URLhaus Database

You are currently viewing the URLhaus database entry for http://www.builditexpress.co.uk/exclusive/gvDKTV/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:290311
URL: http://www.builditexpress.co.uk/exclusive/gvDKTV/
URL Status:Offline
Host: www.builditexpress.co.uk
Date added:2020-01-16 20:19:18 UTC
Last online:2020-01-24 19:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?):mail Yes (Ticket DCU002251644 created on 2020-01-16 20:20:08 UTC)
Takedown time:7 days, 23 hours, 19 minutes Bad (down since 2020-01-24 19:39:40 UTC)
Tags:emotet link epoch3 exe heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-01-1800x9qyu826.exeexe 60d8175e0a4a6e115ed79800717cc27bd3e8d8b88af2f81823623c1b3fead089Virustotal results 23.94%Heodo
2020-01-18strhdixtk7478055178.exeexe ab271c9ed3d65a3d63eaaeb6fa7dad991fe83d99e188a5d0ec2e41b81a9b6cd1Virustotal results 18.75% Heodo
2020-01-18k6ux1d4937475819.exeexe 540f0430d29245d9c8daf2eb7f5fa3f7a562ba813555c3424b57f3d37ebe852cVirustotal results 13.89% Heodo
2020-01-183nlnct7zj847350019.exeexe e72c68e714d715ed7f2191d78555acd49e0bcd0f0895e9f784c2b36f70951428Virustotal results 11.27% Heodo
2020-01-18t3lan86932.exeexe 2c8c5395cd45645593bd3fd5d4af7f1128d1f37fba90002d5bd71a8878454878Virustotal results 9.72% Heodo
2020-01-18yy4v71.exeexe c129a416493ee30796872cfb5ba0fa3b8c01709dd380323f3c81692f68961b17Virustotal results 6.85% Heodo
2020-01-18tf66.exeexe ce2244f02972d1d261c82f322ef9de47458a3fb9f32236566d4f5e570add8a6bVirustotal results 8.45% Heodo
2020-01-182agq2736383967.exeexe 225bb7518c8cb0bf06b54f9fe56618b39283173441d8f0cae1854b1e6c330cceVirustotal results 6.94% Heodo
2020-01-18l88y2skaw0800623039.exeexe 03a83670a9ec11cadd480cfbc22f586565fd31122dbb07ca8775fc53e0d4b7c7Virustotal results 5.63% Heodo
2020-01-18xu12lrugs8.exeexe f2d145148f79c486e5c101950054c44310340fe15a8dfdac25be3d87ce6a8cf3Virustotal results 15.28% Heodo
2020-01-174c222.exeexe ad6db6b4afee58a27ab1860a7b855c5aaee3b90240443102933aff66474f39b4Virustotal results 11.27% Heodo
2020-01-17lprqa2i05533.exeexe c1b659c41e394007dbae4ea10c0e681b7ae0a0e2b9b7c872cee830afabf6da37Virustotal results 15.28% Heodo
2020-01-177k3oj8o261864854.exeexe 5b8ca530d6c2f4378b9d09fa618d89105b204f0037e597b3348d1dd92c94f2f9Virustotal results 12.50% Heodo
2020-01-172bwt97912588.exeexe 8d283eacffee33714913d2133f36a49d1aba3450382061186ad789ecb4b94be1Virustotal results 20.83% Heodo
2020-01-1779sm0zm4d77217.exeexe caaf099849ef5df26ffcf2ebf683712c72681981cb53a526be3818ffb1b58238Virustotal results 14.08% Heodo
2020-01-17gq21fquv3r014856266.exeexe 811ebe737d0254ee8b8f13a49688e52d6a1340be663973ecb9204ffdd474c3f7Virustotal results 13.89% Heodo
2020-01-17sfxxfv86844201.exeexe cf3104b37342852132753577c516dfe721302a602a3da36e311406a3588dd917n/a Heodo
2020-01-17hp781941.exeexe b90d251fb2b0dd3ce5ad17704418b80c978cdd6ced731e086e90a01a999b60a6Virustotal results 16.67% Heodo
2020-01-17ou056085695.exeexe a02c70a3b11388a9bcad2b7ca35faf1fc1817970b5fe331685932dfc78922831Virustotal results 17.81% Heodo
2020-01-17s0lir4n053205.exeexe 577692d8bae0e5388ca639a09d0194ab857cd2ff7c43c14a1cd5d1f3ce4268ddVirustotal results 16.67% Heodo
2020-01-17psx7591992731.exeexe 5f864c595811ea7139b09b6473f24eeb545c66937c4571420d444a258037f312Virustotal results 25.00% Heodo
2020-01-17o1d82.exeexe 34101bb6dc54a5759717f3b8507a2a2e657d4ee8f609af9b5201d25e53a2f7b6Virustotal results 26.03% Heodo
2020-01-17y7jnzz11171017.exeexe 37ec15f2acaf98f645682a85508832269b310ac155598d712190e4add8eff671Virustotal results 25.00% Heodo
2020-01-17wzv10024008.exeexe 6d93900183b6807920bd1e75db66e248961745ffcd5c240a65d1da271e4a50ddn/a Heodo
2020-01-174x3erux191.exeexe e64043a031da0104eafdcfb3f6ba1ccad967a147f77c062197fc6f40c3cfbd7eVirustotal results 26.39% Heodo
2020-01-17f53hqlg6883.exeexe e21eee958d12e8dadccd23bee03b0f02fbbc190d137b41b3eff498b2157cdc9bVirustotal results 19.18% Heodo
2020-01-17v0362405645.exeexe 08313ed97bc4fa56a79f991ad8f101c369a8374979da03a3bda9430bbc9fabb8Virustotal results 17.81% 
2020-01-17dp6f70o41.exeexe 1b8a1f82c5dead88d555f9d949df2cc94254735aae5a4a76ee7def0e25e64b74Virustotal results 15.49% 
2020-01-17hr31253175.exeexe 429d6931b75559865fcbb5697323dde3c2beb54576e10a616440cf51441a3323Virustotal results 13.89% Heodo
2020-01-16xw769.exeexe d95f1b37bc4f2a4ab14325d256677e30b4e472c889777d130508b7c92f419ffaVirustotal results 13.70% Heodo
2020-01-16bbnv5jjl176608375.exeexe 9f8eb70e9648148f5b0a76ba7ed81f1c5702af12ba2bf8a364773b855085ccb1n/a Heodo
2020-01-16poi9wxi3.exeexe 645149cd7a0e348e3b644f2fdc37fea5610995ecc3ea3fb50df728173c4a8ae3n/a Heodo