URLhaus Database

You are currently viewing the URLhaus database entry for http://logoonthego.com/cgi-bin/6/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:436201
URL: http://logoonthego.com/cgi-bin/6/
URL Status:Offline
Host: logoonthego.com
Date added:2020-08-18 23:01:20 UTC
Last online:2020-08-19 13:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?):mail Yes (Ticket DCU002874757 created on 2020-08-18 23:02:14 UTC)
Takedown time:14 hours, 20 minutes Good (down since 2020-08-19 13:23:12 UTC)
Tags:emotet link epoch1 exe heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-08-19HK04.exeexe ef494c1cb8fb348733dd59a18c8126d44ca99ad846c6dd056a784335c96a471fn/a Heodo
2020-08-19Dla0jEUEV.exeexe 2d130a499e7579c36346420017babe9609f0663868e37befa3d25a369c404206n/a Heodo
2020-08-19HswVnpqvaiu9NJnJW.exeexe 97aab997404c97726c61e443654740137965e3b9cb2a64c86dcb012f488910c5Virustotal results 8.45% Heodo
2020-08-19oaUsmaD4Ru4880g5QG.exeexe 0cb33d385cd64501f8c6c69c57e6863df82bb7fb3c8f6a68b955f8c9ac1ff672n/a Heodo
2020-08-19zQbdPqKUIOD.exeexe b6604b2fb15ec58b0687efde2900378646ee2d801190b258c94e1a43208c0833Virustotal results 10.29% Heodo
2020-08-1924Lld8A2Xc.exeexe caaaa50efa07e201338d9c47a2b1786632ae36f29b06d5ac2b2030d1f22b76f9n/a Heodo
2020-08-19tFsOyr.exeexe 53241711ea45cff0b3c15065351dabb186a192db36ca219de7dcac3dac68db60Virustotal results 8.70% Heodo
2020-08-19eCRNIXnLv6OIHjRmBov9.exeexe 341b46fc2b44989ea3081d4b319751b9ccad57b5d35e3609b9ecd090f06c7b85n/a Heodo
2020-08-199wkSKWvWi2jT.exeexe ce326e454b9ffde74986c78d05084216b66a7f27e502327e8187c07f874d9d0dn/a Heodo
2020-08-19zuH1v.exeexe 5d3bf34565a924ff53fa6b12c5aa6be73dd3c68aaaf3b9a8d808c203aef85bcdn/a Heodo
2020-08-198ZwbknALiV.exeexe 2f84f38099c77a0d5a3e506a06d18fd317aede88e8ca882c8fa5cabb9eeb5d07n/a Heodo
2020-08-19riGWvakZ8PJimuCWAsH5P.exeexe 2824d970721ddbed1dcabd669d9e461c9c3e1207a32f2ea427b65a63c8ef8118Virustotal results 11.59% Heodo
2020-08-198HM3dm.exeexe b089f43d6a4ae20cd661b7b60e3977f07d4290f4cb0b60313ca566618c24c49fn/a Heodo
2020-08-191xwVOaBZQkIw9uIYmC8.exeexe 7a55da07448a66ec8397a6f256184e85fe4ddf2235958e823e9ca68b951f7b9bVirustotal results 13.04% Heodo
2020-08-19DQBu3.exeexe 68a339f679834d4e3468da41bb2912f115d935924f8b685560260c6e55146154n/a Heodo
2020-08-19NiMCD.exeexe 59094c42194e6134006bf5445ca91e105dad2f9d9e5db45ad8af745dc21a4759n/a Heodo
2020-08-19o8J7z1WC3M.exeexe 298fb4a96b1a949ad2524503599bc03eadfbdd617cd257715b10326326ca5ab5n/a Heodo
2020-08-19iPcoGR6PdhTTa85bNnYv.exeexe eadd0b2d1f1e01dfa71d1f8cd9a898f2225d42e2aa3e36c73883fe41ec17b114n/a Heodo
2020-08-19XGOSb.exeexe 514945b4068acb8b4537f462dd5e9501f0e27ec2b2d4c8dc6f137342549535b8n/a Heodo
2020-08-19OJyVip.exeexe 7fe717bf98bb14cfd248266ca456c0c5b8ace885a7c9b7dd47ad31a8166120b9Virustotal results 17.14% Heodo
2020-08-19f0vr.exeexe 32ba639454033dfc617a1fc184ac282bb3c56b6b27599b0752ce897466acd388n/a Heodo
2020-08-19HCXRWYXZT97F5L70wY.exeexe 24f69baf3938d5b14c32a875b83e2825f27242eedef732ee29aa85a777e32030Virustotal results 14.29% Heodo
2020-08-19x3xaaIuCqKpQYPuQph.exeexe 434421c5f22761c75fff3a3e3955b48d2799050a1361777b9b8b59c0a0214ed1n/a Heodo
2020-08-196Nv0q9YO.exeexe f8f6436c2b1475c5790f98280ee8dad9699d56c248e79c4d13785597bb59ab32n/a Heodo
2020-08-19Cir.exeexe 4949ac3bdcf78b06f30f17a1df753dba3ca5248c94dfbd8a4a973e2b7358d953n/a Heodo
2020-08-19rq1IM.exeexe 83f060d2ae29e520d474cfb157e01cfa725abf860506beb146c9144b91ed644bn/a Heodo
2020-08-19TJ3XdwshWfuDRmKw.exeexe ec1239b5a719c5fcdc8280a28a681683aaf773309c832ab8596b96d5fef984bdn/a Heodo
2020-08-18ba9bIIM.exeexe 8d6e074645164b2227b29841256ca8b8fb43a92366ffdb72b84d38b0b3ba8446Virustotal results 10.14%Heodo
2020-08-18ZU0L.exeexe 21913cf9e567c74bffa3f5a4bed96315e76b52dd6818ae37d200c109aca7ba37n/a Heodo
2020-08-18Gitbupg.exeexe 5c9fcbbb29b75d592d1049c96f4916725115bde382cbe3d44824023b38eb8556n/a Heodo