URLhaus Database

You are currently viewing the URLhaus database entry for http://yasarkemalplatformu.org/s/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:95333
URL: http://yasarkemalplatformu.org/s/
URL Status:Offline
Host: yasarkemalplatformu.org
Date added:2018-12-14 19:46:09 UTC
Last online:2018-12-19 09:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Blocked
AdGuard :Blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2018-12-14 19:48:07 UTC to abuse{at}guzel[dot]net[dot]tr)
Takedown time:4 days, 13 hours, 22 minutes Bad (down since 2018-12-19 09:10:07 UTC)
Tags:emotet link epoch2 exe heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2018-12-164760408.exeexe 24c97bb069dd53a7a210269122647ef9f1d3422de75918eddc102a8c9c34a4ebVirustotal results 17.14% Heodo
2018-12-1654039187.exeexe 4251155ecb76b483a36302541e7fb74cc066aa9daa72274cf00f3ae59b638f3eVirustotal results 18.31% Heodo
2018-12-16163.exeexe cc77760e06833f8dd28232e6250d5db9c0307fd22d97725952088d8221ff33b5Virustotal results 18.84% 
2018-12-16851.exeexe 70202727a89c0f8058cd64c07bf347006d85a4c5cd0e494f66bee78b30272536Virustotal results 17.39% Heodo
2018-12-1645.exeexe 6ba9663a7aab3362608ff90747883a13cf3589415c1a309e837881c86d4f79d3n/a Heodo
2018-12-163138.exeexe a89f9dee1b8be51d7d666e913752f9f3000a851102b5bee9b3c856e49589c98eVirustotal results 24.64% Heodo
2018-12-1614093311.exeexe c8d2423c54e3012b42fa60cd55c2edc465eb3ab88bb31bf76c7ffbc57713637bVirustotal results 22.06% Heodo
2018-12-159586.exeexe d45cce704e0a90bf99f7ad59f0ef59a5e193631011c70e751e25fe90899f6887Virustotal results 19.12% Heodo
2018-12-1592.exeexe 519546b46d7ce3ea83c05d015cedb36b149d9fe3f88187d8acc7c3ccbe10ca01Virustotal results 24.29% 
2018-12-156.exeexe 55a33efa809faf55a2f5972cf1318fa8b701ad939baebd05c5f00e4f5f2742d8Virustotal results 23.88% Heodo
2018-12-15731.exeexe b7dd63081fc1be89cb8f70f944155945506e7051db789daab098d060b76f910aVirustotal results 18.57% Heodo
2018-12-15893672.exeexe 1ca1dd616026d66bac9a8ae62813663f36cad2a7b8908f7a0ede3279c9dcd628n/a Heodo
2018-12-15555.exeexe 5a528705787357c24ed16b74dfc56f1aa917539e8b7c57cde5a29a8766c84fa7n/a Heodo
2018-12-1597.exeexe 60a1a4460bdde47072c14580ac860b8f90eb3fea8513e5c8e95ef1b5e58dde67Virustotal results 15.71% Heodo
2018-12-1533.exeexe df93c2e0781aea121c27ef41dd28c26212403d9a5ce69b6f0527c916666aa162Virustotal results 20.00% Heodo
2018-12-15053290.exeexe 74eb1fb74684055b9dc910d3bfcf26c72957f0c30ac8d57c42e9a27f9c495d38Virustotal results 17.14% Heodo
2018-12-1520136713.exeexe 5f35e901c8ea0c2cac011eb1b8b76f90785e40af8feabd88d8e4287638610e46Virustotal results 18.84% Heodo
2018-12-15255.exeexe 7c3f9ab3bad94782779ca841542af0801cf6fdcf0f466f148c7abeb37086353cVirustotal results 18.57% Heodo
2018-12-144211863.exeexe fa98e97fa8e54aea8734974bae0cfcfbf265c289c1cf0608f81209e8f3c5089fVirustotal results 19.72% Heodo
2018-12-1469569.exeexe bfda212d35cf8e938f04d326b9e36887476a9938db6ed49667f7607c2ba41766Virustotal results 17.39% Heodo
2018-12-140.exeexe 4fe6a6083775900230eab8b7ca97e68e66a174eb854c949708a996aa1e38e3bbVirustotal results 19.12% Heodo