URLhaus Database

You are currently viewing the URLhaus database entry for http://oliverkremer.net/cgi-bin/gl6kg/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:452868
URL: http://oliverkremer.net/cgi-bin/gl6kg/
URL Status:Offline
Host: oliverkremer.net
Date added:2020-09-03 23:07:06 UTC
Last online:2020-09-04 22:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-09-03 23:08:13 UTC to abuse{at}strato[dot]de)
Takedown time:23 hours, 24 minutes Good (down since 2020-09-04 22:32:37 UTC)
Tags:emotet link epoch2 exe heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-09-04sZ9D99th3waiYv2Z.exeexe 2bb686cd465a1e793c32269575c6ea0866885efec07f7c8d24d3e5ef5314007en/a Heodo
2020-09-04CgEPNbBO08z.exeexe 2f8ae0509dd67e1129e6e1c4437ae914a8e3431f6c8826d29265f196f05ef4cen/a Heodo
2020-09-048GRz7zWF.exeexe 170239dedbb40bd421dbc0648c854d8223dfa5c73b90fd4029a594b802b8e59cVirustotal results 8.82% Heodo
2020-09-04DuOHXDdapF.exeexe 0e61f19f6ae26aeee5e507588f3e9d6298864c59dda284e4b83850c96f141aa5n/a Heodo
2020-09-04SNrvT0NB3dX92.exeexe ac7a4a61163161c7e579e49eabbd9a009027dab3fc56095fab41fe7c3b2a085fn/a Heodo
2020-09-04pTvpg.exeexe fbbf2b08cdb8fbbcb7c8317d9882c77ab68e2a046e6a20cb1c27dd8e2b8da463n/a Heodo
2020-09-04lPKzA1pOeC5ITnxsZ.exeexe d41f5c01a593da03ded70bf980beb4a493da13734be632fdb9868a536c13d24bn/a Heodo
2020-09-04TPPm.exeexe 005d36793c1f4a5f3f2521de015c869f75b4ea5852ae581d485857bcfca4577en/a Heodo
2020-09-04WUTuMG7fBcQDbU91PBBo.exeexe 52abed2fc8c4904d2f0479ea9bbbb070fe91e53e61539553d2eb53f7036bc306n/a Heodo
2020-09-04lwPjy.exeexe 2cfdfe7dd4f51e68d46904ccb7685638a6cef54b005eb38ca6921ba5ba20c441Virustotal results 8.70% Heodo
2020-09-04xYOGHnjx0R9Xrc.exeexe bb8fca1632a6cc45872520c8f9a9085cb57fc0013f2f720159655b8e6fb6f22en/a Heodo
2020-09-04C2e2HDXE0d.exeexe a576698b1c7e1697d6075bee874eec385bd4afacaf732f57e7adf5ee795d228cn/a Heodo
2020-09-041W65N.exeexe a51daf5a2c94f0621d3a80a818e37f411b18b16f6cf7269d83e0faa079711ccen/a Heodo
2020-09-04EFvGGCr5xzv0tDsh99.exeexe 477741143a24978e62fb9117ef8ffc9f8e9f7bce8b95ca3758bde46e8a5932fcn/a Heodo
2020-09-045kAjJ0KUDjrYmTjG50oX.exeexe 3bc2cfd5afe9eeaa6eb195a79ac455431e659576a36a2d09996c706f2f7a022en/a Heodo
2020-09-04dgpt7oW.exeexe 0a968803fc7c772b75d0fa2abf9dbb3ba40c36c5f3965c6fc8e0d0619d018044Virustotal results 10.29% Heodo
2020-09-04gx.exeexe 80761b87b2f410494d61882434edd0e5c55303b2d08c62aa41d4ea2d990d0189n/a Heodo
2020-09-04z.exeexe 920dbaf7af21105107e9bae0cbcf7c3b5bdb983783e30ce381c414b5d2e96d97n/a Heodo
2020-09-04wgwWJwn.exeexe 5f26319f07a731db6f545df15609e062773f5c63349a75cdefe171bb0212d5b2Virustotal results 8.70% Heodo
2020-09-04GKTiYBrZ.exeexe 705c7ba671d0f03734fe3f35ed0f7e7cc479ea6cfa0ffcb5a04c2f505110c696n/a Heodo
2020-09-04Vm6sM7FTPgkgIGuFHu3.exeexe 719af07935e8e718a01922a64984834b3a869ad83c7627bb455cd2eec4aa3c9dn/a Heodo
2020-09-04JsinJEfb1CO.exeexe 73b8a9b218fb15427eb9af05e0a7fb74f19a61eb856888828f331e3a626ab167n/a Heodo
2020-09-04sSrkDtIBuT.exeexe 1686b594dda73a540cea37b039a5868339f6f0d7a1d19b1bdd5d6241935567abn/a Heodo
2020-09-04NakVJiZ6oAfFQ.exeexe 54ba4db876dcd09bb314044ec0dc1836e717094a087df6d635d90953c7500e0fn/a Heodo
2020-09-04iu5ZyM0z.exeexe 3f816ba0f21853127973745b22ec1ef7d6212fc2a2e269b107f661dcdaec34cbn/a Heodo
2020-09-04opVd.exeexe 9c7f5ad9f86c3d5620a7ae36b450755a0ead5fab1712f93506a6bdf9b7150a8bn/a Heodo
2020-09-04phDUndF93Gvf.exeexe 813fb5c2bf1c43d2d1b9b4a1db696f92204e825e730a5a47bec51676eabe62fcVirustotal results 4.41% Heodo
2020-09-04GR4lK3Q.exeexe 93b34f64fd1cb39b96ee5f5f7af41b1f2e62a15c6edb7abde27320461567fdb6n/a Heodo
2020-09-04davnXUDziDIwWPLDn1v.exeexe 238f75cb28c509d6ed1c202340b7a0e46bbf37baa7c9bdd8a64057731cedcf20n/a Heodo
2020-09-04ncnR0CPz.exeexe d2250bfe9a524ad1f31251408894295440c9b88215948c6dbf839aa570c40d53n/a Heodo
2020-09-041M3yU1eD.exeexe 0b7430cddf46a9d115c8081e95d3472ae095fdd5676b17e1879ac31caa6f6d75n/a Heodo
2020-09-04s53vs.exeexe d470579781cb2e43cebee3a22a8f4a80983b42c8f61f5b329180d51ec48e2a57n/a Heodo
2020-09-042C4w.exeexe 0265eebeef41b09b90ca87594be4661024e071159844309ed36e2fb7dde67ea8n/a Heodo
2020-09-048v.exeexe ec8b2b9e6185bb14af80159497b7bdebe044af58b6ec002aed79b59e12e5650eVirustotal results 7.25% Heodo
2020-09-04HodGRwbe24RY.exeexe 29c49d88835f02e75b27920ffbf12640695809fa319a629290018410b8126017n/a Heodo
2020-09-04LxTYHrQt8A3Y.exeexe e0121ed9ea413ebaa50fcad71d285cda6bc77ddc1ad9116204e11ee79012a608n/a Heodo
2020-09-04lz679DrEZ7ri.exeexe 0818a4baa69f088297cbc4e012bb59a2ba15c38d343b4b44d7d3b367f34dc07cn/a Heodo
2020-09-04F8CLrtT6MhPXhyVK.exeexe 74f550d445dc464302e9416bf8e753c58158f70102a04f404ffa15a571112d49n/a Heodo
2020-09-04BJug3jyhuyilWhCQ.exeexe 700ac1742f5a9efa35a835022272146a836dfc20826e58a53eb4a8e975218f3dn/a Heodo
2020-09-04SMOCYaH155.exeexe 3df99ce34419d50b38e9ebd753b94d18891a798272d631d43e98bbb72479e85an/a Heodo
2020-09-048qtKCMiHt5rX.exeexe 6eaf03017b31208699e3b37639beb644aacb558286795ea15a13690ec6b7187an/a Heodo
2020-09-04SMllv.exeexe 579f9c4ff0a0d4eb25ed2b8afc8b17ce683213dace12ad6258a9f6b7f08e8414n/a Heodo
2020-09-04i.exeexe 043f3cd4d75121faf5d1ac7bfd156889e9caf54e7da2709fa0b6772cc93cee1fn/a Heodo
2020-09-04rNAyQu.exeexe 44b24661494253f05ab2e650a36515d510b1a9d89626c1a666393ca5bef64d20n/a Heodo
2020-09-04n9szDTjf.exeexe cd4cf101b59a8d7f6448a6792ee7332ace814d2bd1b71ffcec365feab6af215cn/a Heodo
2020-09-04z0jaz4JhXg2kNw3ddd.exeexe fa87e82762ee31c15b183b01ab09e151b80f887e909a6508e644641e80254a90n/a Heodo
2020-09-04Skxxf.exeexe 5dc69ed711a1938f911b2b77a60dd1ea669e7138c86ab9bd2e2934e6d8c7397fn/a Heodo
2020-09-04DSqUM.exeexe 0dbb6836635845c2ab0df316da51fe675cda3e27f3be291424a7d1b06a38ea8an/a Heodo
2020-09-04GmmJqV.exeexe 617274c17f10285f695f350d71f6a06ebdc5186cfeb9c453bfcfacb690fc981cn/a Heodo
2020-09-0433eHg81q1zDhLeLRhf.exeexe c492ed2e12302c7cea4be70923897455a494ebf50691a41a2934cba8d387c16dn/a Heodo
2020-09-04zyAc.exeexe 98cf170ee0bc9949f7b3d98dd5617de74471a601f9a46408dca2fc587ae4954an/a 
2020-09-047lZ.exeexe 6249c4c2c60f6690ac486f41c10327c948bc2b7d6bf24dc70644e617af14eaf7n/a Heodo
2020-09-04LxFg88wAqYVGYtiCV.exeexe 314a629c055a06e76daf13ea37911b5f88f48295333f1aa879d2b46602882dcbn/a Heodo
2020-09-04d.exeexe a4b2399eeb34be2c86af408a6d3c67ee871e1f0f6470ca40d36241a0fd30c357n/a Heodo
2020-09-047B25daLLG3Iccbfg.exeexe 051596b835f3de4bc0176557517a861dcfcecc991cd71c8d298a539d98b0dff9n/a Heodo
2020-09-04X.exeexe 230f16293e54fbae22e9504541dc920eea5d2d382099464e726078d4d1981cebn/a Heodo
2020-09-04LQRqAuuPSFCAx0mtNN.exeexe 10bf5825e0321095e480373a1e6dad40f0b942f09d31a295de41578045be2b14n/a Heodo
2020-09-042vA7.exeexe 5069aed7df44d638f4397133a001c1dedbd6c948295fdba65e48f3454d56eeadVirustotal results 26.09% Heodo
2020-09-04E3iXb2qMS.exeexe b5c3eefcde91d3443d7e87b941c02b80ead48cee3990102f189eaa19c0d8fb3en/a Heodo
2020-09-04s.exeexe bc983150c3157d65f908c4681c16582e6b80dd1765cbb0eba5b413b12e30e221Virustotal results 22.86% Heodo
2020-09-04ZbFW.exeexe 90b4b360ec1b3683956ab275c6a9882f2f3edade3dd5388c56f8780669a4e2f6Virustotal results 23.19% Heodo
2020-09-04FtMR.exeexe 2357c6c348632c1cc54b224b29c4b559b025dd6ec8d33e07d77555e3f45609b7n/a Heodo
2020-09-04QrOx5RReYb.exeexe af2884ab2f5863b5f1aeb03c161d6c7403eccff0dccb75f1d2e8fc361c4725dan/a Heodo
2020-09-04QoileeejOkXSK9A.exeexe e9c3f2c47ad249852594b2ca4848d4bbf5ff24187a98f50e78f36102623c2ee5n/a Heodo
2020-09-043RWUczf8U2P.exeexe 8ae1dd143362f99bdc49e5178d9e08b0d42787ecccb620e7dbae91284806f8ben/a Heodo
2020-09-04gZR86ilimSIFQm.exeexe 3e3ee9edee9bb58a5013af7f4e6aa96a66d1ce061da2a950977491fd02f15043n/a Heodo
2020-09-04HHYfxYJooc8.exeexe d0eca015f386915ae6990cc98f3ba4d6505fbae6e60adbccde05baf859b43914n/aHeodo
2020-09-04DsR2M.exeexe dbc1f2931678f4e5761e1a75f80c4e06df2a4f29c7d5d41ae76c8d8ff1c537d7n/a Heodo
2020-09-048s.exeexe b376361129271e9da54b06f3800f246066d8b54772c21a0de298f2be41bb8ddfn/a Heodo
2020-09-04JZDdhVJT29xRT.exeexe baefffd5efe775adf99fc0ff62dbbed98e90ae10a2796aec0844f5a4c6a4b462n/a Heodo
2020-09-04s.exeexe b4e5cb6d0c5f02ffc51eb72cc63d6153f8070f377813183df53e2597fb71edfcn/a Heodo
2020-09-047rWAzgO2r.exeexe 458e6f1c8d9cbc13bd3b0a587c1cc2e5d95cb4fe15f92d43f4d959cca630240bn/a Heodo
2020-09-04gqHcTMZBZzUX.exeexe 5a0a16b2c0186ac370f50f1c180f8481698fc6eb0210e7cdef981bdf601139d6n/a Heodo
2020-09-041wsoIxvsr1Fd.exeexe 9a5d15e1ac9f426afa8d8039d9b0b2247bc69c0129b8a832f774c548b5ce6ee8n/a Heodo
2020-09-04pnQ2FooaYuJz9XOm2S.exeexe 9f5b508a85ede058f5b3b51b753d5c20244c24d81588b972e99e1113d89178d7n/a Heodo
2020-09-04BphPpDHuEptYQ4v.exeexe 64b489c4d92cb4cad5037189f1fc33d655d10e1f14f9f8dfb5e6a04c604ed8e3n/a Heodo
2020-09-04vMkGju.exeexe 88c3ef21d295635e9ef1a15aec18a77649d796b11114be00d0d74f278629d1b5Virustotal results 8.70% Heodo
2020-09-04ollV3S7wAVZrKTvIW4.exeexe 1a913639c7c8f16089d44f063b58d90bbc105e9ade1c6a5a1fd7167318af61ban/a Heodo
2020-09-04BA.exeexe dd71c70a1feb5e44e97f394079afd3cb6f256a2cd6c8ece06e589a1d02654cb8Virustotal results 8.57% Heodo
2020-09-04goMBDmRns.exeexe a777188be99256478c7bbc0e97173d9dc3c97f18515b9f5b1db5b548b0ca4898n/a Heodo
2020-09-04XSEgAvfTR6ZYIXEu8.exeexe 00212d83102ba64ba4b158615e677323b20d394e3053ad8dda6332620c39e182n/a Heodo
2020-09-04M3Do5wZ0I3inNjY7WTb.exeexe 48140ea891ff3a5f786f23495c40c9eead6fb38524d052f691ad1d73df733a95Virustotal results 8.96% Heodo
2020-09-049.exeexe 81dfda533754be3270899732d018c76954da3c5a72254e3c0da14b174e5ef71dn/a Heodo
2020-09-04vCHGiRKclNsOmWKV1U5.exeexe 00a6025e4253115805a3991569718991f6cc3bd272f549fde0b032ed73975948n/a Heodo
2020-09-04n7Kw8tsxDfHRHu0DCk.exeexe fa391dddec60f79ed6658a19e270d24faca096bc40a6a7c2c60b8f8a2ce35879n/a Heodo
2020-09-04S.exeexe b8edf0f4419678c4d3cea08e476baf1e91834ab7ca77287dfeeeaaf5c2d13ed0n/a Heodo
2020-09-04Yf0wOOl6lTG.exeexe fbb75e243a351f0fd668429e31fc74ac71a5f6c77687256104e83730d887c27aVirustotal results 8.70% Heodo
2020-09-03bprlV.exeexe 1a393e05ecee7a7debc560a3b2d8ff879dffdade5dc812a9efe8459820d233efn/a Heodo
2020-09-03gXYc0.exeexe 3bfcc58b61ccf3117b1a0a860853f03b0139fa7bdb1ed03fbfd36e2e4ba1ea1bVirustotal results 8.96% Heodo
2020-09-03W10x6WNTMV3lTaongQf.exeexe 1233f9ccd7d78c22e4a0540e7d26171014a77a8a229c930adebad2a7a6a90470n/a Heodo
2020-09-03A9jhlY.exeexe 2505c41c4b2f6745949e08cf6f90334c214d8e0061f649fea61840f812028f9bn/a Heodo