URLhaus Database

You are currently viewing the URLhaus database entry for http://lars-lohmann.com/cgi-bin/9/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:448580
URL: http://lars-lohmann.com/cgi-bin/9/
URL Status:Offline
Host: lars-lohmann.com
Date added:2020-08-31 20:27:00 UTC
Last online:2020-09-02 11:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-08-31 20:28:04 UTC to abuse{at}strato[dot]de)
Takedown time:1 day, 14 hours, 57 minutes Poor (down since 2020-09-02 11:25:21 UTC)
Tags:emotet link epoch1 exe heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-09-025tQwNWpVjWFtfh7wZ23Ju.exeexe f5a06d1a1e7d1fac3097b2d14d6ef269a16d65ea4241ab716ec29f0a4da1b206n/a Heodo
2020-09-02E3JjJM9Q.exeexe 1f4591601b1df800083771fe64f4757a54943cea0f3a6ced88277a644fa75fc2n/a Heodo
2020-09-02gxJ7YPGTxqiQq.exeexe 4c41e535cd592bab64f43e17851ce0b6ec73671cdeab3cb2a4a71e2cad420d19n/a Heodo
2020-09-02aSc.exeexe 0f047f27f3b667c608cd1fd8be4044e82d3242f3d6cce60c1b208c4e77977da1n/a Heodo
2020-09-02M5Cps7NUtETnC64D.exeexe 7f46d7c17955ec34bbbcc874185d0c22718868b4fcd77f34f5f84e9ef9af3175n/a Heodo
2020-09-02r2xoj2JH.exeexe 8599871df1b4faaf93698551a2ac7282ca6b355e87944c7119ecbd2548892682n/a Heodo
2020-09-02UovGQDjJgW.exeexe e094e59e453894b53f1bc8bc79863f918184ee55a22fe91d0a1fe231c24b5296Virustotal results 7.35% Heodo
2020-09-02kyDPIWsCUS4m.exeexe 6dd5d673725341b0790fa4f3bed96e49d656118994b0b19c38e62fd53defb39dVirustotal results 14.49%Heodo
2020-09-023kckipP44Wy0.exeexe 598bea746526d6eae854e126eac4b4b22e1023363875c53142ef4b05491fdcb2Virustotal results 7.35%Heodo
2020-09-01qeKshy.exeexe b6f2457e50dc2fdd2cf809ebf63577c7277e0e26bf8e87188572c01d96d48f97Virustotal results 7.35%Heodo
2020-09-01x5S9jtoAPOlc.exeexe fb13df8b0a039ba2084a3a5e4214347716b56fdbd7f3c708717bb439acce3656Virustotal results 20.29%Heodo
2020-09-01uJEHoDjlcRb.exeexe 49cb02582b6b4f7a876dca705b16f716c4e1e7b54412d3e34efe2e3e6de25c0aVirustotal results 11.59% Heodo
2020-09-01ApIewFbsHhuI.exeexe 57d2fe6040fc2fd1643b2129bfe38f71a784290a89e0fb06e9602d5b7149a88bVirustotal results 10.14% Heodo
2020-09-01nBQYLOFaKum6aJpr.exeexe 1b023c9a98a01adcf0db2d876dfdaed2d1d182dcef4da0a8f791f3b503ffc79fn/a Heodo
2020-09-01iyefHrEe.exeexe 8f810035f65b4bfa47f7461f8969d03f9445edb8be47a3ceda55d32429535c50n/a Heodo
2020-09-010i7BZEV9SS2oHM4eJO.exeexe 5b16963fe4c73adb5bc801547830a74e674e03685fe5d89565eb94da17741a5cn/a Heodo
2020-09-014YH.exeexe fd8f0ca3734c756495913830a285d39f14472e689641bb4c64882b6a8f4fde94Virustotal results 11.76% Heodo
2020-09-018yKwgnmrXSpkxRJ.exeexe 6d25656ff7011b620a1af5a4679d76647b0e3d43a382d4a5ca4d2a7e1dc9667en/a Heodo
2020-09-01IoXMxG1.exeexe a4ec34a655f1e3b940b6727bc88411c11205b2bafaf47886019dd718445fa004Virustotal results 10.29% Heodo
2020-09-01DGuXcyXgcHH.exeexe 82aaf415724e9f2415a0ae1f5e34f465d060cecf0cfd2e0abced75a314ee4917n/a Heodo
2020-09-01I81nr9bK.exeexe 0061027205b7cb930a68e83ace39fec88812383f5e2fd176030938159e02b0b5Virustotal results 10.14% Heodo
2020-09-01iY7yGFMWqZ2.exeexe 77de9c87baf054d7d2625bfce5e28afa5d100d995c68858be3ab57642985139en/a Heodo
2020-09-01K7Eop2ZPIJ5rHv4jlGulH.exeexe c42e944fca380480dbaacb7662ea69343ce4b469e624cbddafd771fd69555655n/a Heodo
2020-09-01I8zL.exeexe 7b22125bd4be7c5e710549abcce6e8e180c23176e3e78f3ab35a742509c94f43n/a Heodo
2020-09-01r9V.exeexe eddd93d598473b24bc46d61b2831495772c2a235ac0bb80f22a2b8d451219fd1n/a Heodo
2020-09-01DMt7JA8dikD8kD0XbvjC.exeexe e89401f33717b0ed7c8391d23792b6278b33d81921c8e8e36692865cff7a6813n/a Heodo
2020-09-012IdVfN03hswTrN.exeexe 709f6150aa1ed1265583c5a4af9c4aba1f4445cf568b4fd5a80a845944f6dbf2n/a Heodo
2020-09-01pT3hDksppiKhte73N1i.exeexe dc35581391dcf14689c84dce7b436159f338802104f2322a6f4d01fa9dbc58b4n/a Heodo
2020-09-01wmchP.exeexe aa4425f93e628188a687d4170159c20f9f57dff7ec3a14a2f97c4ac3f47ea33dVirustotal results 19.12% Heodo
2020-09-01ODDBHYfW7xumUdE4mKvp4.exeexe d50368b0b4cb6e2b41a3d2e28b4239f75430f1af8451107602bf885112887a55Virustotal results 20.00% Heodo
2020-09-01JTN3IQN75QmCpEsM4RJs8.exeexe 9d4a32cc287c15f70a55d450fecc4eba203197c5bb11045ffdc836378af05e9cn/a Heodo
2020-09-01i4HZvIo.exeexe 58cf053748bf52640c689c04be342e4a82ca036d94b5dc224290698997383477n/a Heodo
2020-09-011KOPWLwIG.exeexe b791ca7b4cf3d621f8691b481f7d35fa28d42f2644d227dda4ce84cbc72883d4n/a Heodo
2020-09-012OXTzn5nRWFmat.exeexe a01bc717ff385dcdd4ee35213e867de3e64e8da882660e9d947b4e618c2b6a82n/a Heodo
2020-09-01dvnFOhRt3baqELFlyt.exeexe 26afb6e7862320a15786a621eb71c79d3cd6f003fcbd4c0bd976da610443a468Virustotal results 18.84% Heodo
2020-09-01ixAoXIq.exeexe c062dae0d9e2c61ebf2aa223904adaa1366865220acd55e7a7a527e222da0c92n/a Heodo
2020-09-01N6ojDe9R.exeexe db21a8b0fbaaea202c676b6161c96cfc176a4e0828272c3f12571b15e8042f2bn/a Heodo
2020-09-014Pjdzp.exeexe 2a339c26234432c0c976a322f5af41cece36d1335c9293040f5d862fc61e5a5an/a Heodo
2020-09-01QXGHD.exeexe 1e7c0a30c2cf3b84ca17fe07f1b8404f4cbd5529bbc38607535db2a3d740db64Virustotal results 15.94% Heodo
2020-09-01fDIju.exeexe dff0b55db1538b07dbcb9aa1aed00ece4d1bd3e4f4df40c82f67b78a7500f2ccVirustotal results 12.86% Heodo
2020-09-0182LE4S5O1S2QJMdO.exeexe ab3caed8354b5b622c3861754f384a6788e017a11b4b07bd4ad24fa23bf6cecen/a Heodo
2020-09-01SncdrVeCUf3xm.exeexe 359ba536841d8bed2c671719626229fc98ea78fd8ced5772ec6d6db86bc711d2Virustotal results 13.04% Heodo
2020-09-01sEDA.exeexe feae05c4e04de51b66c4d3dad33112d230da1158198785cc5922936078c5635fn/a Heodo
2020-09-01OQuNF1A3KJXlJ4EsH.exeexe 4145abb9f3465a89c33922c97380733bf4162f7f27c691bbbdcf6cb738c7927an/a Heodo
2020-09-01YBlogZBy2HX.exeexe e2d9cfe780b361152688b00318e0a58e8cbb2e379add9ed013dcf2e22f14cb52n/a Heodo
2020-09-01Mh8dubH2Ubrv96XopOPem.exeexe a9c7424f33914bfedda8e229b98eb8a7f9c3cfcf1ca71999aa1f133401eeb87an/a Heodo
2020-09-012sFflfvMhIjiJ6LXLiq1l.exeexe 9a51f31e82d7d455a3b0e8b37defbd34c361b3c973f448a7776e1b5fb33e8f16n/a Heodo
2020-09-01A7xiqn4LSfuCD.exeexe 34593910778746e677da10243a2f81da300dc1034c8d6ec50ef3705246379c2en/a Heodo
2020-09-01moMw.exeexe e27025951a7b2ee9c856f6a0bcf034c869ef8411b136f17c0bdfe851798dceb1Virustotal results 8.82% Heodo
2020-09-013k78HCY32dGU88u68UjpQ.exeexe a8c082594f5bbf6b81a4b5df793a95b54d05dbd2ce7bed3ef081e68f99f9cffen/a Heodo
2020-09-01jFCIVm3aYhDC495MnRw.exeexe e9631a63bb14469bc50cc82e542f5675e052456d0a9610d8ffaa0ff546c87f53n/a Heodo
2020-09-01wqw.exeexe 6cad897a3b1216594f45fa4f4725c914f62f234e0a476cba9fee6bf04b7cb1f1n/a Heodo
2020-09-01h9JicHhvuNR2pQvhm.exeexe b42347ae2b6007b170bce1e9230c2494255ed7a2efc7720a9939948bc8e8afccn/a Heodo
2020-08-31U5lTy0z5Jaa1VPE.exeexe 2db0758d60d1e61b6c69778283df5dde77c84cc771b29953c9821433f348b336Virustotal results 16.18%Heodo
2020-08-31J45KfuWljNX3uFVQoC.exeexe efedcc357becbda9b72bf2ce4c4886bb66c4a7560a60286961d39a5e28db46c4Virustotal results 10.29%Heodo