URLhaus Database

You are currently viewing the URLhaus database entry for http://dekasitkimya.com/kugh7ig/zNminx5GIx5aHQAunoeLgE/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1859708
URL: http://dekasitkimya.com/kugh7ig/zNminx5GIx5aHQAunoeLgE/
URL Status:Offline
Host: dekasitkimya.com
Date added:2021-12-06 15:58:10 UTC
Last online:2022-02-09 12:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: waga_tw
Abuse complaint sent (?): Yes (2021-12-06 16:02:10 UTC to abuse{at}internetbilisim[dot]net)
Takedown time:2 months, 4 days, 20 hours, 31 minutes Bad (down since 2022-02-09 12:34:07 UTC)
Tags:dll emotet link epoch5 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-01-01ARhuQ8fqU9PdMKu2Jv.dlldll db14e00720924539c9419459ad7d68862a8d58acd209c793150cfb95aa19abb7Virustotal results 60.61% Heodo
2021-12-07cLt4SVu3KNUNuLyhx2z7M.dlldll 6f5c7cb6185bab2ebe116b8a05f09102cdb5c97d41042e73003b0ce30a14ff84Virustotal results 40.00% Heodo
2021-12-07QzNTUPDyQjyOR.dlldll 4a26dd081a70c6fcce76702ff9883e6a8b641b1c7e7f1ca43868d6e158733961n/a Heodo
2021-12-07Eum8od2pxeS1HWxIcg.dlldll 768b0d021304e80a03e69ed04909851e998329752fbd380b1f9da08afba6ad30Virustotal results 36.92% Heodo
2021-12-07Wpks3Q6p1vSlfJ.dlldll ca5c3403cdcbd38213afa18e86e5bc3351a8eb51c3d9b74c84117f289a59e531Virustotal results 40.00% Heodo
2021-12-07hbcAgU1OF5loIl4.dlldll 86904b173fb7348a407abaa2d6dfcf4cdc2ad979249b5269e5128e3d44a6d53eVirustotal results 41.27% Heodo
2021-12-07HBd3AFQjDVfR.dlldll 80cf59613913554c63e406cc9105567b50a36d9204515858ae85d413e3103d1bn/a Heodo
2021-12-07l8PMnkirII19stYbzQWf.dlldll 4bb6fa9204f20f56a6b712e14b2e4568c406d4dae6a64a3e04a8cfc570a84df0Virustotal results 39.06% Heodo
2021-12-07LELc2UUSfZT1OHqyxGtsn.dlldll 708932bdc549fb4501532439f252272d79b55605bdd4b88359c4bf2a8b9ddd77Virustotal results 37.50% Heodo
2021-12-07Ek4IOOYJQJgiQfov.dlldll 234a7670c40895fd9adde21750521b374e05f43d2fba483064a2701784113934n/a Heodo
2021-12-07UaRcL3hFCg6zalX.dlldll 4e1b7868f08cba9b6ff8e24f02af8bda1772264a5df4c853e95ec8c9d017f017Virustotal results 36.92% Heodo
2021-12-0729wi5m9.dlldll b3e6db48c0903400b25507f3b89cfd675af7fb6d188ac714d04a7efd0d6b12c9n/a Heodo
2021-12-07fQgs.dlldll 1f25f2a421356b40ea68e3b5c41017b9b57107452c874204c1b477a6828fd947n/a Heodo
2021-12-07PJzIKtEQV.dlldll 689e5a3ffbdd09dd5d971ed1dbfa4029b9b29a5e99f52d905e192f16d0d9ae3fVirustotal results 36.92% Heodo
2021-12-07wTSJGwwVWcbgbA.dlldll dc5abe5a2e84a090947998471c24f433599b68e7bdf0ed3cce93fe0e1c0438e7Virustotal results 31.82% Heodo
2021-12-07QUrrMocScrq7coB0wa.dlldll ab40929758bebbb2d9653c6cb4d17c1f5e5664e8b95ef2253e34760ee6cd330fn/a Heodo
2021-12-07FD03.dlldll f416486c7422034b72ba23c8c8367a61760538445d0edd30ade505c5828e95ceVirustotal results 33.85% Heodo
2021-12-074tj8BUoZ.dlldll e4c1d8958fa434760506255714d5374333e2f52bbbe1be752b2b4d8a9f6f5c03Virustotal results 33.33% Heodo
2021-12-07KGxSwz.dlldll 5fbf87f3abd15048946bc99f08dc39e46ac57cc70662b4dd9a47445a2ae7425aVirustotal results 37.88% Heodo
2021-12-07JTHm8SApj.dlldll 960077fcadfb05748a6af6636f2774024f51483ddaab0b1fe1a75f9444ecddbeVirustotal results 33.33% Heodo
2021-12-07cU3K7KJW4vBqB.dlldll 89a8752c47c23b8350603d7bc73a82c5373667200cc69bf49c8e04bc4a9369fdn/a Heodo
2021-12-07yTXEu6Fpi6A7e9MX.dlldll c58394c1a022d078738bde7a2956d78cc9be56d9d3eb193e12d9aa2aaa806e75Virustotal results 39.39% Heodo
2021-12-077oELGIoDA1.dlldll 791340a5820d48ecef6e5683c3176d86a24130402677b9f544eac331f2b21874Virustotal results 33.33% Heodo
2021-12-07xRNt0GtLrr6Yzl.dlldll a5e859b7a5a98d1a972470779994fe398f1541f6b07fba9ee82c2c74dea4cc43n/a Heodo
2021-12-072zrDjGK9LiQ41bqsJMPg.dlldll 97e9780dc9c6e860f1f69c644bb363fab808e7b6d4119616fe40810aabbfd51fVirustotal results 33.33% Heodo
2021-12-07I1K7CH6xkljHAKg.dlldll de4522e79603019496b6ab9390097c9a88faba425f125f78d0eba86dd805c31aVirustotal results 36.36% Heodo
2021-12-07WiMpqT0G4YTw.dlldll 8ce726b35b463c9e0c0db3f30a50931a8e88777875a26f33a2f9d627e584e367Virustotal results 38.10% Heodo
2021-12-07grmh.dlldll d0efb3072c158b153b4a17e8e2488e0d65eba0101963125fdc6eee40d2e50da5n/a Heodo
2021-12-07D1iafXgJO2bLpga.dlldll 828feb79b0e1d64de6ddec27ee2fe6863f43feb776a5cd5c7624c659af810ae2Virustotal results 33.33% Heodo
2021-12-07ag1gYdT9f7LbkEhymSwX.dlldll 624c44af10422caba69688cf5be5e647aa508a16cca8a1660adbeb07ce77402fVirustotal results 28.79%Heodo
2021-12-069kZJjXFwbex9dqeb.dlldll 3838eeeae89593f0fa0e97539d69492b56bce492a74b9b8422e661144bb5d3b7n/a Heodo
2021-12-06X2ZQ5JEjjplI.dlldll a14923cd69b479bfdc81899cb8327e7aefc93171d129894edea421d7b3c4ea6cn/a Heodo
2021-12-06XMutImn1.dlldll 01610ae40312780952abc5d79a89c1e3ffbc97d15b37598d3d2bdd32c1d68c2en/a Heodo
2021-12-06sCLhGyY6CcR7.dlldll a8ac6685df4bff5fa152e172f7b1ec63f52438d9fd0d9e16c8c530779f8246d7n/a Heodo
2021-12-065tNzfcL3YgwCLs7r.dlldll c48b399ac439a75777d97cc5dc013b2ef0be93a9d827e279a2d20bff13724a8en/a Heodo
2021-12-06lM1Gp51s5h.dlldll f3e656873d61e104eebe3a33c03ed7c03db1bc207c592fddb836dbad60ce5bc2n/a Heodo
2021-12-06JWIPxt9BbPKi.dlldll bd9a4b7a9a0f6ee19e23844f24540ad04f9e27e6b74d6144ceabc16c1435226dn/a Heodo
2021-12-06tWNIQeC4la.dlldll 4f5a11ade80909d44ed3f5ea587aa105e61e0bfaff112487b661f79f75ea891fVirustotal results 27.69% Heodo
2021-12-06keMfBRjyk7rH81x.dlldll 62f988e901d1f7e4aa1486c0750adc2221c6eba4eff46d4514d86969440f0142n/a Heodo
2021-12-06WAg6GHQ9.dlldll 92ff2ac2a1db1285b843ba9bdf94e46c587154e5b95f4a8756825cfcb28ffaf4n/a Heodo
2021-12-06tFZw63UmsvLWANeL.dlldll 40add93a557f8158baded6488ad0aaaf6c0626ed7844eeca16007d290c429f3fn/a Heodo
2021-12-06H5xl98KhMhqo9K.dlldll 4b420bd356db4e0140b8f4cdaa4626f50fc6f6584ef6ef287746e47e78d1f681n/a Heodo
2021-12-06rRl7l5Vpp4VlT.dlldll cd896d880b97756b06b6813a40e3cd36faeabca4ffaa4a2e368c311b4fc0927bVirustotal results 31.25% Heodo
2021-12-06Qpp3cTES.dlldll 8c0ee45da7f0add8c98eeed61bbd9d0706ad2fbec15f9749abbb72884cba1705Virustotal results 28.79% Heodo
2021-12-067KIgjgntSdVrEmovlv.dlldll cbb40fab47af7d2ddefeb84caa0a17d9c01b427057b8a1db3599f4d4b69457cbVirustotal results 30.30% Heodo
2021-12-06USWOetX9VZQjZVVRBZ7DV.dlldll 4c64bcfa3b9dda3db5c3ae92962450452590c1482cf5efc2944f8a1f361d1165n/a Heodo
2021-12-06vbQDJnees2vpsD.dlldll a13b1e2ef8359f933c4831acb4ba744037e73ff40ca827a8d5e89d983d33a3cdn/a Heodo
2021-12-06gW7fzn0.dlldll a7bdffc7de5b7f431edb89b39bd763c4647f1b49ffd4fccb9ddec3777974fbaan/a Heodo
2021-12-06VJJeXmdw2OafZ39uUhe.dlldll 1d7e3bb6e88b34eec816995bbb34ec1446bb0ebbb37efa0ae489bd1132f4d8a3n/a Heodo
2021-12-06fotor.dlldll 37264272bcd7d8d3966fcc3773a43e1a9f2210c494bd641d834750ba671ca30dn/a Heodo
2021-12-06mm6oLtCn.dlldll d0e7618c6f12703f1568718af25f5a75535c6be393e38ddc266088a8234336d9Virustotal results 31.25% Heodo
2021-12-06n1xAuFpUUBASBZZoY.dlldll d94a4568dc2c753928603d682e8deeec9198fe639b76b4be7a4941f4cb49571en/a Heodo
2021-12-067IcK218mkehc.dlldll a33e80f3ed04e1940736bc5b3d57751e24f92fcf463e88f1191abe9ab840db2dn/a Heodo
2021-12-06rlsAUUQDl.dlldll 656b54583f9faf06ee6ed1e32c59c8b3c1d8c0f35998c356efa0030f054c3dd5n/a Heodo
2021-12-06E3AYm.dlldll 5a513e78d94b3236117715482078cb1aced9d154a864e2621a240157a73ed0ddn/a Heodo
2021-12-062aRPddIKvlrUzsIMaDC.dlldll c0cb47382ae781d9490973518611ee7a782ff382c391b9b0f5928163978bc00en/a Heodo
2021-12-06FAa12LvJ.dlldll 97a31fc25193c0875ed1f06ca3ac545a2349746776f09a3aff90f9d37177fdc8n/a Heodo
2021-12-06D8J75IgAGe7KBav.dlldll 03493bdfc2eca8c89d95d22a689f4bdaa1d817d81f3c6642fe9e21a752ed9033n/a Heodo
2021-12-0618HOjvAROsaiRQSp5kCmO.dlldll d31488108e413e620126c968413d1b58177dd7cd03788f93d6c3c67ab78d4755Virustotal results 28.12% Heodo
2021-12-067nsJ3EHLBMM6cxC64.dlldll 09c7403b61d864e11ac06b117aac10c400b0a3f76cf83197564b066ed484e14bn/a Heodo
2021-12-06rztOow2QTqWg3nNJhz5a.dlldll 87742a99dbafbca8db458ea6ad8d2627d387b24f46e800bf2d69478dd4f3a42cn/a Heodo
2021-12-06xfP8aSRwZ9Ijv1WhScd.dlldll 03393ea3171b363c2be77c99d3645dad6ac220dc331ab748c96ad7149ad14420n/a Heodo
2021-12-061jppQ9.dlldll f7150d27229b90f402941eb4c69e25afbe91e25cecbed99cb70216b0115535f5n/a Heodo