URLhaus Database

You are currently viewing the URLhaus database entry for http://hizmar.com/OOXczTI1a/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:98539
URL: http://hizmar.com/OOXczTI1a/
URL Status:Offline
Host: hizmar.com
Date added:2018-12-21 02:15:25 UTC
Last online:2018-12-26 08:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2018-12-21 02:20:16 UTC to abuse{at}as42926[dot]net)
Takedown time:5 days, 6 hours, 14 minutes Bad (down since 2018-12-26 08:34:21 UTC)
Tags:emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2018-12-24this-site-is-virus.docdoc c2e393ff568f4a87ce48011f10664138e569710f56ddc0462aa7f36bdad5ecadVirustotal results 0.00%
2018-12-22kBY80qdEDRr.exeexe b60c0c2050d1f99ef73709f977a213a30b6e02a79c7a22515f848c1702c9edffVirustotal results 27.14% Heodo
2018-12-22KG1ffJsDUNWc.exeexe 745f6cf8c012d48552dd2b3112939caa717794585383aa5eded90de33dcac071Virustotal results 30.00% Heodo
2018-12-21c7f943d0rb.exeexe 75f91225a75ba85ed6fb9bab8eb0c06643303b88b4133bcbc6614e3a867550fbVirustotal results 22.86% Heodo
2018-12-21EHfN09JBNBy.exeexe 4115bf16c66358589822c156ed394f0a33f8f224558cf804b27242cc5c430e9bn/a Heodo
2018-12-21fzsrBkAc7vS.exeexe 9a69dac8ab50d75261cd3f1f177fae018618bfad54b3c7651ffdce1d23bb9249Virustotal results 29.17% Heodo
2018-12-21LHH5VKFcfDW.exeexe 6aeb014b2c07a0a524e77169c9adf25108b2e5ee288d29b7deb81e8278c9d3a0Virustotal results 24.29% Heodo
2018-12-21dwF8vp66F.exeexe eef3d9c15a06e02dba436d35b8f6ed0cd9931e3666ad7729b2ccdad1ab0e928cn/a Heodo
2018-12-21arRs8z8B.exeexe b55126cb3b2f3c0d0890c7069d2f9f8ccbd7cbadbcd85e1719b53fa1041f6babVirustotal results 26.09% Heodo
2018-12-21kje0aWZVFa.exeexe e6680455860ada6d21684063677842d848149562869ed344334d373d793937faVirustotal results 29.58% Heodo
2018-12-21uFn7eiiM.exeexe 365ffded0b619f3d82cdf1ac95f173ff02eac76e17c96d84a4b2ae26decc9589Virustotal results 23.94% Heodo
2018-12-211VIwlj7MdAi.exeexe 0ed118eb81e33d2700fa0eda970557174e17149187a1cb3988cf80afdd856ac6n/a Heodo
2018-12-2105d2FbwHaf.exeexe b53a749ae5dd64e0b05965f6aa28cd72030bb99e6a81ed1b7700f34bd2dcde41Virustotal results 24.29% Heodo
2018-12-21VuQ7EZQ0T.exeexe 6e72515afc68d6bbd43b491a9a169afd70691d6298f69ede3dfeadac0a232ec1Virustotal results 24.29% Heodo
2018-12-21msNyG6U9aWD.exeexe 4d697ea021cccaa12eb646e9f9473185963b4cc7b231bcb31ccf88e5dc98d411Virustotal results 26.76% Heodo
2018-12-21EXX30p7D.exeexe 8f97c60d5d2ae785a9084177f2e6777b67fd775fa26852f1c05a9209f93946a3Virustotal results 24.29% Heodo
2018-12-21wAfJFU3vLx.exeexe 05c1cf43e85cc064de597a3b3550031ed4b885d9dd2567a2ae3f15586174fcdcVirustotal results 25.35% Heodo
2018-12-21AJv66QFI.exeexe 3cd39fca186ed5c540d9cab37d36c61d63b1f3805cd8ebf66afee49c2ce56177Virustotal results 21.43% Heodo
2018-12-21VEoeiLs8cdQL.exeexe 4fa165beae83961e40f4fb5e1838b494ff53ce6bdf6c10ead93c31f5826655f8Virustotal results 21.74% Heodo
2018-12-210ORuxqRpSr.exeexe 2110817bc2d85cb8f681bf3831f4bee41724fa8fada7fd62879dbdbf3432c858Virustotal results 21.43% Heodo
2018-12-21raZU8N8tG.exeexe 3985be4ae1752ba77fcdb24f5ad322b0defb14fcd1708109cf3516db1bf1f266Virustotal results 38.03% Heodo
2018-12-21azw65PsdDy.exeexe 7e812517683058d119ca31ed056bb4849e4464ef0c88cb30dac603bcb57180dan/a Heodo
2018-12-2148MfzCXU.exeexe 52a84020ab93214b19a7d444e7f478a10499866ef8ed20d63754c7f06c07aa37Virustotal results 28.17% Heodo
2018-12-21oAI7Qq1I.exeexe be701be09af0b80af6e8f2ad58f42284e076d7fcd6b2858685492b482d3dd34cVirustotal results 28.57% Heodo
2018-12-21vpNvP0t9qV.exeexe 748f5ac68efad832da3972a412440298068618c06bb40ee2e1bf39991aeeeecfVirustotal results 25.35% Heodo
2018-12-21UsYBMp8wJ.exeexe 194ab166ea766ec42165bf0779a4721d0ca653d7076747491e49cac584b985deVirustotal results 25.71% Heodo
2018-12-21NiahalYmR.exeexe e7b5aa6c2aed2603cd39c29d06751ea6807452f8d5b773de52b50e072c7cbd63Virustotal results 27.14% Heodo
2018-12-21LHK6qcgkItt.exeexe 0c7c808f2782f420cc0ce308be4d162b2fbec02f64ade191f9cb6f9f0b5f25f9Virustotal results 27.14% Heodo
2018-12-21L7OmJEiz6mL.exeexe d8ebadbf19bb8f0d31fb51e83ce99557ca955b8b238826f6e6f51e68e9ffd111Virustotal results 29.58% Heodo
2018-12-21RcMdWdB2.exeexe c9126510ffac0badc4b10f55282ae9ba9008bbc055f63232d76a9bceb9b08b21Virustotal results 30.00% Heodo
2018-12-21AWElRmnUBhp.exeexe 6fd6ad7bde0bcc40a46042a73f5c6e7479f510ccda6914bdbf5aa4d3e783d2baVirustotal results 27.54% Heodo
2018-12-21laHwBdhV.exeexe ad56bee078276e773f063b0a2c0a184998f5cd6ed946f90d73d5cb051eda450dn/a 
2018-12-21kJCbVW46Vj.exeexe 121fd591ad8e428cd25bc1549540d93248e85f9622c6c7df933823b7d65a5ae9Virustotal results 20.29% 
2018-12-21qh7mrHYs5y6.exeexe 34fb46cd104a8e0aa962afa221b5e4bc632fa9077da1c2294dd9b22bc53f51bdVirustotal results 20.00% 
2018-12-21s9MH9L8nbc3.exeexe 8791aca1b7f086707521c280d1892afb7038d44362874eec7f3853cd28a3db4aVirustotal results 18.31% 
2018-12-21rnSVBxAkf.exeexe 4e7d132db7541a3777951ff9f26897931644bac9ca642c229bbdfbe1ced3baa4Virustotal results 21.43% 
2018-12-21YTVbrWMS.exeexe 5ec9ce6878492e0502696f73e918539b33aa6324673d51033938a60d047734f0n/a 
2018-12-21votX4Y77GvW.exeexe c37b0a6e43ba4efe14db6866a5dad4782d1f0e5c0eabb7e5a8b928b10727156cVirustotal results 40.85% Heodo
2018-12-213iyu8nAJxXYL.exeexe 7ffd9724fb65674b2c39bd7bfc119d685f3be6d82c32428cab112cd0c8a1a484Virustotal results 40.00% Heodo
2018-12-21bXZxWUYmwlv.exeexe 2f8056370a7c1271933d741370810e9315496169a18b14e634085ff261dded3en/a Heodo
2018-12-21G0fBzZWI8AfE.exeexe 9455de2d1627b17731a4a5232f0a2c4a2ed039e9517ed4d68269f6e363275807n/a Heodo
2018-12-21jnMlBSyLPD.exeexe da17cddc72b4e3606dedfe395b4dead428c6b8ae42d183639d1f5bc139ddfdfcn/a