URLhaus Database

You are currently viewing the URLhaus database entry for http://dingesgang.com/kAMzVfDDiX/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:78694
URL: http://dingesgang.com/kAMzVfDDiX/
URL Status:Offline
Host: dingesgang.com
Date added:2018-11-12 14:24:33 UTC
Last online:2018-11-14 10:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Status unknown
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: ps66uk
Abuse complaint sent (?): Yes (2018-11-12 14:26:02 UTC to postmaster{at}myhostcenter[dot]com)
Takedown time:1 day, 20 hours, 30 minutes Poor (down since 2018-11-14 10:56:57 UTC)
Tags:emotet link epoch1 exe heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2018-11-14ckV0NGkx8j.exeexe 10339b0cc22729340f8e538735d29b8839fe325bb8d4f70a33026765dd7f71b2Virustotal results 16.92% Heodo
2018-11-14aif8lwFv.exeexe a25625f7d1e3bcd30477059562cfa0d0ec618fc076d73b3ca02beabde7a5a601Virustotal results 13.24% Heodo
2018-11-14TCGPcBX0hH.exeexe 8906c39fab5491d47a9502ff8914949afc920914257d31fbc7f92d8d58576b68Virustotal results 20.90% Heodo
2018-11-13U7hqVtx5CN2B.exeexe 86b7c8c206ee81e2396a1c16a1014d3759479db9b133cb1906ad33e06cf915e9Virustotal results 23.81% Heodo
2018-11-13vmZkW3Y7.exeexe 90cd190bbe7190a601443c07b7c25822d48cc638316e2f3b6b2a57a57ca5365cVirustotal results 29.85% Heodo
2018-11-131WJHRUzRw.exeexe a746fa991e7428b6df482b69c864302a167e690d4eca7776921faa1724b1a6dbVirustotal results 28.36% Heodo
2018-11-13fIi90c5Td.exeexe 4f8b1a05faa6e9c673a2f3232ae393d88e4c81d2fd421afa7769d1006a1d9136Virustotal results 27.27% Heodo
2018-11-13r7Gvpulp.exeexe 057f3d8fcb021d3d1e0cb46567966749ad475a18356e279f8655fba701e74c7bVirustotal results 36.36% Heodo
2018-11-13jeQXvAML9.exeexe 730e803fb01d464c3e095386a0e87dd187e85d760ccd9729959ec0fb89a66834Virustotal results 16.67% Heodo
2018-11-13pcdnhbrhdLka.exeexe 87fc0dee854353956b960abb4b33c41a6fb6891771b6ef802c76c21ec90d5560Virustotal results 17.19% Heodo
2018-11-12O7zcZgDkci2U.exeexe d51654c87bd3c174edd9f37eb7787a4cd28db6e2693bc095b733565c74bddb30Virustotal results 21.21% Heodo
2018-11-12xXfmMAhl.exeexe fbb66cf213577543c63fcf6313ef1624b8c3a1cfb0b9c126c8e6ce1d8bbef637Virustotal results 16.67% Heodo
2018-11-12i3ik5v88.exeexe c68e6004cad1b002cfc72545500d02101fa0dade4fa6c49a6eadca3b5d205ee1Virustotal results 19.40% Heodo
2018-11-12fUlzQDWq9ak.exeexe b872fe751d88003049800a3c4c8501dea57c519b50681b76ea17fbf8e308a1a1Virustotal results 16.42% Heodo