URLhaus Database

You are currently viewing the URLhaus database entry for http://av2m.com/js/ekgl_a_dy4ntv/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:419830
URL: http://av2m.com/js/ekgl_a_dy4ntv/
URL Status:Offline
Host: av2m.com
Date added:2020-07-27 12:08:19 UTC
Last online:2020-07-29 12:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-07-27 12:10:04 UTC to abuse{at}namecheaphosting[dot]com)
Takedown time:2 days, 0 hours, 29 minutes Poor (down since 2020-07-29 12:39:29 UTC)
Tags:emotet link epoch2 exe heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-07-29xmikyji7w7uJ.exeexe 7e9cf3723cb8d7bc7a1e7f1cec77db4c0b60db2e7b2dccf2e1062016287d130en/a Heodo
2020-07-29Osl2fxcWXBBa0o.exeexe d4e72093af11c1c69c4ce9c5f6e57cc64f8c2d6f6842e4119e4b5471059bbb7fn/a Heodo
2020-07-29pImn8euDZ.exeexe b8ae2ef6217bea2ee5fa4408456e5765b8e2e4c25eafbcff5bc47c82b80b290fn/a Heodo
2020-07-2975BS5apBne9OuF985A4h.exeexe 9f7fc4ef3f14c956485847a1a2b8bea39a4f6cb53a535dbfb9b3ec87f5186e03n/a Heodo
2020-07-294t3S2EFP7HOwsO.exeexe 0e5f3f9fe0f10fb231046ad66596d5e807d32df11330e7b2da79f38a60daa22cVirustotal results 13.89% Heodo
2020-07-29AgJiV0M.exeexe 86b9ccd509a54fffa45163131e7cf6834728a41ff4caa77e5757e00f511d99c8n/a Heodo
2020-07-294kseUtL.exeexe 9eaf252421e494f708bf536add853a47a213878de1437b339d97b0b869a01e2bn/a Heodo
2020-07-28Hc43HGBNQoJ2H.exeexe f549f3aa8de6086949347dc8e67536ac3d189562a8ad282cca7b8cfffe271839Virustotal results 11.76% Heodo
2020-07-28Hc43HGBNQoJ2H.exeexe f549f3aa8de6086949347dc8e67536ac3d189562a8ad282cca7b8cfffe271839Virustotal results 11.76% Heodo
2020-07-28eqbnfFqD4Nx.exeexe 520afc41beeff43d06f659a8b49d5f27e12152c91c95b3a5be8138a6301bf1f9Virustotal results 11.11% Heodo
2020-07-28wcQcXhdN.exeexe c195c10ad301dbeddc143022bd008de851a9098e01d332be06de378f92e82f59n/a Heodo
2020-07-28E.exeexe 9b2c454f44034783dd978afeb286be0a9d907f09b7ffde2519123dfb3a501a29n/a Heodo
2020-07-280XGQm.exeexe 8873d862c54691707c5fd872931efcbe6d9789a0069c23f19f0540f6f21ea023n/a Heodo
2020-07-28d.exeexe 1b6b6ff4bf6691651abd13f38096341286fec3740e36050022c794d18ec8db6fVirustotal results 17.81% Heodo
2020-07-28BoHn.exeexe 0aa36d0f153f496feade5e59ee510112ca7766a6e9338b2330c7e0965f9a41a1n/a Heodo
2020-07-28i7.exeexe 699d24dfb5245ff409fcd704af0b8e33832afe3222fd908859227e532f59dcbdn/a Heodo
2020-07-281sNuT6OEBcWc1M.exeexe 1e241029ecae9deb8ae5068cf1910d2b1c95b336817d61afcb784b3c3e0404bdn/a Heodo
2020-07-28P.exeexe 0201e96128e7e5e5dfa48e3d7c1fcecaea745a0f2197b1489c30938a25d7b668Virustotal results 16.44% Heodo
2020-07-28hYg0iW4U.exeexe 5021eae26608a8faf7d7dd1318dcdd2698fe4523d533c1274b6e9fb99833c4b5Virustotal results 16.67% Heodo
2020-07-28t7pU.exeexe e516457193193c0b9cd671bd3d675788d9b95dd8878bcc016d27e89711cead10Virustotal results 13.89% Heodo
2020-07-28vw8w39BIGrmzNvbof.exeexe d4d21fceda4cbf71b1a2f19d8103928414652ceaf2b828f8a344240d70fb77c6n/a Heodo
2020-07-28b0h51u.exeexe 4909b36dd1bb24ed57187dda6e2f8ddc5fe9e183a41e404a0e3866d7ed394b9eVirustotal results 13.89% Heodo
2020-07-28xBzexSxVYgvfnb3i1IDN.exeexe 6d56063629e19fe3ef1a8c3e5344f864c751b459aa5517137c362ca441facde1Virustotal results 18.31% Heodo
2020-07-28ue9oF86tDr7Klp3.exeexe 9a7a7b0b2f502613142ecf0dd348e59133d7afd760baa84af5133a5bb761f42dn/a Heodo
2020-07-28Hlt.exeexe 025bed95ee9ad1897c61cadafcc8c12d1a2316904ffbe0c412cf9a13c7de2d37Virustotal results 22.86%Heodo
2020-07-27Z5QTZlS.exeexe db197968a3f10e24168e0ab694f19beec99f806b7d471fe31bd032a03c3c6795n/a Heodo
2020-07-27dGGX.exeexe 026c40840ea971b2f08195ae30cc3a46380ef06e94b73a7d41cb79fb8daa06a7Virustotal results 13.04%Heodo
2020-07-27cxxf6g0kh7XcTDhl.exeexe 9075d19c524094232079ddb680edb09849b7c6e3de0eb369a56bc658c2bba8d9Virustotal results 13.70% Heodo
2020-07-276Q1h2VnaRwXeUSl95.exeexe 45f1b8bd2abea8bc4b3b899f8cf7418b135168b7f6ae9afef149ce7f78f5778eVirustotal results 13.70% Heodo
2020-07-27cvgMXARXVAV2.exeexe 5f62d5737ec31fd307cd60306921fa021c8d72cdb202321ea0e82050492813d7Virustotal results 12.86% Heodo
2020-07-27F4gZ3PyKvxP5LQT.exeexe e92fe2bf2d9974fb13accf520f84d77d4dd3df7805c1ad77335517aa5c42e625Virustotal results 20.55% Heodo
2020-07-27oh.exeexe 43516b5148c7c44567e0603a9f6b0accc7da9913771d7c4a9c284be06f60402fn/a Heodo
2020-07-27fCWZoUclzW1c.exeexe d9fb20e49ab03c249380872bdd64842c1e80ebab6f79be771e2528518c1bafe3Virustotal results 7.14%Heodo
2020-07-27RtyFOpbEyRm5KaTMwR.exeexe 0d636a0512c59a93a2517805fc4010443d7035c67e89c02cd22c7d8ae2b95cb3n/a Heodo
2020-07-27t73g.exeexe 92b631effa8c21130e64945fedb3332d714cba8f52654a2c2a3a139df07614een/a Heodo
2020-07-27aGe45NAted6k.exeexe 78378163b84749cb39657757cb1fed7976c5bb4cd575d0d7a709a2391cfb68f8n/a Heodo
2020-07-27LbKaP9D4vgA.exeexe 90c082e75babcc802028823835caf7249ad59ac3d7e50a28b2f3991c7ef5b581n/a Heodo