URLhaus Database

You are currently viewing the URLhaus database entry for http://ats-tx.com/old/f1X/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:960574
URL: http://ats-tx.com/old/f1X/
URL Status:Offline
Host: ats-tx.com
Date added:2021-01-14 12:15:06 UTC
Last online:2021-02-18 17:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2021-01-14 12:16:05 UTC to abuse{at}amazonaws[dot]com)
Takedown time:1 month, 5 days, 4 hours, 54 minutes Bad (down since 2021-02-18 17:10:23 UTC)
Tags:emotet link epoch1 exe heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-01-15vNWRW8.dlldll f394f7c62fbfd8dccc4c466fc422966e111984b5cb1cf2d3d7a1601da01d5e92Virustotal results 55.88% Heodo
2021-01-15AL3TwKVCgLUt1WZQCW.dlldll 6772a52e5d9db9fd18ed87712513a8a58f9dee643484ffa71abd1091b9fdc596Virustotal results 55.71% Heodo
2021-01-15T4FuQxe4pnyVm2fIeA.dlldll 74e110913ba0b840dba6506ed62057507863d4c66da941b4a873712216ebb170Virustotal results 56.52% Heodo
2021-01-15QDDZQ.dlldll 94ef083d0c45dadf1641d39626477242db89c3a194b8295d65efa97d5b7123c7Virustotal results 55.71% Heodo
2021-01-15E6GYQYuIK.dlldll d5f92a3a791c6ec7142dd52862c373fdda6ed562d13a39ddd18c8a7ab39c7cc0n/a Heodo
2021-01-15zXkPpizZ1b7sfz4jGrhtJ.dlldll 36d8013c04fafb243e5244dd90fed46b640178b89c59f669aad45ce1e08a022an/a Heodo
2021-01-15KO3xrgdYJV2w3GNN8b.dlldll d14110de1d5d2ddd930a57999ec953fdd65e1389320489d52320001c86576c1an/a Heodo
2021-01-15KxHfer.dlldll 0f62a5cd74788e4051f93f9d1f1b3567153b23998916855c7cce4faa309725f3n/a Heodo
2021-01-154Xr75.dlldll 0b92f59a194d7a3f55aacecfbe3a09673e2b7ad667195aeaf8623520b9359292n/a Heodo
2021-01-15Ak0a4Hup.dlldll dfafb1bfc19ca186509ecf0629dcea324cbf04b97efabe04a41441ceb69af79bn/a Heodo
2021-01-15kDzUQ41hS8k.dlldll 8a473c8c1d43838cfdbe513687a38cfa4d23e15f6a0cf9bd3a194bb5dc296deaVirustotal results 55.71% Heodo
2021-01-154Jf.dlldll 19ef91ac318fa04885ef922bdab82a4a9148542ce9e44e79467e263427d76e3fn/a Heodo
2021-01-15JGmgoC.dlldll 5e65ee4438f537d61d7e8536811504c3fe962a5561adb3cdef26d784f713f24cn/a Heodo
2021-01-15GyWjJ6z1rSBMzcAk0GG0n8.dlldll 356fd57253cdbf071fe49855680d34f387e38fc960be9adaa0865b749e50d230n/a Heodo
2021-01-150aRptY.dlldll 07992e221420abfd57b53c8bfe9f89805bba4cf5918ad48a13601db294ece4e5n/a Heodo
2021-01-154JMj.dlldll ed9621b4d7b0e9d14ffbfe059d251553c73f75f2f1449f31b94dc5432c3c5937Virustotal results 54.29% Heodo
2021-01-151ZphtQS.dlldll df26a051e89839007956af3a222e3d08caa1c71f0594143a79cef81ec71214fbn/a Heodo
2021-01-15VmNYfNH.dlldll 68346b6c539d05eeac49bf5898a2a3a1d5a73a0bd850dbc25c4be590eb98daffVirustotal results 55.71% Heodo
2021-01-15LcyNzF4KOxV.dlldll 6f8bfe0be2d47011a727e4ceab333a3cd8b0468a4a292ae1551d7c200fcc4b83n/a Heodo
2021-01-15dRcthQRdNZkpPClqZdGw9y6.dlldll 71f5afba78033f42fdb5668905fcb4e7b8fc72993c2e0645a9ed765b06a54b45Virustotal results 56.52% Heodo
2021-01-15TDW0ijwkaX80H7W8s.dlldll 65291b9460c90544c23431602d53bf3ed30e39cfbfd5340f93feb2faa890a1bdn/a Heodo
2021-01-15yUbpgZXJz.dlldll 0e7124f83b0c6706fc5f9e1bac24281b9f10eba44155119aecdf3a319acec2b3n/a Heodo
2021-01-15QZ17L.dlldll 5913d56eeb90ca6638f996bd45e43e275108b3a8528af845017c525f48e05dafn/a Heodo
2021-01-15OY22pT6tk0wtswmOD.dlldll d3158bb4e6a2c3e3fe4e01a21d48b3aa4f23ddcacd1b09beb033cf1711e95a5aVirustotal results 39.06% Heodo
2021-01-15fLyKQMcxJOQbz.dlldll e530d8841aff8b247928575f1fbc5ceb29eb77f61750ea3e3c0fd288537ac328n/a Heodo
2021-01-15ABVssQ.dlldll 5c9fe7e1b97d58529c1822a11e9097d71062c9bd3dd867b0aa671c833ed2958bn/a Heodo
2021-01-15EupCQ5RAsg2y.dlldll ed709b1f06e30c1e55242a51a35c7703d5e97546b7be8f1cd6dd4f918ee32bbfn/a Heodo
2021-01-15wK9M.dlldll 270227ab30ec59cc97028e1527317410cfb3d313789ad65be7f8d118a98d5f38n/a Heodo
2021-01-15XS8n6DqfOBeLQ2rc.dlldll 425a902ff61c8986864450d7e505dbedf4306abec33792dcb66448ccac4543a2n/a Heodo
2021-01-15JZ5cdkR.dlldll 302227e9600710cf7b91b31e06c04745227bac12a935c1e84fff9fdf77d0dbfeVirustotal results 36.23% Heodo
2021-01-15dqEqxTifoeG.dlldll 12688c0df6deac3db084e1f0a8035c3431fbfaedd8ce97412b8e9145d6023cddVirustotal results 37.14% Heodo
2021-01-15UQmNB63G.dlldll cb7eb6a083a4910b490f08b090eb4a2835c69784a9be8435c038488d789185cbVirustotal results 38.46% Heodo
2021-01-15cC8zBmp.dlldll 62caa245622b98ac7b0340f93e4dafbf6692b3939eaa4be3c37fefb58c67e95cVirustotal results 36.23% Heodo
2021-01-15ITlixuR.dlldll 20a9296f10b02f760f815810e2f825f219389469e6281e431db0306daa9916c8n/a Heodo
2021-01-15jBdzL.dlldll 93a06c3fecc9bdf2519c21218dc80f0989f8fa1d3f06c746421c147dfe4edaebVirustotal results 36.23% Heodo
2021-01-15SSTW6OevTbc7UulK.dlldll cf3f7060d9d625a2d177fb3113b2058638defadb390c141fed1a0133a182973en/a Heodo
2021-01-149pfZs.dlldll 0e878648d199d66dbac8797ef157b54ef53db7700ab9dd5ad4086548804bfa12n/a Heodo
2021-01-1419zXee1uL2v2lo0w1jppQ9D.dlldll 3a18119060cdbc17bea5557942f48a2dca0b293ab5fbb17f8aca4671c2c2ba0dVirustotal results 36.23% Heodo
2021-01-14OqC6X.dlldll cc2ca7c98aca9f6498d96b0e178bc075bafa6728ded46b8f6d1b4d5ba8d5b5b3n/a Heodo
2021-01-14PU54ii6PP5jcxi7nT1.dlldll 18ef721077b2303d2ebd6e487232e72cced4df18c83cad2447c1d2de7e2ad519n/a Heodo
2021-01-14kA.dlldll f8540083f6061e82937ea3e3a9b43edc4941679173a4f10782ae0b142a3a40d1n/a Heodo
2021-01-14N4J39RSKF02t2SJ1WJx.dlldll febe5535ed6ed9165829599947735a981d256868fb9b0bec3b42943f0102f535Virustotal results 35.71% Heodo
2021-01-14ZBmjUb6MsqLkMqHWaIrJ.dlldll e4e4bc4ee782931a1b2274eb4aec860f62252c0bb0ac5f08131ff6b1e7d4d309n/a Heodo
2021-01-14awL3.dlldll f9b36311534fc1e77eeb9da84e8eaf746b518e74a728cc87f5d40cfe4d11dc61Virustotal results 36.23% Heodo
2021-01-147Mezhu.dlldll c28f83d8b7be61dde42316467230318fd4f4e8e2a2f1f08ae3abc14ca3472146n/a Heodo
2021-01-14X49M3k.dlldll d7ec7166c632c003cc863298c7bd9876d8fca5b63308e42e31eff9c0a56ad9f5Virustotal results 36.23% Heodo
2021-01-14D2CBEhOO37MDQ92Dwe781MF.dlldll 33c45b42ffe25a965d6043be27cfd5ade51f9e8e5078fe0b603013c6bf39d746Virustotal results 35.71% Heodo
2021-01-14JdS1i0FD.dlldll 8346904e78368649eff61b899387045d6d305e58d066c6e332b578a844cf0934n/a Heodo
2021-01-14nZ7Grh6Cvyxm.dlldll 84edcb6f9fdb3c1861bec5196dffb0d95945d5d17d2396e07ff5dfc2f71db52aVirustotal results 34.78% Heodo
2021-01-14hgxkb.dlldll 92a2380f485d2d1a4de78c8025283be765dfd9295adbd0ce9481b437c9f48c0dn/a Heodo
2021-01-14pZpXttrwA66zKIygM.dlldll f7770f319378833f6e146bf9b001056844a771a2d1e0515c233c0e21e09d2caen/a Heodo
2021-01-14QKl1zKn.dlldll a91612a457242ac3e2bb1c0d76825969d4a2230e8689940c9f8f63f6d1b041cfn/a Heodo