URLhaus Database

You are currently viewing the URLhaus database entry for http://z-lab-company.com/cgi-bin/Bn2bet3uy9384/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:415532
URL: http://z-lab-company.com/cgi-bin/Bn2bet3uy9384/
URL Status:Offline
Host: z-lab-company.com
Date added:2020-07-20 20:59:09 UTC
Last online:2020-07-22 13:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-07-20 21:00:08 UTC to abuse{at}a2hosting[dot]com)
Takedown time:1 day, 16 hours, 44 minutes Poor (down since 2020-07-22 13:44:40 UTC)
Tags:emotet link epoch3 exe heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-07-22e3autnc74458551.exeexe d073d9cfcfe6b06cf02adb715c009b704d31db9dff6d878556e24d9971f4f568n/a Heodo
2020-07-22ho554257.exeexe 90baa2abefdb27c715b24062149fd16f5933c2cb90bd7ba5b1cf0f6fc4ac99d2n/a Heodo
2020-07-22xjtopr4464308.exeexe c6cce8679cd70ef92389b3c233a9563396cdae88c3f0a7451448565e12f718fbn/a Heodo
2020-07-22rrxnrk5g48.exeexe 25ccef46c05c134a62d820d06dece71b67db9a6473dd40a28e1121fa26e07056n/a Heodo
2020-07-22hr451478.exeexe 16c7f6ad212045720a940305d6346247aae3e6bee30a99d36488b5dde4e2d6ecn/a Heodo
2020-07-225b1r087.exeexe f644ecad3cbf9e6b458c0fef2a2d61316ae73340547a4481a3c5e0b37db9b0a0n/a Heodo
2020-07-223xi4301400691.exeexe bb53c8c5a7c61f973e9aa9581752939f49c565ff8323f456f1b1d51dea6c0490n/a Heodo
2020-07-22hvy6z844651885.exeexe 8222ef3fdf85d039d38e5852424aa9f0bf9eb373286a94497e508f1610f5ce46n/a Heodo
2020-07-22a2rcs71556683.exeexe 55e5b2ce484a13f993cbf64c7cde5b8d6b50b4e95b8233f03c98daa737195872n/a Heodo
2020-07-229omcgtbzlk80.exeexe c881f6c6dec2cc09d98254e2c73fac1d3a366ddf68eee6b8ddbd4aef9c6de8e6n/a Heodo
2020-07-22q3zoval43197.exeexe 2bac0b673a01d0b03bfb1cfb0d65cbe84ca9226627ec6be7d198dbc18b01fd8fn/a Heodo
2020-07-22jrua85.exeexe a5ee8a487a6ab446c004c5218a837da70e9de0479b8ed6c62dd666a7444330acn/a Heodo
2020-07-22ga5ez6731094.exeexe d46c8d0682f2de7c93d7e74ecc1fc6347d03cbba11bf3d1b9d8c4f8605e9107bn/a Heodo
2020-07-22nu5757564.exeexe 363c45d5c7c256bacf3b420d8ea7764d5abcf103aa859989472776cec90a6b60n/a Heodo
2020-07-22oanx6k4kh6.exeexe ec7aac5073226f8ec0fa3a98cce37b636eb303b15b54fde2a619b21c425848c6n/a Heodo
2020-07-22u670w7n30.exeexe fbe6e0007b6252e17360d8ef799f20c89b9da324bdcbc9cc6fdaf41959bbdc9cn/a Heodo
2020-07-22qthcdp4676.exeexe c4665d5e439a03b070b5d102b2adb7cfd64741df72adc4d77227e927618b7740n/a Heodo
2020-07-229oe33.exeexe ea9d6241408a16009310439cacba34ac1a46fa57c107708379aeb2f7f124f1aen/a 
2020-07-223hxho6102509284685.exeexe a91e21f833aee89ba511aa4ebae39da8c08b06c2c7aa0926c20a6326158b39fan/a Heodo
2020-07-225el6kf2l63524.exeexe 138b2ac831a754a8a2aeb53a290ede8d460844f98a163ce17ca7131988af7518n/a Heodo
2020-07-22cs2rv5o53477940.exeexe 47174d625e28bdee3220900b89068e6c60b73ddbc18fcdf7b1325b47a0b7e601n/a Heodo
2020-07-22wg56495.exeexe b4b6cd537c2d79aa92f345a16fd7e371bd19bb1ae150b792abee0d3645b9ab02n/a Heodo
2020-07-22v22v3q68869.exeexe 0e39f87512b7a0f07f3241260609bfe869503e0f5efa8e3895edccc8c1497d87n/a Heodo
2020-07-225b2utj9d37.exeexe f926ced776d287bd29752018ea7708b170ecbc33efdedf859710e50a9edc7c84n/a Heodo
2020-07-22qcqwwlk818.exeexe c7d8b6fef96a12873be450d059607c5d558415697570442104776c07be83d8ccn/a 
2020-07-22v8v0ss07471.exeexe 89cbd54d611a8cf36fa3815fe0aaf72b029155e993f422ab60e73625b5c3b996n/a Heodo
2020-07-22gjnzg413008.exeexe 5270aa3d536d85317e445f9e0578b0ae7b9064ff9db695a6d72965848188d899n/a Heodo
2020-07-22bngvn4cpuw6824.exeexe 7ea84f0166413cfa1bdfed7efa3248ec653a1bc481f8402fb94c574b2388d8f4n/a Heodo
2020-07-221fagx7446694.exeexe 6ea02e8d21e0ed91561ecddc3d9cd8c5c581bf1f9991b3f61fc8f0ee5b829999n/a Heodo
2020-07-22ymg7yswg1347632.exeexe 42b76d357472827f23f9cbf9329115327a01ef7dd3094c5517fded42e841e65an/a Heodo
2020-07-22xbxvx50.exeexe 97cbbced0755ee5536b259bb7eeac6d35ce5c0f710295357704b33c469f54146n/a Heodo
2020-07-22dnqtgfcy8.exeexe 857cdb1b12a656c098aaee8185ed45dab7d2777815babf1f8730d0bda1f0a14cn/a Heodo
2020-07-224rlnl3255002.exeexe 990498e06c8073989b06a3c6e33d7430f5ee5388e6b1a416c32e2205e2ab16efn/a Heodo
2020-07-228xh2w742444.exeexe f6bc5e220d4fa8e8991d441172b10faeba91a438e9e007a8c75b85495e510490n/a Heodo
2020-07-22u7yulpgin16.exeexe f73fb45fd1fdd6eb6dd3ecee753f5a8973beae2eafb9ea8f384218d1a277ad47n/a Heodo
2020-07-22odpcows47.exeexe cf3e32d1ac513122c350c5c5fca3f84ba3c6fdf0f3f0ff836084c1344fe4e9bfn/a 
2020-07-22bjl2861.exeexe c9281e5fc1315bbe7b1df34c3b87b2ec29fdc6655a7a1e63e221cfdfc4152789n/a Heodo
2020-07-222jye1624929179.exeexe b31e99b7e7416697aa02b435d05490c00b14edd06def9d5a70592db547117a2en/a 
2020-07-21ht3gy228707930.exeexe c77e5d0c6782232759201314500ff9686c952fd8ea42d923b0b6307e5a54f3ban/a Heodo
2020-07-21h4du2507604.exeexe 3df58c437240372b7dde6e4be8420fe9d8f1619d65ae1a7b9a142d6cafd8c1ffn/a Heodo
2020-07-21n6db68602930.exeexe 4bcb1035986f542b0d37f820c0347db714dc5ed589e13241a897d111b156bf45n/a Heodo
2020-07-21o58ogc21zg923.exeexe f999a324ccad559c3fc62a0d1bee7c5286e74f20e4d5aacb8cf90b61555a876dn/a Heodo
2020-07-21qznkxas3572313.exeexe d15803ed5e4cc93ea4eba5e6808e5bb7d5d1934353f0d0cffe37b047dfd2fd19n/a Heodo
2020-07-21kj6.exeexe 7bc7f684c7953afd2914abe8e349d27786d28fd5cf4c5c5fcf2473ea8249bea1n/a Heodo
2020-07-21o2dopqs0z270974.exeexe e20266c27c6abb8af2ff5dc9a24809d54da1470cb32bce35cf4b5b6f18a7c10fn/a Heodo
2020-07-21rr6c895vet4532.exeexe 75d82433a160538c3c781f4cd21b7d18c7397bb3e24d182d1978e451e11d3937n/a Heodo
2020-07-21muxd0u023226.exeexe a85ebea3b3b28c9153a1d824a0a77220482683e3d89e4eec28d21b0cf4768d50n/a Heodo
2020-07-21k9eo201477517.exeexe 90eb59874d3dc45041f019ccc66b45ec3574e6e3eef4a0483b8569e6d5e3419dn/a Heodo
2020-07-211inju90006.exeexe 786337dc291d03cf31479e7cf825bfdaba5d10d707eada0d3fe21db7b0b3e6cbn/a Heodo
2020-07-21i5d595518977.exeexe f5d8f4f9275dd6d215b536dbcd4e86e309405c844926dfae0800040949747872n/a Heodo
2020-07-21l1159908907.exeexe 46b9b67f858378f224235f9734e6d48684d42147c05395c918f9a2c96e8f2a3dn/a Heodo
2020-07-216quuvd1032150053.exeexe 029c0fbe09f27e4c8d271c85548373d916cf1beaaa0631733594c03b4b13449eVirustotal results 12.50% Heodo
2020-07-21ient0riyqa122.exeexe 462e50a6ad841f3f16714d4db68452058d8dff70c9de825eb1fda896ea1dc25eVirustotal results 11.11% 
2020-07-216fb7704677.exeexe 767ec8008904e41e406b0b218f45d1106190ee13c5a197d31da6918a2030d497Virustotal results 9.72% Heodo
2020-07-21qrsh129198197.exeexe a9f7a86fcc8ea64dbfdb1388390779daff691fbb32f8d82141d5eca2de68d18dn/a Heodo
2020-07-21tjpvapf6665270169.exeexe 9495170df6f5fd9175c267779ebf3b9a504fd6ed6ce624cc75e0ab2816827ad6n/a Heodo
2020-07-21aput382825.exeexe d1b74670d879eeac2cf42b4ae5e1389fd90b4a2679b02437734ee11f3ba27447n/a Heodo
2020-07-21pm9de7v20w0874541764.exeexe 86c11c3b2782a5b9a137aa6792096f9868a03fdd873e69f101fd052e66f56660n/a Heodo
2020-07-21vffry9gb368918.exeexe 2d1a848bbc1538db5546ae4d6564a00f440379f7be53611c7649f54cf64743d2n/a Heodo
2020-07-21ggwur4629278508.exeexe dacd3dc527260ffb43f11a4fe6ccf82ab18106cd183350d49eb328f0b8d8fcf5n/a 
2020-07-21ogipths016.exeexe 72b4cc9ed58c78875f44dc4d3ce135d6db1cec96c6a760723ca2b4b8d4cf3bfeVirustotal results 10.14% Heodo
2020-07-21ui9zqe503.exeexe 99afc2749122d24ec16bb7a11ec6bb64e0198a57ebf1707aff0cc4422b172c62n/a Heodo
2020-07-21zykjvqbtc50.exeexe 3f4dd02dcd8ea5fba3cf8b3f4913f4577b66e01665ce8ab966612b5c77de4f40n/a Heodo
2020-07-213uk7h9686777950.exeexe 3deef332635e7ea1d0a757d3ea6dacf40c93f9cf50bec051ff0022fd35840b6fn/a Heodo
2020-07-21ijklgtj34z4.exeexe 34cd0072f06ba6ad9ff9520a4f57e71c4d26d255413f8b01ebd9e98bdfde4260n/a Heodo
2020-07-21bzv5zfpirs81724.exeexe cde6f8ae6feb94c03d2e65f6956d243f888b844973acd7e47b84a25a9ffb80daVirustotal results 7.04% Heodo
2020-07-215f75.exeexe 5172aea1ea7353bf5d24edf87cf5c090e3fbfe84e3485c8be4641a0ba2e80d9dn/a Heodo
2020-07-21hblmy2df7m51560523.exeexe e6ac1ec7f9f91b14a4f671f4d6c09b65ed885e2e92e917026a650bfd712167cdn/a Heodo
2020-07-21d3rwzu93680742.exeexe 9c59deac360109b54c524a99af5345f81719d3e7720bee3b843c121476d0014en/a Heodo
2020-07-21m2r5811420.exeexe 841710b4a7776bc4508437350bea0ae5342b444c47e5640c858e3a8284cb7ad6n/a Heodo
2020-07-21ug8ojdxh5668582879.exeexe ae2689131964dc77e883eab011c68dcdd1da0bcad1a489769d10202d724aff4bn/a Heodo
2020-07-211qlcj0820416.exeexe 32475b3a403f168b8456991421109fb90dda0fadca2c15121ac6510b49f7c522n/a Heodo
2020-07-21n5oay617x0894364.exeexe 9988e5611cf10a8f888a8d42245aafe31cab6ad1acfff54da9db4ff28942fdafn/a Heodo
2020-07-215gz3ivw12348748.exeexe e5392db18aa7e1dcd7befc30ffb7ab82a52847cb6a8a19e1413871c50cf05032n/a Heodo
2020-07-21agkrbm9052812.exeexe c7ca5ff223720e7c53f905e0aec97491e737f1e3b764fead95b0810aba4a0316n/a Heodo
2020-07-21nm38.exeexe e3467dde0f23dcf29fd020d82b7cc096032b8e8a25faa51d6552221475ac9a0cn/a Heodo
2020-07-21ll42323097.exeexe 6c6617294e927cbd8999ae887194c2351f181c765856abff41d8f4dfe78a5a53n/a 
2020-07-20kj9btm4e638495263.exeexe 93b8c01cd09d80c3310f34d54afd0ca088b6250b8a64aff903672b9ddbf32130n/aHeodo
2020-07-204afnws3w14.exeexe 02470e55cb4c27de6782d2e729a39093fd5bd58ca12ef77afb531c9fad819996n/a Heodo
2020-07-206ul2d04523212.exeexe 4029fc5500c1ab4fc9d033d12d6cd1d6c2517de2fc8cad14c6cb1e3699880bdan/a Heodo
2020-07-20ww8g14j4bh7212283.exeexe 532c60b9831480da88996b1ae06b13f39c39d69f0f3bae195a369639428fe104n/a Heodo
2020-07-20393xnws9th5030573122.exeexe 5066ec6edb3b2f3f673e53727715d3189751752bb8f6c9bd6b6cde3df6615787n/a Heodo
2020-07-20jrof2333925.exeexe 3a9e829fe29b2a4791bd502a744d3b7ace5f6ba371e0571bcb7b7b81cdc29464Virustotal results 13.89% Heodo
2020-07-204w6o11oj6v274517.exeexe e3eea1bab064ac2fb13056d4e4b90b9af46a34390a122fd5952215ad3cd7df75n/a Heodo
2020-07-20am05.exeexe 3696940e4e4175dc34c1f00c8280b54af656eccfdf2587ed5a4db8bd0370a195Virustotal results 12.33% Heodo
2020-07-20szjdu287485.exeexe 3c11f9dd448b03b508f215ebd15874da917cbec80881a45b591c0a18b37af568n/a Heodo