URLhaus Database

You are currently viewing the URLhaus database entry for http://www.jalanuang.com/wp-content/cfxs40/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:300200
URL: http://www.jalanuang.com/wp-content/cfxs40/
URL Status:Offline
Host: www.jalanuang.com
Date added:2020-01-28 17:48:43 UTC
Last online:2020-02-07 16:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-01-28 17:50:08 UTC to abuse{at}alibaba-inc[dot]com,intl-abuse{at}list[dot]alibaba-inc[dot]com)
Takedown time:9 days, 23 hours, 0 minutes Bad (down since 2020-02-07 16:51:05 UTC)
Tags:emotet link epoch2 exe heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-01-30D.exeexe 3bbe129d0a9fb94cb6b806528e6a7366a8861df27e0d27a32eb87e96eec8fd46Virustotal results 26.03% 
2020-01-30vg6f.exeexe 1bea6e0e41f0b80585ce713f459c209125c94495888fa14956e3969588087926n/a Heodo
2020-01-30I8OBzCs0MeHDVN.exeexe 292230934181d70772edff95b5d55487ccbf2713c2d4b791e79ba2ce3f3cda91Virustotal results 10.00% 
2020-01-30gV1HIQET9Hvr3Ii.exeexe bc97ba813ace5faddc64fdd65673acbefe4222981e4da8c6154aa9159f8858a3Virustotal results 8.33% 
2020-01-30RxgJLknvqP.exeexe 863136b86bacbf4df0b8dc3545a527437baa3e83e0902d12271a21e318d62fdfVirustotal results 8.33% 
2020-01-29AN2S2.exeexe abff750cc9d33fc4e5e1f16f0c1727359fc9eefe0d9756f26f276dd63a7d1151Virustotal results 12.68% 
2020-01-29jGQz7KjNFJ4jSjm3.exeexe 25049dad6df9de531c3a0e7c97892db235a2155094824e09354be95266e8e68fn/a 
2020-01-29VGbn6w1kpf8LAhCXO.exeexe eec8f3af53078c0b78902710c735d4c50f7c9f12b5bb54f316b3700183843292n/a Heodo
2020-01-29jM.exeexe f93748ec33b083a0944ce53e07f94d4c8eec5c807d6fde308119f037545cbbd6Virustotal results 11.27% Heodo
2020-01-29AOArrc.exeexe 32d28b9ab5392c15aa8b6c0340595a6e83de0f2ad3afa4c87795ac20b29e7d89Virustotal results 9.86% Heodo
2020-01-293yknOv7keXDbwTe.exeexe 63d8bbb4e5427165a3861e3cf52d4dbc18f8381653037e0a474b73fde02ba153Virustotal results 9.72% Heodo
2020-01-29xfVnPCdo9W8W24m70It3.exeexe f564f37be23f46b572047420f0e414ab936489f0c70407d4956b0bf40b52fdd6n/a Heodo
2020-01-296Cxex1oJ.exeexe a8f689d0c07bfe996707fa9d4768b211b545065cdacdc73de1ac0f9b33e9d326Virustotal results 4.23% Heodo
2020-01-29yT7LjoHWFQps2J7yyd.exeexe 50a5f378df4eee8c326b5a81fe96fab21d8f71b7b7237a69264b1e48d9a546a8Virustotal results 4.17% Heodo
2020-01-29kxstKK6z.exeexe 3a921fbb34e4987e8f7e30b53f508c09f456bb94f218356a38a896b51e48cd58n/a Heodo
2020-01-29j7l.exeexe 72c78b289069b9d7cde81c5ef9049bd82d97d30ff4b98d509db7de241e05291bVirustotal results 15.49% Heodo
2020-01-299jTK.exeexe 64b52812b11336fbd180a2591956078d361479d7fa27b83e774dbdec3a7ffd31n/a Heodo
2020-01-29DuUp.exeexe 9021f6312515b96301caf19b556b4538390975fe57e731609286950fe33cf1e0n/a Heodo
2020-01-29T0hL0m09fgGz.exeexe df23a5d4d938196e44d2824dd62a4262c040f25b5469e0e9ca722cb0c3024aa7Virustotal results 13.89% Heodo
2020-01-29OaUq9ayKa3g0yBBg9isT.exeexe 677638265076a0902603ae5d5f64c2fed5c5dfd58375030e77b43f1aaeb77030n/a Heodo
2020-01-29uEOOc0r94MDqWZoOLb1.exeexe 0e960b99ded91f2563e148d355dcd953f3c196360baa5c26fe8e5fdbae6f0395n/a Heodo
2020-01-28sEctG2iyQXtn.exeexe 9a4832e59fbd792194390744a9545227586529e4358474ddf20a52ea3c0b8eb6Virustotal results 11.43% Heodo
2020-01-28U.exeexe 07c09973d0e8de6a14f4d69ecece6a2df954b42c3427f1e5aac9cd5fec0e59b9n/a Heodo
2020-01-28RqBssMzQE3ONe.exeexe c0b6f3a2363d35629937f78e5af4cd6177099f4bacd06a6ee428e12e9d053754n/a Heodo
2020-01-281AyOrQDFt23bI66jgW.exeexe 438ca3f087af9c6a015d362d986da85918a31a3e72ac8c07e64f47ce56acbcedVirustotal results 12.68% Heodo
2020-01-28R8iTHAKzfEFqDCd.exeexe ee2c1d1c57cd6b6b66755832e317c83ccdcdc222ee1abbf290b7f0d6c961200cn/a Heodo
2020-01-28KNDuUeGRKaIv9Pv6.exeexe 9fed2ce18686717d87fe515e0b392635672d27e9828d147759ea4212c8f9cb07Virustotal results 8.45% Heodo