URLhaus Database

You are currently viewing the URLhaus database entry for http://uzoclouds.eu/dialo/dialo.exe which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:323612
URL: http://uzoclouds.eu/dialo/dialo.exe
URL Status:Offline
Host: uzoclouds.eu
Date added:2020-03-11 00:03:06 UTC
Last online:2020-03-23 12:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Blocked
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2020-03-11 00:04:03 UTC to noc{at}dedfiber[dot]com)
Takedown time:12 days, 12 hours, 44 minutes Bad (down since 2020-03-23 12:49:00 UTC)
Tags:AgentTesla link exe HawkEye link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-03-16n/aexe c8a466fb75baf58bb0864f6f198b70c3b4c934f6a0814d59798df4626e724045n/a 
2020-03-16n/aexe 770c2d496dfc62ac8fd27d2c1ce7723db3a2559c3e1d9e6b9a3f6bc50a015093n/a HawkEye
2020-03-12n/aexe 8857a2b10deffa081d13b7b7b62eda49042f088477faea031e573706e3e37f6cVirustotal results 28.17% HawkEye
2020-03-11n/aexe d4945e64aae74324c1acedc84d0a0782f01f6994991f1f1ed091cbf2c227e07aVirustotal results 29.17% AgentTesla
2020-03-11n/aexe 4aa0a3a98c424fc37a3bc40b819ba751e34f18ba94b28466c7b2da0b25cef370Virustotal results 29.17% HawkEye