URLhaus Database

You are currently viewing the URLhaus database entry for https://www.app48.cn/logreport/01416692/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:287486
URL: https://www.app48.cn/logreport/01416692/
URL Status:Offline
Host: www.app48.cn
Date added:2020-01-13 22:36:39 UTC
Last online:2020-03-13 00:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Status unknown
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-01-13 22:38:09 UTC to abusepoc{at}afrinic[dot]net)
Takedown time:1 month, 29 days, 2 hours, 14 minutes Bad (down since 2020-03-13 00:53:04 UTC)
Tags:emotet link epoch1 exe heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-01-15jGdmSUJNIkR7pCg.exeexe 7fbc314f9ef020fdd1e1e5b3326fed20525538fd2aa0f245ce31f69038b8b634Virustotal results 26.39% Heodo
2020-01-15mav.exeexe ce4bfbdc311ef338ebbf485a7436f4fb0e932a51a28f554ced7aee12fd0bb38bVirustotal results 27.78% Heodo
2020-01-15YiATYqS3mP9D9qUpFg.exeexe 8d7200e1fa71c75e72f070b93c05f4c077aaecf5ed9be74945d8ae529a9e01d5Virustotal results 22.22% Heodo
2020-01-15Fkou1QFsCjiGPo5ayt.exeexe 555850e863dd682ece7944857b1a82ac095cb99640d3e73209153419f1a2bec2Virustotal results 22.22% Heodo
2020-01-15Aa6TVhbyonPpHH.exeexe 21bb5da42deae1872d427a83e1ad3f24d3db215facdc7ad154d507da45e55ad8n/a Heodo
2020-01-15SDN.exeexe f6d3af0277b39e2200c692ed4faa3cc9dcf887c56037cd3d1d7180ad7f9e895eVirustotal results 15.49% Heodo
2020-01-15X1lnpuH.exeexe 1ee734e68898db57b3ba3810e77cbeb77a895ee2b0d279462d31e5730d6144caVirustotal results 29.17% Heodo
2020-01-151Vw1YOgECKo60hlkLzdG.exeexe 1bf223b9e94a55eea12110bf555f4a7c93b30403414762c0c94afa6a700191e2Virustotal results 28.17% Heodo
2020-01-15KbfBgLqSVm.exeexe ee83ece7921cc2cb102d638007563408755a2f3455129e67c72702cfc95eb107Virustotal results 29.58% Heodo
2020-01-15FyFZSwXQ.exeexe d78aff54d42f4cf7516c80d6a98fe3d048d897d3ef693280bbe0c71fa4a3f433Virustotal results 22.22% Heodo
2020-01-157bbj7Z.exeexe edda4006abcf4c758a0a13c05852ba00acbb4f19f08c1300d8d7e07bb50c72bfVirustotal results 23.29% Heodo
2020-01-154BP9.exeexe a25878d9e42ff3478314d6710bf5822e4ce9d369effe395710ed1aaa3fb088bfVirustotal results 39.73% Heodo
2020-01-15NNzN62eeT6iIWVVrXzq.exeexe d33997e5f209057f5e408893f0d2afd2bd9552b0c57ccfeaf4da3f6e7cf5858eVirustotal results 37.50% Heodo
2020-01-15qk4aK1Uo2.exeexe a354d4d300d5f12577a95c48f96f79ee838f3a4a9226ea0fbc1bac2e5d73bc25Virustotal results 32.39% Heodo
2020-01-15rfdtkHllR.exeexe eb318ee1ca3c433776e1a5ffbf59a13f533b8cb97b4e2ee493434e02f34eed98Virustotal results 31.51% Heodo
2020-01-15j2SJi4O9Nt16tUjG3FYL.exeexe f0a8b010093ebc98581180000ed5f642006dc73f94cbfccf308bbc99b9c0d394Virustotal results 27.78% Heodo
2020-01-140Vy6OHex.exeexe 1746c81d1d2bcd7bca7346b2a1e0bb036c927b3e9d8629af8c7a442dc03785caVirustotal results 27.78% Heodo
2020-01-14xCnPTl8dqutC6x4.exeexe b0a59df4756ac630e6cdb6458a63cde0251b1284013a3d8f4f9a2025789fdb32Virustotal results 25.35% Heodo
2020-01-148pmgNtNqci1uCQgXb24tZ.exeexe 60a77e05486309b33cec86371679d26775758640b0e27533da77d92efe3c0422Virustotal results 26.03% Heodo
2020-01-14Cq1Tmu7kuU.exeexe e2b64db40be76c39a7f82c8f38cdb568764b59f0632e0473db38d28bac36ac1cVirustotal results 25.35% Heodo
2020-01-14sn32DyvOLzhR49I3rRY1y.exeexe 9453787e25ee011a86a91a2bc79ed8059e4cfe72194ca9ee9ccce808109cd2aeVirustotal results 26.39% Heodo
2020-01-14fZ1WZ9OIqMiG9Jsd9yeR.exeexe 061ae67f263b4752e44d2ad4511522f8dc327bbdad8c5e4dd92e48d6ee82f710Virustotal results 30.14% Heodo
2020-01-14CGvnk3459j6f44N9.exeexe 38ebf3f7ac82e11c881cab0161ac43fdf534a18d9bec51ee461ac723ba4b5178Virustotal results 32.88% Heodo
2020-01-14kp3EYV8Vp6F6Pl.exeexe 178ef50351c8e325adf7c23c0911ac1478f32774c47cde5d36530472392a678fVirustotal results 27.78% Heodo
2020-01-14p4OymuGpV.exeexe b0634973f8f7cffefab5961445757f79f5da8e107cc7145c1c1c5d417c569167n/a Heodo
2020-01-14rB9QdsLrT7x3gtdX3.exeexe d45f24d58b43f4b71e2b9c56bf6fc319f65f43e58d9b8e8ebf6460dfb412b455Virustotal results 34.72% Heodo
2020-01-14roHTUGFH0iw2XfvOQW.exeexe 2937867696dac8f6993a3eac7aa1e40b928ea24a33640fc0ee21445a6d3eb3e6Virustotal results 32.86% Heodo
2020-01-14sDZ75Mz.exeexe e3b52f227944c583a454a8f274e5fd7f19a8e0e33f40c20c756f56ebd415fe15n/a Heodo
2020-01-14JdjwCpFUAFjmMHCI.exeexe e0dc1e54a2144e2fd90b5aec34083e3e9a9d517d9c941f8a01c6e9e88f889221Virustotal results 30.56% Heodo
2020-01-14c84s3iX.exeexe 3d65f7c866beb64bfba3724b7035c646d4287d5516357ae21769ad432f744b81n/a Heodo
2020-01-142lmamOJWEQldmDT.exeexe 81b8fd8242b55fd96e748ba8d922340f87302ce2cee62af8d988f001efbb8a8dVirustotal results 30.56% 
2020-01-14N5dj.exeexe f85b6fc6ece1227dee97e65404d2ff7092aaa95e38768d5deee6a2f2069ff5ffn/a Heodo
2020-01-14KhejmqkqlSSyI.exeexe 3c9000f84983ce11dc84ab4034b1cb9b5e16a18989e60e3b30cf074aad5ac29eVirustotal results 23.19% Heodo
2020-01-14pBNtH37GdoJ1f.exeexe 00a63e96cdf3b01b8b4edd8bece9c60a19db1ef3fbea10ad835100abe4da37c2n/a Heodo
2020-01-14JYfZ.exeexe cc6dd52a1966143eb5a9720f6becd21ac0de6e3cde84bee63a0d388aaf800a9bVirustotal results 23.61% Heodo
2020-01-13IpI0rAnnrJaYQQy9N89Kl.exeexe 52ffd67f1dfe0d6d0f56399cc869d090cfa2badcca485114012e3a4c17cd486bVirustotal results 24.66% Heodo
2020-01-13pBR2j4.exeexe cd5ab9477748985254289b6cb2a6cfa03dc71729dbec1c952dce274b703dc162Virustotal results 24.66% Heodo