URLhaus Database

You are currently viewing the URLhaus database entry for http://santafetails.com/dcz6vEs which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:47902
URL: http://santafetails.com/dcz6vEs
URL Status:Offline
Host: santafetails.com
Date added:2018-08-27 13:05:10 UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?):No
Tags:emotet link exe heodo link payload

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2018-08-2978919885.exeexe ff2f0b368380fda589f600d1081e9440b71d84f5535ba4d6ecc55b32ab5d5d35Virustotal results 17.91% 
2018-08-280.exeexe 6c5fa1c0a0c3860b2775ed00c52a2959173d04b597528a1f876bc057d417cb45Virustotal results 13.43% Heodo
2018-08-2847.exeexe f8fa091e213aa5cbeac224f8af4337f891ca719c2769ea84f30af31944e5a01dVirustotal results 16.18% Heodo
2018-08-28569459.exeexe 184a9253c0b3c402eeb9839dd516c423be3397b16c124a5962aa883d74f9e7c5Virustotal results 16.18% Heodo
2018-08-282186.exeexe ea22cfcd3de0ff240071182f0f89cb1cd8b9fb385c5e1a2abb31f999762ca952n/a Heodo
2018-08-2826963.exeexe 593639d51ed29cab46e6a59b9a03bd98bc97af5f036353e4ad167d0e34480060n/a Heodo
2018-08-285.exeexe 53f40dd4e6cb92821437712a1d16fadcdba2f23246055a306a3d427f33c5d6deVirustotal results 37.31% Heodo
2018-08-2827996862.exeexe d19978a6f118c4ae9a2b9d21f6bcc03b35b22d91f306465512f774d082af59d4Virustotal results 27.94% Heodo
2018-08-272463.exeexe 7efc8446996e148dcf5b6f490899f588c97cd1140b867098943f6a2b486fcc5aVirustotal results 28.36% Heodo
2018-08-277.exeexe f833b7eb36612e0beeb0ab93d012f544a7f7127a08afc387be115b8b282a2e90Virustotal results 26.47% Heodo
2018-08-2760668598.exeexe b79b696f6e3d66512faab754ed00d46608ae1a94c6b827b5292266e73768a263Virustotal results 26.47% Heodo
2018-08-2798356.exeexe 1e61fe9d4ab0d10bf770b06944e80d96c8f533920b27418248f932e05cd84384Virustotal results 26.47% Heodo