URLhaus Database

You are currently viewing the URLhaus database entry for https://www.dmtland.com/wp-admin/4k/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:710046
URL: https://www.dmtland.com/wp-admin/4k/
URL Status:Offline
Host: www.dmtland.com
Date added:2020-10-18 01:40:13 UTC
Last online:2020-10-19 16:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?):mail Yes (Ticket DCU003020251 created on 2020-10-18 01:42:05 UTC)
Takedown time:1 day, 14 hours, 28 minutes Poor (down since 2020-10-19 16:10:38 UTC)
Tags:emotet link epoch2 exe heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-10-18kCiv4TTHisSdL4Y.exeexe 347e2b17005d22f68b6ee9633687d72ffac1f61d4613fc507108d87fe03fa1b3Virustotal results 32.39% Heodo
2020-10-18y0s1.exeexe 2c4ea061dd8679997c2c165cea31a6a89c7430fb85aa432d18c154aa4822d26an/a Heodo
2020-10-1841T.exeexe b38c6909254ff9aa3c61ce24fc45d5115ed5b14cf92c7a72a13901cb942e2502Virustotal results 33.80% Heodo
2020-10-18E555yyO.exeexe aaafca7b072ff0b6a6842067d41df8ebd39d51e54065ff9fcb33b73d05409ff2n/a Heodo
2020-10-18O.exeexe 180f5f99ad491d5bbb609ee41fda4684c91146c131c474c52d622054eb464436n/a Heodo
2020-10-18HJysr8ac6Jv1WeA.exeexe 7db5c34092a6963d16cff915e987feae63abb12fb4a168c06f6234296fd7b637Virustotal results 32.81% Heodo
2020-10-18SEhAlQiOGbrPwY.exeexe ce964106dc987d983cadf4f91170efca6af3bd13331029e4a195d1c167ba5a02n/a Heodo
2020-10-184GTeBx0DREkVgP94t3.exeexe 17e7a3c91df7f4dbdcd0e5e4666f93dcb331da6c8b9f44ff620c57403f42f9d5n/a Heodo
2020-10-18N.exeexe bba7d696d85ac8f05533d508262053e4aeb3d005ce349d55f583f1604c758a78Virustotal results 32.39% Heodo
2020-10-1869xF.exeexe a9ba3f91908a97aa04d10bd9dcdebf0af88a439014a75be17e8ffa2ab33aff9bn/a Heodo
2020-10-18uzkGz.exeexe 46e9397529cb1640648a02fc9ae7ae1611fef32005a7c3d52aad5e0e94e68134n/a Heodo