URLhaus Database

You are currently viewing the URLhaus database entry for http://grndl.com/oinj/j4/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:502548
URL: http://grndl.com/oinj/j4/
URL Status:Offline
Host: grndl.com
Date added:2020-09-14 20:38:17 UTC
Last online:2020-09-15 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-09-14 20:41:07 UTC to eig-abuse{at}endurance[dot]com)
Takedown time:1 day, 0 hours, 27 minutes Poor (down since 2020-09-15 21:08:07 UTC)
Tags:emotet link epoch2 exe heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-09-152Dg6d4HHHmSTZeJq.exeexe f802f1b1cb595def17a448b3faa5861fee62f87d0591f25892e5425169e57c0eVirustotal results 19.12% Heodo
2020-09-15X8U3Dubw.exeexe b89ccfdcaa0c12d691c71a33e948ada4767633bf679ff48e57c9553ae8f5acf2n/a Heodo
2020-09-15OE.exeexe 087232caffe92bac90e7124d654b392a809affe3b432a2ab2bc329a8ee771fabn/a Heodo
2020-09-15mcNJ7TToMPjXE1gh.exeexe 3fb913db7c347633d6c3f70ff4afa134ea9bde0bb3f2404b8ef9878e43eae569Virustotal results 13.24% Heodo
2020-09-15caq.exeexe ae162853d2725c07399fa2e1c45219422a5dae020ff98dafefc6bc32fd10df7bn/a Heodo
2020-09-1586roKx86gWk4fy4vTT.exeexe 76f5578418731d9c88b9679ba2d387d6de28321af6e6b10e5f42ed0e6e0bbf5eVirustotal results 10.29% Heodo
2020-09-15w8cak71xrm8FIrrX.exeexe 6eb7688a4ea51aafc4f538784498055aee612ce951657433d5bfb451de74d128n/a Heodo
2020-09-15pc1.exeexe dcd079c8ba5c6c187cc17ba01f8fcbb14faae711a0f0e33f3910ae3e114b4eb5n/a Heodo
2020-09-15amDhB.exeexe c6236c003ce87e9fd623d3dbe40ce6bc7a4b18e4b506729d0d54dd780792958cn/a Heodo
2020-09-15R.exeexe 13b6f615799103a277ba8cd32e93392a548c046ded1f72717d7447defbc03been/a Heodo
2020-09-15Kmwo0DkKE.exeexe 0bfa956b525eabd4d38804effabf58873c4f256d5dfccade0c8487cc0188bf9dVirustotal results 11.76% Heodo
2020-09-15a4gnkMjBisWYG15e.exeexe 64e6c0f7f3e48c06a2628c436ebdea543715e079e75af591d6cb5eb42c21bf16n/a Heodo
2020-09-1524HkR4feDQCofF7dGuh.exeexe 4d5a2080fccd2d312cd854d0219fbea18e4ed388410086704149ddf9fec48467n/a Heodo
2020-09-158Um1.exeexe d84b0fb9a4561646910c9941e48d478960fd6ae892b69b0537c309511b3bf124n/a Heodo
2020-09-15vbAvwSCHSZVB.exeexe 30b095302cadac0c8be218da9f2a1c1797edfa5231419bb546510bbd5c989237n/a Heodo
2020-09-15g.exeexe d54e1ce18381317af546662a2dbd22133890b7c71755b47d6f94d37744459d59n/a Heodo
2020-09-15hJBQMArDIkLXDMfgWB.exeexe 277bbe609b7e0c1134d71c99e492573608b0f2f0d4e78567ea42ae57bcd12c63n/a Heodo
2020-09-15ASS.exeexe b4013b56e30d5c2835fe59e00617288700e9bb2d21bd968b1fb23f0cc6f49848n/a Heodo
2020-09-15dqvPRyimAA5.exeexe 654647d823d271dd77ad50ca32141ac6ce1f7fc602dc30fedad73fac553c6dd1n/a Heodo
2020-09-15u69.exeexe f825a853382f120adb187788a0bc69bc49deaccf3886488ecd31d0611057101eVirustotal results 10.45% Heodo
2020-09-15x.exeexe 46fd2c33deaa593bb6e910d180da5cde0a01ac84e580e1c44aab85dad85bf5a3n/a Heodo
2020-09-15Tlsr9C882qjYU1WG.exeexe 7b6a5526ae511210c8a713cbf93abad0e952d2bbcfd4a5bbccd86f704aca609fn/a Heodo
2020-09-15WPttAr6y.exeexe 7f3556a44b945603a5b1168d6ab961e77e5693bde3425f5accfd151e37dc7a7bn/a Heodo
2020-09-15ahAj.exeexe a96e9074290f4f24fbe69a2f7b93f627281cd1f04ccc607bbfa87dc9ed4e86acVirustotal results 8.82% Heodo
2020-09-15B.exeexe 5bd518a7f7392fbb63bdfaffb92111a4bbae166b87ad49d5c7c105612ee882c8n/a Heodo
2020-09-15tcvMEE.exeexe 2d8229f9ba43e65c459f3a47980b5c2385feceadaac3bfa5345cc40313d6f436n/a Heodo
2020-09-15PebfzTq0S98.exeexe e5c685e7103e6313accdfe606447d39ea1b1aead792daeef3f583eb4355e67a2Virustotal results 8.82% Heodo
2020-09-15Zz75KL9Ih2qW4YjnWTwx.exeexe 5ac73474fda8abc2faa479b18f53eda48bc7ad97182ed17a812242f5852d9c53n/a Heodo
2020-09-15lHu47TCYn0mmRPZ6.exeexe 96f161b79101fc63bf831e1d33e5af8f210780a5c95e540f8ef037c326784a7en/a Heodo
2020-09-15ydacYYIHA7uWed.exeexe b00452e5a2f5944327f150f62dd0bb2050e52af4721803f2aca36321242acfb7Virustotal results 15.62%Heodo
2020-09-15CXPyW6UOQvzi3ty2INcM.exeexe 5be7a56599e1da2758bd361a5126bcccd7d66e8c8f2532879475f47e46022bf5Virustotal results 9.23%Heodo
2020-09-15TrMuj.exeexe 8b53378aa6f2c8087c388c6f1ac9e269afeb18a569305879a688dde94011e980Virustotal results 9.23%Heodo
2020-09-15lXenfnXwGoevI3uW.exeexe 11e8ce4e1abf9d994bf74af6160856b76c2a1b62bd620cde2445db0851efcdc5Virustotal results 10.29%Heodo
2020-09-14pz.exeexe 7f9105d1261267d6186901d2584d32a51c59586b0db4aef4d6cb6ccd97bb8cb1Virustotal results 7.35%Heodo
2020-09-14zOGKfT3pACBIWk5.exeexe 793f8b651a27e5962e86c3b67b4e576e8c611197cd969bfdf972a1c848e870dcVirustotal results 5.80% Heodo
2020-09-14OtbuVvq9.exeexe d872063a19f37f0abbe1ffd2b5c4d4b3392876c2e8c016714faa535404cd934eVirustotal results 5.97% Heodo
2020-09-14a1HU.exeexe 3ea9ae924e6515dcb8f54938b4f713d9769895db72d479a63bff84ea763c1800n/a Heodo
2020-09-14I.exeexe 261a9eed62794e5d49706e184ffec77c6a16f00aec7d346e8fbc0747b7a6e191n/a Heodo
2020-09-14GQ6h7.exeexe 9b6ea167be5f3bc7af5d36966d708102674b788433b1d5ca434a5a320fbfceebn/a Heodo
2020-09-14qVUEiKOp9zJ2c4iNF.exeexe 8147daee6665b117c3d16a2e4f0cee2a419c2c35ddbb0118c332bbe7332a410cn/a Heodo