URLhaus Database

You are currently viewing the URLhaus database entry for http://fundamental-learning.com/54Rizs which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:88908
URL: http://fundamental-learning.com/54Rizs
URL Status:Offline
Host: fundamental-learning.com
Date added:2018-12-04 14:46:14 UTC
Last online:2018-12-05 08:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2018-12-04 14:48:05 UTC to abuse{at}enixltd[dot]com)
Takedown time:18 hours, 2 minutes Good (down since 2018-12-05 08:50:29 UTC)
Tags:emotet link epoch2 exe heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2018-12-05283.exeexe 46e167a396d766b855f451d2c14fce136a69458668a07174f640d3963bbdc621Virustotal results 20.29% 
2018-12-053.exeexe fcac921046d7b80eb9dc32c59f2ab40e782927199eab6b5a9f0ca34cb4e87122Virustotal results 22.54% Heodo
2018-12-0470951.exeexe 02fa70156914f4897ae3b044a0f09e547c96c713fabf455bcb32ec4098a90d8cVirustotal results 22.86% 
2018-12-045737463.exeexe bdec6a1b8e17e049eb5ee4c0c376268a42dfd507d58989fdd7125c7f7f3e0a2dVirustotal results 24.64% Heodo
2018-12-0479.exeexe cf3b508a117f920321c97e21a10564c88dd3fabd23ca804ec846d1baa7b128ddVirustotal results 25.71% Heodo
2018-12-044008263.exeexe c3906de4b1dcbc1788aaff2b57f30a0e52bcd2e99a200b07ccc58c6e2932a65dVirustotal results 25.71% Heodo
2018-12-04846.exeexe 5f7d4d6f0ef872a8e15fdb854ac18c03da32437e66705af80ec1da46ff152a8bVirustotal results 19.70% Heodo
2018-12-048560552.exeexe a6fed4207cd1530aa27c5192ea69716f8c5da24c781d3a27eba510265d667b08Virustotal results 19.12%