URLhaus Database

You are currently viewing the URLhaus database entry for http://wildrabbitsalad.brenzdigital.com/wp-includes/EHbfVm/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:302912
URL: http://wildrabbitsalad.brenzdigital.com/wp-includes/EHbfVm/
URL Status:Offline
Host: wildrabbitsalad.brenzdigital.com
Date added:2020-01-30 13:58:27 UTC
Last online:2020-02-10 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?):mail Yes (Ticket DCU002286872 created on 2020-01-30 14:00:13 UTC)
Takedown time:11 days, 7 hours, 41 minutes Bad (down since 2020-02-10 21:42:05 UTC)
Tags:emotet link epoch3 exe heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-02-01d009b89.exeexe 0ddde52ca3e01fdf8dbaff394135e34de7f446d8d47942329f9b9832b3b2246an/aHeodo
2020-02-0148ft8.exeexe d0addf66a34c34c418be6147664bc5cb8a4578ac1151576119440a4063f3f97aVirustotal results 40.28% Heodo
2020-02-01recid8.exeexe 6154f691f5eb7ced0aba7895e5b9943b32959bffd674de0604bf222148d5c8b3Virustotal results 39.73% Heodo
2020-02-01h77.exeexe 8c93d47a43e8f7ba8053ad6ffe9bcf6c02086a82b72bcd030f329e2fae2fd8c1Virustotal results 38.89% Heodo
2020-02-01dv287zyil1.exeexe 8b7d46041a043d6cd8561cf81c7ee60e4f0181e5095ed1e5c75256c7d90c74a1Virustotal results 36.11% Heodo
2020-02-01hrlfhmvqd844.exeexe 9da184dd2e88ced4087790bd2267cd3d0ce924a9b44d0ace5e9eb6214333e652Virustotal results 37.50% Heodo
2020-02-01zb4288.exeexe d7222a5c79cc8305207ebb243356deb6041390770da4e6718f99056b53c5e4f6Virustotal results 37.50% Heodo
2020-02-01qtv2jz45.exeexe 5694e56bc0035d4019b24679454d678515bc6f15b2ef73c097a1d49a3531b443Virustotal results 18.06% Heodo
2020-02-01xybvd72248.exeexe f4955ec746a9dbdb5b5916333d57b1428399810d13e315e60452b3bf8fc60451Virustotal results 30.99% Heodo
2020-02-01m8d982.exeexe 79dbf2a229e4397eff56d4c7000d2437809bba7bc3abeafbadb635092aa408daVirustotal results 28.17% Heodo
2020-02-0137l7.exeexe b82ec18582657e0ad8d35d987365523341e9f676688a61913b7413763cdaadfaVirustotal results 26.76% Heodo
2020-02-01dbr6767848473.exeexe a907353411d1bc04236f3113582dfbec35027d24543e4e20995cd0d09d545deaVirustotal results 19.44% Heodo
2020-02-016dr7136111.exeexe 5dbef6401f6d17548e8e043c02aecd850def054e08dfb233f7f677b58841207bVirustotal results 19.44% Heodo
2020-02-01dhgxzan96826.exeexe 92c7e44a50a143694ee9e5a7e91557373cdc527f3061287e079b100052fdddaaVirustotal results 19.44% Heodo
2020-02-01s9rb1541640.exeexe e3c9b42cd7757cafbed0e6c8fd489c446b8a9548ee85b23d3e40e7ac88a67183Virustotal results 17.81% Heodo
2020-02-013a5988408543.exeexe 5fa0c9a2dab2ed7714b6f73a19146d7c0af50cb4a0717bbfb65dcc7929e4f725Virustotal results 13.46% Heodo
2020-01-319w3164.exeexe 6c847a24d6807c39d466085a2660b8ab1220a9f5139c19e2d8bfcfc65f7b85c7Virustotal results 16.67% Heodo
2020-01-31salp84.exeexe d9f08b783be48beac272b526100e1a040cbf8bc45f566c35b5ebafffc20283c6Virustotal results 13.89% Heodo
2020-01-31as01927551.exeexe 11c24a4179ca6b36d6f3ff0f128145ce09b32b38eb82279f7498d234af7b143dVirustotal results 19.18% Heodo
2020-01-31wfkn8395558249.exeexe 1338547132b9a435645602e8f8e756128ae3b1d1f47bfdb458b0c917182aa5d1Virustotal results 19.18% Heodo
2020-01-313mgakpyq98496137.exeexe d1e7626e5f0961759b0302263279e7f691cc2d955407d6cd24f08152c76c4659Virustotal results 19.44% Heodo
2020-01-31js94196.exeexe 74d06053fecfd7af95c1401e7004fa4e053be2c9b79fbe3cebef7d56812dcda6Virustotal results 16.67% Heodo
2020-01-31mim6kof74274327841.exeexe 10e428c916536bc5d8eb119a878b19ede66bc00f7a8f607ce16280703aeeb1dfVirustotal results 13.89% Heodo
2020-01-31jrm9m84107550.exeexe 69a5fb54bb066bfaaf4a364ee6c86a3de1084d8831eb6881833af7834f6069e6Virustotal results 18.06% Heodo
2020-01-31uc2xj5g13785227893.exeexe 86ecdf00f7febc92b3a3ba959f214aa66dbe5fd566c35df1296db27917bcfb20Virustotal results 11.36% Heodo
2020-01-317oh339505834.exeexe dae33e47ee574be914b0563eb12959d052eb902761d5eb7958886aad65642c21n/a Heodo
2020-01-316fy3q38z859035.exeexe 493436ffa6f3765a32eabc862147b549211f3e6a18899fbe658ee2a6814c3bafVirustotal results 17.81% Heodo
2020-01-31nh2d07tgp440777.exeexe e2fed34d665cc96ed57f95c58978359499dee6c8c218be51bf2f94bdae93c6c9Virustotal results 30.14% Heodo
2020-01-31ci1ls8x8y3174787090.exeexe 90168f26b53cd2ff5f2ec9f24648e0264508c43a7a496940de53520bbd539255Virustotal results 28.77% Heodo
2020-01-31mifuqkvu833741625.exeexe abee666d388f0fb38ef9fd69df423e6f2fc9ba4557cee8254214b8b17dc20476Virustotal results 25.00% Heodo
2020-01-31fe218351607.exeexe bf23ddd580f58505bfbf7354fd89a2aea35e9eeab3ce5f82a7b4494ccda0c144Virustotal results 24.66% Heodo
2020-01-31kxtf53794.exeexe c5de8dafd88b6f1b0ca79cb1b02cdc289fad598cc5a42d06615ff55cd872a1afVirustotal results 30.56% Heodo
2020-01-31kvfzshgcl92535675.exeexe 7dbfcbc5af5f4c2fc9d149ff9dd12f1345b83068cdeb71f0e55125dfaf9cc851Virustotal results 19.44% Heodo
2020-01-31zi4589420.exeexe 908d9f194b07ee9ee83346645b8a65ad7407ad56f5d7878ba3fe3a80b5d4efb1Virustotal results 23.61% Heodo
2020-01-312k3831957844.exeexe 6400fa2b3796ff39514dd96f428281f3090b54bdf437467545cc285ce81acb8cVirustotal results 23.29% Heodo
2020-01-31uvsv87232.exeexe 62013f4722ce6f3361089fa0c4ef9446a2b1c77fb11b91d086d67697bd16deb0n/a Heodo
2020-01-318uyfw1twf32307921.exeexe d190cceaeea1c93c166e28f146a8f780a4ae85379822726153ad9c820be1e8dcVirustotal results 14.29% Heodo
2020-01-31h90099.exeexe 5320a5b168670ceb8c26b5246e3646991e67f3193379c6d170b5e90b02ad4c93n/a Heodo
2020-01-3081xwsva355598771.exeexe 6ab6d33ef2c7155f28a0b51c02835a179e8c5ceaee2a77045155e9d8906fd7den/a Heodo
2020-01-30ykdxt4iek847.exeexe c3b96ab3766874c762bebd31e1b67a74a2e1dd024dba2b90c688160484bd68bfVirustotal results 15.28% Heodo
2020-01-307cwzk34est4795130.exeexe c2eb2d31b942973715cb940aa5007d5c0e9f29242a3ab83fd7f57ffcbf1880b5n/a Heodo
2020-01-30vb7715890.exeexe 715c142584beb66db517872ddca2c7260005093196252c76ad360bb2bc898a5aVirustotal results 13.89% Heodo
2020-01-30uqrfi3.exeexe d731569c9349f95bc19a7325e58af990b449d28209600412aa629bf06e883e66n/a 
2020-01-303j8x8791906799.exeexe f9f433578ff46904eb77720b80be8dbbe1c928abf02759fc7db3e78c6a417105n/a 
2020-01-30v6pdxq7190264940.exeexe a5e9d25257d9ca166893d55ca89407b3a69f1b26e7be91424f9a775ad28e9f7dVirustotal results 12.50% 
2020-01-30zls9033.exeexe 9b3744284cf0d65aedb70509d4a77e1501572a99647c16dd523abe93c073da54n/a 
2020-01-30ag976.exeexe 7eec452e9b88143597638979dfc9a787f351da69a8e3d7d894425a6f81527406n/a 
2020-01-30301gle621949081.exeexe 86910c5af940e1415c979161304d649e62af8e0a8649a512d6e2ed59b21ecafaVirustotal results 20.00%