URLhaus Database

You are currently viewing the URLhaus database entry for http://www.mayfairissexy.com/nsfd4tG/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:98429
URL: http://www.mayfairissexy.com/nsfd4tG/
URL Status:Offline
Host: www.mayfairissexy.com
Date added:2018-12-20 19:54:11 UTC
Last online:2019-05-21 04:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Blocked
AdGuard :Blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2018-12-20 19:56:04 UTC to abuse{at}quadranet[dot]com)
Takedown time:5 months, 1 days, 8 hours, 29 minutes Bad (down since 2019-05-21 04:25:40 UTC)
Tags:emotet link epoch1 exe heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2018-12-22this-site-is-virus.docdoc c2e393ff568f4a87ce48011f10664138e569710f56ddc0462aa7f36bdad5ecadVirustotal results 0.00%
2018-12-21WuOsU5UUvga.exeexe 6aeb014b2c07a0a524e77169c9adf25108b2e5ee288d29b7deb81e8278c9d3a0Virustotal results 24.29% Heodo
2018-12-210GuCVSnwsmSm.exeexe eef3d9c15a06e02dba436d35b8f6ed0cd9931e3666ad7729b2ccdad1ab0e928cn/a Heodo
2018-12-21KlaaImH2.exeexe b55126cb3b2f3c0d0890c7069d2f9f8ccbd7cbadbcd85e1719b53fa1041f6babVirustotal results 26.09% Heodo
2018-12-21vzECsmuVwO2.exeexe e6680455860ada6d21684063677842d848149562869ed344334d373d793937faVirustotal results 29.58% Heodo
2018-12-21fw6zZrvOAUH.exeexe 365ffded0b619f3d82cdf1ac95f173ff02eac76e17c96d84a4b2ae26decc9589Virustotal results 23.94% Heodo
2018-12-21Lf5z9YqhbN.exeexe 0ed118eb81e33d2700fa0eda970557174e17149187a1cb3988cf80afdd856ac6n/a Heodo
2018-12-21rS7AZeujn.exeexe b53a749ae5dd64e0b05965f6aa28cd72030bb99e6a81ed1b7700f34bd2dcde41Virustotal results 24.29% Heodo
2018-12-21rpVtbkFE.exeexe 6e72515afc68d6bbd43b491a9a169afd70691d6298f69ede3dfeadac0a232ec1Virustotal results 24.29% Heodo
2018-12-21guskA2nZmR6.exeexe 4d697ea021cccaa12eb646e9f9473185963b4cc7b231bcb31ccf88e5dc98d411Virustotal results 26.76% Heodo
2018-12-21UMAfGxgd.exeexe 8f97c60d5d2ae785a9084177f2e6777b67fd775fa26852f1c05a9209f93946a3Virustotal results 24.29% Heodo
2018-12-21VLC14fbty8.exeexe 05c1cf43e85cc064de597a3b3550031ed4b885d9dd2567a2ae3f15586174fcdcVirustotal results 25.35% Heodo
2018-12-21E0WVdJzX3.exeexe 3cd39fca186ed5c540d9cab37d36c61d63b1f3805cd8ebf66afee49c2ce56177Virustotal results 21.43% Heodo
2018-12-212YOdqAkocNr.exeexe 4fa165beae83961e40f4fb5e1838b494ff53ce6bdf6c10ead93c31f5826655f8Virustotal results 21.74% Heodo
2018-12-21esBhyyIP.exeexe 2110817bc2d85cb8f681bf3831f4bee41724fa8fada7fd62879dbdbf3432c858Virustotal results 21.43% Heodo
2018-12-219ehzkeL8L4.exeexe c156237bf97eb9bdbbfd9b6e580159bc987e2635ba52564c9f26f9c2c4c27377Virustotal results 27.14% Heodo
2018-12-21TMMuazTFF7.exeexe 7e812517683058d119ca31ed056bb4849e4464ef0c88cb30dac603bcb57180daVirustotal results 29.58% Heodo
2018-12-21VMVerukCeHuk.exeexe 52a84020ab93214b19a7d444e7f478a10499866ef8ed20d63754c7f06c07aa37Virustotal results 28.17% Heodo
2018-12-21unDNNShcxiL.exeexe be701be09af0b80af6e8f2ad58f42284e076d7fcd6b2858685492b482d3dd34cVirustotal results 28.57% Heodo
2018-12-21f3HlNRT4s.exeexe 748f5ac68efad832da3972a412440298068618c06bb40ee2e1bf39991aeeeecfn/a Heodo
2018-12-21ADkVjnEeqX.exeexe 194ab166ea766ec42165bf0779a4721d0ca653d7076747491e49cac584b985deVirustotal results 25.71% Heodo
2018-12-21QzCEEgi06RuN.exeexe e7b5aa6c2aed2603cd39c29d06751ea6807452f8d5b773de52b50e072c7cbd63Virustotal results 27.14% Heodo
2018-12-21KAXXAyNvoo.exeexe 0c7c808f2782f420cc0ce308be4d162b2fbec02f64ade191f9cb6f9f0b5f25f9Virustotal results 27.14% Heodo
2018-12-21prazA7qR.exeexe d8ebadbf19bb8f0d31fb51e83ce99557ca955b8b238826f6e6f51e68e9ffd111n/a Heodo
2018-12-21aOA71j5r.exeexe c9126510ffac0badc4b10f55282ae9ba9008bbc055f63232d76a9bceb9b08b21n/a Heodo
2018-12-21ul35hqItj.exeexe 121fd591ad8e428cd25bc1549540d93248e85f9622c6c7df933823b7d65a5ae9Virustotal results 20.29% 
2018-12-21AA9M1Tsax.exeexe 34fb46cd104a8e0aa962afa221b5e4bc632fa9077da1c2294dd9b22bc53f51bdn/a 
2018-12-210qK66riwEiU6.exeexe 8791aca1b7f086707521c280d1892afb7038d44362874eec7f3853cd28a3db4aVirustotal results 18.31% 
2018-12-21hDvyWIjXr.exeexe 4e7d132db7541a3777951ff9f26897931644bac9ca642c229bbdfbe1ced3baa4Virustotal results 21.43% 
2018-12-21GUFLdQhw6.exeexe 5ec9ce6878492e0502696f73e918539b33aa6324673d51033938a60d047734f0n/a 
2018-12-210eeL4IBO2OxD.exeexe c37b0a6e43ba4efe14db6866a5dad4782d1f0e5c0eabb7e5a8b928b10727156cVirustotal results 40.85% Heodo
2018-12-21liJuZjL9m7gJ.exeexe 7ffd9724fb65674b2c39bd7bfc119d685f3be6d82c32428cab112cd0c8a1a484Virustotal results 40.00% Heodo
2018-12-21JquzBRpoop.exeexe 2f8056370a7c1271933d741370810e9315496169a18b14e634085ff261dded3en/a Heodo
2018-12-21PHMatWPq.exeexe 9455de2d1627b17731a4a5232f0a2c4a2ed039e9517ed4d68269f6e363275807n/a Heodo
2018-12-214dmlrGNtL.exeexe da17cddc72b4e3606dedfe395b4dead428c6b8ae42d183639d1f5bc139ddfdfcVirustotal results 42.86% 
2018-12-21zFJrLrEMT5o.exeexe d57f5bbc5222c8a7707dad3967cf2e20d59be4ea2a1c53c4968301ef4bed8b9dVirustotal results 38.57% Heodo
2018-12-21T6BMaVlI1Ze9.exeexe 0bc491dc0ff4b79edad5237f9a5a91df3820f9ce5c4146ddbdf1ffb51441f3d9Virustotal results 40.00% Heodo
2018-12-21oCFBOZNwA.exeexe e27a1e878fdfb3e782698c3a254cc8d93bf6abbfa74cd0d69cfb4e01b94a5020Virustotal results 37.68% Heodo
2018-12-21ymcVOXde.exeexe 2b6d402c138753f79ab607351eb7e532880c6e3bf1ecc85a02ddfd30ea2840c1n/a Heodo
2018-12-21iSoMprTt1GVd.exeexe 64c516e06254c94ed6fe11b536ab22bf23e6cfb8c7cd9bec12d8c9c4d8b60e4dVirustotal results 29.58% Heodo
2018-12-202mH2yA4hF.exeexe 07a869d9f8c2d01b365d3276c13904b76e6416dc23626fba1b18da09fb203bd4n/a Heodo
2018-12-20iamgp7jqT.exeexe 6947d466c685cd60dd95a83e870c57ff2ae674298603ba26ffa1288648faa28fVirustotal results 29.58% Heodo
2018-12-20LyJa4NZMccI.exeexe db6b28439b6019766f86580ca85cce1aaeb9fbc01862612d7e15c8f3b134acc3Virustotal results 28.57% Heodo
2018-12-20uL9D12YmGkL.exeexe da12c30ea21672829ade645caa6e803bb69cf3ec384ec3e826ff18e8d638ef49Virustotal results 25.71% Heodo
2018-12-20QBO0w9wRu.exeexe 048162ed5501f4301aac77f7e82954b2a2bcc69ff89f7a3781a5b4be6b4f9782Virustotal results 24.64% Heodo
2018-12-203SFVES8WB.exeexe 35a94428fb8536debd31cd1bf1bcfa9044ba8188507db8149e17778d18aac7b5Virustotal results 21.74% Heodo
2018-12-20R26PgsfRD7V6.exeexe 1f4a4f15511d2dcd86f5f6510627d57f6d40bf27a2347c6446ebe3f3068b73f2Virustotal results 22.54% Heodo
2018-12-20y4kqn0XSN.exeexe d284d8176cb60999511d23e63bb015816cab930b937ccf9568af42b185f6bba5Virustotal results 23.19% Heodo