URLhaus Database

You are currently viewing the URLhaus database entry for https://fuguluggage.com/wp-content/attach/LZKeraCHj/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:496763
URL: https://fuguluggage.com/wp-content/attach/LZKeraCHj/
URL Status:Offline
Host: fuguluggage.com
Date added:2020-09-14 14:08:18 UTC
Last online:2020-09-14 18:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-09-14 14:10:05 UTC to CloudFlare Anti-Abuse API)
Takedown time:4 hours, 19 minutes Good (down since 2020-09-14 18:29:55 UTC)
Tags:emotet link epoch3 exe heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-09-14YXVGN.exeexe c56da8a55fcd0de8b0e59a8419f2f115574e60f0bc5d8cbd249366bfb57b6ceaVirustotal results 10.29% Heodo
2020-09-14VczefWKZ31Rhu04Ldt.exeexe 4d2687d8d13e37088e503b3b0af6e76387b9f54f2419fe08252d4d948f7a8d4bn/a Heodo
2020-09-14dukrME6rm.exeexe ad6378aaa7a90a5a267f812b21cccf85af3c5187ed2d88fee9b4b118ab9c97c9n/a Heodo
2020-09-14419eV0iwwyMUgJ3EUW.exeexe 6cbda4a259cebdc2a51ec7eab5dd47344ff59b82eedfcff769400c120905ba9fn/a Heodo
2020-09-141Sw3X8wLrKAZzyIXnFe.exeexe a96d1cced7df08a666bffce26899a10c80b53ec88857235d9414cda723cdc7c8Virustotal results 8.82% Heodo
2020-09-14JtpKVZAkh5rK5xL5.exeexe 2efb74fa23ca49645847e076d6b83344d44b4a6d9f6d2c558d749bafd1e82810n/a Heodo
2020-09-14kLtBZ07eZSVGyXfv.exeexe 79f6f89d591f80efbb5cdf20ed7901933b5da70a4201545c8793f2678587513cn/a Heodo
2020-09-14d2yJjEtLxJn.exeexe c59920198619775b0fe2847db4c87fa1a320a4f75e18c5caaae1ffa5e8317fb3n/a Heodo
2020-09-146NKqUNQL.exeexe 26d518d533a576f45fdf22569ca401fcdeb5229896df02368a6dd3f169ac64c1n/a Heodo
2020-09-14HPCkJ1PCnZBBUV7p8.exeexe 5b0fd84e116895814b9e9dccf66206d524ad7eb81e8ad67bea2534db459b6c6an/a Heodo
2020-09-14GxcbPigOv.exeexe a4905ec9cca5d3d4712e7fbe09aa7b2a4d3f836bff4cb9af2339c66864830f42n/a Heodo
2020-09-14FMP.exeexe f200394f860672cb73e4a4ad6ff47c69780196c62bf2563612677167c662ccean/a Heodo
2020-09-14OMP5HuIvLZ9jCZU8VOqR.exeexe 035f2f4c659f34e5164bcc394f507cae4fa200c83e4852b41d42ea2d93f57b58n/a Heodo
2020-09-14WVQRjZorNy.exeexe cfcfa73cc4aef96ff19f133b69e6ee1e9511b8c1a602215975761e81b83b2025n/a Heodo
2020-09-14GtdaLGLFdqXPntiBwy.exeexe 6d2ea449169ef77e849e5386fa1a999bdd333eae89865d98841aafbaaedf84dbn/a Heodo