URLhaus Database

You are currently viewing the URLhaus database entry for https://zagoradesertcamp.com/templates/u/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:734562
URL: https://zagoradesertcamp.com/templates/u/
URL Status:Offline
Host: zagoradesertcamp.com
Date added:2020-10-22 12:28:18 UTC
Last online:2020-11-09 07:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-10-22 12:30:15 UTC to abuse{at}hostinger[dot]com)
Takedown time:17 days, 19 hours, 27 minutes Bad (down since 2020-11-09 07:58:03 UTC)
Tags:emotet link epoch1 exe heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-10-282C6Ms.exeexe 2c078f8a8f1714c25cad4a158b6b2949a1a046ceca7fe0dd68a6c585d42cb638Virustotal results 72.58% Heodo
2020-10-23gLbDMLXDUvahSW.exeexe c4c0eefadf01e582e32ed24f36e92881e97c119a6d85404e34f93ec8dee76dc1Virustotal results 19.72% Heodo
2020-10-239NBgybseA09n.exeexe 5eae1a823a128e30eb726801353097f9b05c194dbb426eec9894685e428e449an/a Heodo
2020-10-23BdRMmv8.exeexe 24e314db968d3c5c1f4e0e55737dcd1dec40603ac3bb4cdfc09985ccca2c68e2Virustotal results 20.29% Heodo
2020-10-234CSx7Gv.exeexe 3938fda22910bff2a67526f41608158dfcbe2c786fbf96bacbbfc3209206a79en/a Heodo
2020-10-23hwlCZnMt8xKr6CF5d.exeexe ab5ded8b327c385b0f909b5e7f9f8115dd18f59e88c5d874c1ffc6965e7f6d28Virustotal results 18.57%Heodo
2020-10-22GYY.exeexe 9cdf7fc3340a0a92e6454795fae58f00088318ada2e79696092a7a40e79e7579Virustotal results 20.63% Heodo
2020-10-227sTT71SIgexpe8TloYo.exeexe 830692abdbc77543ca2e79e99319c78ae0ff701f44ad17d2670b3ba19ec6a78fn/a Heodo
2020-10-2278HFtCY85.exeexe 5a3c620b24ce2400dc7455bbc06e2ec9beb013b438f1855aa640560bfefa08c2n/aHeodo
2020-10-22TUD3kkeszMDE4jLZHqFLl.exeexe a36f1d7f93bf54ebf55b66c02d0e6b219403cbaed52ee85f2d17098a7f59d4f3n/a Heodo
2020-10-22upYjOzwUNA.exeexe 46375bc2f053d41fc06b23cfd0d9125f8e7de7093aab758ebde56c4d00188423n/a Heodo
2020-10-22xoPSIomb6klsyLc6R30wJ.exeexe 6586f098e61045644953ea49b76ea790cdf46c1a5fa17b96536a266b5f12f3ddVirustotal results 50.70% Heodo
2020-10-22ONcLIvkBbzRX9W.exeexe b3f4da9cc3c0cefd95616c0cc48061cfe1860e5b1eeee870947491a125a417f9n/a Heodo
2020-10-22JmzKPJKU9U9RxuhqdnP.exeexe bc1a90bef5a454384388823d4e7f16ff5c5f9299e4f444b71bf0b9b73c468401n/a Heodo
2020-10-22dBfhuG9UGV.exeexe ec5d8d5fb2b277010da8e33e634e897cc863c1864864940604ef09a77e2e0101Virustotal results 50.70% Heodo
2020-10-22OxhdKpc7McERiuvlHq.exeexe ce372accaa49ab17b2688dd372ca30b838bee617f8e2f9e31b15157ed0a48ac2Virustotal results 50.00% Heodo
2020-10-22NMrcWCN4l4KjToc.exeexe 75bdc13f136fe16c628c54e43c5963f14638f05098584fb080c9abae6198dd91Virustotal results 49.18% Heodo
2020-10-22TiFru.exeexe 0a7c24b7d35454c149fefcf4a9f8753b3490ed0cb97c8f587563e7cfae4a94d2n/a Heodo
2020-10-22h5xoQaO.exeexe 73eb1fc3bb33f73af3c612040209c1d792361cf4d259ff5e0b25a7a8c80ea735n/a Heodo
2020-10-22i4EaZnaa5i8.exeexe 837a72c670432d697b932b65c2a60caa2442f6b562c054a0802fad2b013d93a4n/a Heodo
2020-10-22iZnSW1xGc4.exeexe 9bd683d6cc9fb95a7447f666b672997dd5c68e293eb55d7d168ddb70187c3a16n/a Heodo
2020-10-22klzG2kKfYZunCqpEd.exeexe c9a09d667b387f0ed9305d6ec3ba6fdb9a4ffa6270c7bb085e0dae94149ef969n/a Heodo
2020-10-22Xk78sWWKZy6d.exeexe 470df6ba3f41fb5bb19b18bc3366eb61cfb9329e51233ff0042323195d297d0aVirustotal results 49.23% Heodo
2020-10-22IApAcW8QSA.exeexe d1786119bc4ca0159d15c17893ef8ddba3293972d7292a8f38ebfaa60d4f3d78n/a Heodo
2020-10-22fB4lr13m3.exeexe 24a1f5ccc609672715cfef95bc6ccf6dd3c5a09e9becdc0daa177c6e97a3fd69n/a Heodo
2020-10-22qo3uqOgGhQBmQxlURjr.exeexe 4d903cc83d3e190bb2f86366328be4deed77876221aecd776ad163413e5cb129n/a Heodo
2020-10-22MdQ0L2zNk5n.exeexe d25a113d139187536f3ea45525507d3e3aa6339dabbeeae85cfb63018d708498n/a Heodo
2020-10-22fCrLEiogHe18YLnSJw.exeexe d94520e9048c60e29462563cc777d76e89783204e182d4ad8ef5a9b4b719a712n/a Heodo
2020-10-229z5kNKokSZrL7N7V3TWZa.exeexe 5751e74bded1bc889a3aac19b5230909e422f39b4978338743e260820bdfa899n/a Heodo
2020-10-22XMsWPG.exeexe 9a7d7f84bf75f5f784e58a9ef73657b4a19ba228a7786d9be5a17a2034d3bf72n/a Heodo