URLhaus Database

You are currently viewing the URLhaus database entry for http://jayracing.com/996tt/UNID/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:290700
URL: http://jayracing.com/996tt/UNID/
URL Status:Offline
Host: jayracing.com
Date added:2020-01-17 06:58:08 UTC
Last online:2020-01-24 15:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-01-17 07:00:10 UTC to eig-abuse{at}endurance[dot]com)
Takedown time:7 days, 8 hours, 40 minutes Bad (down since 2020-01-24 15:40:33 UTC)
Tags:emotet link epoch1 exe heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-01-183xSm4ieMdQBX0c.exeexe ab5dc331127be64fb5120501c03de22a819a9ad88d8e17a8cc04e709900e4f6eVirustotal results 26.47%Heodo
2020-01-18Qz1E.exeexe c48a7b6bf0a487080949029ef8aa59888481815e11f27357c85ed49c91132eddVirustotal results 19.12% Heodo
2020-01-18UDQ7aPfXFkBJVmmzs.exeexe e305d29476a1431019e8f7b2d960c06cac5075c903de497c78a27f83d6492ec8Virustotal results 15.28% Heodo
2020-01-18xySB5mNviSox9phQM6.exeexe b74e55a8ce56d9820350ec899e3de1ceb3ddd6f213d0c90aa4a5c329add4131fVirustotal results 12.50% Heodo
2020-01-18asy.exeexe 2e7a6760419c8dbc3ad8005d99f2cd8bfb4bf509152fa86fa2f54d5fc44fabf4Virustotal results 11.43% Heodo
2020-01-18NzWBIW1qNey7yWPTx4.exeexe 327758dbfc46bae5f2d46016f482002098d283cde7a6fa04045e5e95561d3827Virustotal results 9.59% Heodo
2020-01-18nhu55NSa93dtm.exeexe 10274ec59899011e808ab76acba60b1e3caeb34a7007da3d7257e74908a92a10Virustotal results 13.89% Heodo
2020-01-18G35.exeexe e685c407341b3175562635b2e2f468d8a7d53e461cc975919006a3776f709d30Virustotal results 9.72% Heodo
2020-01-17QIi.exeexe 0c6a5cfd8f4fedddbe98130c44c7066f8d5408be546c3e9e65c32bfa96768c12n/a Heodo
2020-01-17E5kcfZUdCS8RUSN2W7f.exeexe d8b68d96f79024dac5030360e7200a3c5785e06d2fe9e541483f71cded6bb76fn/a Heodo
2020-01-17eG7eLcKLCaSSpnP5L71I.exeexe 14ab17f373c2d45f4191b1732f03df7c90a89d2a02449e5ae7a61cefd47ec267Virustotal results 11.11% Heodo
2020-01-17YNe8WE92zNfAz.exeexe 54e1b3d2b09af635b4fb96b871f61ddf64bee455441407200c8345dd0d2d92b5n/a Heodo
2020-01-176ZI2Cgis4.exeexe d27f9d46694bb9913eae4c536027be6599a3e9ecb4da9299fa29ea23b840b2deVirustotal results 14.08% Heodo
2020-01-17sdA76SLFP.exeexe 88e8ab5455056dca4bf06306ca768b75cc89e338f342e9f53ecf45e4a6873f16Virustotal results 16.67% Heodo
2020-01-17PXCO4YqVEyNmCZ.exeexe 759ec750149ade2ff4fcd6b5402cfe65eb2240a3a0d58008fb6e2b69059324e7Virustotal results 9.72% Heodo
2020-01-17YImLqiL5OFKB.exeexe 03f79397c9bdb9547d35cae5f8d945a8e971c640db6b601eb902e0f1f154e518Virustotal results 19.44% Heodo
2020-01-17LmmvHEkiYiA.exeexe 532df3165be359ffefbce2bc458d0a04bd5be5e480fcab15881272d0442df3c0Virustotal results 19.18% Heodo
2020-01-17fGb.exeexe 6cd33a09fbf736c36c851df7cc784e19adbe667f4d8cddbc588da1050f78658en/a Heodo
2020-01-17PElQAzJwHLLlfgCTch.exeexe 847c9e6b61d3e5c0a6573d6825ef8085c76b7dad1b01c605f0f8e7b7fb2e379fVirustotal results 23.61% Heodo
2020-01-179eXb8W.exeexe b068757a8bf7e90478f7ab19178308d329e5b25f8c87ac6e7f58730e5ca89a86n/a Heodo
2020-01-17ZtYBZfoFPGqMK7xu2.exeexe 9ffa86d3e867d674ff48fa3f7e8edaaad969b80397e42abf365a79cbfcd04fb5n/a Heodo
2020-01-17qhFIwuYXcgzjZdYVnWWJ.exeexe cf2d137e9678acd8e45134297b28aeee071411379db6c67991d7b308915baae8n/a Heodo