URLhaus Database

You are currently viewing the URLhaus database entry for http://ozzpot.com/assets/I/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:446060
URL: http://ozzpot.com/assets/I/
URL Status:Offline
Host: ozzpot.com
Date added:2020-08-28 15:02:26 UTC
Last online:2020-08-29 09:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-08-28 15:04:08 UTC to abuse{at}dreamhost[dot]com)
Takedown time:18 hours, 12 minutes Good (down since 2020-08-29 09:16:16 UTC)
Tags:emotet link epoch2 exe heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-08-29qTWCpe.exeexe 7c246c50bede87bcfdc71905a2bae9e5014bf2ade1d64886ecf1c4e0b0252709Virustotal results 23.19% Heodo
2020-08-29kn6T5ed7Tzjo9SDb8Xb5.exeexe f3ccf364b5a1006c97e91cb9a25ea9bc040e6c38032fa5fa326b65b2acdc8f8aVirustotal results 23.19% Heodo
2020-08-29SbUnQIGNvvEnlQRah.exeexe 6def9dd4ba44263ca2070c6a8c8c75285ea48a2b2edea6a22d451ac659808038n/a Heodo
2020-08-296daV8wJOAUCgNF9AUh.exeexe 72c13d1233df2e6c69f5537a1273946ffe00d8313e1d826e8de0deb8e84a916fn/a Heodo
2020-08-29bkRL.exeexe b574bf21d08d226617befb2f371a0bb5f10ab1eafaeaeceebba047267384e536Virustotal results 14.71% Heodo
2020-08-292T5ice.exeexe 904b5c3544f008542c33fca7626e7cbf759af7462f8c112cf5846c2195299d43Virustotal results 14.49% Heodo
2020-08-29Y52btQBcfGFexW.exeexe 9db81c3fa1c53a121ab35c1436f86e672e728ca884ee7cc22ea6149297aeb151n/a Heodo
2020-08-29l66d.exeexe 74bec776fafce6e0fa34801991500edc5a2989689be910809020f5a4fe110ca4n/a Heodo
2020-08-290ffijqJX0YDiZ9QjJOO0.exeexe 6ffe27d1454ab3ee9cd4b2dcbe4e2f97603c30c6263fe93d0215f831d82413ccn/a Heodo
2020-08-29wE.exeexe 779f8d24e65ca83c57d5b4e4b590dc3efc02e408d7523357ff03f22fd6e67fdcn/a Heodo
2020-08-29xGAf1isIlkxn9iaxq.exeexe fd53f6cab8d7987e5329e01a30b6154dd0187039b72e6557bc3fb055a481c139Virustotal results 13.04% Heodo
2020-08-291vDRY4MN.exeexe 7135e8a3fc67e6e6c7d22e697619e70a82740143f7868401d86e5c282dd44115n/a Heodo
2020-08-29T5LxibasiqDc.exeexe 1d922d0e3f0f90fec75c8412dbb09b0fd2d22bfb0721294cd7d3082d1d7684e6n/a Heodo
2020-08-28B4wBFawnGMq.exeexe 9ea56ad3cd61299b4707dbd4145ae25f49c1f5d240a78b5968390c62e200d2b4n/a Heodo
2020-08-28QH3nla9ICpQ7YYB.exeexe 55cf51bd680154e0f656c50703da66c9b175529c6788ccd27e128bd8f3d18710n/a Heodo
2020-08-28t8VGgoBli5Jt8Sc9.exeexe fef8fa2b663ed0d91df10e8c8b73f18db31b75d3cbd8b85e0a85d789e3a46eacn/a Heodo
2020-08-28HLTfp.exeexe f65c3366c4ec840746355be3ebba306b8f5b5054d5a8ca86762ddb7772cafd1bn/a Heodo
2020-08-286CtkdZ376E.exeexe 05b8d334d61d609d189b604e5e85667c10f52f59d3169aee8a46478339e7c03dn/a Heodo
2020-08-28s6r.exeexe 66996b839f5130b7a6f6b60787a62dc220529dcad0eb637f81cea729ceee1552n/a Heodo
2020-08-28UmaPh1hf2h.exeexe 90f10838c54471a13316a2c2e3c8604dbedbb3263e2c29add09a43b049076174n/a Heodo
2020-08-28YMRQ9wqDQQ5Yd.exeexe 045f710bc165a4a874a5b7197d67fecebab90b3a7889f1ece4c16777ef89d1a3n/a Heodo
2020-08-28WKIw.exeexe bcc14ec8774027e864761571e92272ff465f5ef9ad28655c80c33d08f91515a6n/a Heodo
2020-08-28vn.exeexe 443ff23543b7ea1de2c4cebc1caa7e4b162ace585f2e5753f5c341ad37e8f5b7n/a Heodo
2020-08-28Vv.exeexe cd5ac151b812283ad6781f7688f9298d815d589624127e3bad92742726666062n/a Heodo
2020-08-28fKu6OkP.exeexe 453f8125e1f350c6305fa6169067f00983995147fde5ad0a1b251f0b58048145n/a Heodo
2020-08-283z8aoBcn.exeexe b794db67f068959ae72af24ecb2350e9e38e65f8df528d1a275632b8caa4829dn/a Heodo
2020-08-28bdHpGjQMJb.exeexe 27aed5310ece3124f0aea167eece4502e23b8c86b1c8d37c8f3ee975bb7f0df1n/a Heodo
2020-08-28fTXYGabMmm.exeexe 52b736a5d00ddd05ef3fb471d3f80a785436b22078b95710c776163fd9d89fcen/a Heodo
2020-08-28P.exeexe 40722ee47a4ae196ad601a00a2f51b082d77356a2bad3b6569b21c88ca37180bn/a Heodo
2020-08-28LG05j0E7TrijKl.exeexe 0b326fe27d3d9b2f7bf27f1eb38c57792617d747f4ec8d7442863cedc60dac4cn/a Heodo
2020-08-28MfOj.exeexe 78e4f31dd17e912a62a388f98b84e98790716cc32bc10ee7d25407353020cff5n/a Heodo
2020-08-28iT.exeexe af98216df559d30a54093e3c624d50b5079756e638773a12bcf11b1f0b65be67n/a Heodo
2020-08-28tt2jShJtDDXCl0xIOk.exeexe 9e4dc6de6641223a065ad17bc93f69ef30a01692648536bf49468e7e6dcc4021n/a Heodo
2020-08-28hc8.exeexe b0a64832413f672e0fb7c78ce3d5dbcd23ba42073d2aba16612bc3af1eeb45c9n/a Heodo
2020-08-28zsQhSFBNx.exeexe 2e7a063607180e88605a149fc7ad13bf02fed3f0fe22ee7116647246ec63d0fcn/a Heodo
2020-08-28s.exeexe d8dac57afd25bc6d308dd7d99b322f1e0c811c030fd8817753deaf4d200915b4n/a Heodo