URLhaus Database

You are currently viewing the URLhaus database entry for http://guarany.net/zefiro/DDI/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:616838
URL: http://guarany.net/zefiro/DDI/
URL Status:Offline
Host: guarany.net
Date added:2020-09-28 14:38:12 UTC
Last online:2020-09-29 18:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-09-28 14:40:07 UTC to abuse{at}hospedagem[dot]net)
Takedown time:1 day, 4 hours, 9 minutes Poor (down since 2020-09-29 18:50:04 UTC)
Tags:emotet link epoch1 exe heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-09-29xkFVNVkkr.exeexe 41c86a3b931753185c969c530a99c563a8a58dd0ba3205aaf2f466899a14bbd0n/a Heodo
2020-09-29OsKbb99wuwYuDoGm9e1.exeexe ee8e3957fa172fa72092583f4df4ba9c2629db9a0a11d4cb80af5a3e68d0fe16n/a Heodo
2020-09-29b6kkZc58wHlAFPsZu.exeexe 725299732d029da7c6bc59d18e727a7e7bc7672042b86a53466ecdf15bf11f4eVirustotal results 8.70% Heodo
2020-09-299aHwLTJs2DR51ejt2Ao.exeexe 21a98d4ee0291e6dde24812af5dbb4d6e154e056c9551c2af2aa17f9051f5109n/a Heodo
2020-09-29Rzbqs.exeexe 7bb16f2572c033b36a4f047d733398226a5edfe0ebf7e242c293efb0138ff4f2n/a Heodo
2020-09-29YphKukie.exeexe b9e4ed5cb3f31d3644ee457f6ebb2d6f6998740a4bf188b98749e06836bf3164n/a Heodo
2020-09-29Mj69Sn23fD13JrYx1RrOE.exeexe 57144a0c3e1bbbf2466cc1b1526d22248fe3b74a4284f8db6540ca81be33f802Virustotal results 7.04% Heodo
2020-09-29vqLFmPV.exeexe a821f0f8592040944b0a139365d3ddb8d58d300bfa28adbae4107b82d652b679Virustotal results 7.04% Heodo
2020-09-29X2oxNJ.exeexe ab847b959bb55463544365657e15770f0715059c6921329aa9ae4452788511f4n/a Heodo
2020-09-29FnBHW2WsD6y9V4IHyeEyl.exeexe ed2e29b00d167b6e61ed4cf3bd45d5d93df0b1fb5831dd69cfd9f747fd6222ceVirustotal results 7.04% Heodo
2020-09-29oyxMOWp9stQgB.exeexe cae44340e8c213d0d415da7c88e6bfbc93afded7e62d59f5412a039b954e69f1n/a Heodo
2020-09-29NIq2N72GwaVg.exeexe 10314472810d535e9554ac2a78e41fe85b0068fa1e3267be0462172bac5cce06n/a Heodo
2020-09-29dk2RxJpwX.exeexe 82e1a7c878ef4eba4edb7a83ba7ef6d31c626e4b00ea04c643de8e1eef46f8c4n/a Heodo
2020-09-29VXGMgzsR0oVcX7.exeexe b4fa08d9da16d867731dcc5337f82b265ac1bb1b88f122636fd1c1005cc3b61bVirustotal results 28.17% Heodo
2020-09-29EQo6mb5ulj6wfPsWcA.exeexe 779c7118dae0c29822519baf2dea9f2959dec6c1fb833f2ad765629dc87fc3a8n/a Heodo
2020-09-297uaYF76y.exeexe 2f00ef033e681a2a1930b8acf10309ece6cb33bb3c7628870a70bba60318c8afn/a Heodo
2020-09-299QafSF9ZhiwJfzPl.exeexe 95b4c61afc6fc9f641337cb5700bdbdf4d586cdc7f0a8c78f98c74855a903103n/a Heodo
2020-09-29nGdil3Tz.exeexe 95f1afba5f2e673ff0d2438b08747c5f8d57db44c46a5ab9e6a579c9b1ef3bfcn/a Heodo
2020-09-29zRhghUGIBRSSKQ.exeexe 6fe83fd7c2ef2bf040d5974ca798af48029d23d6595bdd2d8878733d37946b9an/a Heodo
2020-09-29lK1rlq7PF2ozWfsmwrTV.exeexe e2e53bdb060323ab1761abc6e1d4bbc28b6ef6cf027f40d5463619a820f2d48cn/a Heodo
2020-09-29xGaQvznyhdlQWU9h.exeexe 876f129e425cbc544cc3d59798bf52af46404a22fea831c2b4fceb2c24845425n/a Heodo
2020-09-29Ajx3lbbaS2rkMSGZ92sy.exeexe fe4bb74454c10bca79bed17185b67a36e0ba078c8c27e4a6f2a3254470337000n/a Heodo
2020-09-29AzmfCp.exeexe 57ba341fe2986795aecaa2d85d4ec396a5c4acc1224c68a91572fd64b4e51a0eVirustotal results 25.35% Heodo
2020-09-295pupifIS0Fa7oK7.exeexe a2f05076db5502205cb8ee27001972f49403d09c5e6b756279e9be4736ca1628n/a Heodo
2020-09-29Hy4.exeexe 66fba197e74759cca891749d21880984b0268016fcec7b3913a416124a69e1ben/a Heodo
2020-09-29a6umooWVjSEebCjZN.exeexe 76783ab029429294ab40cb7f50e1ace7533dc4cc06485225277a9de2aaedad4dVirustotal results 19.72% Heodo
2020-09-29XApdQPQnncsu.exeexe 05fff493c8237f21aae2405ecc70e163027cc2cfa1b7c5c340782cac41e36f5dn/a Heodo
2020-09-29Rggq8ZW.exeexe 9689072495d9771ea87d01b6c3a69a33ea5fd81e3981b40a811527b6b820b899n/a Heodo
2020-09-29NtMKNnDCpk6Gj1F.exeexe 9a75127e67f5391a75a0187e1fd6533e3c8e4d81a26d8bf2d64d1433be489e00Virustotal results 15.49% Heodo
2020-09-293mdxnQvsCs.exeexe a05f2a98e4ed9bcca9ae02b9ca31a3fa49a133518d4d07ff7b88737087c4a980Virustotal results 14.08% Heodo
2020-09-29s2Lhh6S8NRZf.exeexe 0b7b495422dfb1444c0fd848de9b3a3410a1da12d31cd878840b0fe1b5e7c34fn/a Heodo
2020-09-29gADB7zW.exeexe 760e4e58897f23a60718fb7dd4d13d65ac1e2dcbb63e3f15b74f29efd9765253n/a Heodo
2020-09-29xUkE9NzKuVOa.exeexe aae4885a9f1f14beff256636c43bc30a6a375395d45656275a9ffdc09f0833den/a Heodo
2020-09-29Xy85jna.exeexe 040a6d19ca164ffb50c473d144f409c43dcc643be666493e656151223d0743ceVirustotal results 14.29% Heodo
2020-09-29MBPF4Lib.exeexe 62f7d6d0e1b88a56b91ef46d2d538ce9de572e965435684e17871aec76dc1b44n/a Heodo
2020-09-29l69ZT6uMTycnblB4OUE.exeexe f653d6afb572dd18218a30f95494533c10d51ab754025e308f34eb4b471002a8n/a Heodo
2020-09-29qGgTIOzyYolEqs.exeexe dcb8dd62f07d921be103808592ba0eeda3177ab671c72de18349c63b4dc37f94Virustotal results 14.08% Heodo
2020-09-293edQrF.exeexe b0c98a584ef38b635f225c25242b0b76df0455acc781ac016a76c09c850a527en/a Heodo
2020-09-29Okc6Kaphwa0G4r.exeexe e5664a77a1abd9d06c6730e7e084d82a988f67bd33b8398ce9402b26cf6abfedn/a Heodo
2020-09-29i6pptU2oU.exeexe 8c9f40eeba0fdfa1302cba42ff0da359d7098f409b475f3eb4bd6345fd35cd74Virustotal results 14.08% Heodo
2020-09-29yygTDxp9DvMimHzNFsNGm.exeexe 3cba58079d3c86fa5b13e476c562b6bbc74abd174b0635d319a0f59059b7ac4cVirustotal results 14.29% Heodo
2020-09-29O1bAxIhDuZtsNAPyosFi8.exeexe b81e3da86483c17361582e0fae3a2e02fd9cbcfc162b6b631c6fd6e204bc9531n/a Heodo
2020-09-29qqgsSQLqmZA7.exeexe 3d7bca685713f8873047e82e817c10a0d87387046a01d932a5401a6cfb4c907aVirustotal results 12.68% Heodo
2020-09-29tC8CeJlHMg.exeexe b8ee4d64bc6c00b3135128d7e40a83e822191002ec9d386d9fc52f4d6f3b00c0Virustotal results 14.08% Heodo
2020-09-29Af9.exeexe 746fe1a248c298b8eed77842ae6b019a889b8fc01c7f1954e0f4b362df729f8cn/a Heodo
2020-09-29CMnHdUtmCV8nsOd.exeexe 5e8e6ece83421c96972ce210c49a4186f7e500d583f7cfb9072db7c0880a7520n/a Heodo
2020-09-295SQF.exeexe b5407869151667b8a573fdcea7d6c213fbbf90ec3310dcf5055aaf0ecdc009c4Virustotal results 27.14% Heodo
2020-09-29NzHkcmGrq9.exeexe 2d0d0d01ab923fc5028de6790b68c9debe63ba30f3508b998135b2d03df98d7fn/a Heodo
2020-09-29w8m4yYJIPWVT.exeexe 23c89fd32744eedaf97e17aea938abbb4b441e4a143e278a0a25d49a74a34ab4n/a Heodo
2020-09-29xxx13awsOL.exeexe 9d1d07f0a454a93339f1c8592cfad06602b38e194fcfecc7d5e2243db823e94fVirustotal results 23.94% Heodo
2020-09-29BbOfu.exeexe f8d7a37d208507d59eae26b9f0e82eb7fec0d757899f8a1777a527f54e53e08bn/a Heodo
2020-09-29q1uItgv.exeexe d44786916107c924296d1f5b1729ef5c7fe1acec4145921aab832c4fee1622b4n/a Heodo
2020-09-295K5m0Y.exeexe 8a8074d2c8fe74295e6c6ecd0a3bb342365e7a1301a58df8fdfb024b5375d364n/a Heodo
2020-09-296aQuKznSAHE2KQNYE.exeexe c019c50249b1a7a57f9ab868d7fe0ee2674d71317c1f93b7de52c6df0e1e6a01n/a Heodo
2020-09-29cAAlAXyT4Nj.exeexe c7d1c8d800ef7d14665ec951a4e49a0f86d5fdd5b63832bc5f1cd79474cc7110Virustotal results 13.04% Heodo
2020-09-29F96FHDaC3mR61fhzDbn.exeexe 72942d1cc04fcd29719b4d10b258cd6ba0d9a84d064ba5a48afd616990e36d0fn/a Heodo
2020-09-29MJ37F6vwRyudE4pf4.exeexe 560cc2de2c278aa123ca2857da889076acfb171943ae8ad052cad247511e9bd9Virustotal results 14.29% Heodo
2020-09-294fA8szXLZBU7ctiR.exeexe 728fb1239cba46ac39102bc82010fa52f7c7bc391dfd3917d2ec8cc42521ad63Virustotal results 15.49% Heodo
2020-09-28eFz2K5UT.exeexe 26d989ac71d96443d8d1e269e9f1a64a6c1342dcf78a8ccaa16758b12b573a52Virustotal results 15.49% Heodo
2020-09-28akfODv.exeexe 7e3d45361a0c17961d5f9f33615b1f0fc7a9d13353f8e6ce3a19107d6bbfc4cfVirustotal results 15.49% Heodo
2020-09-28mrHUGdZl.exeexe f246e881be74dd909664f300ae0a9c332158992d4fead32f25ea3c32b2bc6d59n/a Heodo
2020-09-28UAMEbFOTpu6P.exeexe 395f52f9636fa034c682ac424303ff545b92b02f39621c4c4d432b6baf35f731n/a Heodo
2020-09-28mBoma9q45gh.exeexe 88d9e35728996b7038cace64122b4086182cd84df4b1e9f8a93c4a6054522870n/a Heodo
2020-09-28T9ygpr.exeexe cf1a0a186d00f1ca0299bb978bf7f2303ee00171b1a56e5d1325a20b8fa0c12an/a Heodo
2020-09-28JNc10ihXHPwoRbl5hxM3n.exeexe 786e4de191d62d6d8b8b3240d8dd0809658fae651f86e51bce38e08a17ed9390n/a Heodo
2020-09-28SJpBtJ18.exeexe fa74e3361276e640dfe7df3c0ea27b8710420088da99ef7beb1cd1f1969b0b1cn/a Heodo
2020-09-28lUtBPTtG.exeexe 0b743c5ffb6626345a591d437a98621dd9a4675ff00a23d1e7012405f5238a6eVirustotal results 15.49% Heodo
2020-09-28qfFE.exeexe 98edcbbd280c024805349fc87eb520cff9419c01ff89df7325a55a9bf536e6abn/a Heodo
2020-09-28LxkHsGyCqAEaiiH03.exeexe e92d2181d760f1626d2d59f946900e13a1755cb15ef3c816fefcbe7ce3ac8c25n/a Heodo
2020-09-28aOt8GYCqJ.exeexe 79e7dc1b174502ffaddc4731c6d23bc54a298d8050ce92e00be61d01e36bcc5en/a Heodo
2020-09-28HqFNSQctB.exeexe 7f5f4e0fa171e0a64986a733e686d684da2f8ed9df9ccd4d193442aec64451d0n/a Heodo
2020-09-28uFRN.exeexe f97a8aa7f26e0f359d994a2919e7ba6f842344f216f468827c79c1328b45c141n/a Heodo
2020-09-28tdj18HM5HQvY2vY8Hvx.exeexe b5548ae8d88e7cdc5c2dd4a2e89c3db9e85b1e346edbb929602e1a879163efd1n/a Heodo
2020-09-289xA.exeexe 37e22f838246bdda8db7d2a2c0ef2c7d5ce225f32ea5c8243c4e8b83f681cbffn/a 
2020-09-28OMMlU.exeexe 6bcbc07a21091acb79832de6e3874157e7f80a9b32ee75be48e4d933aba39ceeVirustotal results 9.86% Heodo
2020-09-287VLGvL.exeexe 608e928ce1966726294b15858b3a8fc933310ae7afca0bb0ccc559242d86ecddn/a Heodo
2020-09-28aqe2aaUEbEF1oBO84q.exeexe dc30a86993babaf5d6c1f18c0eb088bb40f604e6b96da5426701c838e27cb26bVirustotal results 8.45% Heodo
2020-09-28WNzrsqtYzad6.exeexe f39a5b93a10c706a384fb20f2d947a273a8f5016d9bc6092745efc306d160c95n/a Heodo
2020-09-28u15Y5gg1EGz.exeexe 05c8b5833188c055ec3289dd3aef6673f738d4ae196c5001ed758db31703f1dcn/a Heodo
2020-09-283QD2nF1D2go.exeexe 2fed6202529dbe2e265b8022170d80d144a704625e5fb7a56c2f1dcbed30c672n/a Heodo
2020-09-28PZn9gjQXDlvhE.exeexe 8b29ac63974e671b108a8744cff56dc46d36b03efe717e2e0a9c4de713d6a47dn/a Heodo
2020-09-28578wJEKspBAuMdT9XCXty.exeexe b7ab445717170b0c4d3c8d9ea35123d63d86ea21ead0c1368888b4002a7bb515n/a Heodo
2020-09-28HGIf4zXGjLd.exeexe c3804578e62a8f76bf2f8b6b81edbd176dd132ceead5c62b5c651a8ac700e569Virustotal results 9.86% Heodo
2020-09-28faQXiOfdL3DToC7.exeexe 21b6f20b5bfe7aa202fa547b03d87022cbed685cfa01f4b3004210a46a53c81cVirustotal results 8.45% Heodo
2020-09-28CpwFB3nulyQ.exeexe 8179e1d0704b0d3abbada3148a814d04fad521864d11b6d78223e2c305e2c4b2n/a Heodo
2020-09-28CWbXl1T0fi0XGIr.exeexe 75b9e9a4404ac53e966c8c54ad374403f1df81bcd63d1a8bdab0529556dc0d53n/a Heodo
2020-09-28pN8aQggNB7y.exeexe 7184f1c989ae06d547600396d04148268b4f9ff3016f3ec5f76827b809145bd4Virustotal results 13.24% Heodo
2020-09-28AnSkSkFB6w9sWzEyZu.exeexe d345f20a20b751086b45affb8f4165f4893674cbbebba410a5ace36c5b3d24ean/a Heodo
2020-09-28cxVT1ZspmEhsHluBc.exeexe 142447009270af77aa6ab6e7c1427e0665aba76c298088c6fd73a1c4e77b85bfn/a Heodo