URLhaus Database

You are currently viewing the URLhaus database entry for https://99fabrics.com/wp-content/dGq/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:764014
URL: https://99fabrics.com/wp-content/dGq/
URL Status:Offline
Host: 99fabrics.com
Date added:2020-10-29 06:58:05 UTC
Last online:2020-10-29 13:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-10-29 07:00:19 UTC to abuse{at}contabo[dot]de)
Takedown time:6 hours, 6 minutes Good (down since 2020-10-29 13:07:13 UTC)
Tags:emotet link epoch1 exe heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-10-29hEvtDHwoYyN.exeexe b3ee6afddadf94994f7da7ff712bbc11a159136f230acd27b51b5ef6966c4e92n/aHeodo
2020-10-29CIMo444758HCma6.exeexe 99d3959d8e1aac99b9667e09026feca47d2b4cdd3efc06f25cb5e3df8d6ad9f7Virustotal results 33.80%Heodo
2020-10-29WeP.exeexe 136e9c96a882db5a94176e78fd7efe9b0ddb60dde679adf0abdd90c7239eb76an/a Heodo
2020-10-29cglD9wqF74p7TbR3.exeexe 9145e0594cf1189f44888e0dfaf23c5cad98779e00fca9e5f3143e2105b57d02n/aHeodo
2020-10-29ohxlDX.exeexe 596c9e35a9988e59387c6d4c70bcf1a63aa2ee0bf19c6014252e55733c6421d7n/a Heodo
2020-10-29y1gswzbcs5DopGA5t.exeexe 4041c6f0a96c078b9cdb64dc7114e283ed753d5395d750a62cc70c4744a3f2cfn/a Heodo
2020-10-29XYrXoMFQ.exeexe 87043277aff50178774a1cb411dd5bba6f2f7520729e7c4139c261c54f5492f4n/a Heodo
2020-10-2951Uj.exeexe aa34c412d7b49cd41750f5a62cb94e0b39b104185d940cd17266ae5bbacf16ceVirustotal results 18.31% Heodo
2020-10-29QZgQqPnQnR6gkfYXvL5.exeexe 83b4dac839c9e5335f22fc16c9ac938267d3139f4d79ed4321264aa5f6deec41n/aHeodo
2020-10-29X7yJdR6n3f.exeexe ddf5f146d8f357e69dd5cabad93251fb386c1d101c39f129275239bfb0341e43n/aHeodo
2020-10-29cVbTV4sXPfkQ.exeexe 92360827c59b6f719c1da184d1dde2c7d42ea0daf6c5e8adce420922baa17d47n/aHeodo