URLhaus Database

You are currently viewing the URLhaus database entry for http://zylko.com/wp-admin/SD/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:725647
URL: http://zylko.com/wp-admin/SD/
URL Status:Offline
Host: zylko.com
Date added:2020-10-20 21:33:13 UTC
Last online:2021-02-13 00:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-10-20 21:34:28 UTC to hm-changed{at}vnnic[dot]vn)
Takedown time:3 months, 25 days, 2 hours, 33 minutes Bad (down since 2021-02-13 00:08:23 UTC)
Tags:emotet link epoch1 exe heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-10-211a2.exeexe 850da78cae56723b7ab4ca7c19d161f2718ccded35a5c335ead113b25c57b2b4Virustotal results 11.27% Heodo
2020-10-21YuxQfHj7GmketSKy4co.exeexe c04810c0c1624b5dd70ae1b62a9bf948b2e13f00caca3cd82ef50b273afe6b85Virustotal results 21.31% Heodo
2020-10-212XHwnU.exeexe 3484cf21959783054f87d30c962b49cab2f19c706a08bf3a5833168f784726a1Virustotal results 22.86% Heodo
2020-10-21p1t.exeexe 3cab25c0fa33f74f4089c5932985df5b1084c2ee3727ffef971952e4e8ffcee5n/a Heodo
2020-10-21ivb.exeexe 5da56d8a20c286f55cef67d9f61760ae0218e7d6cc478a9743e04c2102b1b465Virustotal results 17.74% Heodo
2020-10-212so5CXWMROgpDn7p5A3x.exeexe 25d8d883a861af2e7eddec049760b20b473efddd81c75a3686f7854b58891c6dn/a Heodo
2020-10-21zZuTJMoJpV5xoLfalQk.exeexe 2c135fcbc3a56bb647cca7af630c27cf95bcd39e2c83a9ff24815e2fe5fb2a50n/a Heodo
2020-10-21BKheW.exeexe 8b3b3a53153d7b51fe077e89e1a0c15d31bcc98bc68f68820b819580b6b6e968n/a Heodo
2020-10-21whtexDleDVY3g.exeexe 9cb89087bb7db26f02dedb9ee046f0b5e362d5ec5d48ab84d14c8582b21d4d11n/a Heodo
2020-10-21gKN.exeexe 9bb5707cf5f602a394d08da0f172be8c127cee81bfd52cce5037346c3d3c4932Virustotal results 27.69% Heodo
2020-10-21EKSqkpqCPvZBR8GOX.exeexe 17be8deb77551cd1bac8a25aec3032bcc4d59452012cda420e413e928d9d64d5n/a Heodo
2020-10-21ILSWGG1VAm8flccumRT.exeexe df5fabd0923cdc0459d977dcf76d5fc5136204a256bf5aab8a9d47b58a1d1ecdn/a Heodo
2020-10-21vHnxyiT.exeexe a6cdb2a9a4030dcb55e841863a954186af7b8b701efd8c0a3d603289e218f1e9Virustotal results 22.86% Heodo
2020-10-21LpeAKFAR9.exeexe 48414e7031902e11aa9d33ebf5abaaf1ae1b291c649da90c6e21f0a2202c32aeVirustotal results 20.97% Heodo
2020-10-21hGmcPdjp0kKkhud.exeexe 5d59103c2dc8736dc61e1f658e7ed0e1619d64c5708d22d5fa1a3f7e386adf21n/a Heodo
2020-10-21N6YsY.exeexe b8420caeef8df964ffc169774ea668cfe161b807b0469e2891642a4fa2040890Virustotal results 20.63% Heodo
2020-10-21KqTYmYmHexDdRGHH6.exeexe 2e28a510e436f6ebffb7e4338d149ffd1fd5968f490d257c6e937cf93396eac4Virustotal results 21.13% Heodo
2020-10-21EJFHHwXgpear.exeexe fc8f8f187fe844e869d21f45cc4c1477ab07022a44aa3b8e9f891d163c11fceeVirustotal results 21.13% Heodo
2020-10-21JR89G10Z20dj.exeexe 7d180d0fdfed4debc98a2d90327756192ec34c752217d264a69422b1177c5212Virustotal results 19.70% Heodo
2020-10-21y5koo6ftJmtxg5dU.exeexe 53cd28462c6f655119731fb60092b5d9d7588b9658ae0b13fb98072c8d2db363n/a Heodo
2020-10-21wxpV2ZOfCY.exeexe a53869a3b051fe65e9eee9433573866390db3c09dd3258759a164b14b7c3c7b5Virustotal results 14.71% Heodo
2020-10-216SgXVFHIfxG.exeexe 01e9dec20259fbcc9da892e43d7299474f3fc9b1863d5aa1226790bed2ee836bVirustotal results 13.24% Heodo
2020-10-21dwh9o1bzkgcSY2UTWO.exeexe ec9efd63395f2947360f57540501436bea57254b8f25ca51ba5d28f30832b588Virustotal results 12.86% Heodo
2020-10-21MVwmEKRsYiLo.exeexe fa252b0584f282464b3798eab4be601695ccc17f39f3d95713a7d5f3039a1a23n/a Heodo
2020-10-2154ObQQrIOmxgX2.exeexe 3c8acb20186ebae4f8f46ba29e823a35831d59af09fdce2d3bfe253e824da355n/a Heodo
2020-10-21punEANbZ1rMuuvtKZdw.exeexe 5ccfe8af150863c168c9be2279fac16f32f628c052a849c4a0b5b69098b01ceeVirustotal results 12.90% Heodo
2020-10-21t4bIPVfQNmvZwtX.exeexe 8829cf949141d34c42bea008d903ef5a249fab27f261e549f2d4b4e78a9b9890Virustotal results 11.27% Heodo
2020-10-21IEx2ksD.exeexe 24fa1f13ef2d3500b7ff4c372df5534fdb034f41ac643d6c00b5fc56f7478cafn/a Heodo
2020-10-21KMrwcZ.exeexe 8710e0d7bf0e0aef0684d5140fd10999b2ecd37d0c25dd575b8cc631079656adVirustotal results 12.68% Heodo
2020-10-218ASUMa8Mlc2XToDkUz4.exeexe 516bbb8fd8b639be59451c95e50b9bedc8976bc5f3678092cff7833cb749abffn/a Heodo
2020-10-21Tw7jAs1v.exeexe 0f11c373d70634c10980dfd1bbe994d1a886b0dc7f15ae6b24e5e1db5a4cfd2bVirustotal results 12.90% Heodo
2020-10-21uz6r6jzBA6DPHNQBln.exeexe 5f610d52e2bdc5eb58c14ea55d59a647b8f9e68f6358b59ab0ef03d8026d9212Virustotal results 12.68% Heodo
2020-10-20jKcpAaO8NPzwinM7k.exeexe 2b8305b85bb5440488d7ac76ed8625cb21517d25b472c793ba2137d477ae7154n/aHeodo
2020-10-20CLrlVIevKLpBy3I.exeexe e1238eff1aef61a4a6df171f4e8eae1821bd0439a444837156aba8eefd0ad5e8n/a Heodo
2020-10-20keHc7.exeexe cd000b1303ca00e1db79febcfd6c4e39bdde1ac05f80b1b86a5711dcf8f0922an/a Heodo
2020-10-20NcP.exeexe d50cc2b91d3783efc30e41a8c0fa0ab2cc7ed750ff9d455a34eee8e2e7e5399bn/aHeodo
2020-10-20kQlTEOaajAIn8.exeexe dcb870b61ca19ab55bd128d460328998fdcff40b65540bc4319c3c474ef1be03n/aHeodo