URLhaus Database

You are currently viewing the URLhaus database entry for http://notesever.com/cgi-bin/Cfs/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:619380
URL: http://notesever.com/cgi-bin/Cfs/
URL Status:Offline
Host: notesever.com
Date added:2020-09-28 22:42:07 UTC
Last online:2020-10-01 05:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?):mail Yes (Ticket DCU002971321 created on 2020-09-28 22:44:06 UTC)
Takedown time:2 days, 6 hours, 21 minutes Poor (down since 2020-10-01 05:05:35 UTC)
Tags:emotet link epoch1 exe heodo link Trickbot link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-09-30bAdCKafDiCi.exeexe 2473a0ac8b9958cf914a4d8f6f28374c8048026b0cc989354f965248dbe12b27n/a Heodo
2020-09-30dS2.exeexe 2e46008eab336d1245c4cf7da62a5f960a34895c06e9c7741b2f2b33ac1ad2dfn/a Heodo
2020-09-30s9DOQjp.exeexe fe73db4cd7ee285116c8334b1eb5e122eb1e283ec23b9548421aaf434987ce7fn/a Heodo
2020-09-304NO93XXhMN3tOtTlVIU5i.exeexe 2196f2701b53cbac8dfbe9610611f407ccabce87e136e8dcb16c31d8c725329dn/a Heodo
2020-09-30qeRT.exeexe ec08b4d60f6563beda2997ef76cdc37f90f2e6b447a32d4f4bf555d6b405411en/a Heodo
2020-09-30f8c.exeexe c88803f08b435d063ed5733f0ef2380761f54af0fe2ea06c3e92686ebdabe441n/a Heodo
2020-09-30WLjL2GHaSyxTu.exeexe b3b05056434caf35c6de5bf382b35e0eb8b231f6d7d331976150510723918ed8n/a Heodo
2020-09-30Dp5FhIMJXbF.exeexe f092c1a8cbf21a60355bac94e224cf2d9def7e09e10c696d14408c79a27298c3n/a Heodo
2020-09-302nTVz2e.exeexe edabbb2ca399e26d255d47ffe8019ae93105b79bfc3257acdd4f2cf4d6bfb8bcn/a Heodo
2020-09-30uLbLTgS3g7gwg7ySKf.exeexe 79ae428edc2ab5bc14cabaf969a6447932eb49c46679f458cccf36cb880e6e48n/a Heodo
2020-09-30kBXNyVQbOwAme.exeexe d09ad60c207d5e75445b2a20e276bf8fce76cc9f6da1f82d7507bb434e66e16fn/a Heodo
2020-09-30ZMtzUddpqqebq7rxlECkf.exeexe ffbf4a96f1da6721dfdf523df5792a7e46be0de9bb27412d44bc77efea7d6af4n/a Heodo
2020-09-307A0ETo9.exeexe 2b4ec8c82ca692e20fe0a290ad55e4ed456c78646f0e998b50d965d9732ab901n/a Heodo
2020-09-30ggXrtgPzOALKbG.exeexe 5da7d981b22b54e5da7f8d4d531bab32d632827fee9e3aeb0836949410aa90fbn/a Heodo
2020-09-30d011HOODz.exeexe 05ae8b023d2dfa04135f198bf92bc1276813f291b7fcdfcf570a3f283289f8d4n/a Heodo
2020-09-30XffeOWwHgSKMQwyR0.exeexe 084c3a48702ec48d842dd0f7cae1c1111babb28b107286960bbe83b917d31a8fn/a Heodo
2020-09-30QNyJ.exeexe 082d694474c8986c8c08514c1e1b79dd01679035f4352e71183bd10bea212a7bn/a Heodo
2020-09-30s6k3.exeexe ae0e98a504b79abb214161dff5e9817c8a92cde5952b2ea87e813477d92cff82n/a Heodo
2020-09-30w5dRNht2G.exeexe eeeeb4ac2d01d72da85ccbdfcda2765b2edb8172eec1657e2ea10d013d7e487an/a Heodo
2020-09-30RgzYS.exeexe c1fd34f7cd79394e0115f13793fd4d617a8cf00a5f0a89dec00d5653ce1b2988n/a Heodo
2020-09-30Iii2gHbbPKhnzaShhuVkJ.exeexe 17bbb7faa92c870649159c4c4a87f9b4fbd9bf4a9ab4e81aff56a17308b21ae3n/a Heodo
2020-09-30sgG.exeexe 3b50ad026ffcfa3b6571f9ab53950c79cc2beac487b4a71ae0e698964aa05333n/a Heodo
2020-09-308w6q.exeexe ba9950684efd7cc9d75851ac96b3860fc7bbbbaecec774d700eb858c7d2ff130n/a Heodo
2020-09-30NrL2NO2cZF.exeexe 29ff5861f57bbf72a28a8b056855cc8761fc0e4dde16679aa75bd598a3368249n/a Heodo
2020-09-30P59zUGZRxrP2Do83.exeexe cd49967d0b37a0457804df6e8aef55af9acd21a4d7ceb2a4cc128c9c0e6011cbn/a Heodo
2020-09-30eTJVypb6j83aMGEI.exeexe 7361d1fdae42a8f4b1dff5427738db2b29c4c2fded7ded97ffe197d6c0863779n/a Heodo
2020-09-30PHEjxTNxdtjRicZ3Okx6c.exeexe b6f07a437e27e63d1905da5c95418a0f5427c9c37915793a702c702ffa091214n/a Heodo
2020-09-30U7h4hra1cv7YiVVC.exeexe f5fa5e48dc5454423ce6cfb07f23659e2cb5108c3f591f2b6b4f3bca4964528cn/a Heodo
2020-09-30eHsIFW38Zmt2LjZ.exeexe 079c74b149286101f8bb7ef459fa135634687ac577cf321aed5fb099df6c2363n/a Heodo
2020-09-30G7pYwGa3FhAKwQQpowr6.exeexe 62635a2bbebbb0f56f48c9df558eb7025a095ced732c201681faee00cade8561n/a Heodo
2020-09-30uxCACKq8j1H.exeexe 844fdefc40d962698d259e83662179387961126974a24740467b8b4e37390355n/a Heodo
2020-09-30YSPD79XyuYfe66rzhS.exeexe 9f0a2f39454a9264b83cd9e4bfa07d936223203e292bb5e7365d8c194e0b5cf6n/a TrickBot
2020-09-30BSr4PX5OTwA6w6iyTQ18.exeexe cfc8a547354ab3609f4028a130562be197d313dad20189d30c33e488b3f5dac4n/a Heodo
2020-09-30RotVUUtm4XK86G.exeexe 4d90219ab0c5194b06b954fd5945922d7c49ab2d8484bdd8196a0de86e77c99en/a Heodo
2020-09-30BHrN.exeexe 56bb013f814910e33d9bae5b12d3dbac201124bf6dbdb1c544052ffca2761e61n/a Heodo
2020-09-307tJmi.exeexe 0d031cc0bcef5d450b531e19287283bf568bf0b3ba8d2d0814e8cef800f1af4an/a Heodo
2020-09-30Vj2aMmdOYW7NgK.exeexe fa03c65b7453ae91f34a006f8f0e6a9b6792754a334fe1d9701831a7814221c1n/a Heodo
2020-09-30YAh.exeexe 3a3f95f7dee83cc26e3e31a9b105525459a129452e5c2afb101f8033dce9fffcn/a Heodo
2020-09-30CjSntV0E5spHeF2.exeexe 5689edef9310c05b04f4ea108f743d9ce6fa9469076976bbb6ab8f5b217de37en/a Heodo
2020-09-30E5e.exeexe 55d7d3d198bd83b860408e36e92e4b6d9726cfdcd72252a9bacbd1e1db1bab58n/a Heodo
2020-09-303wW4.exeexe 4004aa30e2910b89c43772545ff145de3df408324b23a3adb856cb9e3a70e4e7Virustotal results 14.49% Heodo
2020-09-30UOpAe7DuX.exeexe bd813af00864b2062cf6cc1a2e4604a3f65b15666bee08fd341c823f89d51fecn/a Heodo
2020-09-305e1J0UBHmWOXbq1H.exeexe b5331e98dc4b253380445ab6a54b15ecb442e3e6cad0a221c4ec87739d3e83dbn/a Heodo
2020-09-30enjvdb.exeexe fea714b8bce982b90531fc2f3e775e0061ec94b29a1e490ea9a8a7899ca9fa88n/a Heodo
2020-09-307wlFY9u49v0pxsDcU9gC3.exeexe b97b42edb4519a75f01d39325f56330a2eef083bf5888722915094f338d9a2ean/a Heodo
2020-09-30mFpm6ljKYhM1UP.exeexe 4ff2bff30caff0363f52f483916076cc24c20f6e2ae939c46aec5674045f6a16Virustotal results 8.57% Heodo
2020-09-304tUdsHpwiyaj1fDL242R.exeexe b512ed6cc16b5aacf835b0f4cccf7969c756ab3aad91c3b60dfbd3d8d5d6fe5bn/a Heodo
2020-09-30O1V6hcFQU9tIqD.exeexe 2e8d5a399c77fccb6bccc14c3e86c0d52ac6e3e70e807071c8b79916cca8006en/a Heodo
2020-09-30WzvdHchsKynnw9TPXm2s.exeexe 07b82d4ef43aeb0fbea8456d007bfc299c840978deaaa5a9cd19e162357c8cb8n/a Heodo
2020-09-300VtH9.exeexe 9afb257b5d73d568dd83aa459d8714b9477cd1181861d200242d763c231f4ee1n/aHeodo
2020-09-29cPvNKNHWxgzMzc5mCbXv.exeexe 0c00480ec227eae5d1b3972b7936f43b6791286d20401cda08e6684cdfebf644n/a Heodo
2020-09-29tbeR5cqR.exeexe 5678a4a8b922dacebddd6a5fca82c2c2874bab673d6f7e1907b161838cfb1535n/a Heodo
2020-09-29lMuEIj5P8pG94.exeexe 19eaccbdd7eb4a6241578042d1e46540c70c17d3943558b0a40bbb123eb07227n/a Heodo
2020-09-291Dh.exeexe a4793ade1b5889ab4111087ff81df0b77893db7048b8f34bdc69990e45d635b0n/a Heodo
2020-09-29EpVX8U9U4.exeexe 7ceaebf5181838c51422dd215914b84d93ec6ff15e53c331552b0dd70bec29ecn/a Heodo
2020-09-29oAIzV2MWMB.exeexe c022e779f7742b61009d59a99fae8ebec0fa70d6a401d63204b1b265f457e4f9n/a Heodo
2020-09-29SMdI8oXBStWDoFGum.exeexe 24dc2b8489b424bb0a432b60a4b3f89a017258c3cbc8ebf99aa8cea6b555093fn/a Heodo
2020-09-293WxAVLbkRaa6xCsBj6yLP.exeexe b60f9a4f00f69a9df192e4375eaef7750cfc620a68ec195dfc24775fd56ebb9bn/a Heodo
2020-09-29R5ZdYY1.exeexe 3afc4dfa8ce66bc6b664f7057bb4fbc2ce5cfc7bbd55a5b6d27c8bf1d1359a4an/a Heodo
2020-09-295D8o1LvuSJ.exeexe 084416bb94fecf6b6c12e96948d89d0073df45dd9ba310753d85c54282eb87d7n/a Heodo
2020-09-29KycLVf5O82UyWrTRur3eH.exeexe 5c395e64fb30dd9f97d0c8952fb08917bc17e04897bcfd2909bd3c773029b6dfn/a Heodo
2020-09-2967lXjqj.exeexe d8d3e18bd59270f2c84637fed7b2295fc24d7cf13ab5795f5c5fb34c95676191n/a Heodo
2020-09-29oeybVmKR3vswNU.exeexe cffa2432a541ce29d02994334cb3b00c9938cd7f54749278be7433cdf9c36267n/a Heodo
2020-09-29smLzEJTarysOF.exeexe 0df2f627e88de0696647e42ea562d9ca99a39c33c91411600df4211063729197n/a Heodo
2020-09-29wnzlS700.exeexe 9f4f37d04d686e5508bb7e00a7b616ad5b9aba2e65f19c17bfdd1f9e5280e1e0n/a Heodo
2020-09-29YwjIcQ.exeexe 203893e9ed32074e8106d529503a2daab4b71315751f8aef6f9c91ba66ebae06Virustotal results 11.27% Heodo
2020-09-2901dfptAv8VoV5NwHKaO.exeexe edf6e00abe5e453109f3222bea55467f31226a20614f8de464f03fc97cb7935bn/a Heodo
2020-09-29KQ939DxukGM16R8kY0Uq.exeexe 9111e33e96339be7bc054faf488d51fdadfb9d4802f9124ca29305bb2c57d775n/a Heodo
2020-09-29PRtfiYDd8z.exeexe 08e63cf83559a6775879cfcf0c07c9f0dfe42a87e95280295ba315adef044947n/a Heodo
2020-09-29GKnmt4to.exeexe 57eccded18ca851e5db42fa7c4d416ac99e3ebf40abba4f606d609b3c92564c7n/a Heodo
2020-09-29LJAABnBIDT.exeexe f92e47d88038a52db6726257f158c6ce29b382539d88213819e88b09b42257e3n/a Heodo
2020-09-29gLBR6iJ6LsREO.exeexe 55b15b3e742676941665004a31085a14dcb454cbfd82470f63cd6eb5e52610ffn/a Heodo
2020-09-298e8ssG0nGhpDG.exeexe 925ae8cb978f81a0ed4f49a4ba5f87f3affa806fc05c8e9b6c89ede2bbefd0fen/a Heodo
2020-09-292dmikev.exeexe 59fca5c42320b59817d34c3d044e92fed023af78b753da2e83b3e2f2933e420fn/a Heodo
2020-09-29CcYXm5IJC9y3I.exeexe 03cb9d82963f309d22aa4f116fdf59d2aae544433bf758c0733fb05ef67b2249n/a Heodo
2020-09-29v5nXHLjkyWltAD.exeexe 0b9dc7ebb6fae1c8099cecec19ffc82835f72d28800a9fdeb4f6c8a47bdec5d5n/a Heodo
2020-09-29aurgzLHst.exeexe 7382c4a5b3798510cfa285263439c0e52f333eac63df6acd6aacd2e52163a70bn/a Heodo
2020-09-29fDO5zz1KAn.exeexe d4b1a2462b25f6dd18e55cd7962bdc0ba83906689c4e2e31f5c01f9ce367a2f9Virustotal results 7.04% Heodo
2020-09-29LVZeLbV.exeexe 6a53c6a7fea61dd27d3177d1939baab4bb116783b35e1fb5038fc0f3ef0e8d36n/a Heodo
2020-09-29JadCODWXs.exeexe d21ba8d8c967738f8ff55d168c9dc57238781e03862343fa6ac019199160c69bn/a Heodo
2020-09-29EfYkk.exeexe 3db5da6ee99fc9f80a06d3ea6cacc05785bf8351cb1a12837b246d6b960285can/a Heodo
2020-09-291w8UlVljdpNFhsq.exeexe 749f0736dd9c83f2fbed852f0ee3395c48e00feffd07e2cd7faaa5a14b638ce0n/a Heodo
2020-09-29sP2TA4q272tdKG7ld.exeexe 1c81eb54fb38741039fb564559065bfe62eba5cf3af8b480e0e859f5e5727170n/a Heodo
2020-09-294en9n7OpPCfZPi3eqlTN.exeexe 50e69a9fdce212a51b2f99ecfd919ccca1e7ae3326ec0e3a0179fb0ea92f1e04n/a Heodo
2020-09-29V7rfQmcutNRUxDf7bfXS0.exeexe 32e1bf1e78dc9c8fc2fb7058939c3e55519f97b2a36a90a10334174a252fc69an/a Heodo
2020-09-29IM7TwsNSwvibRXwQ.exeexe 73a02028d5f2f32581ec725697d9a3f490e8dd413ab3190984569d8efd8c8e39Virustotal results 23.94% Heodo
2020-09-29daBloS27p.exeexe 04b2e8ea9299922685f449dc83a0708cb1cb9291b5bfde0c99cb3ced21b54ebfVirustotal results 25.76% Heodo
2020-09-29JJoopJLHrpbraGjoe4.exeexe 672d94ebff763ddd8292a39051730107bfe6d57b02b25a2a9b6b3bc96d68af57n/a Heodo
2020-09-29gr8XC2ziQ.exeexe efd0395b890dec0a2f7342d811e6eb2aae262d42fbc4efba755b67d61357b8b4n/a Heodo
2020-09-29Mtdfz.exeexe bbf35ba98abef95326d1e50c6d715611dc7b68a9b88659503a5e809c1cc763efVirustotal results 16.90% Heodo
2020-09-29quz0Cr.exeexe 6c842482b12b3884640a4e35097b398b6ff51eeb8b3407a7434071e792256ee3n/a Heodo
2020-09-29Zh6G37cCIZgK2JtGiWN.exeexe 84ea4c950eb47315b92084651e4cf3eaf42922b22a7be53d90c8dad96ab9e6baVirustotal results 17.14% Heodo
2020-09-29v684btlOkfUhGL.exeexe 4524631382f5e1d8a2c76f70284d36bd625a834c55c0e62bf9d2ae02e2d2cbd5n/a Heodo
2020-09-29Wj0kLNW.exeexe 46a36316705a1ad62cc080bc837f6f3039fceab42a39afedffbde7faebd6c446Virustotal results 15.94% Heodo
2020-09-29BSSD7rRPMjVxk.exeexe c5522ec9a930713a1e463d74f7c52e5a13d897062e68bb078fb3f675cc6df2d0n/a Heodo
2020-09-2975hfeuy2rtKRm3j.exeexe b93825332885f81743ed5b775a1921288c796ef9adc25aa94b6eb4f9130746d9n/a Heodo
2020-09-293nplB11l0ew5Cund.exeexe 42c67f20512ed9d58e6b46fc3304c2add1a29a710cb985f0884ab2083128f17bVirustotal results 14.08% Heodo
2020-09-29f1CeO6A13EDDNnVNKj.exeexe 54982e9ce87f70161aaa7bc85edbb55db357b454271bc11864428c080d78316dn/a Heodo
2020-09-29Wzf.exeexe 72a2d9503e8b41448945f6a3ed0df347c8a6b4e551ccab20971162e13d4cee87n/a Heodo
2020-09-29mTw24o563BgL3.exeexe 30ee2f55265e87f12eecc54d912458985fe7c0a697353a87c1b60d8527b82edcn/a Heodo
2020-09-29oXj8GMO4YroaEowMuB.exeexe 8a43ab2af24e927a42cf34378a77b8e74cedf50f3d0b277a1a0ce77e28363829n/a Heodo
2020-09-29OdzWpaUR.exeexe 0ecbe5ebbeac3dc925cf4d313690dd17fd9454fd10deb8da2c69b284878a552dVirustotal results 14.08% Heodo
2020-09-29FPQSnfaZP5efSPe9UGf1Z.exeexe 399371673a49f2e81a00b8d725fcfa870aace1dc1866457b72767a30f9e0cba3n/a Heodo
2020-09-298NHmKd2.exeexe 8c000ad26875ba923fc17917361343ff2fbd34ecccee4bc79e11a401b6011dd5Virustotal results 14.49% Heodo
2020-09-29rNzE838AtyeVZ9jAsq.exeexe 812f4602203782581abc54fc7f30c00200bfef42cbcad378d427f746907b9268n/a Heodo
2020-09-29UydPIK18.exeexe 4f27f181ca6a9a88c15ac4b174280b623785a1f331e798da67c6aad0ace3716cn/a Heodo
2020-09-29lTQCML.exeexe 580acc5935fb56b269b5606a1d2c363d6e50f7a2e925ac668591605ea1a5d838n/a Heodo
2020-09-293XxJfPJAnkOy6Nfq.exeexe 148ce932783f769b22ed177a4e9df238d463ab3d976b5502d1b9aea745190f85n/a Heodo
2020-09-29Z2wmOB.exeexe 72066399b4f622f827542c785be8ecfe5ee28d0770fdb531d52a29c70fd39780n/a Heodo
2020-09-29wz3b3Z9sxNIm2UPnJmY9Z.exeexe 0905f2f1228dd026b12bc36046e5a9c7d4fcba830ca95f3fa4753bfb720290cfn/a Heodo
2020-09-29OVavi7gkxGytDlJBrfyiV.exeexe e635071e1d96fbaa1e40a237126ddea50f2841ecaa7d597b32e2f57c628aabfbn/a Heodo
2020-09-291PpXh288wG7iQQqFspgg.exeexe 1cafd780d529f3a6248380157af47d8aba7166539ce2d83950ac97d194199913n/a Heodo
2020-09-291dHdPcWcv.exeexe 7a6466096d6cbdce15eb299093b8efb5319f48d500307dc901972237916a04aan/a Heodo
2020-09-29dQJkch7Z.exeexe 98ad29cf1e2a98fbcdc87bdf3371c438484ab6b978afcc8c2d3c7547b100c804n/a Heodo
2020-09-29g8DnM3vIU.exeexe b830d7eccbe2c8773e68d4386bb1edbce2a244a8694af94d54aa5e757b2e437fn/a Heodo
2020-09-29xYCJwj1Mr.exeexe b7e4a2d9090caa6c3d6032cafc23c0d5243065ce7370a1a73ae8950f81f098a7n/a Heodo
2020-09-29UWFNZiG1PQKgKfjD.exeexe 34de99feb1eb702e618f85f6188d9f1298555a857e68be9553ab4416ea4fe91fn/a Heodo
2020-09-28SlySBxrZGzKc5M.exeexe 24a06b032b99c9cf1a5df371f36fa74f97a26a2b7f86e590616116dfabd1a7adn/a Heodo
2020-09-28n8cGry6bYd.exeexe 65e827e6327c3c32b6823f7ec771c2cf2c5e9960997215b39ac8a2157cab2321n/a Heodo
2020-09-2810Cr0LL2.exeexe 5f1ce207a09941776c8e1846cf2043c0fe1286ee900265258bf0e57c79d51c02Virustotal results 15.49% Heodo
2020-09-28pTUT.exeexe 142f6d6f5206b8f4c541101b572eeac381f69c4bbc69f2b808ef33fe09627f62n/a Heodo