URLhaus Database

You are currently viewing the URLhaus database entry for https://www.flybuys.net/libraries/xes/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:294493
URL: https://www.flybuys.net/libraries/xes/
URL Status:Offline
Host: www.flybuys.net
Date added:2020-01-22 06:22:11 UTC
Last online:2020-01-31 01:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?):mail Yes (Ticket DCU002267180 created on 2020-01-22 06:24:05 UTC)
Takedown time:8 days, 19 hours, 22 minutes Bad (down since 2020-01-31 01:46:39 UTC)
Tags:emotet link epoch2 exe heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-01-24YqNECuLIIKuv9Ug.exeexe e996fb269679b5967518dfccff6489cd6899a70eb4faabe8a526956b467b93f1Virustotal results 19.44% Heodo
2020-01-24dWxIixgY.exeexe 7a0e219fbe21ee9c02cb1029e6adbc5328216e48fa6d3baf82c8b93605c0395fVirustotal results 12.68% Heodo
2020-01-2471BOqHjXWdGGFLjqQA.exeexe 2011d56b088a52caa03eecea3351ce3c11ae8b107567cb8d9cd51a1822d41a1bVirustotal results 11.11% Heodo
2020-01-24Y7E.exeexe 4726527c46994cb045f1fbadecc0100b1819253436c733e40b33868f3f7ae984Virustotal results 9.72% Heodo
2020-01-24FpWweL3VB.exeexe d8de67e6d0b4723b5e30c2df5b6c77f346adfb236f1d6f1bc54f876da6e943cbn/a Heodo
2020-01-230Dejy5tHVKwFiAvs8WM.exeexe caabd6456b07483e13ec881b474ed24875c84d3af4458ebc52db7276730ed38bVirustotal results 11.27% Heodo
2020-01-23MWH.exeexe 207b472d42a154104e25287397ec705717e170a111a36035b3c94f8954fb5dadn/a Heodo
2020-01-23r9IUYuEIo0DnbOLw9Ws.exeexe 65affae4ad7cea866cb85b4235b560a6b887a166ea4a9a579650c74c927c195eVirustotal results 9.72% Heodo
2020-01-23bg9kYTjONXhxLZ.exeexe 6a4267949821287d3ac9ec3646a0e2e6e3e467da15d0fdcf2cc1e59728ceebb5Virustotal results 8.22% Heodo
2020-01-23ieYcStwAYwd.exeexe 01507d8712e585c6103b361f0b17a73961b3100dd554a89bf9785d2b9fd184e9Virustotal results 9.72% Heodo
2020-01-23G8siRfm.exeexe edc06040b7f73d1a796a4dc9d9124061ced664685f794e92d4f3ba075ded903fVirustotal results 13.89% Heodo
2020-01-23OfC5xG.exeexe 85e3fbb2c274564eaf5e29c26c9b9e63fa72110a10c11f883d4ab4e7e73ef6d0Virustotal results 8.33% Heodo
2020-01-237ck9Taepr9wFssg.exeexe aa4d9b05c7fba7f3b498282cb6037e1eccfdd2762389bb66fb332945d3c28693Virustotal results 8.33% Heodo
2020-01-23mHveAOF3COZFu.exeexe bf4920781a9d66b2f147c1b929b32eca00be40acd9d63e846e2eeeb31b1b1c19Virustotal results 11.11% Heodo
2020-01-23gGn64mPijrv32H8Nb.exeexe 6ae47cfb2f321753fa12f763e977dcba63bbd1780daad5ad3180ebda22c258e8n/a Heodo
2020-01-23TK3SKv2vA.exeexe 271126c74a9b1de18df91f9c0f44d98658de5d8d09fbef40cf0c398f395dca05n/a Heodo
2020-01-2328B99j2ygBzSqEK.exeexe a4ab3a2b772907141af4284bd6a6fe092f74b02e0f79669dfe108a0421682257n/a Heodo
2020-01-230o6uoh2W8aL7Gefxc.exeexe cc0ec426dd8f5dea6510061bbf9c7b00a2d44a9080b22c72884fa6ca29504fa3Virustotal results 15.71% Heodo
2020-01-23tpWi40k.exeexe 2628f40b54102395837c26d89ac124b28ee954073b705f81d4dd58f41f87fdfbVirustotal results 16.90% Heodo
2020-01-23f6ZZnQkPP23.exeexe 3e7c7f3dc0698a3ce911c1ef4251b518dd7a794a1b7a398f1068638f6606a745Virustotal results 16.90% Heodo
2020-01-23GRndxc6PCW.exeexe c7f98375a55755c49a28a60cc3b8f34a90e00de404d71d8d6f141542d8f8aeb6Virustotal results 11.27% Heodo
2020-01-230GJCKOYz2AZcRZAdCY.exeexe 9808e71b8c9698ce2b92033d0d3ff7e61ace74a403b2be36f51fffd7025f6211Virustotal results 22.22% Heodo
2020-01-23TDTluJxTF0TgmI.exeexe 8a0b8b9993b26cdef31577f92dcade2f3422b08c32e858c608259f48b0bdafa4Virustotal results 18.06% Heodo
2020-01-23vgox4lKS9DL6Hl.exeexe fdfb01d296648e46973f43ac55a78600fe2814fb05070b11ee79002d1d1eecaeVirustotal results 12.50% Heodo
2020-01-23Anryln9iV22R.exeexe e2f254a6b730b5ae77afe10256e85219b38c89099e1bd0da32cefd383ae1eac3Virustotal results 12.50% Heodo
2020-01-23e3gLxp7l75Yu.exeexe 9a9b75168ebeb72d8b88e9ae47be6ed2c104330a1bee301774dfdffce9ac4118n/a Heodo
2020-01-23EYXiExvtcRgM.exeexe a2b89349aca99e683f5a14bd58c5964028842115e1497d01e255f225945501dfVirustotal results 8.45% Heodo
2020-01-22MZVwpCK.exeexe fc8fda6bff63ea8cdf3c7e0fed41046b4b4570c50ec012cea42b51bc1e9b0758Virustotal results 8.45% Heodo
2020-01-22ffBrUs12XG1.exeexe efc6939db8bbb34c247915ca49c92a1e65eab1dc69f89f89933c7bb6928a4a62n/a Heodo
2020-01-22O.exeexe 50fd8dd0902ca10cf4f5db2e3173274352df8719448691ffb9a203fb9589f42an/a Heodo
2020-01-22E.exeexe 73975ba71279c59f926d43b022ec695cffd1e777024ec9893a9c42ebfed3e80cn/a Heodo
2020-01-22Gl.exeexe 148579c72faab821c16181a5cb7a620b3ca5c83105f2e10dfe0e52e2b3e62a83n/a Heodo
2020-01-22B9pW5pDBJJdZZaqJXaX.exeexe 91b6b13b3608a91da43fec4f720dd3e0607719325b8e72034e93f2cbff0d04c3n/a Heodo
2020-01-22kcDk9oatDi9IF.exeexe c344de2e69ee9e6c009776f4c89cc44902bd81fff89a6566f62702b24a10d9d6Virustotal results 9.86% Heodo
2020-01-22JmbL6Wo4Y1POBKvM76.exeexe d1ea5cf15f3964d528dc6e9957d7a4fc4077dc9ae6a05c51937b14bd5b06894cn/a Heodo
2020-01-22NGG5lEFDfxCMxp.exeexe 69f29a1fd747199a1001d570786c3447211e94f26516c947038128351b02fdden/a Heodo
2020-01-22VvxXXpr.exeexe d5e4a37f33dac04405e4f58b7d98f602351121b765824dda3157ce2a0067f9dcn/a Heodo
2020-01-22Y7s25RMVDpZ1VXG.exeexe d0775577c8b09605c51033f6310932b8cc1536d0364388172b48609f57481c6an/a Heodo
2020-01-22GQDoZ.exeexe 517578861fb7db6f1eede1668d713145f75b0d7b4c8c625829465d40d5c7eb55n/a Heodo
2020-01-22BtugCa2bePW.exeexe 7a3d8a23d4f7930e9b92b424ae5969955d068cc9a7e3a9530def5116369af097n/a Heodo
2020-01-22hrIV1.exeexe 1c39c570e93b3623508f42b1e4c0894dd2e1b946ac7e24255f046dc092709c01Virustotal results 11.27% Heodo
2020-01-22qxi9LVSCksJaDDIyv.exeexe 69f3c015ba88d15c9ea25a51b690517d1006bcf15d681491123cb2b0b9fdbf98Virustotal results 9.72% Heodo
2020-01-22oa.exeexe e8482377d43022b28130359f4b5a6d6a6fe536b7e0efda77948e8d2ce769fcb2Virustotal results 19.44% Heodo