URLhaus Database

You are currently viewing the URLhaus database entry for https://adidasnmdfootlocker.com/nc_assets/F/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:594961
URL: https://adidasnmdfootlocker.com/nc_assets/F/
URL Status:Offline
Host: adidasnmdfootlocker.com
Date added:2020-09-22 09:10:13 UTC
Last online:2020-09-22 16:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-09-22 09:12:03 UTC to CloudFlare Anti-Abuse API)
Takedown time:7 hours, 41 minutes Good (down since 2020-09-22 16:53:04 UTC)
Tags:emotet link epoch2 exe heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-09-22t.exeexe b86dd65eb2a76fcc99f935f73cf4f2e83ad4968befa53d66e4b000c3b16a0332n/a Heodo
2020-09-22D0oVl6NgSFn3DSHe.exeexe 7c003e4738b770b200b61609ef7183579b185c86976024c113de01b422590d4en/a Heodo
2020-09-22s.exeexe 5c6d9f4e204a525125f69cf3b10bdd167c3c56ee5e2c9c3d1d08dc693ca69a49n/a Heodo
2020-09-22l74dhn3belCI.exeexe f226f676f79003ab57274823393f2f794a8e88b7281a6fff89d1e03fe78095a6n/a Heodo
2020-09-22CsKVxyrW1LS6cyCzpl.exeexe 74d04a8ad6399a8aa3e27dcb7ccebb87922010b80d349cf8822ae32e61c8d6dfn/a Heodo
2020-09-22dIKXL81xQIqKu4wz5.exeexe 869d5d49b48abb17f5d8c94a58ff80a2869b63000cf68078e288558e07e8e2ffVirustotal results 11.59% Heodo
2020-09-22s9VkqWP9x05PrdKGIF.exeexe 7aafd76d1b333386ced8cad185d5040ad2f0cbc0753eb9e17876a39d04cf3280n/a Heodo
2020-09-22xqsEpyhlqqdfco.exeexe cd5f7fd99d3352265207450b458697ca52706d9fe1567005577631aeb626a9cbVirustotal results 11.27% Heodo
2020-09-22lCYr5aLL5oKzgBAb.exeexe 78db9911d6263a37beae97ca03eb58540c03034184652f3af96dda7593eb2da0n/a Heodo
2020-09-22KxUp3OmHhzrH8.exeexe 7a599673024b18da5418b7d4937839498d3976e147cbf10f544ba4b572057b99Virustotal results 15.71% Heodo
2020-09-221pKsqOF3saL8DDDEMBN.exeexe e67bca534d5e9ca3bdb19777f14ffa8be5b688e04b5ba0cf4d3bb8357b5c9990Virustotal results 17.14% Heodo
2020-09-22LTu42dJejei3Zfm3llyC.exeexe afa6923f18d9bf1543f37294ed0b557971837ae44d03b41ad2fdda6a73860e53n/a Heodo
2020-09-22oNC3RK.exeexe 930dec3ad407518c48e8e5f76b8b932b2741148902dd903afa0b2ae57bcc038bVirustotal results 12.68% Heodo
2020-09-22vTOUkkN.exeexe 5fe1e398fe93c3812ce79680a064e6a86978bc86ef5753efee3cf7af677b433an/a Heodo
2020-09-22e3.exeexe d0dda88b864694ec0e38ade0fd939f78d03a4f9b92be14f15547200e07a1b25dn/a Heodo
2020-09-22Z90zkPuSbGAktFN6gbWN.exeexe f4eeff4942b41b38d8339fdd967e58b0f9bff3e252fd1aae2ac08fe0c971adafn/a Heodo
2020-09-22f.exeexe 1f7d8010116925bfd0be2008db22a7042eeac2699340b4c81bec2963ab640817n/a Heodo
2020-09-22fV7UEyZQ45ruLOMbDowa.exeexe 40f3a19f3d829d28e06ac18e57b3f66f2c1959d3b3a8f651000aed6da76bc295n/a Heodo
2020-09-22YkWhDAJww.exeexe 34e1bbcdadcfd29eb3719b02a181086aa4875c1fd1d57a31bcdc24afd749f11en/a Heodo
2020-09-22GCKhI0PyldmOffdg.exeexe 59e903865cef1feee9a538f76ac4b0f8551d1120a68da017f3b7f886ee995601n/a Heodo