URLhaus Database

You are currently viewing the URLhaus database entry for https://1999beats.com/torrent/Wg8iT/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:626426
URL: https://1999beats.com/torrent/Wg8iT/
URL Status:Offline
Host: 1999beats.com
Date added:2020-09-30 03:12:09 UTC
Last online:2020-09-30 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-09-30 03:14:29 UTC to eig-abuse{at}endurance[dot]com)
Takedown time:17 hours, 56 minutes Good (down since 2020-09-30 21:10:50 UTC)
Tags:emotet link epoch3 exe heodo link Trickbot link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-09-30965aoU4fCCFunBsZB.exeexe c7e0529fb37c28bda9b1f80a66f3f1a4728261f443d7c07e7efdd7cff2181102Virustotal results 8.45%Heodo
2020-09-306MbBNmlA1PTtFylk5O.exeexe 41ca90a93b873fe0644f7751423025d974ee41a5306cfbe73ba707d5c4690cc0n/a Heodo
2020-09-30IzDFF.exeexe b9433bc731e5e87b5d94941a0923e29bb6deaefcf09ab117ebf85db4411f92e3n/a Heodo
2020-09-30rKKB8DFbQ.exeexe a8356db289177a7e8822008de0cd92c1d102247622b6623a42b263c835f44188n/a Heodo
2020-09-302OI9vVj9s3urc355.exeexe d2663f07c2c15d4f0a7d9816a5bc3a60d0f4881a0f0f42b920cb1996a06cc6c4n/a Heodo
2020-09-30Jndgczs61AcXZk.exeexe 19e11cb7466f6a474abf62460c6a3572675c3e9460b40b20774222c4240629fen/a Heodo
2020-09-30UsAhml.exeexe a0117589bed1692c3e7b1c6fe9ba556b9993233d952d1b88f2000459e84a2f1cn/a Heodo
2020-09-30zjFc9gDwTp.exeexe 3f8e2d7d7649d56db538ca7412607926cd5cc988736bd171cc5e1800f17d7f72Virustotal results 11.43% Heodo
2020-09-302JPyG1Loob.exeexe 4c3199dcf945dd405260acb139147343bdd707950c849bdb35bd419266e79379n/a Heodo
2020-09-30MYALwCt.exeexe 7ae4c38982da835ed9ce6035ba15167a7006546bbe130c12d2e80d2e6cb2dc2en/a Heodo
2020-09-305wcVHEd7k.exeexe d839fe27b1a793761c43587255b44e617b37fc7f64c413bbad44259a40bbeb1eVirustotal results 29.58% Heodo
2020-09-306OyuwgwdvOCGYLzUZo.exeexe 6045a5b6106ba74182c47a970d899e47b0c3d3c6d4aa548cc20590919369b6f8n/a Heodo
2020-09-30qgekAEj.exeexe 9cf61bba5dfa7a9ae43438674c09d8feaf9b464322e6b8fea2da81449dadcdfbVirustotal results 23.94% Heodo
2020-09-30uVM6u8gSYS6mbhX.exeexe 8a112d10db620d49ffca5cb6b8b4756868759214dd29045d3a857682b9cff9dfn/a Heodo
2020-09-30bbxwU.exeexe c7fa74ffef17e12065bc01b3ab5c7fd6150714d1cc453c03f54c17977cd61c4bn/a Heodo
2020-09-3015dwupZixOIeRN3.exeexe cc74dbe9a3d21c2730e98e0486053f6cba1d91b680ff5dd03f3862b0f09c5ad9n/a Heodo
2020-09-30LzwazT4l3PlWHR.exeexe a9ba5ec94b2fc61ef4d3db6ead1411ff62239635491056ab2fe4fb381370969en/a Heodo
2020-09-30mme3L0u1EUNYT2.exeexe de1df9e6ed1d3175cc0b800bf222dfcb5a64c79bd9d5911e68d52c4e3cc45da7n/a Heodo
2020-09-30bj92Kxa1I.exeexe 9a0bc89d8856af8f200241cfa79d2c82139a5498a2894d1e0f9927402c2c1b65Virustotal results 16.90% Heodo
2020-09-30Khpy.exeexe f2371b18d7b920fb235d57c5eec3f01a11d78d56f3c435782e192f3e159e5ddfn/a Heodo
2020-09-30m0.exeexe ca39d528879ede68a7224fcc3b02c113ca30327dd5e8c0441875b705ae1744bfn/a Heodo
2020-09-30RPu6l1dyU.exeexe a6d776120e86bbb5b31a3d04d86fa90320a279d6ecc0690c8645254c825d2350n/a Heodo
2020-09-30vtVotfHA.exeexe 8c0d12941b175a499f8aed976593aae02f9790fe9304aab571daecba93270555n/a Heodo
2020-09-30UT8D8UG7rDvIay.exeexe 5d18799ec8b4cf37fd610d73be0028338cf82a607084e10bdf3930185966a377n/a Heodo
2020-09-30VFYyyDIHIpWPiM6i.exeexe fb6e158ce70e3380fe4e9756dffb6fdfd406f26af4b88f468eceeb978be89346n/a TrickBot