URLhaus Database

You are currently viewing the URLhaus database entry for http://towardsun.net/admin/BYGGkrYAnT/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1968493
URL: http://towardsun.net/admin/BYGGkrYAnT/
URL Status:Offline
Host: towardsun.net
Date added:2022-01-11 21:09:08 UTC
Last online:2022-05-10 23:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-01-11 21:10:11 UTC to hws_security{at}huawei[dot]com)
Takedown time:3 months, 29 days, 2 hours, 8 minutes Bad (down since 2022-05-10 23:18:31 UTC)
Tags:emotet link epoch4 exe heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-02-288A8bsZGYqK7v.dlldll 14f553f072f7d705abdbc0160c19916ce0ab74486e867c7babf5e619e391ee26n/a Heodo
2022-01-128A8bsZGYqK7v.dlldll 90f4335e8093d4f1a89ebe3ea0b48e95422fb55719d48695002aee142f1c3576n/a Heodo
2022-01-12CTG85hM8QfNC.dlldll 282364f0c0038a9a91d3530d1f447bc9e4849684e13410b9b2a3907d18cd4092n/a Heodo
2022-01-12tmCHejjrO.dlldll 3560c12299183d13269cc210878f5cf346488d134f498768f7227f366f07c232n/a Heodo
2022-01-12GoUrCfDmb.dlldll fffd34e939d63e2051b9ba4dac223c79ce67f4142f04978f6da79d8f4bfd1060n/a Heodo
2022-01-12OhXZtbZb.dlldll 199a15768a70c91830b280894a0ea94228f5a41c5834fc937d256799b87c2151n/a Heodo
2022-01-122x.dlldll bea78e0674848aa38e4eef1721d3763ec4c31a82ce581d5b67f9752cf179f4f3n/a Heodo
2022-01-12lYYnhQ8n.dlldll 00a2e6d3d16d4910f114c5678f9816addf926ba4bea35caf01cab191d8780ed1n/a Heodo
2022-01-12JlIKw.dlldll e5aaa96451a8e804f16a881c7556d9385fed2e1c1c632dbfa5cddd08454c0072n/a Heodo
2022-01-124J3CjbqnpCaL8U1.dlldll 417401aefbca10c24caaa6b2976abc66d43546b6737b56bb370199d2b06dc5d8n/a Heodo
2022-01-12RCgncdlwLimVa3q.dlldll 144113cec8b6d65cc3c1893b5592bbed4edebc49a07042b672c70e79b8874487n/a Heodo
2022-01-12D4XfswjXmbmNd.dlldll 15c553b8d322a58f80e1b7912ad909456382268101c5d2f62219baebea5b8d4cn/a Heodo
2022-01-12gMnxTXkJ.dlldll 6ee6da3cd120b69bb9b81e0a220919f12d3714477ee41354841b44917f687667Virustotal results 32.35% Heodo
2022-01-12pOIgtBKd0MDlwng.dlldll 51e504b094a315df316147dcb1f3baebafe347073c3b1a50682117241c61bc86n/a Heodo
2022-01-12hncn.dlldll ca3157e2a593d9a904f6131b6b640ac2905569c51477c9ec2f69e43145f122d7Virustotal results 31.34% Heodo
2022-01-12cW.dlldll 95ab6b8c6cd8c1e87b68d29dc63f8952074a1f52aabe8069aea63bd0d9cf6ab9n/a Heodo
2022-01-12v99mdEy1WABXA.dlldll 01ceaeb1562ec4ce12e2a7673701d314962b50d0b28e7f10faee6cbfe082f912n/a Heodo
2022-01-12hONFmvutc.dlldll a42cdaafbd30f0d89bb649c0469ebbd01d311eb0c8b54e8de788ccee4cef47abn/a Heodo
2022-01-12Bup2owFDo3.dlldll 4f9c7023f04f1424e45ad6f08f38c4a8afce2056290c9eb78f615ed4ad07cb1an/a Heodo
2022-01-12nwPr0.dlldll 1b6f7fbf72ed4f71cc058d4e5dce7dfc1e634426443fa5d36ef5914bb0fc0fb9n/a Heodo
2022-01-12Ho4shihD5o9bs8.dlldll 31db49b7e8849de31cbdd9af71cb5393e84800fc302f4996e033392b27a9f495Virustotal results 32.84% Heodo
2022-01-12TwXNVhaG4b.dlldll 4c0e92ba645f25d94926e9347dba98056132abda71fcf3f364d9d466ed592755Virustotal results 25.37% Heodo
2022-01-12GJNeZ59mc0.dlldll 7cb2b6303e7c71707843eb84718f34ca95c71b421377b186d60f9561e3c4944dVirustotal results 26.87% Heodo
2022-01-12ufsbxmVtJDIKnoh.dlldll f43515cad1c36187e0c08c5c7cd93e32ec0a724e863131bcc74130e1ba6f679fn/a Heodo
2022-01-12cmUZ.dlldll 7abd7f2581d12c7258eacc777a11c674835ae5c0a8c5aa97e6c13a090cadefa6n/a Heodo
2022-01-12jbPFvpkG.dlldll d61e42867078d2dfc39e4ed0fb29cc9aaf6e3a739eb6bcef81ad8a94803ed188Virustotal results 29.85% Heodo
2022-01-126ObQUTkn7si.dlldll d3537494c58a0057409f042d4d0ca17d2bce79ebde0d57b75690b784c3b2d6cen/a Heodo
2022-01-12gx9WkVkXxan.dlldll c1b1292f516776442037e8e612becc6633b8f4dae634521d57938d80571f08b3n/a Heodo
2022-01-125z34V1Y.dlldll fd8851f60bcec729cf2922c69f5cb07a7dd84bb670d84f3d7aa7e230a5fd08d6n/a Heodo
2022-01-1253gluZo.dlldll 5ef458e9ab92fe14d49d1b00dc23bff08c8b40cd511b481436dde2de52e33b7bn/a Heodo
2022-01-12c.dlldll e28b851f5b0b789234ea04e81f9d41ba8b001e1822d787a28f1940f7176d1d6aVirustotal results 22.39% Heodo
2022-01-12qK.dlldll 4fb38b2bc91704749c70faef0ee54f8229a267456bdf46eb73c5ee92eff30193Virustotal results 25.00% Heodo
2022-01-12w3Jqicm0ucNChuX.dlldll 01c9d840da3d6d99b144ebaea32da8407236ee9284aeecd66c9410d4d3565465Virustotal results 23.44% Heodo
2022-01-12OM78GgMBEvtoYu2.dlldll f4143d810db6ab2ceccfc71cbf38b4e44e2ff6eb3d6ff99b3f8b1921738bbae1Virustotal results 22.73% Heodo
2022-01-12wooRtNfGp.dlldll d58e526fb2940d606d155b7a33723388160501dd55fda78bf2e54d22618246f6n/a Heodo
2022-01-12qOpzY.dlldll 7c621ec1eb8f988238d7ddd0ee8b6c0a056a4a46a34f79de378ab03efeecb3c5Virustotal results 23.53% Heodo
2022-01-12Jj1vTgaGI.dlldll 1e175aa0872bd45714cefc01b06288fe811212ce54935842ef0d91bdb35d21c3Virustotal results 20.90% Heodo
2022-01-127Oa3RmTCJkhlUUK.dlldll b37bd89d199b6d6f9e5cd86aac5c8ea37a0ed0072a076e315d54e87ebfbabcefn/a Heodo
2022-01-12d4fLqTCD4WczBXac.dlldll 8cfa4785f420b891a2e8fafc9e9028c689d742e3c998035b70c650f5d79168een/a Heodo
2022-01-12GNcNkj1LQQHd.dlldll 617ab26c1c04d6334b31836b84376998165776bbf038726f439d9dbb7da4f728Virustotal results 19.40% Heodo
2022-01-12KQlTF22PiCcpK0.dlldll 04016c5a1dd81274f7881b692e0ffae6bbf046f75d96c2845bc02fae54d0f0f2Virustotal results 20.00% Heodo
2022-01-12VBDP407PGh.dlldll 55c9d747ad1b356331b6cba4d019a8c0ece1c77540e80093b616b86f74e34c8fn/a Heodo
2022-01-11MOh47VsqBG8S.dlldll ee608714b7dcf775dd4193a368b1ab4854bf5653f1b90204897945f90b07901cVirustotal results 20.90% Heodo
2022-01-11tIJrvUho1R.dlldll df89048245c01d517baa9067a6e37345d6706ec1df9d3876da5bf11801c52910n/a Heodo
2022-01-119p8bC9E1Wv5xwayJG.dlldll 25135b297fe3dffe1096f6915758b6c8e4c827c030268af641a2d5a29d7313c0n/a Heodo
2022-01-11TGhkyhBOrIGk.dlldll 3ba96f347295ab35b013498bb22449d368cba5b71e72fdd9e3f3f9a25498328bn/a Heodo
2022-01-11EJy7z.dlldll 0417aec004778a572e0d7e50e15a9262e6ba92b2b53810e9fc3a99c0b2e89bfen/a Heodo
2022-01-11QQX6S.dlldll 6c3f0d64c75abcaad7f90cebf7fb78c24b24d1ff0f75cab3a4213cbabd18a76dVirustotal results 15.15% Heodo
2022-01-11GNKpSXr11wsoIxvsr.dlldll 8beead41f183ba2694dec7278391649d7755b049fe1eb55a5604bc6fa9c7ab29n/a Heodo
2022-01-11r9zJ9EW7fDzyaX.dlldll 834efe4c21dabe31df9488fe3d520551b0d525bf5a6680f4412b3cb1dd14be6en/a Heodo