URLhaus Database

You are currently viewing the URLhaus database entry for https://bestwifirouterreview.xyz/wp-includes/css/uyC/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1968489
URL: https://bestwifirouterreview.xyz/wp-includes/css/uyC/
URL Status:Offline
Host: bestwifirouterreview.xyz
Date added:2022-01-11 21:07:08 UTC
Last online:2022-01-13 17:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-01-11 21:08:13 UTC to abuse{at}amazonaws[dot]com)
Takedown time:1 day, 20 hours, 17 minutes Poor (down since 2022-01-13 17:26:09 UTC)
Tags:emotet link epoch5 exe heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-01-12EsVWnCfMRqpv.dlldll 91a7addff98a82b793c782398ec86b543110893be472fb4d596743aa3f616d28Virustotal results 34.33%Heodo
2022-01-12dfEhSbm.dlldll a4787b157c1319d138b740b7d7678355cf139b7278c54acd31e982837de09faen/a Heodo
2022-01-12C2B5pfj8.dlldll 3643344cfc9fbb4ff4dfd17038d8040375f80b458822e4db9357c37821f95344n/a Heodo
2022-01-12EwFeA57w.dlldll 1fffc93fe65ba08d15686cab053df15e1827728810dd6d3f5c939232fd3a4616n/a Heodo
2022-01-12iqlVxfKOGroIcwHy.dlldll ffd9c4cb8d995f0f7a3c09f5698ad1c258a2632aaf83991dce20418418abf4b9n/a Heodo
2022-01-12p5zdV80eNRHv.dlldll 236cad96d6d3430149995667ce5e304eb038cddda6128b3a82eb38f12a52ec8en/a Heodo
2022-01-126hSKpNOZI.dlldll 4370588122385d62ec075f6a9e0d70d59ed8f0ef97debb770239ac66e739e5b3n/a Heodo
2022-01-12elWaht8Vm.dlldll 61d866d88ee9958d8f3adc0b1000c0aad8e74c9bc6b83de777e8b38cbaf46573n/a Heodo
2022-01-128BzcVe.dlldll 3f445db21148629304b4b796fa1308ecfc9e054041e521f63adb3f1c8cc17a8an/a Heodo
2022-01-12UxLO2qzhC3.dlldll 5744714871eac811eaa879961e35b43b49658888fd7dfd1fe9255dbf4a8d6eabn/a Heodo
2022-01-12ylP.dlldll 51f911ef2e7b60369ce23e15d5cd5d4fc4f77b5d657627fcf7017f7b9bb666f2n/a Heodo
2022-01-12yCN1F.dlldll 9430395b84cd3573c42c236c9c592c78be70eddf016b5aabc956dd0c8ab1a2e8n/a Heodo
2022-01-12LE2M09d3Gk4i.dlldll 7c558ca161cfe6f50466de1f2d68074a59888207007be148fa727dfb00c86080n/a Heodo
2022-01-12baB2n.dlldll 57b2c736863ec1a55046fa667f575a856db9cbf23d6c996478bbcbea60278faan/a Heodo
2022-01-12sttddMbdgiTDm7Y0I.dlldll 01ffbe6bfd29af925c549a33aedd9f007b3a87e3220815fb82bc6657d176332fn/a Heodo
2022-01-12cPA3qXRQt0y.dlldll 203ee67dd94a219c5f6213556e36adfa200887c456511cad93e061df097ff9d5n/a Heodo
2022-01-12vtGS.dlldll 59237224223356b49dc8e3b140a5e7c6b8a9dbf3084c3268b69446cd89e5a04an/aHeodo
2022-01-12DrO5ztkAFaC.dlldll 73aa1577de3cd1e9832a83292d372fa040359845900a069f426e0b07b561055cn/a Heodo
2022-01-12U80v17.dlldll 1045cdbf4244550837bd18ad32019729defff9b320785dcf194c598d6fb60e4dVirustotal results 33.33% Heodo
2022-01-126pLz8kA66rPUJ.dlldll 0780462d56ef4a0c8c3ef93d61ec6826cfcb7f5f0e80c6279ca95de5d2a973b5n/a Heodo
2022-01-12DjU7KGUNHU.dlldll 59c474ae3e67cb251cf8f2093a7ee3b5e5830129c968233cec04c63c3f6d4540Virustotal results 30.77% Heodo
2022-01-12m7T8QzR.dlldll cfa8b7456c1ceff3390e96492ef44e9d082f607b47379cb21667825d49f928b6n/a Heodo
2022-01-12bzh.dlldll 2c636793ddb6e7f12a3524cd4a1dc90cc3a1a45fad9f64ad60e36166562328e1n/a Heodo
2022-01-12AYst7Ka.dlldll bb6e83cd347f303d4a560a833fdec371621cc8e1f8771da5aade58f9ee42957cn/a Heodo
2022-01-12XwrmsBVdYekra1Kmb0t.dlldll 386f0e7b68bba8ba9e96776fb476b03466b6d5b82959f6c77c078d62b4defbd4n/a Heodo
2022-01-12YV2yYP.dlldll f173479bde21853a6ccc9a644cd285ac1539bc37ca056e7dbc641a671b829421Virustotal results 28.36% Heodo
2022-01-12tbbUQiM.dlldll cfdd901be9fdd60623b294138b9ad46c89b555a1cb4fd3334e040f04054fe16dVirustotal results 30.30% Heodo
2022-01-12bONZ9lfg.dlldll f487c5951bbce6c6ca7585e194a212a56c2abf8d68afef20012d7736ced22148n/a Heodo
2022-01-12pU65x7hJH6aJ.dlldll 2393c0b1cff9a41ac3cd4d06f400299f5583dc233d2b320baae108adc8700358n/a Heodo
2022-01-12aDvsbaNyUm6cxBSc.dlldll be05f48fb590d1568fdd446095d19a42e0de5e282f56c72da5d84cdf7fbf7292n/a Heodo
2022-01-12YVCitZK6b.dlldll 2957ea8331b07dbdc65b22b72d886113d459321e541578152f96a1941112ee34Virustotal results 22.39% Heodo
2022-01-12K5xQ0cps.dlldll e8b6d1a0a56daf0deb1490d31d651d682cdc8159f4e2478ad9f56eebb1a52670n/a Heodo
2022-01-12oLP2KJ0wIjES59SVKc.dlldll 49c4f46d9e4b7cd520d1dd09c0c0c34d2273d5ffdd2e3a632e29b46e2d650c3dVirustotal results 22.39% Heodo
2022-01-12QEudZqFqGGuDWeuRG.dlldll cfa08b536b15e4610bb83df2fade9848a7682867b66122dda60f7e191f3bae73n/a Heodo
2022-01-126ZNeYTgkt.dlldll 1620a1ca87af4e989124906b5c61397206596509e98fd55e0ae5771c062b21ceVirustotal results 20.90% Heodo
2022-01-124heaVhS1TmkE.dlldll feaabb992934a60a25c90c5a1aee1862c0ad3cdf5c3a7db203ced7a28e0c6afen/a Heodo
2022-01-12obXp6.dlldll 65052ae2927a039d6ecf1d41c932100dbb3abb192cf20f468581cf23c5882231n/a Heodo
2022-01-12ZVAvsAD0.dlldll 808b2ec371ad9bb8dc47361b2ef20dda60f6721a23ac0853f92bbac55bf22d46n/a Heodo
2022-01-12xuG3t0ALQfX.dlldll bb0ae349a7bd50d1b96197d05b4e48a0dcce0234dba1215c43851b1f55708239n/a Heodo
2022-01-12SAMnS3zau6FvzG.dlldll 921aef2517a6990d0835017b7bb42e322947a69cfbc7b69d235ff7a101276886Virustotal results 22.39% Heodo
2022-01-12G7J8UK7hy7Fk04C.dlldll 8c798131051de61ebd45bf5b7ede8e14a8baeb855651012b90f08235b5ffe7f9Virustotal results 20.00% Heodo
2022-01-12Pk133yxeL.dlldll de1ba3f39c558ebd012189d79da24d6866ffa45e65bcf0145fc72899ddd77ef8Virustotal results 19.40% Heodo
2022-01-12LxY2jmHKPtoSE95NPF.dlldll 1db9fb78ed716a73e4f0a8f1c2eba69bfe9838956e370290a850505feac28480Virustotal results 19.12% Heodo
2022-01-12vUGKj.dlldll 666d9e44e5a17e182e41fb00bac975369506f5c9418f9931165057f324f0051aVirustotal results 17.91% Heodo
2022-01-12LFFTWnCttV.dlldll 2f640b60d269baaeabef247d73137dbcc271b32c6d1337614fd3738955add4edVirustotal results 19.12% Heodo
2022-01-12Jzu6i2HTJviOaaKUG1f.dlldll 1ff4683ab7632b07a745b6ab0ef35d0366c5e0df1c1f361077a3a6e16149b77aVirustotal results 18.75% Heodo
2022-01-12febUTPtRnIsk0M.dlldll e7f2bb44139bf6bf7387a9ff15851bd749c313edda20ff62e690c4c21756ea9bVirustotal results 19.40% Heodo
2022-01-12czhlUH9Px9FfTPjj.dlldll 4b279f65b329ed49cb31a7c38d8d1a20e1779238f2edf427ff3989dacaf89538Virustotal results 19.12% Heodo
2022-01-1243tm.dlldll 4f7a5eaa42dba78a09bd044c4ab90715072a1e65387d99097c316e9efe2d3ddbn/aHeodo
2022-01-11hv852.dlldll d88c0bd4d1448acefa9f01265c273715c696a18a31d77d13c0c76700be484b90Virustotal results 17.91% Heodo
2022-01-11yhJcmjK.dlldll d81a7f8b941bf117dcf12b068fdfc1045675f983c5e394d0c9d7244602b22a79Virustotal results 16.42% Heodo
2022-01-11gl0FzEGm6MD8OYF4y3.dlldll 689e761512b06c8fa3c6612a00d6ccb18a94b7176a547f0c7464e4b8e6b8cc28n/a Heodo
2022-01-11gcFwtFTSlNORUDHSLuV.dlldll 8222fd98989de6f4ba52e64b4c5d9250126ee5def9df13032b02e6639aca1f8dn/a Heodo
2022-01-11OoNQREJ.dlldll 69023ebf4294a7260018f73d263cf363878833a307bc2cd28ad694ce0d50435aVirustotal results 13.85%Heodo
2022-01-11FzCihcH8PFIspkylxk.dlldll b24a032a1b5c91c2681b61cececdba84b0c90fea0797c751459fda62b7c44459Virustotal results 14.93% Heodo
2022-01-11P54DBvjjOe.dlldll 54dc5c715a6dac2db79c520422eb82381d8130e1b6fdd94e359e5083659803c1Virustotal results 13.64% Heodo
2022-01-11uorIDSj9NL.dlldll 2ebeebf3187375880ca839ed3bd02ac581d22797ddf17c3ec166014d2a5ac902n/a Heodo