URLhaus Database

You are currently viewing the URLhaus database entry for http://gnlsafety.com/cgi-bin/eAD/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:692342
URL: http://gnlsafety.com/cgi-bin/eAD/
URL Status:Offline
Host: gnlsafety.com
Date added:2020-10-14 12:24:08 UTC
Last online:2020-10-17 11:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-10-14 12:26:12 UTC to abuse{at}amazonaws[dot]com)
Takedown time:2 days, 23 hours, 5 minutes Poor (down since 2020-10-17 11:32:08 UTC)
Tags:emotet link epoch2 exe heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-10-16s3kyf.exeexe 69e415a6a536be75a427f06f90414b83efc6a417e177b64a5b6976d9219d9e21Virustotal results 31.43% Heodo
2020-10-16gphbuoFn9s.exeexe 56b3738cb6ceb872343d3db96571c3535a6f5efc7377cef1bbbe835dacb791c1n/a Heodo
2020-10-16TlmItiN1ZwkhBE3Jb.exeexe 24682195bb09d6896ceb61bd304065cbde793e49961aee36ebf1aa664fffbe39n/a Heodo
2020-10-16UOEll21nc.exeexe 6ce26c45e0eebb792fa3e2d839ab8c326da34cddafcb1b2bc477d3be4c97f304n/a Heodo
2020-10-168eX2.exeexe 08fe34bf4bfc795d39c39c91a46145d6555d3df446c7c0cf42e54bc6e0dfdd22Virustotal results 25.00% Heodo
2020-10-16i6TOK22vqp7R3.exeexe d4899df7e3de5dee47664fa1a9119360fcef21cc4ecc3a1411d8a1eaa3f9182eVirustotal results 21.13% Heodo
2020-10-16BPVrQiqdA5.exeexe 5cf6a192fc8847cd06a500c141893c3b2bfd39583c1ee7302c2c4a45c3048a7dn/a Heodo
2020-10-165nybn2oDEyztAwkJwkY.exeexe aa6a97f97d8966195a0f45a9f133c33bb06c751a9d4a34206423cfe7d5b355c7Virustotal results 18.31% Heodo
2020-10-16cL5PAF5g.exeexe d32d85c045ae299f466a77ada83fe7b251861b36d14f78a89e0293efbedf11e8n/a Heodo
2020-10-16MFgmmLWVOw.exeexe 5e57c72d407fff4ba350d0df04af92020c3ebbdb8ba712ed10de916cb8d3df86n/a Heodo
2020-10-16Zljk.exeexe 850190dda1c50bdf1ae1453269be2f4878c11463a963892677238155491ffadan/a Heodo
2020-10-16xlrvB4hF.exeexe 612991ab46bcaef3ac0e1655875fb46e7227fbf743df3fccbfc22774dc0ffa21Virustotal results 14.08% Heodo
2020-10-168KNH0bWQbm.exeexe 2e738ff9baf854eaecad76653c1cf10035cd720f33b84e0f587aebb82ca9048fn/a Heodo
2020-10-16QsWMvGLT7cXN.exeexe c9a11b8b797432c7a3120f15e17bfc6e71cf79f488c6052a7f02e028001155bdn/a Heodo
2020-10-16WYrfqmMbGymCs.exeexe 699f1b0a6912208769e1e0fa05fa7db609f0e24c05ce0e1a11669b565edb458bVirustotal results 14.29% Heodo
2020-10-169XniIw98mcv.exeexe 4a0f0c44a5754361b43a184ab5e345e6e0d9f93dfa585f1b4f49e78e6fdc109eVirustotal results 15.49% Heodo
2020-10-16IIsCFjHS1W4YeAo.exeexe b53bb8a5a5848139a0b45cfbdef3ed5070748527807695575b4664a90b10c481n/a Heodo
2020-10-16RUlEdP.exeexe 4f9dd628d68312c7a82f44a4e33ab38e1c623a61a08e3830531c91e3470b439fVirustotal results 12.68% Heodo
2020-10-16qO2roOzfV.exeexe ec8d76d210a5933b1de09e155fc0b3f6550adf0e68382a7d9f735567b7c7116cVirustotal results 10.00% Heodo
2020-10-16tdhcbAAN8w2O603ExUg.exeexe 64739e47269ec2d620ca9cda4a1178a896d7aab72965c2787e91279f1afe479aVirustotal results 7.04% Heodo
2020-10-163hA9cU2BfJao.exeexe f198af1cf06f9b8c491436e1451ad218ee5e54f7c55ed4040d24d2e1c09695cdVirustotal results 7.04% Heodo
2020-10-169KzJb989CwC38.exeexe 954d0ec56a27f91de049dd5068c38c79bfd25060c99dd6467528530746c11872n/a Heodo
2020-10-16A.exeexe 6a3eed270757733e4f746ac4921d44fb7b642e8798c5087eb004778a3e787031n/a Heodo
2020-10-16PQN4.exeexe 3030a2921d171dd37c586b39ade1582c40c12a99a276ab724f56bfb47cba4e83Virustotal results 2.86% Heodo
2020-10-16WLkUUHxFjTDW7KBL5V.exeexe 343df77c8de5a60bb21f0131aaa4d2e3a3cab889e3da692b64926a7b11ac4758Virustotal results 7.04% Heodo
2020-10-16kn.exeexe 2a4c0d459184e35cea9831969d11830a5b226b352004ee9cb3da624f0a5e76acn/a Heodo
2020-10-15HdxbL.exeexe d18dcf9b7fab921f44cdc1d672f71166d6eef89d432ee459d5e746c1382b1cf8Virustotal results 7.04% Heodo
2020-10-15v2xsxS8ctblrzhFwc.exeexe 72be8d7513ce07e1c2292e6588fb8f9db44fb9436d13296bd4f978ea252c2c3an/a Heodo
2020-10-1566rV3cOzqulNZPDpdwQ.exeexe 045a87d8b932c2de60841c3314e926170c795a4398fa26ca02c71d93369485f4Virustotal results 5.63% Heodo
2020-10-15Aye0BFDVL3Axo.exeexe 32104572d54a4b01d143aafbbbb5aeadc04751d6583d5e71df4e0678d7168f06Virustotal results 7.04%Heodo
2020-10-15THboHdf2ll2tpoF1rTCY.exeexe c638a57e25eb7386e3fcb33f12f4dc4b853da114bbdd5523b9b2cd3a4c1361ddn/a Heodo
2020-10-15ROQf6Ptjc3CSTWMVQD.exeexe a3da565de97d3e04f041122d3fe1ebe186e8730af8b5d613ba0ae84d4b3ec2fbn/a Heodo
2020-10-159V3N1vY.exeexe 52fb342bc731132cc242ed4fef3d08bd020aa92387f1f3cf3c1c191487aa2064n/a Heodo
2020-10-15ZcFdT4Jwx.exeexe 65edb900843214a1f39ae95830dcb7eb0e9f8c4de231e2ff002f7c3a2fdeb3a3Virustotal results 17.14% Heodo
2020-10-15j.exeexe 8fbc6b3e9b5540c5cf1ea7ef52c573b3c5f815e78b6c0cabc1b4dc6fc54bc713Virustotal results 16.90% Heodo
2020-10-15VO72.exeexe 827efba261eade70e8f3be1c19404956601bae1ad2ccc752e5a6e4c57e1369a6n/a Heodo
2020-10-15yXay32fEd.exeexe bcddabfca6d1f29278b5b3582fe1af9695f9c691001e181441888a7167f13179n/a Heodo
2020-10-15fIR4yHHC57w.exeexe bec2361395e8b838ead4cc35f821d557e405f89069d072fe89b5402fd518bd11n/a Heodo
2020-10-15ojlX.exeexe d6e21c101175a4e49fddfa07da3c36a0179333b5612960b4e62fe55ad947a002n/a Heodo
2020-10-156c1a4Pii1vu.exeexe d0cd6a6dbd9848883b810502b405b51636082189d4d4ff18ab04850af979286cVirustotal results 18.57% Heodo
2020-10-15VH9efdDX9TC.exeexe 145e882d4d404d70d21caa6bd6e1b5210db230df4323e833fa8bc562e714eb90Virustotal results 18.31% Heodo
2020-10-15lM6usWgJkb5bUOMp.exeexe fb06bc392b11456b69f7900a894afc9fb4a892dd49f3f708130b599e6bac4815Virustotal results 16.90% Heodo
2020-10-15T9qbPkETMkV.exeexe 4d6b57754acb5074aaeb47ceb4795384ce9a4d1775cb11f97714953eef3fc5a9Virustotal results 18.57% Heodo
2020-10-15yhTDcc.exeexe afd209e16cb14331095ba1fee53c4dfdcba5a36ba2e932e432f8ebb5e98dc354n/a Heodo
2020-10-15A73PNFp5SM.exeexe e31b953ed029523d1a72807c5396493d537364c3d9b0cdc9331c8394db3b421dVirustotal results 18.84% Heodo
2020-10-15JvmQ7wGxDtg.exeexe 439f829c9321bfa0343a0fc0be31711cc3e896b4bf3d0a1f62867a6ef8533750Virustotal results 17.65% Heodo
2020-10-15RFGQnwkk2fn.exeexe 82c3932019a40353b5824305ce0c552dc3342f2db70bb758a94aaaa8c64ed737n/a Heodo
2020-10-151kaMiYa2cO8V9JULOJK.exeexe 927d0c02abede2c9d8d4c21a652307dfad078846642cedc1ae87b23a13dbf3f0Virustotal results 18.31% Heodo
2020-10-15pKz7.exeexe 375162bc5dc326b2d17574b02b0096f690d571c4003db21f75f1deba79966d74n/a Heodo
2020-10-15OZfajhT.exeexe ecc0e6da582df3a7632a099d9c5a0cb9002d5ade1ab0b2dff6f04cc574f09e26Virustotal results 12.86% Heodo
2020-10-15KisvMGY.exeexe 9c2c1ea8e8372d1e4d2a763e6a8f3ac5aeb3ef8cd766ce4de774a900737f3df0n/a Heodo
2020-10-15yewGcPUiqUD.exeexe e84964bb4e8c28d24db5efa0505d75015217b45f41b3b63b0d467fcf1bcd46bbn/a Heodo
2020-10-15NV.exeexe 74263f000abbd8cb5bed57db5d85001bc1c2925fb3223b006af96b19440ee489Virustotal results 9.86% Heodo
2020-10-15933tWp.exeexe 253736e9abd040fe8912ac0d560ba1afa6b71f11fc948df6b5075a1c7fefd23fn/a Heodo
2020-10-15DfmdIxGmX9.exeexe eb4f542b64efd22fc3277ed3d398d15b441613de6e056eefcd2aaefd025ca93cn/a Heodo
2020-10-15HFwad.exeexe 53c2af82a861d9bf6fbe8fae9712e71bef035d62327df11301d42369ef6234b5Virustotal results 8.45% Heodo
2020-10-15ZPaE7IxYWNf.exeexe 2e25886398200bb722e458dedf39509d16b9d1913e7da1c521bf08923e7bc219Virustotal results 8.45% Heodo
2020-10-15A1Gp064Q.exeexe 0972f447490984079592db9356ddde4d2c3dd0f4a64a61d19dac03f6d5bd6bd5n/a Heodo
2020-10-15x8htsZCiq.exeexe 89fedbe9231383fa50b8d8c983ecf0b4606ba5031ddf89425d7840a5888ea4bcn/a Heodo
2020-10-15deXa5L.exeexe 568d3a19adeec2ee1e5f8634d73faa6f3746a84dfd9d1668850f3670962ef9c0n/a Heodo
2020-10-15SZCeWXGD07wH.exeexe 0d509e76d07922c50fb22de2c7f3d524553650d65012289c3d185e61bd0d3400Virustotal results 19.72% Heodo
2020-10-15dJYHI.exeexe 9d77ee9e30097f10d2f88e58802a1ceba600d59719ac23411b68251d41e67f24Virustotal results 16.90% Heodo
2020-10-15IruoQj0jdaKbX4LQ.exeexe 6153904a4bdf7723b2990769d99e94482aad001b5a7c48a5143ab079a2f0570fn/a Heodo
2020-10-15Z8qapzStPDEePr1pC.exeexe 647bafb32f4536e22048e2d5254743e24628ab5eed7dc31aea388a43bbb75d3dn/a Heodo
2020-10-15b1VRoBwAEei.exeexe f7326d3046a63c183de3fdb793e2cc4d9f870a5d8e1d7caac3ad59f2db2c1bbfn/a Heodo
2020-10-15w2Sv.exeexe 9e166f9466b3b547b44dfe755e3ca6a61c512417724ce6f3cd93b36b46a6f267Virustotal results 15.49% Heodo
2020-10-15e1Bq9DUaHIIN.exeexe 6651dea8ecbb7eb0e1777ba1a645bd22a61d10ba54bfd74a9eebde2dce43c7bdVirustotal results 14.29% Heodo
2020-10-15224iFNUsQAI.exeexe 1623b70ba5cafc24739b56d9dbffabe9d17c6b66eb28a76a2c7282482b6c92c1Virustotal results 14.08% Heodo
2020-10-159yaS8BCQB6hWMM.exeexe 0b3a0f0e45e24824f7e9e6c4ccd4b7474c4b98d181a1790e9bebeaeb46f6c7b3n/a Heodo
2020-10-15LNXR72P5lzq.exeexe 980c1868c996405731644880cc60cba9ab5fab154f5a651b8eb94479d62b7032n/a Heodo
2020-10-15jNFR2X7SuCiNK75lv.exeexe 24aa3d526e3ea83682c7ccfde83f122b45962eec75e417f76e7f6969b0ce872an/a Heodo
2020-10-15Atxum.exeexe 9925445493f506327485abfd0e4e4b061339f972430daeb9fd22929e8782df7aVirustotal results 15.49% Heodo
2020-10-15iGSv.exeexe c642e33a674dcef62c0b325a73093de5ed6d66d48800f53c0d8fab906f2db29en/a Heodo
2020-10-15N2tW9UbHb8Zqig5LXf.exeexe d7e36ccd26b86a7c91958fabdcc2ba1b540efe547689f00b83eb0851c074c723Virustotal results 25.35% Heodo
2020-10-15wdBtPANGfLmzfcRKib.exeexe bac77fd2a526b2da34507cdef4f2f24b6c2c8aa56df63fc40f7b1406ecd3c2a3Virustotal results 22.86% Heodo
2020-10-15yGbhW25DjAuN7.exeexe 490fc98db574553046dfdde7b1a8507efcc5efc37e84d4f1ed79fcb0016d6961Virustotal results 19.72% Heodo
2020-10-1571lXfqqeI.exeexe 88e6ae84b5dec643778bc94ed12968126a4af7cda12f04bcb5a7a7575f9b9cd9Virustotal results 18.57% Heodo
2020-10-15HW.exeexe f8d23a3d06d43f8955b192569d82654c2769144ef6937c8a905830ed871c962fn/a Heodo
2020-10-15OG68PuIv.exeexe e8efe6e0f09d6736ad4d5ff26fb97e0fdc2ee4c15976e01d4b189e7e95efc846n/a Heodo
2020-10-15uXT2C.exeexe 69340097dbb1311376da75a0b7934cfa1138b4537c970b9ad55db49461584ed5Virustotal results 18.31% Heodo
2020-10-15vgpGQ4lfJYBn8Ew7WW.exeexe 85011fdd86edd5ee2df282aebb6feb4461644dc85c2fbf596e87271178974854n/a Heodo
2020-10-15TWdXTXaiOvTeDNpkL2WL.exeexe c54f4e0a8798f2736cf2652ceaa928bf0feacbe412182f2c87539b25c6d57e2bn/a Heodo
2020-10-15CNyHjed8.exeexe 020261e1de5f4bd77de8d85fcef0a189c8db8d7e304a0a79195a9486b02e580an/a Heodo
2020-10-157aVAE.exeexe 2f501e0734d51da333c02b04ff4a34f0a6d3dc811d5111a96145792dc9035a24Virustotal results 16.90% Heodo
2020-10-14W.exeexe 06c814a809c869b8d93dcdc63e37c85ea463d4a1209247cc1119c9339e318a0dn/a Heodo
2020-10-14dJPC.exeexe 11fcf1c858fe2726f6c1ba82e25825df4f06c46f2b9e41e7fef67b36de5fb1b1n/a Heodo
2020-10-14sb2PCyi.exeexe 7a4674cc5ce64311c1384e31f13787a0a3aa5d5fa9afefddd2e2161698aaae9eVirustotal results 17.14% Heodo
2020-10-14vDyJWF1vJChyWSllUepe.exeexe fe5b26506282b262adfb28971f4d9cfbac471b95fd73fa49106291cd68798648n/a Heodo
2020-10-14k6a.exeexe 10ba1bef121da788f22e7676ff4a1da470696f5a5132dfd5b5156146416b4ad0Virustotal results 15.49% Heodo
2020-10-14B3B9FWpWaph1Yoyqz.exeexe 1c327b9eea6b5d828f3ddbefd78ae2aaf8d3ae68a4fd5951fc035084e4fc0c6bn/a Heodo
2020-10-14bLryDi3.exeexe 1c6ac1a277864ccbc5670c110f882a94c0a2cb72a55f657093e11872ebc56133n/a Heodo
2020-10-14gyhE42O.exeexe 02089b45c814762c1b6c4131c6efbb103aa3011329321d760117034963d1c3f9Virustotal results 15.49% Heodo
2020-10-14qPNgESZ8RS4BDoa9HYNe.exeexe df2af085a4b5708ff8b250c421092eee299cb589651ac255120c9ec7db2538a7Virustotal results 14.29% Heodo
2020-10-14GS.exeexe bfe71556149faa3b6b6091e29a781664f8390977416ea4e851b029df74937319Virustotal results 9.86% Heodo
2020-10-141tSgMIvI3oF.exeexe a6e73eff857831d4a9f9d455f31031e9e547ac3234f2c2896802936f32e9aa84Virustotal results 8.70% Heodo
2020-10-141HeOOoaPMhxDP.exeexe fb67fa4c17d5af36a2967decf25c5aa9d5af7362452fb658e6fcccd7ba07df99n/a Heodo
2020-10-14SXJZn4K.exeexe 02bd634a2fcfe4f36524fdd3807241235993f604d67f10ceed489cd4471eea7fn/a Heodo
2020-10-14f2YgYDkw2tBSh5Eu6Q1.exeexe 42975f4d4be23c3e57373f20297c88a31c2bef1cf0f4b2cd13b624cb6f9fb42cn/a Heodo
2020-10-14hwnfgQmC.exeexe f880ab252823285592e11a97d2bb695c60386b6acb50d1d50353c76f9748f531n/a Heodo
2020-10-14Armbcomv.exeexe 19216e56850479571ad114a6a9dbc72f06bc66328ed22a1acd88d7d8ecab84a7n/a Heodo
2020-10-147aQ.exeexe 8cdb86cb0ce460cc8db6d784de6ff22d5c29827f05ee9fd552cf000b6181c167Virustotal results 8.57% Heodo
2020-10-14Z.exeexe 86e6e1ce08bff1a26df5d01be873418fb33ab6199a5d60f505ef230f89df7735Virustotal results 8.45% Heodo
2020-10-14GaLz.exeexe 7d03daebd85b9dfdcd10e6c00f889e4a861ece85a563c3a43dac3e6e55c09bf5n/a Heodo
2020-10-147kzGhlj.exeexe d2a8c70dc620aab645a341b096211c5265de71a118214e50f4eb026ab3ab47f1Virustotal results 7.04% Heodo
2020-10-14k.exeexe fc5b80be155a6323a5a5732ae3dbc7a53fa528e910f71f0ddccc2b2c1723e510n/a Heodo
2020-10-14KIBFV7GiYvioPMD98HE.exeexe eb33bc2a1a3fbcd793684d7cedc89aae39841808298c75e599424d05ee88a8f8Virustotal results 8.45% Heodo
2020-10-14pyFdLCmO9Rj1Cltducpw.exeexe d6f361292d60c26b6a3cba348c56b8ca39df541b66315b9876a2e68339ccdd6bn/a Heodo
2020-10-14o.exeexe 17dd89b2afdda0e5e9a23748d770b385b479126abfc7821a3846b9ecf8f46361n/a Heodo
2020-10-14ZXZ8wzFrqVfjQ.exeexe dfc5652308f81b31cfe4006eeafa19462b1a15f0adbf06305dc4a3f95eea1413n/a Heodo
2020-10-14zn.exeexe ee226f92865939db48805fa0361e588fb41e1b2962f3fe9d4c04a7dd7d16a1ddVirustotal results 11.27% Heodo
2020-10-14dGAmMP0W.exeexe 4ff22ace3f1f886eb3ae8ead7ef09f1bc4891c9062147086bf296e1469a77296Virustotal results 9.86% Heodo
2020-10-14wot6aG9gTxy.exeexe 47f8495a4a3b4a6dbef5c47e194657ddf9f662636fa648a384214ec482389de5n/a Heodo
2020-10-14QuEXRWN0VKc.exeexe b2a56903148406edbb4f099bf0d23fdcc6a355bcf5a7a069ca130f791256beb5Virustotal results 9.86% Heodo
2020-10-14VyRNvaz1AVN8W.exeexe 74ca6afd674c6f8b6be05fae6f9c9147644eb7762fa00b27b8a73678c1e38e4bn/a Heodo
2020-10-14C9ereA3GPGJbsEJpluv.exeexe a48655301e65415f6c6b05379a1a7e87cdaf9b84ab2e71b056c844ed04d7574cVirustotal results 8.45% Heodo
2020-10-14pmhiwKyLfC.exeexe cd008b751e532fabe0af0003053ba18db4493b7772b6f179936df9000464fe99n/a Heodo