URLhaus Database

You are currently viewing the URLhaus database entry for http://ayonschools.com/UBkoqn/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:290413
URL: http://ayonschools.com/UBkoqn/
URL Status:Offline
Host: ayonschools.com
Date added:2020-01-16 22:55:25 UTC
Last online:2020-01-28 19:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-01-16 22:56:10 UTC to abuse{at}liquidweb[dot]com)
Takedown time:11 days, 20 hours, 6 minutes Bad (down since 2020-01-28 19:02:28 UTC)
Tags:emotet link epoch2 exe heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-01-18qfTwHIJ41z.exeexe be403ce2d14f38b66528d438457927218f1aa44a68530bf46b2703da75dcc8bdVirustotal results 26.76% Heodo
2020-01-18hA9cU2BfJaonNy.exeexe faa14ab7546e5d3d9e6c58cfe46be78fe083b2a16750701a7ae8b3c0ebf51143Virustotal results 14.08% Heodo
2020-01-18CeAvYnN.exeexe b215d1b2601ae1c266990378320fa022b313eee87aabb3f59b748a9c6eace304Virustotal results 12.68% Heodo
2020-01-185qHu6ad.exeexe 9b183c153166d005c277d09cc1f8e1923d0ca47c2db14b937c51606d81509cf1Virustotal results 12.33% Heodo
2020-01-18rVeCUf3x.exeexe 68e699b962af409b5e0cec19f0670991fa5b2dc59672c91cdc4f7a59c037dbf6Virustotal results 9.72% Heodo
2020-01-18J6lW.exeexe d6cf1a31d1f49ab91da1c6da2655127852c35753ef14158aa800b4bbddc2af2aVirustotal results 9.59% Heodo
2020-01-180a077Wr6446D.exeexe 224f60574f2611098fc6793c43fcf5e2a4054e9e6ccdb7e8954e0d6c580478c6Virustotal results 7.04% Heodo
2020-01-18qF2b1eO9Fel.exeexe 34b5c666e95d914089e1b988c35bb69a2a9d3685a5460d4cf632881f8621c3beVirustotal results 9.59% Heodo
2020-01-17bMFe1W9Y.exeexe 9b2b19b53aa614932e8eb590c451c0de03f1614c2026f0252c1f80a8b333ade5Virustotal results 9.86% Heodo
2020-01-17Pikhv9uj24AZfYBc2XT.exeexe 106b55d71a1dfb660cadfa5702fd1b7763db776f835b3c0546b51a26bb962c39n/a Heodo
2020-01-17PcJRAuE7PCy.exeexe 6e7f51b0babb3ade1f2ba4c8f2b4100eeb6c2256533b933e4fd502a0ccc9ffe2Virustotal results 9.59% Heodo
2020-01-175PrdKGIFhSzo5.exeexe 26242e79acb556a27d4a44346ef7428208a69966af825e7a718b7dbae9326228Virustotal results 13.89% Heodo
2020-01-17seeOsSlw7z86zk8omog.exeexe a81da16101b9696765cac5839a458492a87d07e8e0fffc336b96fb256de0f66an/a Heodo
2020-01-17wrfg.exeexe 6a80efcf19fe0a6c61519b4f5147dfe0b62627abb84d29e7e0cbf1f243248064n/a Heodo
2020-01-173s.exeexe 6742c01a902c1343f272b2112d8bc7cfe6264e853304f4ade3349391e7141ee9Virustotal results 14.08% Heodo
2020-01-174mLuOTZWVxC.exeexe b68ecb1f4b1a7cdda4549a02fb9bf769cf79e8c452bb646e7f76c4e0b381eadcVirustotal results 9.72% Heodo
2020-01-17EaYxI.exeexe f5b73c30ff93fd1ba2e0cccc450e307a0fac4761c53163337465c165c6fc41fdn/a Heodo
2020-01-17fR6cdDLtgG1PeokTC.exeexe b9dfd1a839cd05354c35bd22f46b0df6599183b08d6ab8ad87faf36cc2bac0c4Virustotal results 16.67% Heodo
2020-01-1733QMCJ1ZuDy3SSnZQ.exeexe 736a2f89bd0beffae3ae7d780f4383f4180259e74445149fb0e79b6a2befd1a0Virustotal results 16.90% Heodo
2020-01-17uIE4FB6Gx9dglzVGFJX.exeexe fbc8815df7ed52578d3b0df17948172fb6f26bcab87fea2e762bf204bec54bcfVirustotal results 23.61% Heodo
2020-01-17GMVsXWDc.exeexe 549d6b00fc46124be23e3e6b78f751b917683e29d7e6eaf96d9b1ea90123e276Virustotal results 24.66% Heodo
2020-01-173P.exeexe fe6b3c11879bbfa61714c884476c9e03d2445957e30d36ea1492a9b3357dadb1n/a Heodo
2020-01-17gIlpnd0p.exeexe 06018c6503ea6cbac91572051c153ff2016c69a1089b43061fa9f7ec78a2c31fVirustotal results 19.44% Heodo
2020-01-17OF75eo.exeexe 6def02d1280903eecbf1776f36eb2d6aff460f0b0b48a01e80ab05a36bacc9b1Virustotal results 20.83% Heodo
2020-01-17YuKm9gGBz6P0yz4.exeexe b3e2fada8c31f52c2657c8a4ff0f63af7f1f5a1e788d14b9426cee389ce71198Virustotal results 19.44% Heodo
2020-01-17eOGfbqmwvHYWI.exeexe c64b34d2f1b0ae083b6bb3457c6f0a8e8360cc9e8533460b9e70932d01a75288Virustotal results 18.06% Heodo
2020-01-17WYr.exeexe d4aa4ea864d096e666d6f8117b029c8a0728834460d5f2c7cfabdfd96fa38479n/a Heodo
2020-01-171kaOMCHYSEnfS.exeexe f86a74890de3b46097c43b70f919fc53289e732d2cfcfcefb4650109d7437a54Virustotal results 10.96% Heodo
2020-01-16VTxDaFj1D2H8g0r5.exeexe a157bdbba3af072f41ae05241dad29833b89fcda2a4d80022a6e6f7b6c25dba7n/a Heodo