URLhaus Database

You are currently viewing the URLhaus database entry for http://justclickmedia.com/pEOzh8cHUn/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:97715
URL: http://justclickmedia.com/pEOzh8cHUn/
URL Status:Offline
Host: justclickmedia.com
Date added:2018-12-19 10:42:12 UTC
Last online:2018-12-19 19:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2018-12-19 10:44:06 UTC to abuse{at}inmotionhosting[dot]com)
Takedown time:8 hours, 38 minutes Good (down since 2018-12-19 19:22:14 UTC)
Tags:emotet link epoch1 exe heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2018-12-19this-site-is-virus.docdoc c2e393ff568f4a87ce48011f10664138e569710f56ddc0462aa7f36bdad5ecadVirustotal results 0.00%
2018-12-19hzkkcIGHR.exeexe 40583fafdb858bef8aace8ae91febbbc98eded8c0590e01fb4fafe269fdf002cVirustotal results 28.17% Heodo
2018-12-19bLYjWcdZ.exeexe 5584f1c848ef2dec37638a9dce81235238941fab44ed259a547cb69c7bf8a230Virustotal results 27.14% Heodo
2018-12-19ImVFyyiufs.exeexe f71a6b471ed1c00ece4b842e081c0e2eeba7c58f0b6b18ee995d2babc9e08a92Virustotal results 25.35% Heodo
2018-12-19X4ofYNfel6.exeexe d94ec25425c50a5e291d8d7687ed0fa87373b8e21592c64179f9e886c4cd373cVirustotal results 26.76% Heodo
2018-12-19ALmPDLxPL.exeexe 6553150d09bb9a8334f9b339f26a9057744a114221191cca5f8a68dbedab4ab7n/a Heodo
2018-12-190PJvTd6cSoC.exeexe be3b17bcfabb7dbbaff7ecd8a4bea82f97fea703a5a7a83607d5dc646b8561b1Virustotal results 25.35% Heodo
2018-12-19aQ8Gp1is.exeexe eff98c96723a58abafe99bc8ac042299f9c0875d791b7317c4f6aaf117a646c8Virustotal results 22.86% Heodo
2018-12-19LRo0Rkjr2j.exeexe 3c7240cc89f49b9d59e45a426089dd2e8d42ee2f443b363cf76bd0538d549680n/a Heodo
2018-12-191U1rmSvaUVIB.exeexe 30239f6fabe160e6d1e8dca5539717990b3116fd1f59c4104d24f21bf4ca3606Virustotal results 27.14% Heodo
2018-12-19giPuRUVn.exeexe e81a189849b3b9fe1ccfef7fd59d47b3a684217cc6571f090edab66b762e5f8fVirustotal results 25.35% Heodo