URLhaus Database

You are currently viewing the URLhaus database entry for https://www.lunalysis.com/wordpress/zK/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:447260
URL: https://www.lunalysis.com/wordpress/zK/
URL Status:Offline
Host: www.lunalysis.com
Date added:2020-08-31 07:49:55 UTC
Last online:2020-09-18 15:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-08-31 07:50:13 UTC to abuse{at}ptd[dot]net)
Takedown time:18 days, 7 hours, 13 minutes Bad (down since 2020-09-18 15:04:02 UTC)
Tags:emotet link epoch1 exe heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-09-02sOkStuNe6vrZRMpJ.exeexe 6dd5d673725341b0790fa4f3bed96e49d656118994b0b19c38e62fd53defb39dVirustotal results 14.49%Heodo
2020-09-02RZQOa.exeexe 598bea746526d6eae854e126eac4b4b22e1023363875c53142ef4b05491fdcb2Virustotal results 7.46%Heodo
2020-09-01upmk6yuvpI2E0GFxcH.exeexe b6f2457e50dc2fdd2cf809ebf63577c7277e0e26bf8e87188572c01d96d48f97Virustotal results 7.35%Heodo
2020-09-01X6GGemezWeDylc312ypEb.exeexe fb13df8b0a039ba2084a3a5e4214347716b56fdbd7f3c708717bb439acce3656Virustotal results 20.29%Heodo
2020-09-01DjqlmNo.exeexe 3c4ee628974c7060734280ee3ab9feef2d97657ef8bfd86c11b57dd63490b312Virustotal results 11.76% Heodo
2020-09-01thOyWkCREPoB2c.exeexe 8c3d73d2acf43ae35f6dbecc4c344c562035e3d60121526619dea303a599d0e0Virustotal results 10.29% Heodo
2020-09-01o44FJ3iGcHf.exeexe 5238458a067e08ee5b394a2e0d141de369a4985234c529eb31d5e7e81ca85010Virustotal results 10.29% Heodo
2020-09-01JDWAJszp4P.exeexe 706e016a3fa1f0679a1b33e0004f1df2ed9dc2bc8e98e8ccf936f03c0707fccdVirustotal results 11.59% Heodo
2020-09-01HRW.exeexe b401b2999aa45e15747558fa66bcaeabcf1eb81bb40de18d8b32767ac1d1cc9dn/a Heodo
2020-09-015y7TRx.exeexe a0ed39bf2eae8eea97f5d2d2969ce0b39777a60b30f74989851386dca09f01c9n/a Heodo
2020-09-01ajlNt0ahZy.exeexe a61bf34ebd88e47a5f68471a06690ac239101642577638698fb5b405a0387028Virustotal results 10.14% Heodo
2020-09-01r89DjC90gIC0ggdJ.exeexe 7635a691aee54a8edbafd1b778772a5bdd05ff1c1ba82c439777a0205f161300n/a Heodo
2020-09-01550Kdrf3S7FcN.exeexe 3903b7e276039d093bff546bca2c1e2f3b027a3472e7828bef6f88579c3602a4Virustotal results 12.86% Heodo
2020-09-01DzcSU8.exeexe 753e253b7bc94c82aec316a2e8c648e11dd8f3768fcc7c15e4079690766f9de3n/a Heodo
2020-09-01VQZ9MbV.exeexe da94cb8972c54437ea266eba06875f075454a96fd4af5783c7e39aff0d04adc8Virustotal results 10.14% Heodo
2020-09-019XdLy6mg14ml.exeexe 51cc910a29f0a2f043a201fd0572550443a0fbae95e4b5521a69e0da4f14cdc5n/a Heodo
2020-09-01qmERaxQSo98nQEBV.exeexe cd677dc542120d4ba699df11eefee5a0ac36a79e68a3b19e18673ebf62db6a80n/a Heodo
2020-09-019JybCAZ1.exeexe 906e7cf69258ce2b8b1e132292ce10737a9a765cbd6971436c9209efba5e3e14n/a Heodo
2020-09-01yv0KhAfX.exeexe 0dc285dd4e20a55dea268d68fc982d5375b55791475704dd3e56fe7a12ed4e6cVirustotal results 10.14% Heodo
2020-09-01en0R6IL.exeexe 8615d1ee92f1228b32551cf5fd1b7da84952b6a6a7dbd8f907d1dc1a7c6e8526n/a Heodo
2020-09-015Ovy.exeexe 6496b6aeccc648651903e639ce9b4bdca9cddfe100ff10b5a0ae90390c5b7445n/a Heodo
2020-09-01eew59ddfjP7ObiFu.exeexe 44b1785426c7a6f2e58ac40e361bd5425668f9100620d074c6f8093a3849be24Virustotal results 18.84% Heodo
2020-09-01plE5dDPwr7.exeexe c1967881f6972b14c40a2b8c7210b01a76970568fe093a419dda006f67678e0dVirustotal results 18.57% Heodo
2020-09-01Effvo.exeexe ea3d2e7404dc55634902a30d80e353b68590935ffa086d58f5fb2258536092bfn/a Heodo
2020-09-01tWU.exeexe 181effb5d1a917cbdbb91c85a70dff9f9c56b441f7af9acbb652494485cb823bn/a Heodo
2020-09-01IkTT4DMLWZ26bi8.exeexe 43bef388e009e92c8f01c5730b0d592613389356c452514652ef0c4abcb5e93dn/a Heodo
2020-09-01EZjM7zAmzzsfd9o4z.exeexe 22961310ab7aa35dacbb892dae030f8448b7effa0e759cc97175f93c947dd7fdVirustotal results 20.00% Heodo
2020-09-01NdCpZqee.exeexe 5938938243d29ed5d7a22257fd9908aafee83f56943ac2c053bea12c73a4e840n/a Heodo
2020-09-01v3jkIldqIw.exeexe a69ad2489c35342db42d92bdcb9d1b9d2580f19da71c00a1145b2a1d52b0613en/a Heodo
2020-09-01fvZG6.exeexe 50682781286dc1a212827014f9684e7ed548bc4954036989a08fa86538ccc68dn/a Heodo
2020-09-01msWVaqz9R.exeexe 33c816aed2512355a53e9fc8a5ee7fb5c3fc664ca381b83959efb09fbcaea1a3Virustotal results 20.29% Heodo
2020-09-01VvVLAZGOR1XI25xe1Koq.exeexe f81334f62eeb94543b2b845ead9c5cebc5723bea9c5d352fedfb1036aed7253cn/a Heodo
2020-09-01XuBGIuWydK92FDyK9PYQD.exeexe 9480abba278e81d5b57c14da0379f54897ab67d89ab390a7d0594de3808225acn/a Heodo
2020-09-014dkrKxUYIAfa7y.exeexe 0355492fa5e634bd989648f704437a71838510b25c053a316c26848dd3b0a6ddVirustotal results 12.86% Heodo
2020-09-01k42d0C.exeexe 888e1334c625723e4916d79bfc7e21c6cf6562d331558421fc603ca8c9331351n/a Heodo
2020-09-01nPlBAspuOKwdVyRV.exeexe cd7f5f15f7580d7410f8e6e066c831db6d2cefece0a2a372915c2d0646110724Virustotal results 11.59% Heodo
2020-09-01tj9HwpFPDSHkATH9qRRA.exeexe de0034d6de6173d47f576fb7ccd76150f606966caa2bed0d860caa4bb7c6dda2Virustotal results 13.04% Heodo
2020-09-01aoiX5trVaFv4pDxw76.exeexe 9bfd384963c967e396b9047c47a94a8a3dea211f33808525c0caf5477ab5a73en/a Heodo
2020-09-01pfmemZTR4GJHu.exeexe 26adf98d37f945a7ac5d4081c51b11c0e97186f4d04cb2e16c918b4b79d0e95bn/a Heodo
2020-09-01q1n3T.exeexe 3574ddc8fc3555086c79e47c4ecce5f33b5713ed761c5f53ad03f4830b409db7n/a Heodo
2020-09-01GujxjH.exeexe 4ef98507d672049a296c0ccae6245f26b0d0ef034bfb371b7632a23621e5b473n/a 
2020-09-01QuxFHTgjvpq7fyjWkajz.exeexe 6917bb047d39382ff4f90dc0c88b44f85ccb5d32c72b73ae00924f9e559992fen/a Heodo
2020-09-01hzzzl.exeexe 2f90e5b2eacfd3675a506c7a569ac0ad824e425a9c8656f3b9bc3b3d1239b157Virustotal results 10.14% Heodo
2020-09-01fuE4wrUMs6gLrGo.exeexe 78666983e89aadbcc994140c09917a9b6ca81581dec6638f7f10be602e614a30Virustotal results 8.70% Heodo
2020-09-01EVJ3GwKDMKZx.exeexe 7938fee9838dc73888fbec024b033fd51cd77cc12a36fb8420db578ee93cd87en/a Heodo
2020-09-01jSESlmKeyWzhhRRR.exeexe d0acb1054a3172c1142619e2609ed4d44b6dcb832da070648f7a191849f1da84n/a Heodo
2020-09-0194xyTDvLeI4vR6W2x36.exeexe f5525f5022c6f3f8d283e4fe5060c96e73c450e37b61dcc627872bb1f08774can/a Heodo
2020-08-31ZZfDBKedWhJqU2RhS.exeexe 2db0758d60d1e61b6c69778283df5dde77c84cc771b29953c9821433f348b336Virustotal results 16.18%Heodo
2020-08-31JOZQPAj0L.exeexe efedcc357becbda9b72bf2ce4c4886bb66c4a7560a60286961d39a5e28db46c4Virustotal results 10.29%Heodo
2020-08-313xU0OvfhpbS.exeexe ea17f66ea1428d971e73160197d768fd962328761e683b29a222b76c3fcf7649Virustotal results 14.71%Heodo
2020-08-31V7XOrBkZICevMuFxX.exeexe b7f07a690cd50f5f722ef1b5a7a940a5c64e341f6a46f94c4dcbe10f18d6b516Virustotal results 7.46%Heodo
2020-08-31RormD5BiytzL9aIG380T.exeexe 9d2493c1d1d45fd6e4aa03594a974bfd2f6ebf0e9fd3d82277f6ce2a7ef75117Virustotal results 17.39%Heodo
2020-08-318xvvtitNO.exeexe a5049c5692fa32ac6f04d97af9a41a05cfd169c8e15067f0180e9f08b27e0ee6n/aHeodo