URLhaus Database

You are currently viewing the URLhaus database entry for http://eubanks7.com/administrator/ubdDbB/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:733339
URL: http://eubanks7.com/administrator/ubdDbB/
URL Status:Offline
Host: eubanks7.com
Date added:2020-10-22 07:08:15 UTC
Last online:2020-10-22 09:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-10-22 07:10:31 UTC to ip-admin{at}coloquest[dot]com)
Takedown time:1 hour, 50 minutes Good (down since 2020-10-22 09:00:32 UTC)
Tags:emotet link epoch2 exe heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-10-22q2KehjlmvUEyUSGQ5m9.exeexe f96b9f63f02187336845f1685640a8b346bcd9d7473a2ca7efb092e50620a5d5n/a Heodo
2020-10-22PlPd.exeexe 7596e5bb2cbf06faad32408f6f0ceaacd245fd70953048a1d654c41dff8ae8b8n/a Heodo
2020-10-22wZCcA091.exeexe e7e55c241f0a0bbb57c30ab98061a59c64c105eed5c0fcfc14713765b417f2d2Virustotal results 16.39% Heodo
2020-10-22SPWQW1Lr.exeexe 02c023cba8dd2a10c0f2b6b392546df8ce432ee2419bb136b23eba3ba6096f34Virustotal results 15.52% Heodo
2020-10-22e2q0iRAzGpftwQhhf.exeexe 2897ffefa7c60d20f5c15b81c650b2b4e72a1da48a239314350828636ab22ee9Virustotal results 17.91% Heodo