URLhaus Database

You are currently viewing the URLhaus database entry for http://musc.health/wp-content/NiTa8/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:719092
URL: http://musc.health/wp-content/NiTa8/
URL Status:Offline
Host: musc.health
Date added:2020-10-19 17:49:10 UTC
Last online:2020-10-20 20:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?):mail Yes (Ticket DCU003022501 created on 2020-10-19 17:50:06 UTC)
Takedown time:1 day, 3 hours, 7 minutes Poor (down since 2020-10-20 20:57:56 UTC)
Tags:emotet link epoch3 exe heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-10-20cPyiQt.exeexe 5ab4b7efc3f57b8152fedabd5b097941630c672669b5b5a3b046b8a4b1fd1c48n/aHeodo
2020-10-20vhO6YAJZeWiVTj.exeexe f9b8f88c96385b99d9a29764673884d146b9c26313c1f5f7fda71ea91ff33bb1n/aHeodo
2020-10-20UkAL2YyNy1.exeexe 5e0680157334de18680c79c0fef3ec41aff3a54b0ff570854506f73d1916b5f7n/aHeodo
2020-10-204dcvBxH.exeexe 9cffcd61ef32c2aa9227eb3b00cfb705189fbe47d463917442763984c0833399n/aHeodo
2020-10-20I.exeexe b4c3f6e07980635631a467a385da44eed5de7c5e5b9f0e23d8635967c95f11d2n/a Heodo
2020-10-20JKJj2SM3AxhC3iPZ.exeexe 06b56a2e55d9660f727266f4fe4b92fd2bd8e3d742a6d6fe6461dd5e09d46728n/aHeodo
2020-10-208HA1Kuocy9DNVosx.exeexe 1f5601a972c07197c2eb143bbe64c3edf0e3ed51e3d1b18fe5e6e64718326a33n/aHeodo
2020-10-20kMImLik.exeexe e004e3822b17f0b32de54352fb2900341ab0462a6e2b75206d95cfe579250a12Virustotal results 19.72%Heodo
2020-10-20AqY.exeexe 3c28451634b7dae1b9d082fcf0fe9c829bf88aacd812a7f5eebd7629be7a20f3Virustotal results 19.35%Heodo
2020-10-20ZqXBNkERtdpND0.exeexe 13a1af810fd9f3d0e9e07550d356621aab2057a405672e3bdcf46ca1a29e6af6n/aHeodo
2020-10-20cRC5u45ha.exeexe 76c55bb9a4b058efdc906d41b8bd29bfa3e21b17b3100fb84b3b6faa94a781d5n/aHeodo
2020-10-20nPXSWTE.exeexe fa7d81445751946f3d663a6f749847cbc989b309f7c6cea8471c0f2f7fab4ddan/aHeodo
2020-10-205XHQS0JMTVNadvoA.exeexe ffbdb285d94fbcf412ff1a78e4d69ef67ec01c1dad6399338f3cffe639a1213bn/aHeodo
2020-10-20JnMpp.exeexe 64826f97955222d1b0a859daf8e5159eb313a9f5f453dff05e314107c5ca7f66Virustotal results 18.31%Heodo
2020-10-20mOSTZRQEsxEVzUal.exeexe 224099f92a8500473a109a4d00e02850d9f1bf68709bec1d343fd361944dfc95Virustotal results 17.54%Heodo
2020-10-20C0hpkEhsA9SmHgEUqPe.exeexe e46165d6582e01cc70884d7521d431d9cd501ab53ee1053f31251819d7ddbcfdVirustotal results 18.31%Heodo
2020-10-2091GRgMcq8cu7x.exeexe 965ea205b1ffa05c5a94751b6de06e1bca858f6c57588d9c14220cfe1fdf2ddan/aHeodo
2020-10-20ophnw77AW9vYvg871.exeexe 4bfaaf565c9b4aab76a8783938465e53f9863a5375a878142eea573769804256n/aHeodo
2020-10-20EeiO9ag.exeexe 4c8a9b37277bc99f273e638d16311966b81240b51baba453d60bab9fb517028cVirustotal results 16.18%Heodo
2020-10-204lCSNkuFxh6Gvrfyyc.exeexe e67bd670659393a172185467ffd4edcb7f5d45210849e88ca7256c8f67836ca2Virustotal results 14.29%Heodo
2020-10-20lpVAhN2ojXnS8pl.exeexe a25bbcf1b7e7e26cbae97ebf41d57790bbfeaef7d55b65bb4c7e1e1dfdac027en/aHeodo
2020-10-20YX75FbXYYt49MU7sG0a2.exeexe 7c903256e24b675083d7f415826ad606c6dedbe88a305c1c25b64e8a1967bb59n/a Heodo
2020-10-20rSmQm8o2luj.exeexe e105caf0d68e3c02affa52b272ffab29e14de28ea854f42d7bd5cc1a7c94df5bVirustotal results 12.86%Heodo
2020-10-20uCWQ.exeexe 942aeedbda35a7724f7a8568be7489f50d7c5194eb9eead7e732d0d0d38f216eVirustotal results 12.86%Heodo
2020-10-202HHKw0.exeexe 96cfbad04ff0639c55e58f1e30abe043c817ad8724c3e5cfedadd85b808f1be0n/aHeodo
2020-10-20Nw2E0A.exeexe 2515fa0cc1d7ad7ab3f0ae96a161ae6ac9a4dbcfb3d259b0d0ed0f3a147acea7Virustotal results 12.68%Heodo
2020-10-20EH.exeexe 25cb3ba6018bd51ad40ee246fd190b2fc146298160a89d1ac2028e3ffd3022deVirustotal results 12.90%Heodo
2020-10-20tFdzzlg.exeexe 2d39a581b30ec6c80f46e7e73b2a222000814fb8d058df20d105e09c948cf8a1n/aHeodo
2020-10-20k.exeexe 02828bf6f3430c5713c8b125eed8f683b5b2d2584b4d6300118d5f0ad05fda5eVirustotal results 20.63% Heodo
2020-10-20Evc0z.exeexe 4d0c56452d3279113fcd80f73f5d4591a4ade71a2f6d73977e0833037579665fn/aHeodo
2020-10-20HhepL6EY.exeexe 0d13a4c4016e4f7577c341743cea60f3592ab01fedb29a2cf52d84fc103e6233Virustotal results 16.90% Heodo
2020-10-20eLWWFIQQX6.exeexe 06e89d024bcd71afcc86d473c5fc8049a0771bca213466fbb4dad043ef8c8049Virustotal results 16.90%Heodo
2020-10-20S5vwkUOttjbL7AGt.exeexe 957a037fb4060a1546d64cef3e9484175dc5e01f6b713ade11c8fa110da6824fn/aHeodo
2020-10-20I.exeexe b27a98ac21464b437b0fc233b2f2b207186e9b607d9379b82975ac8644ff6aben/aHeodo
2020-10-201cjGmuKcAVdC1e9W1d4.exeexe 0153606181fcb738bdf5f7d469eb571a0559bcc370e42ae1f9ff89deda658a10n/aHeodo
2020-10-20QC85NywJc.exeexe bb7efeab63c411cdc5a91e15ca9b3d0dbfa6594893f6e37ed6588ec046ed29e2Virustotal results 26.47%Heodo
2020-10-207FCPH41F1w8tUXUC.exeexe f455e27698c8c12c51e538180c4d3aa63ceebf8fd8c90f1cf02b1a1d04c6518dn/aHeodo
2020-10-20MU1cS.exeexe 4d0c0d7277a1778ddd1c85d338157a6889e7a045ea72ddf362746a7ae3c763e1Virustotal results 18.75%Heodo
2020-10-2048B3.exeexe c71c4d7393a06eecd324d4a9de3964b0486f0273e7b41aa4fe25309406346eb4Virustotal results 20.31%Heodo
2020-10-205K5A.exeexe 56d0c726ddae637293b423e2d3f98cec60376efb4cf3f8bcbe2a9178a7b21ab1n/aHeodo
2020-10-20j00e0D0TeJBve.exeexe dbb23fd7dbf8348bb5c5fca058aea5e01a0ada61ff23cc2531a411a8e39ea6e5Virustotal results 15.94% Heodo
2020-10-20r2WM8l.exeexe cac2335252cb74425d1b338f898ceda6ab2aba30b7e2ad3a867b883f06a735b5n/aHeodo
2020-10-20OUVVEnuzMvt0.exeexe 17436c1cb8344141b29f0761aa4cd8faadbb161cdf3b645f2b05c1e6805bfec9n/aHeodo
2020-10-20Yh0VI.exeexe 5db48b2480b926cd03b94108656a22ddf6e7145aa69de5e721ac596561afe398n/aHeodo
2020-10-20PrkqRXcS.exeexe 6d8cc30df2011da9426ac7626fcbcd2d6358fda3f746583a9486b302135287dfVirustotal results 15.49% Heodo
2020-10-20yH6uYE.exeexe 16f3a3453ef124a08906fe0269fc1c98f0f2cb92c571cbe80106c0968edff5ddn/aHeodo
2020-10-20SclTOOA.exeexe 0d9d94a5a940f4978cc0cc3748423b09299005e7e0e79fb47b4b4fb62cd6b4d3Virustotal results 14.08%Heodo
2020-10-20mF4q3.exeexe 6519396c3c30f9293ba48e20aaefb06ec5a14dee6cd12f9c44c0ba0601c3b7ccn/aHeodo
2020-10-20bIR8ii7dm.exeexe bb82aba9e55c99e92a2a2326a868c8f1776fc133f6338324b7f6f8fd202a43d1n/aHeodo
2020-10-20wfdBOn4tvC80.exeexe 8988b68ff33a84841db6464be53fb3edd6c003aa2c888be19eb0cee811099c40n/aHeodo
2020-10-19unTXmzUDIzt.exeexe 9dd535fa828fa9ccb76fce8662c1bea3a5ce503fa5f786dafb3e095429f5ae7aVirustotal results 14.29% Heodo
2020-10-19yvLyGTk1gZWkSSjXbW.exeexe dcae4d48aeb9b7242d969acfe6dd79d8d36e0ce4d0ca09482eea87be3dfc0428n/a Heodo
2020-10-19yXRU0S8O4O3.exeexe aa72afc91ce6465890ce295b1a75126d7eb9a04c5c40f85259d197e7ffaa7e48n/a Heodo
2020-10-19EMzRddrm1L1P9Lv.exeexe 0bb78b8c553ac6afe225c17eaa4d40b85935c242f82d4859ce72b418a1838411n/a Heodo
2020-10-19UUl.exeexe 008779dc389641a6cc4c729fb07542100cac4ec37ad071d11ccc5463581c71cfVirustotal results 13.43% Heodo
2020-10-19S5kvys2So9G3NSVSj2.exeexe 5fd77cbe592791c82e1483c5813c6ad4c495af588f7b78436df4e00771537a29n/a Heodo
2020-10-192LOMn3ELYxj.exeexe 8054c8ccc00d044df0f57163276759f269839115b47fc26b96a75f07941e1729n/a Heodo
2020-10-19tfcNKstu.exeexe 77171a5e53a12c12aba0573996bb492c621d7350dbc692a34dcb79617c56f99en/a Heodo
2020-10-1935C.exeexe b78c7dbd71bdddf742a22eae785a96fbea6d429ecafab73513c35cb73e24d940n/a Heodo
2020-10-19I3tt4CZKjC.exeexe 2563fa447d77f3d26ba4b5063eccae5c2e97d730b368b485708bf384eee211fcn/a Heodo
2020-10-197SE.exeexe 341ccd8278e9130560c27d89681db896bfee358c212c54aee6f34272be115bbfVirustotal results 12.68% Heodo
2020-10-19JHMcSw.exeexe 0cdc7a570fea3f7d5a00e0ebcf7cdf9861c56c7994ba4261663614efae6af79eVirustotal results 12.68% Heodo
2020-10-19HKe.exeexe d4ee0fedf36a4976a26599545b357a14d5018672f3f7f80411d79035a7c32408Virustotal results 11.27% Heodo
2020-10-19XOAMr.exeexe 7e53ef1744bad874252f613c29a04e0bb9c54638debeae14b808982a8b881f63n/a Heodo