URLhaus Database

You are currently viewing the URLhaus database entry for http://cncgate.com/wp-content/uploads/D7/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:288128
URL: http://cncgate.com/wp-content/uploads/D7/
URL Status:Offline
Host: cncgate.com
Date added:2020-01-14 15:44:32 UTC
Last online:2020-02-01 15:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-01-14 15:46:08 UTC to hm-changed{at}vnnic[dot]vn)
Takedown time:18 days, 0 hours, 0 minutes Bad (down since 2020-02-01 15:46:57 UTC)
Tags:emotet link epoch1 exe heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-01-16AoZd2dZwiq.exeexe 7627cfd37186886383a5d1710d13b9452ebf0c19f1b38367eaa214a41986afddVirustotal results 12.33% Heodo
2020-01-16AC3mSkTUg1Xdw3.exeexe 5e83f68621bea3fd9a3db60609a579d592275606f740524fb2abf52db8b22687Virustotal results 12.68% Heodo
2020-01-16uHObo.exeexe 77642c95a13d78fd7b19c923fd1c6594c11e95c455afe99f9f5b690f121860edVirustotal results 9.59% Heodo
2020-01-16oEaBg4qLygjfAmv5b.exeexe 03c6a147e6e33b70f3fb19f005101559f85d081388b71a11c2b7bd0c84354aa4Virustotal results 9.72% Heodo
2020-01-16lAx.exeexe c73c08f5d977d0bcf811a42f078713f46e4e885eab70ed5c4894a1c7ceb07296Virustotal results 7.14% Heodo
2020-01-16PTA77UBojohabZb.exeexe 864da9d189b7a42b4f64f2592a4756ce682fc204247e5d0ae745a13ae5410874Virustotal results 5.63% 
2020-01-1665gh.exeexe e7a0da3cc8e16e13aa88b72bebaa0069f1bf6d865a40e24008033a068d53fb9cVirustotal results 8.33% Heodo
2020-01-162wTwJq.exeexe 0b49f25662dabc3688de8f54a844bbd3236930e5bdb03be57cfe20a404cfefc0Virustotal results 2.90% Heodo
2020-01-16unSn00aygeXBMJuN.exeexe f4a5804ad4ef8ce195027766679919d3eb26b3c568b7ff5e88de1b6d5c3610d3Virustotal results 16.90% Heodo
2020-01-164kH66XGBfDD5ZjvKF.exeexe f6f9ecfb29d503b879b59d538987a595c6472102394d4ab0d8533b911b1bcf40Virustotal results 8.45% Heodo
2020-01-16VbJ1qUF7.exeexe f5ce22e8f24b17f078146d7e4e1b99f999fd31643b8734b03695d8b19bd383daVirustotal results 5.56% Heodo
2020-01-16Eyfbxt6zMFm9D.exeexe 55a39b15c8310928b6354d3841db1670a9af43baf4d2bbdb3965435e7720c2bbVirustotal results 6.85% Heodo
2020-01-16qqMF9r9k2N5g1vuOPIs.exeexe d469328c0037312e08e784a815e2041b912c9375e05de0ed66fd8e60548e14edVirustotal results 5.56% Heodo
2020-01-153m4FX4TFXl7.exeexe 294b9b77f76a5b332cbe6fbdad5c6baf73cdba4effa42958e07d81fd4c4e4c37Virustotal results 5.48% Heodo
2020-01-15pziOc73Z5fE0jKf7J6.exeexe 7fbc314f9ef020fdd1e1e5b3326fed20525538fd2aa0f245ce31f69038b8b634Virustotal results 26.39% Heodo
2020-01-15UIJgccWul.exeexe c081ef27c1426ea3d891c904102a516957582ed013aca0e4c2c7a93abdbbc1b2Virustotal results 23.29% Heodo
2020-01-15wFP3CaQ1f14Cwb.exeexe 3a2cf66b8e5e24d7d072427a5961503b071b4ffd599b23969a4b4c86b3c158d0Virustotal results 29.58% Heodo
2020-01-15CVW.exeexe ee83ece7921cc2cb102d638007563408755a2f3455129e67c72702cfc95eb107Virustotal results 29.58% Heodo
2020-01-155OPD5co.exeexe fd83c72e85e4df0eb890efc210dcdada8ed75d3a3e4c4d4e37e00944dc221861n/a Heodo
2020-01-15cm6MJPYWSPKGIOJiTZCKe.exeexe b9e24dc59ea443bea22091365728d87633c92ceb1b3569dd789ad994e5a3420cVirustotal results 25.35% Heodo
2020-01-15WUvDLy7Qq.exeexe 3a8435df5ff02eb7664c16caa1713f1881a891f8fb13a45a4c099f808f0c5e01Virustotal results 40.85% Heodo
2020-01-15pUyTcxAR5XHJXO.exeexe d33997e5f209057f5e408893f0d2afd2bd9552b0c57ccfeaf4da3f6e7cf5858eVirustotal results 37.50% Heodo
2020-01-15ZckMB00k5.exeexe a354d4d300d5f12577a95c48f96f79ee838f3a4a9226ea0fbc1bac2e5d73bc25Virustotal results 32.39% Heodo
2020-01-15UT5vK4EqW.exeexe eb318ee1ca3c433776e1a5ffbf59a13f533b8cb97b4e2ee493434e02f34eed98Virustotal results 31.51% Heodo
2020-01-15SVv4ra.exeexe f0a8b010093ebc98581180000ed5f642006dc73f94cbfccf308bbc99b9c0d394Virustotal results 27.78% Heodo
2020-01-14MLVrxoO2Mz7nUwNlF.exeexe b7c57a35cbd74d3773c9b6ac6efb92daaf59f3fd79d9a89fc92a1ee57bc098adVirustotal results 27.40% Heodo
2020-01-14eUBrJig7h4mmOgO0JQV.exeexe b0a59df4756ac630e6cdb6458a63cde0251b1284013a3d8f4f9a2025789fdb32Virustotal results 25.35% Heodo
2020-01-14cZPWnruFcuLn.exeexe 9cad08a1e9f45e76620f24a60ddd8257347418f3df0d9c922790e58a8325b931n/a Heodo
2020-01-14XZ6Gz.exeexe e2b64db40be76c39a7f82c8f38cdb568764b59f0632e0473db38d28bac36ac1cVirustotal results 25.35% Heodo
2020-01-14odh4qpZX9VFcVV.exeexe 0814249b380f3a6fd5ba501df95d8524ecf2f7bcbf268e25217927fec6aad5edVirustotal results 26.39% Heodo
2020-01-14Uupydr.exeexe 061ae67f263b4752e44d2ad4511522f8dc327bbdad8c5e4dd92e48d6ee82f710Virustotal results 30.14% Heodo
2020-01-14cVigERRz.exeexe 1a804ffd462ba27419978f1b8447ee4c49866c93d98bbdb14eab2e014a0b6e75Virustotal results 27.78% Heodo