URLhaus Database

You are currently viewing the URLhaus database entry for https://countrynavigator.com/J/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:943978
URL: https://countrynavigator.com/J/
URL Status:Offline
Host: countrynavigator.com
Date added:2020-12-28 20:05:07 UTC
Last online:2020-12-28 23:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-12-28 20:06:14 UTC to abuse{at}amazonaws[dot]com)
Takedown time:3 hours, 0 minutes Good (down since 2020-12-28 23:06:34 UTC)
Tags:emotet link epoch1 exe heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-12-28WxwzalWd5yiSGfoZTe.dlldll 827ba8e9c35762b5e77429d8260428b1c8ae446a61cc2344c49b14a9beac8585Virustotal results 5.71% Heodo
2020-12-28PJsMMkjffNiDdFvZXv.dlldll 1ffed7a9176670664476f302dcd6658d4520b37a1135379ac81c9bcca429c0e8n/a Heodo
2020-12-284kObdHo.dlldll 75f178611a00de5ad2c5776d0a822ec4ab3acc5b7b08fc868064d2d74243ac7fn/a Heodo
2020-12-28xZ8ljdm56BK17vu.dlldll 94a371e794e6e9ed655edb181434995bf93803fcd94cd91e7cbdc6347e07e211Virustotal results 8.57% Heodo
2020-12-28GNHs.dlldll a77a837138b3903bbe4ec4fd2261d9e97832147dc5b78977dcea1394e7d8769fn/a Heodo
2020-12-28A9M2pE.dlldll e28ae774a21e3a05f4d0d8e6459f2eb69744db8986bf967246b3d9c096f435fen/a Heodo
2020-12-28wIwHx11D6PwF.dlldll 039cd3209c3d545f42db9b64a0e8aa039a211cb6a2b4a6e9f3ca6e7075300698n/a Heodo
2020-12-28lU611qOTfuXU9xBoMQ.dlldll 9e452e7f92d4e356fb67d5e5a0e68bb4041dbfc2a718df724c931f7eba65253dn/a Heodo
2020-12-28H7.dlldll ec707ed4881f60f6e158b5e905a4982001d10b69306374c31c54d4c8b1806926Virustotal results 8.57% Heodo
2020-12-289We.dlldll bc6b4666b10a667b1022a07772a393e0b303e0d76205d2f3d8f1545d1f06ab18n/a Heodo
2020-12-28UJJBIHWa7fL809.dlldll f2dc9eee14532d30e7da80aa7b14a96decdf46207827f974d8accfba29ee1b71n/a Heodo
2020-12-28lEcNJwHV.dlldll 8c427a54de283a1d975ba23165f4814bc454173bb9c0b3017f2717031948fe61Virustotal results 8.70% Heodo
2020-12-281G.dlldll ca8238ca8da4f01ded9bae17b404653a75f336513ab91e17c6649b34bf131621Virustotal results 8.57% Heodo
2020-12-28ewP.dlldll 50997c8e1f6b77b2832f4cab5703d3f42d1d1bc7ad409b9b0da85465401795d4n/a Heodo
2020-12-28aSBeC.dlldll 0fd28ba0207197cb95759d8fa05130b167b1c4603916e47a447b691e1c027ee4n/a Heodo