URLhaus Database

You are currently viewing the URLhaus database entry for http://defiteqturkiye.com/Uh/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:435272
URL: http://defiteqturkiye.com/Uh/
URL Status:Offline
Host: defiteqturkiye.com
Date added:2020-08-17 23:48:52 UTC
Last online:2021-02-09 14:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-08-17 23:50:07 UTC to onur{at}voyar[dot]net)
Takedown time:5 months, 25 days, 14 hours, 50 minutes Bad (down since 2021-02-09 14:40:17 UTC)
Tags:emotet link epoch1 exe heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-09-01oRahbU.exeexe 9fbfd39d2bd6b7036ffb2d07030f43150d77dca2548789ff43ddd1d209e739a9n/aHeodo
2020-08-18TKhVTz.exeexe ca5f8b324f8bda5e04a3f445453842bd3f3b0e4b5c18ad88e3544e61e3e4c39en/a Heodo
2020-08-18ysr0foR.exeexe 7af6e90935849ec7ee97b0a3851c3071db7b5540404cd2b332d61f58cf865672n/a Heodo
2020-08-18OqVTUHU0BMobO5epBQVq.exeexe c721bf1fa2c7f9717138a6638ecb16ea9d49de1d087ce850a44f6a27ae27c181n/a Heodo
2020-08-18NhRKXtYH1Jnb.exeexe dbd8a967a716077bdcc3b39ccb5ffa63319dfdfc1946fdcefa96e94fed34d0e4n/a Heodo
2020-08-18Qy0bz6F6.exeexe 39f3e7b3059fa047e731a92eec40375a25982d858dad0885239a0d5026d47ae5n/a Heodo
2020-08-18XUuwZRl2KvgUwcwks6j.exeexe 3c1077d04a6413f8ebd9074001ef1a13f7fb4a6e9f5567d3188a0110ca8ad51fn/a Heodo
2020-08-18sBBenTr.exeexe 034fc0dd21ddf57bfc5794b7831f93ddf5e4a50d945b7bb24a1d57d4f63f7715n/a 
2020-08-18oLTQFe9K2bPZ7QXToN.exeexe 95fdff76ab127a1a1a25e2104f27c84fcaff6bda9ebb6796d818ad8f49224fd1n/a Heodo
2020-08-18WSSnGg0WTSGwUs.exeexe 4317157062ba9c7dff9b02b09cb984ec27be0f7aa2c66f87d9fcfcc5ca49ee05n/a Heodo
2020-08-18iTz2A.exeexe 29bab0356ae986107cf3a50a2e06ade12fa1e5b4daf200d4be6d02f1dbfb9256n/a Heodo
2020-08-18ozUzXOgV.exeexe 71c919dd39aa7c73718e19da2ba99df79f3f8b95e67baa77a27c1dc9c76efb67n/a Heodo
2020-08-180OIDjY1wrl76AQspF.exeexe bdf38880ab884788e997051e8deb00fa7b076894cdbe9e0a73bc6bfa3564f2b4n/a Heodo
2020-08-18chOe.exeexe 408c82bcf348a47660adfa2dcbcfa7cc772aa077600f6a282d8734f01cabf48bn/a Heodo
2020-08-18htgP12o2tO6QzKC2LU8F.exeexe ad9f0869598cdd53ebdfea5f91cb69213545a36c149d43ade0299bd9fd53a5fan/a Heodo
2020-08-18lErhN.exeexe e79d847413b857f25001a81ccaa6b9177aafea52fdd4fe06f810fd3c7f45c2f3n/a Heodo
2020-08-181xGVS7K4qYl1wFA.exeexe 6f8cacb5d8eee22022213676c6dedce9c5e0cf232b7c92b8ffbafcf2c1eed7can/a Heodo
2020-08-18tbQACBCF.exeexe 85c107583e1eeb6d252191765946acd4758af3dfd50165fb52066f1185bffb23n/a Heodo
2020-08-18KhEZ9X3eAMnFsEho4h.exeexe 55b369209bbdbe1025e24977072da2736abf637900ecc836af372c352af93463n/a Heodo
2020-08-18WFMh.exeexe 8d7f31194e86bb199f285c9eaba0aa868a001547d2afc22442413538e087a007n/a Heodo
2020-08-18SFV8BybyR.exeexe 2b600f842ee2025b1b4f9fe9eda682df691d3205fcc9e6b0e8de72598bdad744n/a Heodo
2020-08-18QZ741wYiyKgWgO.exeexe 903ccf60be1b3f1916446b04eac70f4be6ee03b90d113324ff5045c4eba50f18n/a Heodo
2020-08-18GdTPLXtOYxS6L.exeexe 7e17c7de436905ceffaaf94689df9634f47b068aa0e3118d4bb5b9806e42dd93n/a Heodo
2020-08-18zlx6BRRju.exeexe 11ea3c300fb463111cc7579027aed61752fda96fc049bb4be8fe444eba0cba53n/a Heodo
2020-08-1864H6m1rALxD5iYLXI.exeexe 001b9b45b4a8d3c820d3121e8917dc954a3903ba18a9e10c787ab08d857fc899n/a Heodo
2020-08-18XIzZf.exeexe 972bff3412208e78da70dd0a74add7293efa45554ead051594708f660ce59dc5n/a Heodo
2020-08-18IkIyeiZfedyvKks1.exeexe 0c965e9b46d2d372ac9d9cbe5e7544af26b38b27789d90be483dbc83a945c583n/a Heodo
2020-08-18RT0USOSVwKwg1Gvgw4P.exeexe ae50eb5f5f93e442ad3a49f9c6e7168394ca1c5a12dc1cf5b988f7946a2a3a41n/a Heodo
2020-08-18GweH2G7.exeexe f14b0e8e1ab3e8be39a08f1e154634e9898f2ecc504caa04e6d836149b7d162cn/a Heodo
2020-08-17e50i8n2GE47UpfKVgTnEZ.exeexe 25608716e053b3911c202d9ef6080d0054309116c009755e411068aae92297a5n/a Heodo
2020-08-17u3iZyvJobiB1SQmdWPPAP.exeexe d709664e6258b3135a9cdc2eccb685171669c39a34bc9101cd2cd6e8bbd6337bn/a Heodo