URLhaus Database

You are currently viewing the URLhaus database entry for http://bujogradba.com/5tvjjl/qiP8H0W5GmR5P9fGIw/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1905969
URL: http://bujogradba.com/5tvjjl/qiP8H0W5GmR5P9fGIw/
URL Status:Offline
Host: bujogradba.com
Date added:2021-12-21 07:23:13 UTC
Last online:2022-01-14 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2021-12-24 13:29:52 UTC to abuse{at}cloudflare[dot]com)
Takedown time:24 days, 14 hours, 4 minutes Bad (down since 2022-01-14 21:29:59 UTC)
Tags:emotet link epoch4 exe heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-12-21kPz5bY.dlldll b4e15db775148c773ebc1107c033bb9062da22ac45c758deec6290126079b08dn/a Heodo
2021-12-21yxYSTLGoxC1wXucsV.dlldll 0de9c916a586789388632af2848d073d690340bc90f307136a5f74221d09c2den/a Heodo
2021-12-21iXzMao5F4.dlldll f7169f9d1161777e3aea4aff4c76bf8e8e987e0d48fac3cf780413fd2b3c361en/a Heodo
2021-12-21x.dlldll 28bea1ed3ac31c59db3b5fdac4fff846f5eabd54cb51da1ea8edf0e605983901n/a Heodo
2021-12-218RDdVT0.dlldll 30ff27756d4cecff34429461a95c9dd283dddad1bc701d9c40a9af600d3cc9b8n/a Heodo
2021-12-21RzmA613DHw70tBK.dlldll a6cab01eebf27a2a0d76d45aa823661aca0922893edc9164e9bdcb8919a8c101Virustotal results 16.18% Heodo
2021-12-21eWlh.dlldll 7d0bc686e09d5d54e7ecbd7e7ae75e04b846fb78fbc8c4555f241dc9eea0f249n/a Heodo
2021-12-215Xxx3z26TVWP0.dlldll 3360aa4f09c118bc3dcfc9aeb5602bb1135a1ff4312820bcb147c03a3fe8dcfcn/a Heodo
2021-12-21G8G7opYc7wG58hL4bM.dlldll 0f033a8824709c745a57d24ccf3c5dbbfff3af6c3c67fc82879068f150f4e1dbn/a Heodo
2021-12-21bM5F32.dlldll b1b6d1dacd08b013607036dc28899ee9c2b11af81203c3e84da445fbf580485cn/a Heodo
2021-12-21hQvcMZURvc0008GxE.dlldll fa2fd9e19413f2a7054d888ff3440e83bc097d1ec7e44d4bb07b426d0e8dd819Virustotal results 14.71% Heodo
2021-12-21N0lBHO06l5d.dlldll d8ca018cca198e7c8e81df57732a385980ca68fac2c70d20b4921930a433e39cn/a Heodo
2021-12-21Ew0vNlzmL.dlldll 827939ccc6f1085f4bfdc7fed84825214ef1f09231f8b8f6903aa493a3b127f1Virustotal results 19.12% Heodo
2021-12-21SNr.dlldll 9b73fe6b5f23c2c75f0adca1e1ba3cf47dc305a371059fd2d612a64e5c9bce17n/a Heodo
2021-12-21fucLLDYbaGm4oq.dlldll 17f8b96e2955be3980d5474d73fcda239ec508420dbca6951bb2cf2a3bdae610n/a Heodo
2021-12-21gV3xaoU.dlldll 57cee6192ebee4fcc5b69938af05ddf507374f57329cc4cfffd8f6d1a9d69807n/a Heodo
2021-12-21mbnzO9rlObHiK.dlldll fcb80974abcdcad4ac24c245916fb6b9f2a228eee8db97ad527c67de228c36bcn/a Heodo
2021-12-21A2Kkan.dlldll fe7d391016e416bcebdb47696b6fe2cf1e595f62a47a7395a2cb21f22cbec861n/a Heodo
2021-12-21PoryE2hpuulguPPLl.dlldll 4cfd217c42274c1260b7b0658b2b5c46dbaa5648ebca5e226352cff25fa7de85Virustotal results 14.71% Heodo
2021-12-216IQ4fAcWpyaMXD39CG.dlldll 2d1354612c00c3bf6ccc5678f88cbda86c785ebb9856c519f74c4404f40b71d3n/a Heodo
2021-12-21xV.dlldll b0b34137d1a4478940b52c9cef0184134db6fa400936ef2ce505757d51199d2cn/a Heodo
2021-12-21o9Lhiz.dlldll 614fd445b35701e382708e130a4468279c96fb99ef8dbb631061716d79b91400Virustotal results 16.18% Heodo
2021-12-21J.dlldll f2994d3bf555a403e56eb4f345f10c3610f7394b542f2d5d3564750367b1764fn/a Heodo
2021-12-216CIM5pI8oc6.dlldll f0c268e9c8151a7d575441b89aebf22655319e7425cada0dcac19d6525751439Virustotal results 14.93% Heodo
2021-12-21QF.dlldll d66988495bd74de87080d66bd7b184c90e90f13df74396bd3e5e17b086751676n/a 
2021-12-21VlK5zZM18UG.dlldll 043f2a02f68b8014ed4cfa86dd1123f5271ae5a7e995e2b849bcdb45a19cf61an/a Heodo
2021-12-21krbSb.dlldll 8353bb198486648a3c43db33809ebb59e627e7792971d1b91c1f51b542c79e66n/a Heodo
2021-12-21KRTpLTpvkuO2I49qul.dlldll 721087792225e918764e387f7f53504ab41ad72362869ed2369748ffe2ead563Virustotal results 14.93% Heodo
2021-12-21PX.dlldll 1f8ec7042d63b94db2bc20df37935d8950e7b9845c1d96d94b446760610f2dban/a Heodo
2021-12-21XpCjDYk4JMbb.dlldll 6ce11b37a0c428baed03f9d3131c64749f933217b1a3046a193d8b5a69ec3cb6n/a Heodo
2021-12-21xBE8yIH2uIRtE2Q.dlldll a47e9c54f1f5a2c1e3f36a588b7d5d3dfffaa1728952c70d07c8e8c866da7f59n/a Heodo
2021-12-21eF4eyyytFCo6i6CO.dlldll defb894f24d382ba9d80a359c8bb02e8f7dbd2191bcda465bafa20590ac518ben/a Heodo
2021-12-21M.dlldll ef771f853c5d9355a46ce63070e838507912d13f42d10f595987058bcb97e7e5Virustotal results 15.38% Heodo
2021-12-216.dlldll 9873070d1ad8dda2222699ed56a5e03bf057bdc3a30596a91aa435ec9555c6f8Virustotal results 8.96% Heodo
2021-12-21AnDoiBMWzWNG.dlldll aebcf0cf8b426a33d70c5df539a269d569c506c27869ef1a59ae21dda582c913n/a Heodo
2021-12-21z3bsNBF.dlldll 14429f5e7567407854f2c803ee2bd10229ba3c94f57d14398c7d7af193dd44d5n/a Heodo
2021-12-21HB.dlldll 73d34d6729bed127e2f42fa22bfc06618974616a98a39b05ab199540cf47e18fn/a Heodo
2021-12-21o.dlldll 85757ab8408342f3e7b282a377de3b0c3ec420469bbe977f8d5be74aca91a18dVirustotal results 9.09% Heodo
2021-12-21q4lZgeF.dlldll 9c745b68f8c13d81fc2303ed14ee56bdf0937adf9198850c74602fee159c9683n/a Heodo
2021-12-21YO6tqSdvEiK.dlldll 823781895082b945be0ec2e3f48b8d6168861bc174d4190235f31cea46f9eb52Virustotal results 8.96% Heodo
2021-12-21ipK10x1bZoaNrt.dlldll 8bd29ddbf485abb243243964cde4e0e0a8d5c491438276a9346c899fcd88fb9an/a Heodo
2021-12-21Nk85WlRlxU2pQaYGp8.dlldll 4acfe79f76caafae60e48c9f8e770e8093610b6f08077fa62099d33068bb42bcn/a Heodo
2021-12-21FtKUzwL.dlldll a5636b804eb88d98e552d2d1886a0c01d27655bd5f2d180c0fbf1fee42b812f7n/a Heodo
2021-12-21CkDLWCooAo0Ew3P1bQ.dlldll 2e7acd1036a23c81c36986aa81af980e36206413b255499ed31ee967388925f9n/a Heodo
2021-12-21Zbh.dlldll 1d35dfcd75e93a87857dbc1e7f38997babb7dddae81e98a055c9bb93187889dan/a Heodo
2021-12-21b9w.dlldll 14e07f28390d1d2f38aa70f13a21ea8c8b2adef648f69b2a65f10f8f9d88bf3eVirustotal results 7.58% Heodo
2021-12-21eBX0Tku67yUxfdx.dlldll 9dc520e2f54b87c40568297a519af6ce00e62bf9a20c27607d2dd8ccf599c881n/a Heodo
2021-12-21PkMZMNrr8.dlldll 6340fc993338c8c5e50d3b4367bd6d93b93dca8e3c790efaba7f02df9984636fn/a Heodo
2021-12-21P5UgHmc8z0E7AkwR.dlldll a9333e2b84d2be2a930d6547b5a8d4f1ccea35e662b680965eb27a0609e2b0e8n/a Heodo
2021-12-214RNzasjMPXApdlV.dlldll 8585c720373b3c71a525126bde1fdd8b8e38776687f315b81203955ae80bf35cn/a Heodo