URLhaus Database

You are currently viewing the URLhaus database entry for http://luxuryflower.net/wp-content/cgNoUgY/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:300879
URL: http://luxuryflower.net/wp-content/cgNoUgY/
URL Status:Offline
Host: luxuryflower.net
Date added:2020-01-29 06:34:08 UTC
Last online:2020-01-30 22:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?):mail Yes (Ticket DCU002284097 created on 2020-01-29 06:36:05 UTC)
Takedown time:1 day, 15 hours, 27 minutes Poor (down since 2020-01-30 22:03:20 UTC)
Tags:emotet link epoch2 exe heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-01-30r.exeexe 66343531b93fc8127d72b827c20b53c80aed8413ef80b2ccc6611550842bd5feVirustotal results 16.67% 
2020-01-30vfBvS45Xva.exeexe 4fdcd00e37fd92466f46d1ca5a36ad4216a6476335d66bb0c7b05a33a66109bcVirustotal results 16.44% Heodo
2020-01-30ksai.exeexe 2745c334ea2b868cad39cf26b7efa29e5e6cab8de3ae19f7c64a93b171c4c91cVirustotal results 26.76% 
2020-01-30y.exeexe 79567dd789ee558fd60540e1640c4c0db335495c84c46c37f71ce73839431230n/a 
2020-01-30onR.exeexe 3bbe129d0a9fb94cb6b806528e6a7366a8861df27e0d27a32eb87e96eec8fd46Virustotal results 26.03% 
2020-01-30GGOD63T2oqsmjsb5.exeexe 0f3952a43692fc744e86f3e5aac77d3ef683386e915bc02b92e9f35edf54a953Virustotal results 23.94% 
2020-01-30CxskapeemaHnWOCL.exeexe 3adf456068d0ec95979d2546934685234e05e6788dd01f431d5c1244d9311fa4Virustotal results 23.61% 
2020-01-30H9aUYUiG.exeexe d419120361cbc70cc3b8b00b4a31449060185260c6bf9cf8bac03cd09d108ef7Virustotal results 24.66% 
2020-01-30Jaah.exeexe 42a0d4c28fab5fb0bc46c8344669d6c76f3d9440811209cafec503ddc49be348n/a 
2020-01-30lQSVcLBV.exeexe 940b66a221696baec3af1b37df3fef80bb57b5139736e3407d0c47c212173576Virustotal results 18.06% Heodo
2020-01-30DPgnHYYkpzFMFlXh.exeexe b015902503cc42ef8484d9db640c04000028fee7b6371e791ab0d7bf66f926fbVirustotal results 15.28% Heodo
2020-01-308J9Zkb1hvn550.exeexe 0b127d33b217083ea7d009ec00208e080d39437d229b7cfd04b327fa102f3076n/a Heodo
2020-01-30MAtta8ettuU9yoy.exeexe 1bea6e0e41f0b80585ce713f459c209125c94495888fa14956e3969588087926n/a Heodo
2020-01-30MiP7LR7j6iHctxanA.exeexe 8f90526ff9b1855407d9e152dfbc2ebfadf95d63bd5df48bb6744bdf12e90796Virustotal results 13.70% Heodo
2020-01-305v5.exeexe ec33d8384f3fd6b0f665fc6c1e489791423aabaab16ba01cacfbe86c2eab4bf0Virustotal results 18.31% 
2020-01-30ol4xyGNJ192jB.exeexe ed55f215231952c00bccb067621295c01deecb3606d7af2eb9c96d2f6e949b87Virustotal results 12.50% 
2020-01-30cI9GV.exeexe 292230934181d70772edff95b5d55487ccbf2713c2d4b791e79ba2ce3f3cda91Virustotal results 10.00% 
2020-01-30m6c.exeexe 99641e3eed840d1edb7e650270145fa841af3458c90e013eba8f558fceb53b2eVirustotal results 8.45% 
2020-01-30hbjHqY65Vzu.exeexe bc97ba813ace5faddc64fdd65673acbefe4222981e4da8c6154aa9159f8858a3n/a 
2020-01-29I5Og2xBKP8DUKDV44Ppv.exeexe 777d5999435bc306ecef429d7c3353fa36944e0b9911e03d718433edd504d6c7Virustotal results 7.14% 
2020-01-29xFi4a6lxjh2E.exeexe abff750cc9d33fc4e5e1f16f0c1727359fc9eefe0d9756f26f276dd63a7d1151Virustotal results 12.68% 
2020-01-29OmLhpcT5z6Qvtwbd.exeexe caf31546a7ae90a62b71e1e91424a48b59b53c71e39bebe4529222e9cc066164n/a 
2020-01-29Uoqrx25z7qrfbPIJrKD.exeexe 5b26e6e78b78aac155d8c650e000287c3b4ca5d4e4aaa0e398ba1459b83419c6Virustotal results 9.59% 
2020-01-29if9fYnC1vv6Ua59.exeexe 41df912bfe48b4625de0d3e895f6d806d2c56d4f5de47d5e9556f22a735018d6Virustotal results 8.45% 
2020-01-29zon5Gb6YWjUehcAg.exeexe 25049dad6df9de531c3a0e7c97892db235a2155094824e09354be95266e8e68fn/a 
2020-01-295tsLaOnTjuWWVsY81k.exeexe e2352d1d82a674d8f1a5c574b44b7159767ccdc53b96b0b797068c81a5eb4313Virustotal results 7.14% Heodo
2020-01-29L7QXZQg7rT5MyFobo.exeexe eec8f3af53078c0b78902710c735d4c50f7c9f12b5bb54f316b3700183843292Virustotal results 8.45% Heodo
2020-01-29dcYpTs.exeexe 35093e53a9f03bae23d19cc644652feb69d9f0e41c4a804db7a5d2831c3acc83Virustotal results 9.59% Heodo
2020-01-29fQBkxq84.exeexe ac390ec30a61362b58cd28407ff5aef1380a67173779f3e1a9e731aaed6b4169Virustotal results 9.72% Heodo
2020-01-29nGYy9MKqpaY.exeexe 19fbd0c4d767c2f517afe23394269c27fce3e93e4c56eae931677795667b6aebn/a Heodo
2020-01-29kQlTEOaajA.exeexe 403ea9ef11474aae2296ce72375ee8acd520f9eccd8f52698cf1e724f822160en/a Heodo
2020-01-29yeTLsWCXeD.exeexe f564f37be23f46b572047420f0e414ab936489f0c70407d4956b0bf40b52fdd6n/a Heodo
2020-01-29Cwxj4zzrpd.exeexe a63f5fabe50e37059fa9e51f746d9cf2ae06ef13bf724c245878f070c97d7642Virustotal results 4.17% Heodo
2020-01-29foDsXlXgYvzS41.exeexe 50265fd4821eb5a066b3b346adc006134117da37d86d089f6f2757b439a750abVirustotal results 16.90% Heodo