URLhaus Database

You are currently viewing the URLhaus database entry for http://w-maassltd.co.uk/cJ6azNouR which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:62703
URL: http://w-maassltd.co.uk/cJ6azNouR
URL Status:Offline
Host: w-maassltd.co.uk
Date added:2018-10-01 12:52:07 UTC
Last online:2018-10-02 15:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Blocked
DNS4EU :Blocked
Reporter:Anonymous
Abuse complaint sent (?): Yes (2018-10-01 12:54:06 UTC to abuse{at}fasthosts[dot]co[dot]uk)
Takedown time:1 day, 2 hours, 46 minutes Poor (down since 2018-10-02 15:40:34 UTC)
Tags:emotet link exe heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2018-10-02TJiisf7EMKD.exeexe 3375d61707357eab95d1e175bb551ea1e2c09355e7107f398a7943773a102330Virustotal results 30.43% Heodo
2018-10-02i7H9qLA0.exeexe 52871193f912204be3b3045e4c18baac6483c87e3d1c5c4b7ba8f8db9bb332b9Virustotal results 27.54% Heodo
2018-10-02vTXcZsEPz.exeexe c06bfa2b185ed293b9a94b1b22584704fbed3763b0839ff42d8053c141827a18Virustotal results 26.09% Heodo
2018-10-02uqocMwyq8.exeexe ab74b8a721a52e35bdd5a88bed8a0ef2a4287c24e0d10fa249119de8ec691768Virustotal results 21.74% Heodo
2018-10-02zw30U4yRtLK.exeexe 9f3a7efeb46f72dbdacb07e409a23cc78055eb7d5c0dacee9d303d1c49bc2540Virustotal results 21.74% Heodo
2018-10-020SJ7yxz22.exeexe a16a2d979a6e123a944203284ea9d33b39bae9509d21343b2e344a31e1db0158Virustotal results 24.64% Heodo
2018-10-01n2Uq64dnSF6.exeexe 9a1d8419f0445219f6b03100421c64c2fc8f7e67274b38fee6fe8baf43127a32Virustotal results 27.54% Heodo
2018-10-01PudbjQqtA.exeexe 0d7a4650cdc13d9217edb05f5b5c2c5528f8984dbbe3fbc85f4a48ae51846cc3Virustotal results 32.84% Heodo
2018-10-01K95LBvuSIDyy.exeexe 52334b3694542598dc491f112c1c86f2ccfbfd86a8bd4b9a8b66c9347e98f11dVirustotal results 16.67% Heodo
2018-10-01NL0zZxl7m.exeexe ff975b10d2e000c5aa3dbad1a2abfc4e492dd33264f32162edfa54a661788b9bVirustotal results 17.39% Heodo
2018-10-0173p7ooc0ia61.exeexe fe516708fe6db062b525795e67100e846257135e5a30526839ed405bf05ed4a5Virustotal results 20.59% Heodo