URLhaus Database

You are currently viewing the URLhaus database entry for http://montegrappa.com.pa/hnAvza7 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:59930
URL: http://montegrappa.com.pa/hnAvza7
URL Status:Offline
Host: montegrappa.com.pa
Date added:2018-09-24 18:09:08 UTC
Last online:2018-09-29 00:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: unixronin
Abuse complaint sent (?): Yes (2018-09-24 18:10:06 UTC to abuse{at}godaddy[dot]com)
Takedown time:4 days, 5 hours, 53 minutes Bad (down since 2018-09-29 00:03:41 UTC)
Tags:emotet link exe heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2018-09-26mcvjNXMM7J.exeexe 798df541871948548db8aa88b6e2956a456d84245396e61192c64522a3a034d2Virustotal results 20.90% Heodo
2018-09-25saQW6sau.exeexe 9943a5ba502b2e5fbf1160f06a2f1e7ffd63b74a853ca7dbd8d1028589e6d1f1Virustotal results 19.35% Heodo
2018-09-25fHaKoKPY03J.exeexe d9352b362629bdcd5d7c830a3ea9c5f55d1e0be4240b5df2867903fb317ee7d3Virustotal results 22.06% Heodo
2018-09-255qbVQPZr3IKh.exeexe 076d0dbb00e2ff5c498f98e2ac52f013b1f62109aaf53a744e302863aab2e5c7Virustotal results 19.40% Heodo
2018-09-25A2inV2RM.exeexe 6d4d4d50cb4eb536c9b31dc582829f12f124520ba4c3c4b7e1c06885e4e14ce4Virustotal results 15.94% Heodo
2018-09-25dwZPUQyOnT.exeexe 83121fd46354df6676eab8ab9853aec81ec3033e006b97a3c78efef74fad7ebaVirustotal results 17.65% Heodo
2018-09-25cVHX2zY1yBJ.exeexe 66dd0c1a991e571b9d79818cf7a663655ce688b29d805650366a27b86206e062Virustotal results 19.40% Heodo
2018-09-25g2pw1ddIA59.exeexe 911ca71a524122143d00f318700d91cc3a9ab3df463436dcd9ef0a98ff2ca307Virustotal results 21.74% Heodo
2018-09-244Shl7E7sE.exeexe 1affd33a6864d27ffb7b2398630c06610a3c9d81d0f84548b7a66c431d2b733aVirustotal results 23.19% Heodo
2018-09-242WWUj67I.exeexe da0b6cc7edddf25242ab0fa9773769f8d3ea298cd6c3cf216cb958faad3072e3Virustotal results 19.12% Heodo