URLhaus Database

You are currently viewing the URLhaus database entry for http://gazedice.com/loggers/o_rz_46d99/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:430126
URL: http://gazedice.com/loggers/o_rz_46d99/
URL Status:Offline
Host: gazedice.com
Date added:2020-08-12 10:38:23 UTC
Last online:2020-08-13 02:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-08-12 10:40:05 UTC to eig-abuse{at}endurance[dot]com)
Takedown time:15 hours, 33 minutes Good (down since 2020-08-13 02:13:56 UTC)
Tags:emotet link epoch2 exe heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-08-13LDQaWVu5u6ZCYr0fXgJ.exeexe 6bd3e0dd71cf96883f70d1ebf9caae14813fee0e4e13cad3045489df3a465f0cn/a Heodo
2020-08-128PYe.exeexe e7728fdc4deeb574aab531ff48528e6fb109cdabf38ef35725e29c67f5f0d804n/a Heodo
2020-08-12wIj6C8y8Yy3.exeexe e078eea7e8c7da4ec6811aa4483796bfdd82b4c7d7adfc13ab6971986835c3cfn/a Heodo
2020-08-12CllS.exeexe 3d463220cd404dfb727b690089d3a403894ff3926ffdba3b6f41c15c4a51a0a8n/a Heodo
2020-08-12TP1AlXCukShmqco.exeexe 21f341756ef8f6bb7608011b3c8df02d414e40e0331e3f56c2f9b1ffd710ebfdn/a Heodo
2020-08-12I5JxjcIcnvqDP.exeexe 3db4c320bceabf8fb23a7bb637c412896156d5b24333c5e224d3d1878c72b4ccn/a Heodo
2020-08-12W1iKvVg.exeexe 45a85001caeed46bee17e406a5fb0c8927b9caee493f5e035d7ea78a49665491n/a Heodo
2020-08-12iLUw881pURzdC7VWa9.exeexe f6e8c6d4a02f7d970f208316980d314cd9c4b840132eeb65e956e0e867219f90n/a Heodo
2020-08-12wvl1Vr91.exeexe c3258c09a7bd15a10497aade011d41a3c7185431a570d413f3a1205f34d29f26n/a Heodo
2020-08-12Uj9tkLk0hsGWE.exeexe a05b90bdd4f844ff659446365a928d08bfe0e3dc037c0de99a976cc61193e454n/a Heodo
2020-08-12KMNTy6OVB19H4bYk6.exeexe 079c3497049518d29b8c711269dea407e9dcff90be69942f571d5c90120bc371n/a Heodo
2020-08-1234wH.exeexe 74e8fddfb6253169b7e8446f461e28ac3f83af624f582a11bbc598a015951d20n/a Heodo
2020-08-121BvaNGvAkrO.exeexe cc3cc4770c7c5ca7a4d1b1a126e26079774ec5550f651f9219492abe34c0d6a2n/a Heodo
2020-08-12nWr2Dnb.exeexe 04aa34a0c0c139b76869a43b32d96e6d27ec3fbaaa5be0e53a424ee42c17a1d7n/a Heodo
2020-08-12f6A.exeexe 3de04d65606978e499023be281256d3d1c5fbee0335aab17f4184bd189c8c7f4n/a Heodo
2020-08-12RxXM0g5KhfRoB.exeexe 031b1e463d086113efa2a5ecd4a4988857389a25b44733ac2a3e6b768f8d95c9n/a Heodo
2020-08-12B4c4Zb.exeexe 4240364a53d205c412ca5ab8e01b48318c7663f6d53fb47fd3e5062be2090c36n/a Heodo
2020-08-12wPMs.exeexe 63a387277986f3e4d8e5c2dce238aa0b9fe37c1e8c6854404d2778ecebd005a0n/a Heodo
2020-08-12hlR7bt99rUQB.exeexe 6f0a1145dd61e0e40b624e59fa3044c7dbb4398be8661fa9fba0d18c6a835a4dn/a Heodo
2020-08-12T.exeexe 79f134ff7c7ed5d24a077fa6d49b689c93510df66edb1b65b3b82ca74ef0a922n/a Heodo
2020-08-12e7v2UpFlBfZBIu73.exeexe bf729138f1b4b56d3c2d8c5f96cc2f456a59abb3b08cfea0b18d2b845d6d57f2n/a Heodo
2020-08-12tWsb7GgHbVn4.exeexe ac96463189c3fc082e4b76431c9b1993cdab7cb27a3dbe3d842b99cce6c368d2n/a Heodo