URLhaus Database

You are currently viewing the URLhaus database entry for http://primtalent.com/wp-admin/9yt1u/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1800011
URL: http://primtalent.com/wp-admin/9yt1u/
URL Status:Offline
Host: primtalent.com
Date added:2021-11-18 20:13:21 UTC
Last online:2021-11-19 04:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: waga_tw
Abuse complaint sent (?):mail Yes (Ticket DCU003850888 created on 2021-11-18 20:14:10 UTC)
Takedown time:8 hours, 24 minutes Good (down since 2021-11-19 04:38:30 UTC)
Tags:emotet link epoch5 exe heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-11-19MxLjzW77RL1U4Rg.dlldll ac3bce0fefddb8d2a6f52448278c283447d0210686d1cd8bd7c9c3fb59a14298Virustotal results 29.69% Heodo
2021-11-193kAp.dlldll 965496d0ac953393b1ac99b6f2f7d134df17c55b238ac5ff3dfc8ff162a13a30Virustotal results 28.79% Heodo
2021-11-19FlHQNwwRDc4CwVgXC.dlldll 3215b63d36dc8c1cd69edeb2e933afcd2905070741f21dd1bd0088307423e6f4n/a Heodo
2021-11-19DJLQIsBOQpHBPDeE5BB.dlldll 78cac05edbefc2f6b4c4cf538619f9284e38f2c8817458a418333dcc15787dedVirustotal results 29.03% Heodo
2021-11-191WTiKmiEfuIsHIntPTc.dlldll 89cdcc2d1ef3d1c49d0b54f1017fd20ac1362fe01dea0dec510ae77019c34b4fn/a Heodo
2021-11-19tBgg8.dlldll 1a667c9f7c4911ef7e5a290b593769818c539d441d72ee823efdfd22948d039cVirustotal results 25.76% Heodo
2021-11-19es86igSpHyL7DX.dlldll 70ae55b958e2820877a53b931aaee0cd283d6c3ef5ee6bd598d25e1c002b6ef8Virustotal results 25.76% Heodo
2021-11-19ik2dKi.dlldll e9b7f8e4819d255bdf4fe009013116bbe261f58b49a317868073f890f327266dVirustotal results 27.69% Heodo
2021-11-190tO7IyDKYuB3Ljh.dlldll ddc98eae0a1b6d898b134c35052b8dcd3ed714f3fe2a12f4abfe1872f8c33e59Virustotal results 28.12% Heodo
2021-11-19exdUungiCj1hyG.dlldll 8aff4cace01d0e6e1a40cbd5415aae0b78bf69c9722a484ae688901188e9f6a7n/a Heodo
2021-11-19lURyhvo.dlldll 378e1268a413a23f0dcc78f36023d35c0e30efb6411777f162a44a47307cc879Virustotal results 25.76% Heodo
2021-11-19IQqG1HhMRxVzADdEO1.dlldll dcc2b9c0a4781fcd913c1286bf3efa243aa34e37c7417ebff3702e2811162563n/a Heodo
2021-11-19TsELzQfXgI5gIufZ.dlldll 21259e1e9c50940bc0b23af3927ed87e448444734c51e966a4b01fb4799b9fe7Virustotal results 27.27% Heodo
2021-11-19U1aB7QDV.dlldll e731c3cc5a8be5c3c5993a4bfdf8dbc6c7c9939dcc8e55c5ef1316bd8660524dn/a Heodo
2021-11-194rGRd49Wft.dlldll 2d31eafd8399ffd5983468292238b18d7e65e53eb3e791bec5fcb6ebd016267aVirustotal results 23.08% Heodo
2021-11-1980jGcEYuznYnBDZQybTE.dlldll 5d18ebeea57fade2d187092d4dbcb12250f2e9c7283fc252814d695b5a1cd44dn/a Heodo
2021-11-19wwcd7lHqFTgaX3TY2kX.dlldll 98ce87dc7354e6f1c8f0add9d8f303e93810ba7007bb6a0fbf01140648134f7eVirustotal results 25.76% Heodo
2021-11-19w0pWOvh6MieDscNtTWn.dlldll f8bd02c03a63be9e27c55e681e9f597a0dca2397d54d214042a504fc9ea87c5en/a Heodo
2021-11-19bbyZbb.dlldll 8cf44600ca05af09b9a2ebc4593ce0534cc39f5a8e32717ce65fbc592579201fn/a Heodo
2021-11-19zCaMnICjlXusoQ.dlldll 66203f2e0f1b0b08d5813f76902d48f68d7dc7872a5e6bcb223fa0228aa2cb9bVirustotal results 24.24% Heodo
2021-11-19vUjMOyvxs38Jl.dlldll 3295f5425ff11374f834054f8f323521fcf4ee045c7d00d00f063355c63adb33Virustotal results 21.54%Heodo
2021-11-18B1fVyG5gn5.dlldll 3e8acc4d85b6ffc06b18b97a33a43628e8c11bc4dde8648bcc8a2ad9b1154150Virustotal results 24.24%Heodo
2021-11-18g9TQ9I4bAX.dlldll f6b67df5999083899aa977123d25d7a74a66bfe0cf936cfaf4edc8c80baea2a8Virustotal results 19.70% Heodo
2021-11-1850ehXbYF.dlldll 8ec781d5cd6145481cb1ca4ef592b697d3e2fd0aa0016d8aec376b00de75f7deVirustotal results 18.18% Heodo
2021-11-18FQMDkLd09Da.dlldll fa6abcb5d9d76e03c8991583de635f33b88e1a1585fde50310abd6556691e11eVirustotal results 16.67% Heodo
2021-11-18Xa4bxrVcpe9br.dlldll 8c2af267f57b3ac7eef3ffbc80ed4d65a0239ad84f76d6c68e2c1182f6705291Virustotal results 15.15% Heodo
2021-11-18ZSooAV.dlldll 009a8598bc7475d73a6568fe42be1feb8b44302756ebbbee29c9acbb78af132dn/a Heodo
2021-11-18YN2Md.dlldll bbcd6e8304ec911788f43d0495cbe58bcf0baed7edfe6d1b0ccfc280aeae646dVirustotal results 13.64% Heodo
2021-11-18gZ7cheUPmSR7q2.dlldll 8d6ef330b06e3f15a6d4e67c14c5661351053c78079bac828babd9d683559fd1Virustotal results 12.12% Heodo
2021-11-18uqcS8GwhmjITZNX.dlldll 9a46cb1686f8aa6f9c9dd45befc39d51208e276e7dd0faaada169dc81ab6d27cn/a Heodo
2021-11-18nJLLfsteZyw3FR.dlldll 888ad9ff52ee43ca72196595e65b13c9ca6502f46f1f0413a0c536cf870c0291Virustotal results 12.12% Heodo
2021-11-18h9tagckL97RQll.dlldll cc5b3ab9b28caa84d2758fd79b21d56676f9ea88eb62f608d07414f97b5e9491Virustotal results 13.64% Heodo
2021-11-18qw7PhT0ekkUAc0Ix9U.dlldll b4e045ee5655ec85ac4d0966551e72e155ff2b6b2e7bd1e710e7d39abb18106fVirustotal results 12.12% Heodo
2021-11-18XwmwzKOHUv.dlldll 527691a32c0ee7ad0dc94ab9a19816b59e5222a0e40d60fe12e07d8d1fe096bdVirustotal results 13.85% Heodo
2021-11-18o5B8ww21EBAW5B.dlldll a53aaf0bbc94fb0d752442697d0c9878b4c72f3551d8a234fe0e4cf5e6dec44dVirustotal results 14.29% Heodo
2021-11-181aYGj.dlldll a6af53043235f4527e83cbd71663c1a656b46a0562c26f30fe8edb4b09d4182fVirustotal results 10.61% Heodo
2021-11-18o4P9z88SrlE5PgInNs.dlldll 1e40a101bbd8f56b26bbefe6b6e203581f2b87c3b5b99cfaf6e01e372ca3cd13Virustotal results 9.23% Heodo
2021-11-18ebbxwU4wC.dlldll f8c0efc90e66333146a56f284f05b00b381bdf6b8f8fe2dca32027aa2d30b8dcVirustotal results 10.61% Heodo
2021-11-18GbcszeYLY3.dlldll 9e3963756146338c016a7f2c1a0388c9344e642c2fdd18f4e50e15165c1093b2n/a Heodo