URLhaus Database

You are currently viewing the URLhaus database entry for http://malkaragida.com/content/Una/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:698168
URL: http://malkaragida.com/content/Una/
URL Status:Offline
Host: malkaragida.com
Date added:2020-10-15 16:47:05 UTC
Last online:2020-10-15 23:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-10-15 16:48:10 UTC to info{at}veridyen[dot]com)
Takedown time:7 hours, 11 minutes Good (down since 2020-10-15 23:59:27 UTC)
Tags:emotet link epoch2 exe heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-10-15c5Pi9Kg.exeexe 67154bff13fa9ff7b632f1272fdff6255d520ac8116bab4e1c78e760acd8b3f7Virustotal results 4.29% Heodo
2020-10-15R.exeexe a4f1d5160e091caaff59b21817e8d8cb9d643faa7def5687be9b219ef47f6417n/a Heodo
2020-10-15xQbTj.exeexe 187b23c6894919f69cd4b97d5083d156b942f9f6664eae6be8ac46c367e40a33n/a Heodo
2020-10-15ZQD3VKJQfVMSZ.exeexe 454df482193a80505bf051ca6c5932ee54c83d51f93bf53a51841be7896c7ff6n/aHeodo
2020-10-15HFF0qrjd.exeexe bdc89d193460b30586f10b56410d157dfb5e43eaed7a72a583f33f0f80c8cfbbVirustotal results 19.72% Heodo
2020-10-15vh1WXed.exeexe b0990ad9496af8dfd59f657344c3bbf7d2a38a3dabdbdf370dfa98ed1d2007f8n/a Heodo
2020-10-15hINwe5npXXMM.exeexe 68aa269341a1812e98cc07e89d1bb7419b9661d793b37dbe01bc5daef723b62fn/a Heodo
2020-10-15DQSZ3bcD7rkrHXlKb7.exeexe 3b6446d219a2d635392c1322f35f235f8f39105966f72e82654e7ba97ec6f0f7n/a Heodo
2020-10-157ZRRR06kSoTDpl2S3.exeexe 76a344332b0d405f58854e10531d8f26c34cb661668a1ef7369fd7d315854d04n/a Heodo
2020-10-15XY54sVjfVgbD1PAR.exeexe 9a8dcee820e4780c043934ff764134d56950308b48163a83228e79a8e9b95c85Virustotal results 16.90% Heodo
2020-10-159UimT1g7Fk.exeexe 5ef251c6b0fd4dc7fb1c6d4486c51c4612cda1b41563571a7a611c80a3bfe2a8n/a Heodo
2020-10-15d8ymkgNu.exeexe b29334655ef4019a3b35dd20af75ca75e33810ba880c8935bf87a27ccdfcf783n/a Heodo
2020-10-15pnzeE3L0vfgJMan4i.exeexe ef884ca5e6d34f178ca289f630ed932535888e110d74c903c894c536a2448b44Virustotal results 20.00% Heodo
2020-10-15H.exeexe bc2d2135468f096c355f5b3e7bca770358811b54f4797aabe9332cb7cb1ea1ffn/a Heodo
2020-10-159WDZ6gjZ6WFdok.exeexe 90e50b01e7e8ef7cc83099a052fd42acce8d6208bb3541924abfa68c4bc6cdbdn/a Heodo
2020-10-15mY4i2YS46YSnEPjMV7.exeexe 90fe74bb63fa05d5cf8b62b64a3bbb9f2b2d46ac645280d4863a0ede4b45ac4an/a Heodo
2020-10-15pD6V5U45tU4TBFmqr76.exeexe 0f61095c67d0ebc52c254a6343a96471cfadd14fc51229940afe54d85d9004f2Virustotal results 18.57% Heodo
2020-10-15zDiGcIyshd3sYa.exeexe 0128fa18c3f2d9eac0aa7270622b32c2002f8353d2af206538606896e225daf5Virustotal results 18.31% Heodo
2020-10-15iKLBfXVIcNFuk9Fr2MR.exeexe 0aa7ff0f14fccf40a78e0489b08025b0c54fb912ff2a3bfb21307032bf7c5e36n/a Heodo