URLhaus Database

You are currently viewing the URLhaus database entry for http://lansec.com.br/rkz_wgz_2mw77xw/NxS/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:433692
URL: http://lansec.com.br/rkz_wgz_2mw77xw/NxS/
URL Status:Offline
Host: lansec.com.br
Date added:2020-08-15 00:14:39 UTC
Last online:2020-08-17 16:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-08-15 00:16:03 UTC to abuse{at}lacnic[dot]net)
Takedown time:2 days, 16 hours, 27 minutes Poor (down since 2020-08-17 16:44:01 UTC)
Tags:emotet link epoch3 exe heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-08-16al2wd0tj97743871.exeexe 7c97930136dc70320974eb97633fc17b19ac4e97b4d22050d452ad4a884466e7n/a Heodo
2020-08-16nz24304.exeexe 781e363f9a1aec6659cdc44ffb4a162c526a428e4fc4e17f449f3ecd12e4c523n/a Heodo
2020-08-160z606.exeexe beabc6e681d1ff0f36e500da39f3afc801400080629e1e5ba36ee093cd98dd78n/a Heodo
2020-08-16odufz6wy514723.exeexe 89ea373c39e71830a9d28430a490a3ff5d566c3e22bb7676ca64da45eecd437dn/a Heodo
2020-08-16xaott69w82412705378.exeexe 35409e7a61401a41d1edb42de79ad7366263be7e4fda98d507e90cb24f52e560n/a Heodo
2020-08-16s8qzyn2iy6.exeexe fba948ec0b0bd63060f5f8c396fb86c7447af36f946aef6f2e1481b30d8331e9n/a Heodo
2020-08-16gao29905287.exeexe b323ec76ed095c63f8ec9adccebc889003aa99bdce69e0ccc9106a582ed7633bn/a Heodo
2020-08-16h4yf14221510.exeexe b3a7604e89a688f80d0694846afb0947f948c86a0ecaa644a081a9eaad43bc96n/a Heodo
2020-08-16b1n09.exeexe f0aa904ec35bc9baf14e0baf8221d1155127e210768022583f616c2e5a688a4bn/a Heodo
2020-08-165fi7k2712812.exeexe 34d9f49e6ac0b099be3fc095bc59d9b3b52d03814561d9b79fcb5f1c470b8c59n/a Heodo
2020-08-16pwcxetfxf44985.exeexe 75e961a00f2930c4e3ed9ceda4dc70b0a1424c98d43d3b4ab4bac08039caf445n/a Heodo
2020-08-16m7qzrxy9w737.exeexe 7f047490322a11f6d32ce5d1f6f5918b056d91c24535e156c6d0e0d7fef8746fn/a Heodo
2020-08-16we9837294716.exeexe f6479ad7deb7b03cd258581610bfe3a730239d6269c47292b417b897a745d5c4n/a Heodo
2020-08-16xf58c633.exeexe 9a04eee48835e2ec728e0507cd8b320acc96b111f94b6a8f719b3c9b1979566en/a Heodo
2020-08-16ah89kd877554780.exeexe d270a368567d7886d8b89425dcc94738c91f2564d92456b4e5fcfebc664e7dc2n/a Heodo
2020-08-166iufw8vsgo3601923822.exeexe 798a15db0e2461ca4cd3ab18e1716b349f6492f26578d7ffe225dc22876bcd8cn/a Heodo
2020-08-16qx21197042.exeexe 254688b4621e9b4703480e398098029b3e51ab7e54a71e38809f6cdda5fcefacn/a Heodo
2020-08-16d5w4637170071667.exeexe c93e442b00368f42112c80acd6a679d976c23258a1bf3cdca8d821d786f68969n/a Heodo
2020-08-16ipjel41289937.exeexe ecb939b41daba37176b18825a7f8f8515a08fd5e7ad788b69b64a0ffa8b429c6n/a Heodo
2020-08-16j1ehs9782.exeexe ffc6edaf1848cf280787081752034070ce5404000637b7108c8da111f5b5fdffn/a Heodo
2020-08-16kzb1vmf23858.exeexe dd346fc5ae6c4f2c88bda99436e1139986b0366ee6f13f0f0e8d5b6a9b6f2c60n/a Heodo
2020-08-160il853j215.exeexe faeb01adf896022a617815b1e0fb77207218a1069459d399196ff6e1938fd8b8n/a Heodo
2020-08-16hpqmirsn40132.exeexe 9427bbdc11b3800e3b51948fa1e6f2fe70fba639de62e912d4712fbba65b1c41n/a Heodo
2020-08-16eaoiihlk343287050.exeexe 2fde6998e0c71f7484a1e2668a08938dc736de02bdf6c72bb3044ff856c147e3n/a Heodo
2020-08-16tr4pdwgf2881312.exeexe bc42ee36cc7f245cbb52587c6a4592738a8a325cbc69b719e3921f8141651a06n/a Heodo
2020-08-16nlb9g74798924.exeexe 38e502d435819bb6d5057c6a0c679962ded5fee75356b68026dee6568dc7830dn/a Heodo
2020-08-16ugbu5.exeexe eab4534fa246b2465fc5c1c33de8b77b65fb365c150e7ae90ad70a838a0ea527n/a Heodo
2020-08-16b30j225118.exeexe fe2529c0762ccd3cb2346af933e19e65af4b4cf323f58315a16f282478263bd9n/a Heodo
2020-08-16l4t6kxo9661589158.exeexe 55e4a84d14dd0521472d0056d9c5a3024127d01e89cfc5b336c30947336bb255n/a Heodo
2020-08-16u2t31.exeexe 5c04a80b1806e00b70885a4df92ebf06bfe9b1e8d6b7b3e540f045ea5fde96dfn/a Heodo
2020-08-16wwktz7b881.exeexe b4b6be8221c42670b9ef8cd758f3ea154f52e211cad87f61473858ef9ab3f95an/a Heodo
2020-08-16qi1924905.exeexe 29e573142c102a09828d42f17161e5b6c55ab9dd53e94d821f435bfdc66b9f90n/a Heodo
2020-08-16gk2858.exeexe 895a296892f3446e31d715f57705767d81226ae18fe05796d51136f065cbc6fen/a Heodo
2020-08-16z6aap87bk74353.exeexe 401e58390e8ece5532399cdd069eb48271485cddb69d81f3b9d2a5665e405b5cn/a Heodo
2020-08-15jpdhi30ot11503666.exeexe 44e14245d86d0fdd21b4afc1094a34752323ca15998f085f5646801b8f078c9fn/a Heodo
2020-08-15zi8elxcy0896.exeexe 3fb63ece70c646a8dcc84b598566f9b5ceefc305a674c39a09f5196b232c81abn/a Heodo
2020-08-15755rnw7.exeexe 87b84d0749a11017198104573732d438dfb32bc96a08cf0a4efecdecc5271318n/a Heodo
2020-08-15p5t065377.exeexe d9594c316370a229abf9d63c45f4f87cf92431b93531f9cc5068b75afb2f582an/a 
2020-08-15wljckiv422100.exeexe 2472f2156efc4b00b797310b43e89ba3c43f9ca0d85e540ae520e6c22238442en/a Heodo
2020-08-15ppgnh25596.exeexe 988cbf949367be6b88ceed73cd48eb4da4eec21606935e70edb5afb797a67737n/a 
2020-08-15iwgmhibv325.exeexe 9e8792588984c908026a5db05926db732cdf57511da0d9aba50ff23255dd208an/a Heodo
2020-08-15s7sg8c413187.exeexe ed276836fd97d755ed4e903ed8f539395d649b6d14c5717faf80c365553494dfn/a Heodo
2020-08-15s1jm3qf88.exeexe a36b3df40cd6fb7867f7e64b8d60debdd861093d471b02b26e9c9cccb5234d4an/a Heodo
2020-08-1524c7iyb206028.exeexe d06281c7aba08d396aafc96a257dc3f05d16e01ccfc802e68b781737c35e1d8dn/a Heodo
2020-08-15nhx77sq63253776320.exeexe f57b45f3a77882163e5fc8fb55258829c2edbc5c82d2b72e92487155392df2c0n/a Heodo
2020-08-1569q095710167.exeexe e1338893caf61eb7b8fe9784b064035598290d739936015036a5bac64445c427Virustotal results 26.09% Heodo
2020-08-15h6e91200439.exeexe 4260f7a48f1d39b16ddb3e1c0efeb37a14645dc73e5d9c670906e42adcf209dbn/a Heodo
2020-08-15d4m1jv2e2x245.exeexe c1ae571861782940690ae1642a6b1a0423625b356b372f9a3aca72e2db1b34b4n/a Heodo
2020-08-15fz03ytu30.exeexe 218ddfd5b3fee3ca70261b5e29ef1834aaf033eadc0f7c8cd3999da4c4043cdcn/a Heodo
2020-08-15t09707.exeexe e0be3e7e439a640a92c855b1340b7fed0d73532eb40fcfa6b1ed1f4ef271b5f5n/a Heodo
2020-08-157iasfnhcrc2229489255.exeexe 6cc8564083e86c0f87319f60a1a3e2f44491e8293c92b691f5f2001372dae4c4n/a Heodo
2020-08-15jvgzj6f729534.exeexe fa6d73fe08fe0053ba931d7c105387398a41302a196f0d8f2dbcbe74fb48e408n/a Heodo
2020-08-15cgfmszo26809161.exeexe 688d0edccb67867f694b4f681587063dd17481ab178ced05f5fed886d5fd756dn/a Heodo
2020-08-1503ny2ng8i8.exeexe c559800124d82cdb9b0f2e05718afd09651e1f85f0dc25b3439d1dc327e115ddn/a Heodo
2020-08-15y9t822ut2841.exeexe 947d74681e4872cb79916b9cd64c76907a85f11bd1b1bfa20b3588f7ea4c45b0n/a Heodo
2020-08-15t973574752.exeexe 551c10296756da2513bed8ece37993da2627aad1c9292088d82f16c67b4af122n/a Heodo
2020-08-152ozcz8c443.exeexe 11e4c7ff09c6415a214f278877e198f3c9e7a946dafec14cc0ca32bbee57fc65n/a 
2020-08-151rkt1x387.exeexe 205dcc8e25643084bb234d0f3a05d54b7371738b3d7918dc64d260a3562c31e1Virustotal results 11.43% Heodo
2020-08-1523uue34710929.exeexe 37b9a980bddb47faa8acd044094d82c8d58e08d539bfd24a4bfb7e499f535739n/a Heodo
2020-08-15anquq0b5.exeexe 18be92a5ae927685f503d544ec3deaec520e0f7e9f2fac2b506180a1c597b5f8Virustotal results 10.14% Heodo
2020-08-15rrao7787089.exeexe 84db05770f1a4bd40387dfe7239631627ae9f1817aa4cddc11d9a400cd73076en/a Heodo
2020-08-157mkwk32m9v049110.exeexe dd6fa4f05893e8b7ae161733ed6b53c0ec1785d64a855aa933f52c030d7afd86n/a Heodo
2020-08-15hmza1zkr012.exeexe e62337e0a5afebc4facfd7ffb7f102920b780a4a5344660e64fafa1371d46f6bVirustotal results 8.82% Heodo
2020-08-157q7dia52.exeexe be89c30dbaef63ad7cbadcdf36f54c665980b14be27047aa6dc0e36c08a53098n/a Heodo
2020-08-1576v9688.exeexe 1d7b90cc2f4b9019b41ec3d8a859dbf632d9baf074ad4c58b090cade877458abn/a Heodo
2020-08-1559xc9022405663.exeexe 297ff2f3c21b8e4e79486b05c25e5400d79a06a743e49c43ce67ca393abdde06n/a Heodo