URLhaus Database

You are currently viewing the URLhaus database entry for http://125.99.60.171/cssi_api/eNsw/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:294854
URL: http://125.99.60.171/cssi_api/eNsw/
URL Status:Offline
Host: 125.99.60.171
Date added:2020-01-22 13:44:20 UTC
Last online:2020-04-02 13:XX:XX UTC
Threat:Malware download Malware download
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-01-22 13:46:06 UTC to abuse{at}hathway[dot]net)
Takedown time:2 months, 10 days, 23 hours, 17 minutes Bad (down since 2020-04-02 13:04:03 UTC)
Tags:emotet link epoch1 exe heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-01-24y786u1AZSew.exeexe a9390b048c21d624410d3dc7e2d05e9f8dd5761593d6a49c6fc88b9a1203c2d7Virustotal results 12.50%Heodo
2020-01-244kF8w.exeexe b472b06eff6d7597bdd6796f4a46a194c2e9d18312cd333ce325243eb26f1e7aVirustotal results 12.50% Heodo
2020-01-24lY54mwTBkW8J2YrhuAx.exeexe b29e2d2b831186a0d40782de7a0c48e04df72065411665cddd63ffbfaf7379a0Virustotal results 10.96% Heodo
2020-01-24crKlSFQnIJEIKSb.exeexe a631692d354d1da38720467b331c1bbafc3eb42e675e2e823c9de2899425a69aVirustotal results 11.27% Heodo
2020-01-24Av2eO.exeexe d3dc5867ca79686533e00f5bba12003dff10d96620194ac6cbf37ce9daa609ccVirustotal results 16.67% Heodo
2020-01-24PEc.exeexe 3c22fe8116cd980272784b7080581558736ee1bcd7ec0a1bb7914d5a46e85cf1Virustotal results 13.89% Heodo
2020-01-24DxtxDD9hUUByciAbMjV5.exeexe 7db3d89fa528576daad49ee40d3c62fd3000b1d0dbd3400ee9e9bfaf664ba478Virustotal results 26.39% Heodo
2020-01-24p4irvmc8bdY.exeexe 7b466af5dba03442ba718d7cb296f7a87a341505fc3afac840725b766137f83cVirustotal results 21.13% Heodo
2020-01-24ahagdymbtsSujZRW.exeexe 5a505c9c8c943e36856d9d7d3597e8fd8069e4e995deca8adcebf11208bc931fVirustotal results 12.68% Heodo
2020-01-24kBn.exeexe 27aa662b8d6e64835c58833396623a46c82b3f1294838ae1da5927f049febf74Virustotal results 11.11% Heodo
2020-01-24z8DSeDGKDYRndTyDy0jE.exeexe 99609f99f4ece9c6bfce108eca836f9dd38ec26e6a7fef1e8a5ad1ced9903c55Virustotal results 12.50% Heodo
2020-01-24O3rDSLBQuz8STJaoiSA.exeexe 148cca8bcc0e47e03f2558b177f28755b025f39630271ca16f92726ee9bf7c5dVirustotal results 12.33% Heodo
2020-01-23DnqjkTzI7yvPG.exeexe 68952d4be7c592360a5485f59ae37c9d975a0542969da7575de1fe874f19517bVirustotal results 11.11% Heodo
2020-01-238cnqx6O.exeexe 758a2d27fd39396cf3322ebd4bf4779b9d3e2f9f417b337e51a7d145be0e7431Virustotal results 14.71% Heodo
2020-01-23dvFOUn79.exeexe 658b4e0b7d82899a70260249913b9246aebe577406812e59d4458951239a5be2Virustotal results 8.57% Heodo
2020-01-23IPvdEKtSIeSGKp.exeexe 158bd5999ff584742fe7065e0fb644ce668091502ebaf45ee3db33f271520eb7Virustotal results 12.68% Heodo
2020-01-23S0S8.exeexe 6508f5e7797fa9efce93ad53827d01fe77e6cacf1e221b53947d6050344948d9Virustotal results 9.59% Heodo
2020-01-239bsW9w.exeexe 17da654e73134e2f1fe7cb317795b9a0f59321fef915bad6975711b82aeb7d43n/a Heodo
2020-01-231hV9nG.exeexe 22eed4b56b77cba7ac6f97625acc062a74d3e6fd6ff1a87ed53aa775851ff6d8Virustotal results 11.11% Heodo
2020-01-23t4LJU24MHA9RIj.exeexe 5ec69147e67ec835980a3fffeee192b3c4eae838d8aef43bc5867811c3e139a1Virustotal results 8.33% Heodo
2020-01-23xZj.exeexe b9579fb95e3a03df8c5a5ba5b8aa6bdeb750e2ae491d7814d9c2c9be5d978310n/a Heodo
2020-01-23AwhwDWrrf50Cjh.exeexe 8e90bfc4d5f70fb4d1376f8c6f09cd07cb1f37d7e73b85be687d889efdf64f02Virustotal results 7.14% Heodo
2020-01-23hXQ.exeexe 2c9ef4893a0183a836a5b32d571bca09ba9007e210bf9e96d94ed9db42b623f5Virustotal results 12.68% Heodo
2020-01-23QQKirOozX7VCL.exeexe 276bee2ad9c3a0ef7f185d3eeba31afc732ee02a702f8f0e1a509d4a16010164n/a Heodo
2020-01-23yYWwBQbiSZnv9fH0y.exeexe bf165313d1225c75e68d30f9926f930e2fb13107cc453210dc7277a6ed4c0650Virustotal results 11.11% Heodo
2020-01-23rqediwSHE.exeexe 217c032829e8b0ab678f75e777722b31c5a1bccaf20ca82662b019485b00d88cVirustotal results 16.90% Heodo
2020-01-23ItjzXbffMA1uMnxN.exeexe 2412cf9507b0619f9502726f00f82e1f4e84799118a592886f36a44c62b3ab0eVirustotal results 17.81% Heodo
2020-01-23VuOc.exeexe 84ed9b7dc8888dc392a0339df42bd7da0022a1ea3517de7b76cd2bd0985d9e70n/a Heodo
2020-01-23XAaPvNYuLfUvh8ixftzt.exeexe 76afbce49136d835340c461fb890f3af4b83a42373bcbbc412c20fb8f0e86552n/a Heodo
2020-01-23VNFagQJMF1bX.exeexe b088762f2b03d43d7ff932de0e7203f910f8e1ffed3e0530ecbbb243608d738eVirustotal results 22.54% 
2020-01-23OnupplRGL3S.exeexe 398fb3cf4cc8417766c2276a06fe379fc1d3cb8d388964f123f4e9ed634fb478n/a Heodo
2020-01-23LnxbZAQKF6Xa4o8cOi.exeexe d8016223a75311fd03306c11e818baa7bf9ad1f30871a7466a190452b628f118Virustotal results 12.68% Heodo
2020-01-23PqT.exeexe 6d046893d19e9915a68dd1ff62ec04e4807240df6f7809b47aea0db177ff0d74Virustotal results 11.11% Heodo
2020-01-231OfpHkpMQJX97B3ll4Tbt.exeexe 2237337bbeec02180c31a435f1a4221f1101b7c40bd1f028448c536c27b3b438n/a Heodo
2020-01-23dXnmVfWhEzIp4uEK.exeexe 71eee31bf28eee9440bf942f9f466ec07af7cddcfcfd3e2528a59166e2ef4769n/a Heodo
2020-01-22t8yq3yxxSJLnAe46I5qEo.exeexe 1078b3921de294b8f7deff36b11f2806a0bc60cb4714b3b15035bc6c7867c367n/a Heodo
2020-01-22DCAkLedye.exeexe 12eec58e3d208500789dbb6b12aa35b10438f3ff15bf95250955e8e3dfc6beb6n/a Heodo
2020-01-22DoNSDVloN.exeexe 80977ae60dda1c35e7dc8414fcba424046a147c6bc6d99dcee5665427cadf17dVirustotal results 12.50% Heodo
2020-01-22JXY55Er26fqw3fG.exeexe a4173fce9bc1bc34916e3eff19626e3e060bff18a9cd12d4e16757f605bd5eb2n/a Heodo
2020-01-22u0hf.exeexe 9eaf91cb0c29b557d66012b74b8c2a8c1637d46bbe161f46b27113efb06f5d8cVirustotal results 12.50% Heodo
2020-01-22wtEaBSXmCRR4tR.exeexe 4773ea98d00e3e87de598899d7f1623a38f5db2b0654a96faf5373a2f540535an/a Heodo
2020-01-22yWHut73tSn5MmzJloV.exeexe 35284ec6ffa0dee09f079d172dd5d335f7e9fe1edad11f8c83889431991cb110Virustotal results 12.68% Heodo
2020-01-22LmoGBxwhFMw.exeexe 42346e28a6c22408131652fffdce394439a1b87c59e66c436610a54b014a0db6Virustotal results 23.61% Heodo
2020-01-22XFKn8SY9Tfm.exeexe 262527330f32604e155d0ba4b107c249b1776648e775eafb34f1a2ebdff3b2f8n/a Heodo