URLhaus Database

You are currently viewing the URLhaus database entry for http://kompkon.com/cgi-bin/OAnF682/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:421874
URL: http://kompkon.com/cgi-bin/OAnF682/
URL Status:Offline
Host: kompkon.com
Date added:2020-07-30 09:48:36 UTC
Last online:2020-07-31 04:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-07-30 09:50:09 UTC to abuse{at}acenet-inc[dot]net)
Takedown time:18 hours, 15 minutes Good (down since 2020-07-31 04:05:53 UTC)
Tags:emotet link epoch1 exe heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-07-31qeCwYyLcmgpwFmK.exeexe 049edfc5c2dcd2914d78bd816662a2ebbffcd145b3982cbf90a65e12d72efd34n/a Heodo
2020-07-31q1fibgdWer9Sgc9aoW.exeexe c6e29d2190fc0126e8b3bbc21c31d493536c7a477c52621833cedd0d3551f27dn/a Heodo
2020-07-31hZhQJ5bI0e5eAIzCaRi6.exeexe bdea67e6f66cdfd9271048eb9cc08b123b07a81c0bc3e8553c578756be79c6caVirustotal results 16.18% Heodo
2020-07-311VLv7EINe.exeexe 6fab871c354d1086efe42f02c7d738e012b0078bb48a052c919dba0df68ed765n/a Heodo
2020-07-31qbe6HV1VjDD.exeexe 76a34fb900206029f07a23868b5d3b5fdbb0f8aea410bd49c9af420f536cd616n/a Heodo
2020-07-31qUXoxW.exeexe 43127ecea97b505217a4acd6e3a00294709bb4419c801b7487abef9f93167b83n/a Heodo
2020-07-30iFs5f.exeexe 57060568795d790902a43b99b122d7ca01854ac66f09ebf8f6bd8f37f152d026Virustotal results 14.08% Heodo
2020-07-30m7TRsuFBQ3p.exeexe e2ab3e54022bb53bf4809464784ffbc59e2839d8de59af6534b87ec291ce6e0cn/a Heodo
2020-07-30O1xI4.exeexe 85f925f4fad0bfaa4cd63d2c1289d82d451d088835ef305475e69c5515f80161n/a Heodo
2020-07-30Gc4fxWjkaHwFC9u.exeexe bc82108fea21e967d7a10514a37f5847ac0f29eeba25fcdd98793b9ee8156d3bn/a Heodo
2020-07-30QkwOJ6Pszq4.exeexe 00f12501b9a89e0b0ba8f0c11d788da95974e85debd200c705e843736587ff7fn/a Heodo
2020-07-30tUBdZTmk.exeexe a773479250965b9d15aaf88f237b13b64beced9b7d18170be6f5f448a19edaf7n/a Heodo
2020-07-30GUCe9ywC6V.exeexe 5539c898781465368927f295b422270a52243b4242faa689bb44566a2c28685bn/a Heodo
2020-07-304eZwUFyHHRvX.exeexe 31f56bd9edec4a55764637abe005263785a593f0b3a6cd8cf30f485b99afa043n/a Heodo
2020-07-30ZEl04ySbQcHdq6oaJ.exeexe e2f2175dc599c8e69174ecbcab93df8f6bbfea3f11e323f0dfd85a9335003546n/a Heodo
2020-07-30raTpbjS.exeexe 9c5fa5b12f2916342e4ae80b137a433e0e547e59612dcab48c6372e9e4293d39n/a Heodo
2020-07-30OXljdbt8YObcqXqEBgcj.exeexe 1315966925684b856e678f09b79cccaa826cb36b261e0813fef784b42152ee18n/a Heodo
2020-07-302rJhyNV.exeexe 5d26b210dc4b9545e2f7337dc94b38628998b4bfcee9dff3fcc950b0c2c68688n/a Heodo