URLhaus Database

You are currently viewing the URLhaus database entry for http://lansec.com.br/rkz_wgz_2mw77xw/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:431156
URL: http://lansec.com.br/rkz_wgz_2mw77xw/
URL Status:Offline
Host: lansec.com.br
Date added:2020-08-12 17:20:04 UTC
Last online:2020-08-17 16:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-08-12 17:22:05 UTC to abuse{at}lacnic[dot]net)
Takedown time:4 days, 23 hours, 22 minutes Bad (down since 2020-08-17 16:44:57 UTC)
Tags:emotet link epoch2 exe heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-08-14QDQ4hK.exeexe ec736d6535a3c5951dfdd5d2c8b02e3fed3bcb3d6f92c5c2f09580fc16ee4111Virustotal results 7.14% Heodo
2020-08-14ajcj0rgMn2OLP5.exeexe 17f61ab75e1a09ee089155ab255b6dbe308542951db1c33ca4459a01430591d8n/a Heodo
2020-08-14Q5XcZiOnflA.exeexe 169406f7af6bab7f4c84bf1f912514f09bdc636e4f388ffe2a605bf446656bben/a Heodo
2020-08-149X7myvhvASvlxI8p.exeexe 4b04415a7a3fb7327b5fc3c04adc6f8055a3a03fe338e40ae6ac3e50618b0e1aVirustotal results 12.86% Heodo
2020-08-144X.exeexe 44bba11d685389c99504db01932c02f81234bfb0993078e05d77418814bd19een/a Heodo
2020-08-142E6y7kr9M.exeexe 5fb9acdc1c7c567c827e6a08699cfddc4f60464fd6a5617e5bf9162581288577n/a Heodo
2020-08-14im.exeexe e949f9b26181040d4e8f4d14fc4c0c405c2663fad8c63a83739334ad64378b4cn/a Heodo
2020-08-14EUSui3CbRDmTSW8FxkIn.exeexe c7cfa00825abce40fb1c4ccf20305e902dd4da9db7c9e7eeb4dddd2ba26d841fn/a Heodo
2020-08-14DGSTVf4ap.exeexe 8f777bde805ec33a2263d11618c8c7feee2c0c4dd7ab3db2caca5b6333e34d7bn/a Heodo
2020-08-14kF5Y1xbU63P2GECNO0zH.exeexe 7537930259ba0763d299faada3cdb9c041da59970e4b50c136a091d256ca5f15n/a Heodo
2020-08-14IJTj0CPVoJ9OEsAel.exeexe ab4e5da49278fc0b7f1b7f360ef78db76919bed0ed2b06e93e98f891c1046208n/a Heodo
2020-08-145M4O0iMQQZ.exeexe 423a613dee8d88e368537962849959cc98604bfe7663fdee923a44864298e8e7n/a Heodo
2020-08-14r9qfG5fmtHpgQeFH.exeexe 213b9f8ac3f54f12cd622d0a1de3b6483aa5c2b373ac81c163fe118f7fa0048cn/a Heodo
2020-08-14Z0GcGpWIKRlWBw.exeexe 1b98f3dc9b8a2ab95d705feea05d8dad67e2ee21e0b523993a4a0888780f2820n/a Heodo
2020-08-142L66eQctG7dm5J1.exeexe 7dfb45bcb8039afb73f98e7abd13da2c32a44de6dc56f7874a173f083d3d5aa3n/a Heodo
2020-08-14PrmgKRjo.exeexe 9ad99150711bd3aae21a7f891af97c78b317e69eeec19d384fde8af10c7b402an/a Heodo
2020-08-1487HBTLSnzuQ.exeexe 05a0a5cf765d5be2d3a161c35be02b234b6e9846dcbedfaa6687b47f83f1c28bn/a Heodo
2020-08-140ZfKL6yCy4gwBPG.exeexe 1429801325bcf485b23e677ee43ef318dd48d5e448368c6c49c3e971b4b71833n/a Heodo
2020-08-14tnNW.exeexe e36bfc815129b4dd4aeb8767b5cb8874edf18cce2584a7e25d46bb9c2c3a5d01n/a Heodo
2020-08-14VIS1HQg8hTEHQ9SAOFvE.exeexe 411873e9f6cdaad77b8b0c91c1e92d624db2599c2991cdda5043c2b4d4ca771an/a Heodo
2020-08-14lEflgcnXgNVUlw7.exeexe e3cf0553ff2f91eaa40d2b3b3460bf86eaaed7860af631d4cc81c3e4ca5baee1n/a Heodo
2020-08-14xI67TPV1mgKkBg.exeexe c83fd3dc13bf05e62a013d08ae2875bb460538c00b479b26d502a555ffff63dbn/a Heodo
2020-08-138gV56wD.exeexe c10f69e2ed034c95756f8e5bd50a12f2927feee0b9d8839e68cb81d262badabfn/a Heodo
2020-08-13ns1GAbKH.exeexe 542f46bdd6e0ca2980fb7b42073518bfb3b639445edf8ac12ee758a882fd154fn/a Heodo
2020-08-13jvRfzTsh6t.exeexe caabca8c072197103db745ccb37f10e5878592044f169b72cc52580e72a5f096n/a Heodo
2020-08-13Rq6gXa4.exeexe 3a55c4e8101b8f2f84ed7141603a9afa2e4b74a7c4fb493ce6e160fee380ba1dn/a Heodo
2020-08-13yQONp8d5KEe.exeexe 282ffb2dc9349abc97b7df0a29fe993acc688dcce0233f2cb3b36661a8ccc62cn/a Heodo
2020-08-1339gzH9jEiqXo0uTeOk.exeexe db6d98f897ebc2bd02e4cab7ba1d7db2e99b7f2ad172207bff3c6e6a7d03e86dn/a Heodo
2020-08-13vblroABn513VCyY.exeexe 4187b47882bd9c7d8f7ce4619585dff400d6f711bfb6db6711e42ccc73b6806bn/a Heodo
2020-08-13c8Sy.exeexe 05fc715ab6bd3db99ddfafb208ff01202d6722994e6f33cd5e14ee7bbe378c03n/a Heodo
2020-08-13ptHT0OsmcRLesPKJHkow.exeexe 5f9567e9ecfd3f54fd87df964a75c40733ec052a7f237e7d3f455817bb82d623n/a Heodo
2020-08-13Lt0d9Gx.exeexe 79d198edd89b66313257b4f7d22f24d1c8e1015f4bfd58b905fdb7324db89287n/a Heodo
2020-08-13D1iZ15rK.exeexe 50e5b7280480f40fa96255b8b35a61b0038b6807faf0e3306528f87213b6085cn/a Heodo
2020-08-13p679uPMlrU.exeexe df3b5901b4d06d0b0a9350426a215201b1d8214dc2c0f2652c33a9e0976ae389n/a Heodo
2020-08-13nkIbN.exeexe 9b09b43ec5755cbf852c1b554dbf9f150ff6bc3d23157a72decc0ecf04e502een/a Heodo
2020-08-13Su5.exeexe 999dfa445a7163fdda248a4ae81a9cb623181a50418ec7169656f2be3f94d06bn/a Heodo
2020-08-13rUyr.exeexe 19d2312a2a7f554069f07aa47928ea4b5889d39c8255326bfc9cc537e2b7de02n/a Heodo
2020-08-13gaurgzLHst8.exeexe e2f0d4e4b5b1d45d4a1d38f8bf47ce189be1b1f492f2cfd70fe99d3bf350a992n/a Heodo
2020-08-13Mss41lYIfHgbGO8O8Q.exeexe 55d74f8a7658e35241372276f396652080e70764729c675592713f48d7df6a5fn/a Heodo
2020-08-13x0d1x7.exeexe 48073d08bdd4e7bdecf062d6365e1ad6be2069346759279a8e709e027134a870n/a Heodo
2020-08-13o4nFCWclCTFRhr.exeexe 7fe506e36d85ed146e92d4d2b00bcd41c07ce1443f564ad2a9fb6f4fde03f3dfn/a Heodo
2020-08-13QcGv3uASMFFDZZQz.exeexe ce308ea9528fb9e99bfb39015ffe3014206c1088cb3bc2e1f3412e881f1175edn/a Heodo
2020-08-13M0ArQ.exeexe aa2a3643adb7d00d2f018b23563f10815e80f72dab826be7f8719a08d20266cbn/a Heodo
2020-08-13tX7hJ.exeexe 49ca2e36d3c826213b50aa6c491516efadf0dd3d7f30da0a28748fcba9d26e46n/a Heodo
2020-08-13uPX.exeexe ffd58521fa48efa5c7449dcc65599acb1ccf8b46cace63865eadd9f43cd4fe04n/a Heodo
2020-08-13LpjhlEQ.exeexe f82715e93f3ccc943a51b1b973823127d3301fea95667a5b78f007c6c7b32d77n/a Heodo
2020-08-131dcZjOdQ07.exeexe 61adb8adb146491b4fa3620751713166eee1c9259de60215e8efe8f377073ce8n/a Heodo
2020-08-13cR.exeexe b029d8aef42fc100183b999064e8e4b5641e248df53a4c94d32c9ab640719741Virustotal results 23.19% Heodo
2020-08-13rvAEh6.exeexe d105489787bba84225458fc5ec6e6089c33e2f81675402c2b27e0a898dd50cd1n/a Heodo
2020-08-13ayTlvrr3ZdDg2Co.exeexe 1a412b32bfb6f63e9472dc1e8fcd0d54d3802967e9da0df14b28185d4d38c505n/a Heodo
2020-08-13WKsVtFxEri.exeexe a6cfe5168049935bc2b2bfcbe9bdb0ad8a6f2d28f859c7f61a6762362ae57ac3n/a Heodo
2020-08-13YS17C.exeexe ab1243f6e2833064df63fd8367f6ae57e16d96387886523c3e4da185e1fb13e4n/a Heodo
2020-08-13IxxforuKQ6YA55.exeexe 6ea6d240049cc5394858a07855896bb722dcfdac20e7781d3ce722819d91c608Virustotal results 10.00% Heodo
2020-08-12ne2nlF7eGkShs7mjYdd.exeexe e1e8cdc1a050a1b6e58459b73f1e3a8348f5e381f49c3778c57f14e11fdd4404n/a Heodo
2020-08-12BAKE7G.exeexe 8b0410092b4c32d2d7fe0b0e3065c9fe3e3c0a5928fcc405f7db6d1c9e802f20n/a Heodo
2020-08-12wmhBZGR.exeexe 35b53c96c51704aa8a5135b7b1dd9b04d8a47beaf1d225157a4d58ebeec341f3n/a Heodo
2020-08-12hA1bQEJgPqpCx.exeexe 074db0479f0061b132aff2c2c67e915c3c2c887473d553ba00ef3ad7f604694en/a Heodo
2020-08-12M.exeexe 24eae0176787d2917c01a53bf8a86318e08ef76e5a6ee065033fe26fd91f42a8Virustotal results 17.14% Heodo
2020-08-12Gb9qK9.exeexe bc9e26b4774eaed2f22bffa2a5a43a509e267f63b9a3c95c2523df39d860cf98n/a Heodo
2020-08-12dkLts75.exeexe 19009d5a4fd3b226ef87ad813924a94cc5755cc8e3290f6c30b6fe6bc85fda8an/a Heodo
2020-08-125ldUs47AyA3twA.exeexe d3e765f3323a6507a216e56a9e5fa388fa15ec62b2cf4af942b0e0e80551c3a6n/a Heodo
2020-08-120FNjC.exeexe b352a6e07075f196dc16230ee4e61a198f6980089d37b484d6149fb7528936a3n/a Heodo
2020-08-128RnlgaLjMGd6.exeexe c320dd1d25d1d8c7e08bbb134e3196675c35060f3c491f8ff020c2e3029fe74bn/a Heodo