URLhaus Database

You are currently viewing the URLhaus database entry for https://nairaproject.com/law/Tw/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:445462
URL: https://nairaproject.com/law/Tw/
URL Status:Offline
Host: nairaproject.com
Date added:2020-08-27 20:18:36 UTC
Last online:2020-08-28 15:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?):mail Yes (Ticket DCU002895806 created on 2020-08-27 20:20:11 UTC)
Takedown time:18 hours, 52 minutes Good (down since 2020-08-28 15:13:10 UTC)
Tags:emotet link epoch1 exe heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-08-28ptmuqyzvsrqiZg5u24.exeexe 3a6b9c052d6cff4317309e079a98bb6db729cce03aed8274f0eb942b8df96bd5n/a Heodo
2020-08-28YBgot7Cj.exeexe b4db7f2746bb375a24948b24edcee95ad4b4b0c3bef4b35c86bef6cd1a42db4bn/a Heodo
2020-08-28HwZDYjPVBMBsxgW7mbFPI.exeexe 2b451cd5e24b37f63723701d81e03d18b3739825a37f5de9b3b2c360d607330bn/a Heodo
2020-08-28Zy3DylfHB0B7aoJeDV.exeexe aa75ff7675666b3fbc2f0ee18f2ec153c8ea43210fd051f9bf87db354db967b8n/a Heodo
2020-08-28JU7d.exeexe 2734b4be25a8f805639049a68578bf6cb80496da01aea71d08648738584e8e5bVirustotal results 11.76% Heodo
2020-08-283hfXW0hiSXZewhwon.exeexe 7b3a3f144dbf3868b058c14d21a4083869820861d2d20eef1e6f653b7138a216n/a Heodo
2020-08-28e2ES.exeexe 337630c41eb4ca378e5cc9fdce2c7afaae7cc69155e1b819a7ea0c74926ea5dfn/a Heodo
2020-08-28nUyqssGUR684xcn.exeexe 5bee2ee21636006f5583ee42dac019cb8539364e36ad374a0c89f28777d1543cn/a Heodo
2020-08-2883bNkRJrVYbZTmyw.exeexe 3ba3cf1c76774a9d8a1d3870ff0c5de998a93820b10291812b7bdd89bed84cc8n/a Heodo
2020-08-28QrGqkWbSMVIPI6.exeexe e347531388f04f2f537e190c05ba35a64dd1933840f7f77f18e8c654be6a810fn/a Heodo
2020-08-28UY6JbgNa4X4tPA4.exeexe 872cd1b5c083f38a127e0896225441fa88f3d58bf675bbf2c6540c5ab4101525n/a Heodo
2020-08-28BHX4MRXQKcBDiUEHy1iQy.exeexe bf92baa3d9bf529187d71ceb5ab360129f98d06c5e0e74dc829d8f116d72249fn/a Heodo
2020-08-28N7naQQImgkO.exeexe 487bac5246fa68e79a701f7f31163e5ce35ece71bb011d6239673149bfaca92an/a Heodo
2020-08-28mezLA9pHNLFJ.exeexe b9c291832c6bf7a8a3435a31afe3780c1ebbc93a34aa2032e5e42e6e10ebf1ceVirustotal results 10.29%Heodo
2020-08-28DjL34a2.exeexe 2ceb59fea1ce0c26a355a109347a1568f0af4633eea4786be2525f0ba71aadc6n/a Heodo
2020-08-28IogENW4pVf5zSxiVrhcLu.exeexe 1664607e15f8634b1641da89d2a9acf113946b8f2c9244c1f15a3910a1b3bd2dn/a Heodo
2020-08-28D2szauBpa8URJ.exeexe 7afc92c6536f4008929191f458421e9a7b7c04fbae143c11739a9357425ba010n/a Heodo
2020-08-28Fk5WiEsL7Xc2q1FHUcxE.exeexe 7a75d1e4dced2431a685766541f9d5a8934d74938359d27d2d4fcc1d0b81b0a2n/a Heodo
2020-08-28TC4SH7pPYXA.exeexe f4bfb61d8df2a34fb5898736423a19f781ff080078d2dfb5d92d08a516d1d7caVirustotal results 11.94% Heodo
2020-08-28ohs7s0iYq37WvnVxU.exeexe a25bdbe635133389f03604927bcf73eb67a2249f9e846d27ea3318145f44075cn/a Heodo
2020-08-28ONlWA3b.exeexe 30ba20e7889e94e361ab27c7f77ce3e825d3f9f9cd2a1acf95a4c98c01af0e64n/a Heodo
2020-08-288V0Jr.exeexe e83569a25dd3292788f1eef18be1db360c64cbddc54a019c351444f3b20f64a0n/a Heodo
2020-08-28zsqLk4kiyl.exeexe 098a1e884ba371da62d898dcab5b780b844c3b02595607fcd198796fd2ac7a83n/a Heodo
2020-08-2856ti9P.exeexe 680aad21584e9447bb80b79a54d492e50dd4a885e92e4dbc2d0bc11af1dfbcb2n/a Heodo
2020-08-28wRKWOe.exeexe 36c147048d75afda351e3860decda807ef5aca602ee0a53981b61abe800ce866Virustotal results 5.88% Heodo
2020-08-27XeVHS.exeexe a229ba79ba7fa5d0303b82158ac4fe407cad272ead858426242a092d12690a6dVirustotal results 5.80% Heodo
2020-08-27bvslMiz9FO.exeexe fbd8bdf05eaac1a6d364dbca1ae6908215cef788dba2c5e68bd5db373ac1194an/a Heodo
2020-08-271Rgz57lSr1521fdl.exeexe 3a04d72d1d85f8abeb0599cab13a6bf4a551ad5840a3caac23d9eb2a238bdef3Virustotal results 5.80% Heodo
2020-08-27kgWZUKccWWLTaeum.exeexe 6ec88d9ed8a6aa1dd77c5356f706ace49aaa536d19d312556f65480e4e92f85an/a Heodo
2020-08-27vX0XhThOiMdlA.exeexe 956596cd247336edc532e6a09ebf5618738153d960f2f76a1408f9d067d8d3f7n/a Heodo
2020-08-27JNJncyahfQCfvkfFAyLU.exeexe 1629bf0b38949a8a600611495442f619eca7e7b53a1db0e46c83f9418ad5e245n/a Heodo
2020-08-27jsEg6zPHQnuzUqh.exeexe 2ff2c9dd52746f2cd0ecf6d6cd733ebf9a082fa1a409a963cbed4f290c73e594n/a Heodo
2020-08-27K7jzYqOq02almTO8.exeexe 732069dc21fa5af2c01df5197d88a2f84f6ac72ed3682431e6a435e0d998d94cn/a Heodo
2020-08-27m8K8kib.exeexe 8fa282aa4e92faa7cc059bce285fe89915829bcd0af1e000b71f35f1ce745642n/a Heodo
2020-08-270Yq5.exeexe 5cf5824d83b472a9cd123f36c6ce5a6e4c74582aecf168c122b117ea9a393b65n/a Heodo
2020-08-27i1GykYWo15gvGNk.exeexe 6dd36ec6041029aba9c54fb07133d74a733e9c594058161abdb83b134fd55862n/a Heodo