URLhaus Database

You are currently viewing the URLhaus database entry for http://nursefreedomsystem.com/cgi-bin/eYae/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:725509
URL: http://nursefreedomsystem.com/cgi-bin/eYae/
URL Status:Offline
Host: nursefreedomsystem.com
Date added:2020-10-20 20:55:10 UTC
Last online:2020-10-23 09:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?):mail Yes (Ticket DCU003024533 created on 2020-10-20 20:56:09 UTC)
Takedown time:2 days, 12 hours, 59 minutes Poor (down since 2020-10-23 09:55:19 UTC)
Tags:emotet link epoch2 exe heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-10-23uAkzQGuvgXEQMj.exeexe 30178b3c41916913be17068bb5d1f554e452affd0be39c84c76ad74abcd95299n/a Heodo
2020-10-21WADINz.exeexe d14934086e2dfb7a1685a59f58ade8d5c92d8ef09085bfa0b8c9ce384fb7182cn/a Heodo
2020-10-21ycCrmwUnGbrEkae.exeexe 6c9055808fc02bae3c772fb2cd0faa784e7fe6159674ed6e918c73d272daac05n/a Heodo
2020-10-21PacIT9hbnWbfveUMM.exeexe dfa4a9b2840fe1bdb8150ec6692da635bc8c3f3fb71c4ac1376de77ceb7a709cn/a Heodo
2020-10-21z.exeexe 7fd225f476ae922fb407f4e153470dc48d4acba41e96ab9a20d822eb998dddban/a Heodo
2020-10-210RTjS.exeexe 8a23ab9722fd3cf2b1155114d4d27543e5f244affc0c1b8ca710acfe07289b2dn/a Heodo
2020-10-21PKMyEJhEXco.exeexe 7e16a7e34ce570084b5050ee3d1e1dc2689d41f7fb0a6bfe6a43babf7ff436f7n/a Heodo
2020-10-218HMGTOVXSQ.exeexe c4327e956346bd2e939d59d131ecad63116a4cd22effe92f0b93522098eef29dn/a Heodo
2020-10-21uRLq.exeexe 435627f522178d96c3887cd32a2d9e4f107261be8b216f7e76170877f5f4b257n/a Heodo
2020-10-21x8HPQM0s2flN.exeexe 84febd93bd5c17466d4ec4a4c32a611be7b05d2e3addfff9d4b7cc3695e41a22n/a Heodo
2020-10-21LUD.exeexe d996cc72457cf1f8ff6406e4c9f783dbfe124621c349dbd07141afc3b44e6e17n/a Heodo
2020-10-21vp.exeexe 73ca7966f29015beefb5a16803ca71d550bb4be11a77ce510e31df631eedfc5an/a Heodo
2020-10-213shE6Jiy4iIiWS.exeexe 85b5facb793936bc0376e22d303cfa81b435a83b37fbc49337c4b66435d4feafn/a Heodo
2020-10-21PeMSqqEYAM2euKl.exeexe b5873067447781593058ee43f2abbda2066ecb80121d9874605025ba0600e497n/a Heodo
2020-10-21ifjb.exeexe e1bf17541405821b27a78f5102debbe707819bbf7ce591768e9a0510a3e8fed8n/a Heodo
2020-10-21ydzQY8QiS7vJ.exeexe c085ae95c3660a958e40c619803c804fad24e7ff6f34e18b75e152e9f0e5bf4dn/a Heodo
2020-10-21TnBapL4epn6.exeexe 850e5391fa50760bc6d8141184ff0a6790819ff3d3e2b96adbd79021caebbfaan/a Heodo
2020-10-21irTZxaW58sH.exeexe b11417f76ec14e4235b336efc420dfdbe8fcfcd86ba3683a35b5e5b4d5520243Virustotal results 23.19% Heodo
2020-10-21hhR0.exeexe 48c559a8f86bbf5b68b0b5841f505aeb9f36b69fe7c02087b6e7808e3b126851n/a Heodo
2020-10-21r.exeexe 67d13130651b29f829f5aaa39c0e95fa58e31a118ed6f0f78a4656bd0391f191Virustotal results 19.72% Heodo
2020-10-21ES.exeexe d33ca2ee281c5ebed1ed70d1fc698ff1a16aae9bda68a706a045940b5d427c6eVirustotal results 23.08% Heodo
2020-10-216R0i8tJ.exeexe f257e965a8033dbd0134038fa86bed5fb0818665c0d2f407ff05a59e6f545932n/a Heodo
2020-10-21gnPlSv6tbvL.exeexe 20557df2ef9e1dc5161ee40bf966e8333ece58f779ffc2ba9b0e45364a01be8en/a Heodo
2020-10-21opn162KSsMVj3Td5T0n.exeexe 0bf84c6e23899c174c035df3979292abe2900d7eae6331827ab3b7378f93841an/a Heodo
2020-10-21bUZy9vVPOewDKb4.exeexe f93a76e0b4f19257be60ba93cf7e2c7d22eec6a31493c57e893a84dc45c323f5n/a Heodo
2020-10-211X9RQyitqEtyTuaOSm.exeexe 1880b1dc7f056d3f9f82dd48d5e73748e62c43a2821f9c453829160262795bcdn/a Heodo
2020-10-21inR.exeexe d56c4fabab6b6d785b1117046b4044021020fdb361669d887148eeca6fb82b60n/a Heodo
2020-10-21sxW7CIXErrfZe2AwCS.exeexe 8fc20d7a7b1ce59305407792a49d3af1693b62c84adbb6f0e2d28639419abf5bn/a Heodo
2020-10-21wqKrgWGcNoibhPwE.exeexe 3b092a04562fa50dc7529ae15f1baca0ea89248523e2bb01a667a04853e1e3a7n/a Heodo
2020-10-21rMNq18s.exeexe b7e1898a87f0cb62eb71152bfcc1a9d29794e2e289492d400a663a0ae9c0e568n/a Heodo
2020-10-21HVmGamTAkNvCH8S.exeexe 1cedf704999ba075df243fc0c173b5d47079cb34cc344803c61414d53ef5dbben/a Heodo
2020-10-210UbAb.exeexe 4314012e0c800319eb7df42f3428565cd011c8f9da2bf3fb615d4cd4cfd2c93dn/a Heodo
2020-10-21W.exeexe 5794d471ada52d20e4688f666fe199ba4eb020ad3b6a79bd5a1bb53885053fa7n/a Heodo
2020-10-21pHYlh0l9uVXefmzgFYrG.exeexe 96899e8641bc406a9ca50092e670096b1dad5d3a2eaf62bab91eae3df103777bVirustotal results 22.03% Heodo
2020-10-21CyuQCrGSPQnZ.exeexe cd0e198b21fb7be202adba66cb079c182f914190df08be056222739fc55b3269n/a Heodo
2020-10-21IVObvIPeXY.exeexe a48274bb9a0fe27468d9bae188fb1b2df4fab834d7107ba320bc24c33350994aVirustotal results 18.75% Heodo
2020-10-21ZN1.exeexe 0cec0f51ec79ae6cea7e7f9804e464eb00286d69a19f76df33e3f2f16b22b00cVirustotal results 16.18% Heodo
2020-10-21olXBA1TnXEHPO5jf4KZC.exeexe 827dd05f2e7e4568778bac78f6e478e02329c506b204bca2c487fdaa12155febn/a Heodo
2020-10-21z8P.exeexe e9e722f7bbe815283c93c05ed12709efe809efd3fec4b6291d4397714b7eaf0bn/a Heodo
2020-10-21pu2oSNqJfp8iWU3wJDUa.exeexe 489cb0157bebc35bf4fca28f464497290fea0709bf080b657a8b41276c3f4bc9Virustotal results 15.49% Heodo
2020-10-2145i4cm3I23ijMXRc89P.exeexe 737fe8ecbc79fb63d64e85f7dbca5c25200ae26bfceb4bed04a990271661aa48n/a Heodo
2020-10-212mwx374WadzWu.exeexe e2e12e20767430407826fc72da3ff0363b266097526a9040a177c91f9b8cde81n/a Heodo
2020-10-21kd7rnqd5wLZ.exeexe 5adc31adba7c9413a65187599f7f5f38f1e385a54bdd77b5a58f9332d3aa00a1Virustotal results 14.08% Heodo
2020-10-21QZ1dgJVNaccSusRrjF.exeexe 664aff71f5f2254c4fe014d3d39b1802b39bb243bcd7a4ac486ad00ce0135728Virustotal results 17.74% Heodo
2020-10-21BZ7UGYLVqjNwGvxv.exeexe 6f46e33ee95faa06d24346881b7dd949d3160e02b7beaf8bb67813ebdc863352Virustotal results 14.75% Heodo
2020-10-21mwlc8ANkktzD2FN.exeexe d18f744507e10a68d8bacc38657975b835cfd8d66ec8b34af8dcc23a1ec6f1ben/a Heodo
2020-10-21leQMVffDCNUOi.exeexe b5d35f249a29c5be6c706f9a7dec4fc1ec44d4c6b92dffefcf81a36f90ed9f91Virustotal results 12.86% Heodo
2020-10-21xT1WP.exeexe b95adc682b86b8a2551f837b6f5a3888a289c42adea870a678f92c23f61e7b80Virustotal results 12.68% Heodo
2020-10-202.exeexe 998bc144d9f6697c2d6004a20e703148c148c82d743c92639a11bda274561120Virustotal results 14.71%Heodo
2020-10-20KieESVkTAvnQtP.exeexe da6802a7c24868257e2a8b578c687a87a79b00b90b6a1b63908d8717b2362649Virustotal results 12.86% Heodo
2020-10-20k0csT7CoA.exeexe 91dcf78a4fd6e9337da442fac155c6c14a963bee3b454f6d1690b1d0381b7d4fn/a Heodo
2020-10-20dd4ffehJubUbLhI.exeexe 9506aebc958ceefcfd18d839160f56ba0929a989c623a9c1ad051ed688c9b3c8Virustotal results 11.43%Heodo
2020-10-20SG.exeexe c7ee2e5ad56a3ee63eaf25afffd87550f97f1829fd856e23a405021477b69ddeVirustotal results 11.48% Heodo
2020-10-20vm.exeexe bd4ab0040f5dc5127a901cab1d7af5f74f457679a11e5e4999d0caf902506733n/aHeodo
2020-10-20ttp3h0xXcFiHGWJkaQn.exeexe 2e723a4be7bb13856716dc89ffcee3bb4799a035e26998511a8c33f861b6450en/aHeodo