmokeLoader LummaStealer PureLogStealer RedLineStealer link Rhadamanthys RiseProStealer zgRAT

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2024-03-04n/aexe 21e076b3a450a4eb0a4fefc545dbed7987bdb35209ac1556d6b3ec766d85f9f4n/a 
2024-03-04n/aexe 96a0db88cf0b9491bfc2f2e8dde9ec4d3608ccbb050dd411dbd84ab03b6606can/a LummaStealer
2024-03-03n/aexe 8274c21b3cd01ad6b1c2eebd2f7ef6f6b8a58a27f29031f6356f847c705fe430n/a zgRAT
2024-02-26n/aexe 59e7a2190aeffee3f4645808ef6e8147446ca1b471cc16ce64f25d8a947a2d1dn/a 
2024-02-25n/aexe 1309420e63b0c80a79be3fda529a609da263afad33dee366be47441446dc50a1n/a RiseProStealer
2024-02-22n/aexe c27c1e00bb778d222efa52a9dbb9335230052cd7eaacf34a8d28b4436aae580cn/aRhadamanthys
2024-02-20n/aexe f15ec2d931596ca58e6bc463acd96a601ebe8b03af0fd3504359a1e20187f48bn/a 
2024-02-15n/aexe 8caf4396ec201979094d10698fe8337cfd6abc0e07e7d56e3934c67459fa8d85n/a Cutwail
2024-02-08n/aexe 641a4ff84f4bbc48f59fd871da8cd17fa63de517d07e4ce646a5000d1b4786d2Virustotal results 41.67%PureLogStealer
2024-02-03n/aexe 0d00beb388e6341c9d0b6742b2737516cc9466fbcca78017fb2292f6e1dc32bfn/a RedLineStealer