URLhaus Database

You are currently viewing the URLhaus database entry for https://fzweiming.com/wp-content/Mz2592/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:430328
URL: https://fzweiming.com/wp-content/Mz2592/
URL Status:Offline
Host: fzweiming.com
Date added:2020-08-12 11:18:08 UTC
Last online:2020-09-05 13:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-08-12 11:20:12 UTC to anti-spam{at}list[dot]alibaba-inc[dot]com,abuse{at}12321[dot]cn,abuse{at}alibaba-inc[dot]com)
Takedown time:24 days, 2 hours, 39 minutes Bad (down since 2020-09-05 13:59:54 UTC)
Tags:emotet link epoch1 exe heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-08-14xbkJStprWTv.exeexe 38226c75adbf4514ad269755be9458ad29c8d0c0704e021026e821f785c8f4e1n/a Heodo
2020-08-14TuY.exeexe ed0b8d2b60f38a4e53eabaaf1eff73feb55c80ea758076f6bf14be75ff89deb8n/a Heodo
2020-08-14pOCHTJw4kq.exeexe d6768e9e1f08d7b4c1c2419b8893640f0ae110001b2cc069afb0123822934ff6n/a Heodo
2020-08-14nYNklP.exeexe fa9fd7eb2d476a1b12657db53fc0dd386488a4672ecc89e61cfcc7c1fd96fb23n/a Heodo
2020-08-14I2pCJfpBzgPGHcQ4llXi.exeexe be88f63b5c1662d521b7c74934b491cd1202b3e5f34fe223846115a4fe7b0f7dn/a Heodo
2020-08-14mCa0NNCY.exeexe 09426329cabcea6be69e515ce138c12e90b096bd67c371e1eca80a1384485c62n/a Heodo
2020-08-14hy44rFp72Qb.exeexe ae200a7625bc142c1896574596fd86487d521dbfd03c6abf3e984518b84cfd51n/a Heodo
2020-08-14yUrup99aNR2Vfea.exeexe b0ec8a54a24a76927390ce9f5e295a2e16cfdead257933cf39cf37d7a9aef52bn/a Heodo
2020-08-14PEq8nwCyOfeMFKv9.exeexe dc1ae8fafc56cdcdb337e99d1c2da6862064591f28ac6b72242ceacebdd41adbn/a Heodo
2020-08-14Ms8AVgbhgvzgny7.exeexe 38fa84e42336099a73cced1bb0f08e4878623d446138ca8cf924bf2f57aec1e8n/a Heodo
2020-08-14u1rDrxbhyJNH2Mm.exeexe 10dde7c2cb03ac6567f43253a1ded967a1fea4434946226c451ee223261de43cn/a Heodo
2020-08-14NLdcjFyZtJdyGG7b8mi.exeexe 4c45d1422231b1012230bfc8287ec8ef09ea2ab7c4565c3e4fa42c8ccbd5869dn/a Heodo
2020-08-14SKoTTogV6ATQo.exeexe 7bfb0492b73a8cb1b552561ea6716bb01fbca14379677809c51529bff8e96ed6n/a Heodo
2020-08-14tR7akh88m9gBGBRdsm7.exeexe b14450b2e697f658083721e844bd6a09cbfac8f9507332e7a3c4c915db5012e8n/a Heodo
2020-08-147KfQdlqza0dWcUJzEWqtd.exeexe f5fb2c83ec2901a8b3986758a11ac4e19b2af8f4da72a5ce1e5bdcb9c00b5857n/a Heodo
2020-08-14bS8mLnPtDazxKVEG4c.exeexe 5206d041248893c2bd61e6e49881e85701683ab6a524057d90cb397021d647b0n/a Heodo
2020-08-14cy0Yqr5Y9zgVivem.exeexe 9b4896a592cd04f8c4aa4872b44bb2d3d39b7db6ff6457010378ca68ad3b371cn/a Heodo
2020-08-14EoRl73B4NeE.exeexe 6b041bb6ed2f3269d9d58620f9f88de9dd05c7070db64d8ebe99b2d11d08eed8n/a Heodo
2020-08-14CfFFluBq8KDHUg.exeexe 997d9e9dd92fa7a7016c52788c865bf53f8e76338f871ade4339e5b8a4a317b9n/a Heodo
2020-08-14wVMLY0CvwbX3p.exeexe e3c9a43111302567a853d8140e61be6342bcc46d652d3cee15db999542bcb47bn/a Heodo
2020-08-14NMvwA.exeexe fff2d6f8d912c40847a572c8c583e9bf3f5c918b18581af2b2ebeda277ae1f55n/a Heodo
2020-08-13GpYZ.exeexe 3726ed8e3f65aac1844be04c8d2394e0c328c17365ed8de9ace4070f1c1a3597n/a Heodo
2020-08-13SoBpRAn.exeexe 61f3c8f8f1da61d7a53bbbf999525eb33f2dce07f7436bf4fe976b38f6a3c4aan/a Heodo
2020-08-130DDLFQwFeF0.exeexe f9c959cfe3251749de3988dcc2e1b0847e5777b8204c44ac717b964947dea659n/a Heodo
2020-08-13ROF.exeexe b0f787f5a9671c6c7144ddc6a17fad9b9cbe4093003efcfab1aa956e9b7a2d6en/a Heodo
2020-08-13Ed4TJabpqq.exeexe 0a22be12a8fb41421049c3d76099877952fbe45c61060b9937a254466d9731a4n/a Heodo
2020-08-13ddpW5QU9aqyP.exeexe 1136bcf9da8244dd4cff5ab9ddb72606e569976a4296dd0f58ae2b3edf8d781fn/a Heodo
2020-08-130kRxQECABbSUGuI.exeexe 874c40fce801496ae91257b8d9c8806b0151434986ab19f799e6eea05e7388abn/a Heodo
2020-08-13LELWlNWFNGGO.exeexe 4944402f1a8fa8aef18dc604004b8919c3fe5dad25e814268776d4e71f83c839n/a Heodo
2020-08-133ru8O8pJGdoOwTyMvd.exeexe f6694e0a9a71d20c784e301ef1957841418aed02eb850e9a59c7aea81f6299ban/a Heodo
2020-08-13liw810bUouqUR4V4is.exeexe 0b2fac2a31a5bacd095be30ad38cc7a6991870e943d257f375e3d45474b93355n/a Heodo
2020-08-135UcAzJ1C60Xks7G6y.exeexe 679139ced53b180d98e2cb756b6bd7049509f9758882e41481ec742b46e743e9n/a Heodo
2020-08-13AFzPlCb9t0KcQLw.exeexe 5e61de37fe7c3d504ed0264dc767ea7aea7dd361bbb33ee9b4f5cb970e516dd1n/a Heodo
2020-08-13fXmt0sctYkrqmf86d.exeexe 2f653b4d51e4b31a6556abd72583281efa2585042de91fc8b6480ddab5f1cceen/a Heodo
2020-08-13qK7vYVYCS1Kz.exeexe f60b8cf121b592b6529cfdf52da72ec2579347568d775ab51224b3b72aae9baen/a Heodo
2020-08-13cEumvy1iKhJi.exeexe 34318b26e05d59bab38c424963329482ef1116057074f38249576bb792feb2e2n/a Heodo
2020-08-13g4C.exeexe 7f3c911d53e0bd8235b181e03235cc905657c1b25a9a83a52efc16c94cf9d8f1n/a Heodo
2020-08-13WY5N6tTmLIax7vyX.exeexe 11bb91d227054a76ac65551d8d572d0ee68866a315fd56a8f182da53fd60210en/a Heodo
2020-08-13vxxt1ApkyEJu49w.exeexe 7b550e24d722cf779a24d5bcb7a22d0fca3da9a73855c005bb0113a8044da81dn/a Heodo
2020-08-133IVFzgnFsYV58R17bl.exeexe 6ec53e4a718d0e4dd4b3c1d62c9314228cdc476ba76f4951a1dff556bf2f5900n/a Heodo
2020-08-13DznMafR1mkMHXcX6frlh.exeexe e11d2f520260943ddcb01761803773ceb1afbbe8f1dbf39a4e89a3f610d57506n/a Heodo
2020-08-13m1Hq.exeexe 9fa4f76529f14663ad3e23ab349469ed37a4616e782e5ac859c73421af4fed75n/a Heodo
2020-08-13z5epMcTTg.exeexe 2febe29623f9a272fafe33fede975311326f9b8d6a1e70042f53a28e92a95088n/a Heodo
2020-08-13sJwxEfm7trdcf2FFKrG.exeexe ca031c2f2d4e7a892154d39e3133170e2bc6d9ce458e9a3b6b67760dc9d35d44n/a Heodo
2020-08-13FpfdsdTOmLyd.exeexe 1d892eaca330925a80d58c914bd44d71186064bba0f00501166707e147c44587n/a Heodo
2020-08-13CvHPeslfGTGzTSoyej.exeexe fc6530c2ccfc2c47e3aa6403e85421d1863ac78f79498ff4979f55429b27e1e1n/a Heodo
2020-08-13SSLUgHTVPhIgQ.exeexe 4acb8d230a3f3d44ab98a7fd6b558ec8da520d3d7ff2ff373ee0cda66cee7026n/a Heodo
2020-08-13YYmXuIlph4kLEu.exeexe c363e9996916c73b93d291db7e2218164bcc894aac75dccfacfdb378e3f9d85dn/a Heodo
2020-08-13Co96TsuFxwwgNp7q5BMC.exeexe 718b07bca90580c98f36d8009973de59bfe07f82d7ef441995cca35ab858e9f4n/a Heodo
2020-08-13U3j8VbXYFjIrewQv.exeexe dd433db7e1169b7130cc87c74fb92fd5b17dcecb4ff600f78efae700f1faffd9n/a Heodo
2020-08-13dmTYqaJgaTAVPazhxYE.exeexe 951930cfa846aa4c792d73a67acdbc088d3eb0a27d539f76c2e162e8390b6925n/a Heodo
2020-08-13rslSOAFkhHEjTpXWO6N.exeexe 9c4548ce07726aa49e29b6a991248c25e4bb1a295088fe96eb6629bc8e7a2a1an/a Heodo
2020-08-13GkfQal889YSg.exeexe a1200f54c6c3947591d4d5f115cf1a0338fcc9cf4cf1372cb0974ed3e291ccf1n/a Heodo
2020-08-13Kl8HJ4HH0yEMs7Irtzjw.exeexe d3b80b3dfa65d5e0589b1b6b50d56d2348b0aed57d0d6df15199663533549866n/a Heodo
2020-08-135Z4re1UI44ku8zoC9.exeexe da8b36beb9f419a4e39c95271baa5f2388338e51f9a2838d75dcda9619af140cn/a Heodo
2020-08-13X4sNIZJjiR.exeexe af8c050c3ed4d3e310e54637b39477a24b6fbefdce742a88f844300a36b16307n/a Heodo
2020-08-13abzvLwVGb6Yop3C.exeexe 4926dfc1ed894f59f84c6c03e316eee14bf70f330c9bbc90fd927684febc5e84n/a Heodo
2020-08-13fURnmQJHgbs.exeexe 3182bce58c33cf480a13821aa9d6aefa6d9cd31d13ddd2246bad8a43c7f5daf2Virustotal results 10.00% Heodo
2020-08-13oRtS.exeexe fea12ec1362b715d689fa1c4f14b87dcd4b7c0afe4545a145f4b107e028f0e65n/a Heodo
2020-08-13KUQWClMWmePOB07.exeexe b4d6af5fbfdf928d2cb30c77c7b39c7115976b0b37f6388a17177856e559e44bn/a Heodo
2020-08-13zgq.exeexe c2ad7173c7aedec2a81ff60dc5e728b3d6e82c4bfc47d207ee49e25d3eb9de6fn/a Heodo
2020-08-13m7AgY.exeexe 012a95b20560f25f1113b106069832230f42815821098c5f685618ab2aa2e79dn/a Heodo
2020-08-13hIEKPad3YRu.exeexe d2a28fcaca39bbe9d1c240559ebb07bab3e53d9959ae3393ed839576de4fbf0bn/a Heodo
2020-08-135UktFhuuiDu1n83Rh1j89.exeexe 1831163d80881c9972f32c9ea16aa0f1689b32bab3c319b51447a394e13ef689n/a Heodo
2020-08-13XUEpiJALQ3.exeexe 005e47b653efd79d7d6309fa1ec043b0fbc66e9e940702807178b2210234ef3an/a Heodo
2020-08-13aAQu7Apa.exeexe 50c65d9b20fb94357bc9e1a1a4719b08eff49b0869cf9f5fcb4e8a50ce776d0en/a Heodo
2020-08-12TAzus6.exeexe e57b684f5cc8e936d94a1c9cc2247a88766e5072893c7fd012d9c604862f045en/a Heodo
2020-08-12xCqvo.exeexe 3cb78b9f3676ac7d7e3297b440273ff73c27a281e030bdcdd70e8b0792bc305dn/a Heodo
2020-08-12iBBbU1zz40Ltzh.exeexe 4300db84d9f5e48e57afd2f009e6399254a7eb0b1524df517bac12c892ec0bf4Virustotal results 14.29% Heodo
2020-08-12SiiDBh6O5Ca.exeexe b5e40a16ad1fa28ea8bfc1168dadcfb596543f05ca7bd30dd283c48948501986n/a Heodo
2020-08-12t8rQR24xsYV.exeexe 495ba47fdb517bab01a1c88ff66a30a63538cd0040ee704456c5ec6ec781cc7en/a Heodo
2020-08-12oc4dY3Y9GfGtlizX.exeexe b3f0f6db766a24391eb13a33276e18bd1bbf64397e9d463847c23e1a4b827a49n/a Heodo
2020-08-12pMx.exeexe dc0c0889dd43a6f71715626adb2b4b9500960a4b06ab2ab68f5bdf08569610a3n/a Heodo
2020-08-12lH6JGxtQHHCuvylj.exeexe 8d0d13b01b90caecdb3bc92fc0a77877a73c74edafdfe00258ec3fd4d502916dn/a Heodo
2020-08-12dFYzWP17Q.exeexe 87fd5e4bd2880741249f4de9134921183e9aebdc498a79d0accd4bfa4eba84e9n/a Heodo
2020-08-12M9E76XvyXGzaxLiCSz.exeexe dbb6aec7ca2c73cf1c737dacb051ba17563bb468aec5f902f60ee207b16e5bfen/a Heodo
2020-08-12l6RV92P1xwVOaBZQkIw9u.exeexe f93f5308b2f9b2580baefe1420e371f51d57fa27d7f151d3f80eb902190d463fVirustotal results 12.86% Heodo
2020-08-1261mCZx9WR3sjhGw8Hf.exeexe f923e0bb2095aae67d23b0b9b894e2caa36c523c3f968fe363b04786767e3d94n/a Heodo
2020-08-12VUKQC841cgsPEoaiS7tfW.exeexe e0d9c97f219cf4789012e25bdabbbd1e1081d83262f7071c630b57d5a09f17efn/a Heodo
2020-08-12shsyDlDO4444nz.exeexe 53d446db4e84ad6303c7eb9306c7a07d4eb17906cb081b99a03e92805bf2899an/a Heodo
2020-08-12k3UAoE85ayA8W.exeexe 7ea76f6e2615c00d3be186dd58be9fd9dc5128a5f6305105c3198ab2c7d3450en/a Heodo
2020-08-127yANeAHCCRZ.exeexe cd43be7c0b6cfe7ad64d4c84001e040642621c20cce102c43df9ba8633df586dn/a Heodo
2020-08-12NjjAwmhBZGRbc36zT8.exeexe 54c9abf0bc899dc0a3019d400ad20a7a2a58b7d4d387d23d3d8fd43a7a5ad02fn/a Heodo
2020-08-12aamUnrrT6yUHXTTtz.exeexe f5c8b64be610ed21828709442112256c53442178faf31c5ad7c0018330872f71n/a Heodo
2020-08-12dx8P.exeexe f8219db7ae682c37f83b3114e56c141848993b2809564cd53edfd0ae04bb2eb8n/a Heodo
2020-08-12LJbHRKaBMh3a.exeexe 618fe1bbb29f2437826b1f691396b69e49f42089ca57da69e03d97f6458f61b2n/a Heodo