URLhaus Database

You are currently viewing the URLhaus database entry for http://massimopintus.com/cwcsw/kWxFbMewl/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:300116
URL: http://massimopintus.com/cwcsw/kWxFbMewl/
URL Status:Offline
Host: massimopintus.com
Date added:2020-01-28 16:24:25 UTC
Last online:2020-01-30 15:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Blocked
AdGuard :Blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?):mail Yes (Ticket DCU002282494 created on 2020-01-28 16:26:05 UTC)
Takedown time:1 day, 23 hours, 9 minutes Poor (down since 2020-01-30 15:35:59 UTC)
Tags:emotet link epoch3 exe heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-01-3063410138.exeexe 7eec452e9b88143597638979dfc9a787f351da69a8e3d7d894425a6f81527406Virustotal results 25.35% 
2020-01-30xd57q4x671927.exeexe f767a47b61fbb4d2b6214392e8939fb6bf77bc76872b7a95f3898abf8e61e439Virustotal results 16.67% 
2020-01-304kcs091023.exeexe 6d8712f3348a3cf65b039f3511d0ab9ca8387d9ceb9ab3879a5f077a14b0e53eVirustotal results 16.67% 
2020-01-30i6y5er1215763.exeexe 86887db237468708cd3ebcd37f6b2a4b7aeeb16cfa76274b69aa05e9fcdb4971Virustotal results 13.70% Heodo
2020-01-303may04.exeexe f320720e6d99f29768cbae9b09caacf2416bfd61f6b76d503ccfdffc997022c0Virustotal results 16.67% Heodo
2020-01-3096c036466528.exeexe afc9651c70f53e28cc2f7abb85fe71603ac84f3ba9a479afc1e80a3d606aacb3n/a Heodo
2020-01-30ij0rds8kj1022.exeexe b7c6734edc475969d9a7b602db064e6773ee6f5393bb894a5476cf59aa41088bVirustotal results 9.72% Heodo
2020-01-302af118268.exeexe 763b47ee3437065c321c30039a24cebc883a94f9f75ae23d78404c9d6462c99aVirustotal results 15.71% 
2020-01-30d69737879988.exeexe 505253a46f89644f857e8ffafe435de64c545d96bb9616b824468764076adf1dVirustotal results 9.72% 
2020-01-304gjldtztq7.exeexe a1353d0a0d43cc7699deb9a4527b4c968a546ccb2e1e98c9061dc65256ebc179Virustotal results 8.57% 
2020-01-30dc9xmcds99.exeexe e655fc95ec21b4804d0d11b6900162a6f4924c1652911298012648e7954acf01Virustotal results 6.85% 
2020-01-307q3c9e009.exeexe 03cf95ddbc1a43ae792b15f9c01cba8447c7702a94db53fd966f3a4f0c938133Virustotal results 8.45% 
2020-01-29dz4623.exeexe 890c22c2e9c07a6853068050e9e6bf9802fc4686fa0f565595c734a67cdd8be8Virustotal results 9.72% 
2020-01-29d7h4jyyae61.exeexe cce98bc072243b35e5a3830412b9d2bb83dba765554ca554a2f853ab4f91e840Virustotal results 12.50% 
2020-01-29pqwp098.exeexe dd903f7fb5f8f28100da9a2e87c92286ed5aa0946b42fe19c8119a3064f0a27bVirustotal results 12.50% 
2020-01-29hcf70662023.exeexe 84b34f5f6fa7e85108125cf909b51ff05cc9c276023497cf1cb1cfb808a7b293Virustotal results 7.04% 
2020-01-29we9m6p2589223355.exeexe 84e5cc6f0c935241559d99857e03f537ce2f9a790a1cdeebd1f57a3e9d9035fcn/a 
2020-01-29q3dg11l3918470.exeexe 679fd2d6d88eb20d6c092bb5bd2f98bc5bdb6b91a0bd2bfc58220ed9f2c3575en/a Heodo
2020-01-29zh1kffhq7884724105.exeexe 500bd76dd8b42e11a99f460848d5a0204420572155e7a53efac6ebda3bfdf347n/a Heodo
2020-01-298hk3t351.exeexe e49a6ed074dc21b3592e34e9a666bd6e5fa4ccc14161aaffcc1d7ee91876fa2an/a Heodo
2020-01-29okp7924302385.exeexe 0645d055558ee056bb870419efb298c43d0dbec1d4d058fbc5559be24aa635f3Virustotal results 12.50% Heodo
2020-01-29tvkilsp12331.exeexe b8dd80416160c5f32703f28077356faad3cc0ca0e38d1a09f74148add672de43Virustotal results 11.11% Heodo
2020-01-29cetb8dxr2073.exeexe 160c13669e63a4c32529f7b62590f33a383f7760a265a8594fdeab61be575afcVirustotal results 9.86% Heodo
2020-01-29d676137.exeexe e19a6a01eee179bb6baa736db2a2c905b1f693cfcfc582fc6b106f1679f66a45Virustotal results 9.72% Heodo
2020-01-29coiikve5111570508.exeexe c4f71cead119656e0d52b1dd175ae9ab1b60308bafccb67e15f281a2b76e3654n/a Heodo
2020-01-29rbft6800603.exeexe 97aa285daad3014b5867d77f60c8eb46c34405f0116e920f29cb0c3495b8d5abn/a Heodo
2020-01-291g6.exeexe 62b3ccf08ec2ad1e69b000632f3ec82bb25ce8f4387394097a4b0ba499293704n/a Heodo
2020-01-290v78e4s2.exeexe cfa9d4771d7003f2cc9def60ccd1ebd6155a9bb75e9148d9b43d45ecfa621afan/a Heodo
2020-01-29q8kt0cm36009097.exeexe 33f9967900c8f0a89710220687512c1e13ca1a1ff1d2f2cacf9b6fe17f6cd05bVirustotal results 15.28% Heodo
2020-01-29zs10013053644.exeexe 065081e24af3fa3c41d25b8baf1403bb9c9980415f08c8a6fac7c7522a697ff4n/a Heodo
2020-01-29jibdeimca389911.exeexe a128c5d5b348851ff0c6da7342a9c6af431e573d03a6d91a969157e9f1fa2c3dn/a Heodo
2020-01-29f7kxqurjq537600428.exeexe c5d7b82d9dcd0f59f3452f3431d48c4e36910e88faa005b58d99ac56d445ef9fVirustotal results 13.89% Heodo
2020-01-29qnp9dn594346821.exeexe 0ac837191e54ff8fa54c8108128ebcdce0d3d2f480b8f01bdf370c503929af36Virustotal results 12.50% Heodo
2020-01-29mnyt33439.exeexe 2a805003c2b5eb85f97130821e97dbec2c338a4eb55b4d337b1f6a82ce54fa31Virustotal results 12.50% Heodo
2020-01-28fhgv6v7j13.exeexe a65dc516e3ab1140d515ee1c6808b8c099d6c02feb719901b77790cb1dbe6aean/a Heodo
2020-01-28zzpjryzj09038662.exeexe 6dc94c8a4e65853cfca260eda36c71380f858d1bc7868cc4597d712ee2385cfcVirustotal results 11.27% 
2020-01-285whle9h7783.exeexe ee734bc92e3993c17b79660a2ce5513214e60a6a904d7413c43d2e64b3264aa0Virustotal results 8.33% Heodo
2020-01-28qf8e148993.exeexe a837de36df5cdf3eecf86f00593e82a00158f6820564a6b855d4253599aa3cddVirustotal results 10.14% Heodo
2020-01-28iultq873842236.exeexe eb28ef6fed995341e1355ac4b69d9a39db5289e6d7bba67d78b78637bf27f023n/a Heodo
2020-01-28ig073efb0365089087.exeexe d2a26b88528af18ebf16595ce64afd946d622d85c4278f06ec52e0b2c0aeef88n/a Heodo
2020-01-28xf8.exeexe 83a50cb64dece57657734d6eeb301bb5e53db13954a0dd35b5615e72dff75a05n/a Heodo
2020-01-28d7jwaib1319941.exeexe 19921a665320e3e31c032f885785aa0de3dd00e0b873d91a12b87aba4311bc8cn/a Heodo