URLhaus Database

You are currently viewing the URLhaus database entry for http://aigtreyas.com/wp-content/p/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:621596
URL: http://aigtreyas.com/wp-content/p/
URL Status:Offline
Host: aigtreyas.com
Date added:2020-09-29 07:37:11 UTC
Last online:2020-09-30 16:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-09-29 07:38:22 UTC to abuse{at}alchemy[dot]net,dnsadmin{at}alchemy[dot]net,support{at}vitalix[dot]net)
Takedown time:1 day, 9 hours, 15 minutes Poor (down since 2020-09-30 16:54:03 UTC)
Tags:emotet link epoch1 exe heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-09-30T5DvLUPS.exeexe 2133b1786e80026448dfbb15f8d3b594faf70d01afc42ae8c649808ba63d62f2n/a Heodo
2020-09-30WNTMV3lTaongQfm7.exeexe cd8b9c63049f09df1fa75c9726f9f30edf2db9d702d3bdf99372aa60928ee5bfn/a Heodo
2020-09-30klE.exeexe dd5d39b95cbceaf1e85c2505578ec74ffa88ddc8cd76168d94b45227a3ddefd6n/a Heodo
2020-09-30fYU9p9OFF6QTZeXKJey5.exeexe 04eea687169695a37fed27ac98d55294ef226f6e180dcd566633632e143aa51dn/a Heodo
2020-09-30w3HIdBhyBT7pPgS.exeexe b6efffc154f309de23ad8f692bbb0358e2cc2e6d0d4c85eefcf44688d39f8206n/a Heodo
2020-09-30xeNCky6Nl7wgXa6SUDO.exeexe 43a7895da81f7a5d3932bca065cfd5d2e5f14a9d7cb7dba2fe4e9f77c2291797Virustotal results 8.45% Heodo
2020-09-30gapigMwDGTGAfQRu4EMA.exeexe ea1750a340d31d2e48320e933d35053f4ac89ba8c7284bd0b5fc70f216e991a1n/a Heodo
2020-09-30c6SUK0PHz1WVVHZQ.exeexe 62187bfb5761963bd9c9984ebf2576ac8ba5c62a5b92c022cdd2f80dce7e6961n/a Heodo
2020-09-30cr4unj00931J.exeexe 62cb2ba9aeb6bda77d207e274d440686ae3b34c0f8301a7ecf3daf21b88224a5n/a Heodo
2020-09-30UGoZBjMlNPMP7odNkz8.exeexe 2e3ae051cf3a130ce93b52e4a6e807a673a5983dff676beca5ec152026eca6a8n/a Heodo
2020-09-30gPKIqQkn.exeexe e810fbb7ffe1fdccb4584b81e44339205a0b8cd12e95cbcaa0a27228b4b79b1dn/a Heodo
2020-09-30rZUrTLW5d2.exeexe 4732d83f7ec910408bf52f6cd101a08c7192c0b860aadfc4bebc478b031cce4eVirustotal results 8.70% Heodo
2020-09-30Dxys1vvmgMySt2X.exeexe 98d25ef1df97d1863a0c057eb19358091cbd540e8635148e0a21cfe38bec48d9n/a Heodo
2020-09-30ablqxp.exeexe b8ee4ee288d3a3cd14ea0ce58738df50c9e29e4b8d46ee3a0c46e0f3bf148cf8n/a Heodo
2020-09-30PYgQEbzpgPrXHILfOW.exeexe 0e4f7a72f5a24ef3ea4743a8ed1872e271b38e8176cba2b02fdf30d343508380n/aHeodo
2020-09-30RCA.exeexe c9087b1a04f38f8da48a5d1002bcbd26f8d2740b67cea20b40cb8d5614396720n/a Heodo
2020-09-30MJn.exeexe 0554fee04ed0d63ceab6b16500bc5d66fe2de48dc2fdc2a98bfb565526095941n/a Heodo
2020-09-3092xnw2A.exeexe 8fd143b4516f0f0fa67a5628aefb3d04a8be7201c885b8f48af99e58451e9ff4n/a Heodo
2020-09-30RDmA0eHzateHM4Lr.exeexe 6766138c45f7784c20c0c562cb185b15edadc33ce33f68afc18b4fccf776872cn/a Heodo
2020-09-30MFPmNirV9y.exeexe 17165d6fe3b47cc4d918bc4cce7216fd45bc6b0747ed1842578500bd175e83d1n/a Heodo
2020-09-30EaaU1.exeexe 2940974d654e26eba182b1b500e66b64bf661c080a6ba1eaf53fe4df0c0604c6n/a Heodo
2020-09-30do8.exeexe e999e23ba19ce4cf179d67c9713e31473aa3da11bd955273177c757c66a6d9e8n/a Heodo
2020-09-30p5j514GZPKr.exeexe 448cde6eaccabe9d262055cc5627ba146486d25f78291f777ec900ff2b89d449n/a Heodo
2020-09-30w6oIuY9dNCA92.exeexe 97c00114a95106e9000d30247409a6b5a45b9a0ba38654ce8fc747609a48f97cn/a Heodo
2020-09-30TrdPn4.exeexe 6cdbdbbcf08010deeffc54de0e9a49793e6ef76bd0d788c0cf181cc6aaa5cce3n/a Heodo
2020-09-30pEcQC1fl23MzgJC1w.exeexe 2ad55863f152dce99a8231403f87add371fefbcc46f21f75d442ab52ece1ceecn/a Heodo
2020-09-30mBTCfIXWKA7T.exeexe 35540f0451077e963849fcb0e8b0fea8a3f79c6670287f07ed9c6e76112b5ae3n/a Heodo
2020-09-30jJ8XO.exeexe e1d713c38713afa7f23a6d3b2330e3f711213cc25af138a8c91669c90a46c830Virustotal results 19.72% Heodo
2020-09-30b3BGqKm2WpxwCrnZe.exeexe 6fb2a0e0e33af0ab87eb596ae97863cd084980fc4736a857ca28db83a3d6e039n/a Heodo
2020-09-30mkXH0vd9aHl9Vgtc.exeexe 7de0411b0fefac41088064c04e8e1fe99e2bd378d1454d5995ddd8b0c657811an/a Heodo
2020-09-30WCTeNuLH9stFUD8.exeexe 7020f3e91ea6d7d08c5b39112e30e9470fdf7bc2b721adb8ed741c80474179a3Virustotal results 18.31% Heodo
2020-09-30hEy9N3EW3fKEmdQ.exeexe 02656966590beeba5f5ba6cf320d621958d5be80a1208cb08af90aa6ecd709edn/a Heodo
2020-09-30fZpfnLDPr8rRysRXZx.exeexe 8d4fc1de3f536de36b24dc10fa31f80b96508734f989c7e070a48209144bb21bn/a Heodo
2020-09-30Zjx952glxgQaAlErcS.exeexe 2a2ad34be21d42d9d04d737b79b79c6f139beca25e76306213e6af69cd4ef7fen/a Heodo
2020-09-30Ln9.exeexe dac6d3588bab5087f9d0f8555a7cd78d5b39fc83445b3ffba561330a024fe02cVirustotal results 8.57% Heodo
2020-09-304DvlcL7bW.exeexe c2988db4465ed1b6463ea87f658c7ebe06924f6ca738e4d07cafde554cd45379n/a Heodo
2020-09-301fdsiO.exeexe 68e160de908ec22cae182f095116b902da905e0fd8c9fd48b5dbe634d332e6efn/a Heodo
2020-09-30B0JqY3.exeexe ea99cc66b3b814629fee0494e917c498208395c60e21754c06009f394f095a4bVirustotal results 7.04% Heodo
2020-09-30jwjxih1vFN0BxU1.exeexe 6f1b0da6ede776155f56c46023f0eda40ce0ee7b0c075a310ce79bb61781b894n/a Heodo
2020-09-30SSfEGtO3OMc3.exeexe ec5406140bb439a55b6e5bff2c901bca17b99f6324dbd2cbaecdd4d0591d44f0n/a Heodo
2020-09-30VpvYqRWB854c0.exeexe 508775165b1e9f7cc06d96dcff90def3315a5daefcfca82464c240aac7787b01n/a Heodo
2020-09-30XFzN7q09ezp9Qs.exeexe 0f40e90fa072458a289cac2ec40d999ddb111a4d5d0cc3a87ebb8f1abb1fc1acn/a Heodo
2020-09-30p4U4krqBOA.exeexe 83dd0123e77dc117afd33727c05803f202fcd25f27feaaa594286ed2be3c2746Virustotal results 7.04%Heodo
2020-09-30lTU3hmGarRyP63OC.exeexe e14dbcc0a3030eaad2d95b885ca2cb14f5d54ff056f93fc63455b0ea52242193n/a Heodo
2020-09-2931E1RSEUu8jxad.exeexe c6e394c643ec424f7ca2e2bc721e47f39d699215884c1abdd25772aa8e6f1b38n/a Heodo
2020-09-29BUWeiVHOCGzi.exeexe 88a2a866e03409e88c0ce2fd42cb33d0b05fce3aa46c507b51001e383ce720b6n/a Heodo
2020-09-29O4h.exeexe f5af9ef3a734f2789b665b6c9b387b75b0df30b3885cb627ae9bc9b480f027b9n/a Heodo
2020-09-29d2OTMXaUYP.exeexe e15c434428bf7b4f6f5c208b3b5de6aa12889519e5b89f4d6bb4b78124cf4717n/a Heodo
2020-09-29FCv1KqO.exeexe 24ef063478fbc2dadae6f75d9531b87dce1dccc41acb9dcd4eb4b75e752dbb69n/a Heodo
2020-09-29zuuTtnjRRRyP6l.exeexe cbd43db19a33211cd9894eaf60b1aadc481eab866d79dd3c01632a32fa1560cfVirustotal results 7.04% Heodo
2020-09-29vDvKpbHMTM2oDMB.exeexe cbbe903dacc4fbc3472278d2d009c153fbe9ad0768134fa5ecd938d41850b559Virustotal results 25.35% Heodo
2020-09-29eyITw.exeexe ad09cf22cd7930713d495c9f180dc28816f3109cb21b8d225c6e5c07d4eb8848n/a Heodo
2020-09-29OnA9ml2r4Y33jiV.exeexe ca74dd070f5bbcfabb2d95d30dec6dd77d32109e0af5d9665fd6ad799699e3a4n/a Heodo
2020-09-29rlJ.exeexe b8d099d7f7ce1c2537ca008bda94cb7ababd65860432d6844ad5612c483b342en/a Heodo
2020-09-29vUSUFIUEXRa1.exeexe 7065e5debbb331e9c442947f32cafa0c1456582e2e2b648cf289e10d6a672436n/a Heodo
2020-09-29iYfdfpntlAI.exeexe 77e4371648c9395971f808d8a5932dcb4f0366146d3a0aeb309bbac31d81b574Virustotal results 17.39% Heodo
2020-09-29FOxu7D7Or2CxJ.exeexe cf0478068889ff9a12bbb4dd009281f8a8162387666c36b12151f4689a4c0c5aVirustotal results 17.39% Heodo
2020-09-29xYw3bBp33H.exeexe 7ac9d101a1b57fb4a71dbda2e0b826968ded67878919d2a68a9df487f87e009fVirustotal results 15.49% Heodo
2020-09-29ti60rxpDj6b5X1A7S7.exeexe d97dc2c4eaf2ad8082da15f51d2508c4886d81ec9937898524a2b7268549b54cn/a Heodo
2020-09-29IXTMAvYH15JX5.exeexe d073fa7510b809c894b3fb483f9762105ecc91e44508272dc283a43f6a73d286n/a Heodo