URLhaus Database

You are currently viewing the URLhaus database entry for https://easybuy22.xyz/wp-includes/css/zdFH32O6JV6lk3/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1970862
URL: https://easybuy22.xyz/wp-includes/css/zdFH32O6JV6lk3/
URL Status:Offline
Host: easybuy22.xyz
Date added:2022-01-12 14:02:05 UTC
Last online:2022-01-13 17:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-01-12 14:03:07 UTC to abuse{at}amazonaws[dot]com)
Takedown time:1 day, 3 hours, 29 minutes Poor (down since 2022-01-13 17:32:56 UTC)
Tags:emotet link epoch5 exe heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-01-13Ylp5BJ2ybYzD3.dlldll 8ece6508cc3865e753ee021c019fef55b3c94d5d2201e730df1fe438685f7267Virustotal results 16.42% Heodo
2022-01-13iNn.dlldll a1907b0189ffdfd09316613e231fcc537cde8b19964649e1ebfb11e81d77b04an/a Heodo
2022-01-13Fxn.dlldll 25c5d41eb810055f6924779a42e604a9271691310ca4ec0dc0c0f356c554bb05n/a Heodo
2022-01-13i7OWSH.dlldll c180ff5afd676f6a8e04e165cf628d3c08a5a071a29f1d2b7997617dc2d4418cn/a Heodo
2022-01-13NmitWL.dlldll 4641c3cb181f0cf8033de4d2e808cd104f7219699ce84e083f8273728b1e348fn/a Heodo
2022-01-13HnAXZZVX7WuQZ8p.dlldll 96d14a2cf4659b8f9c7b1be998c0476f17c080b3078eb9257ab6724fd9d5962cn/a Heodo
2022-01-13DcScx7HX1TM9DTwoS.dlldll 68eeddc2ddaf6bfec182d034c892cbae31da6116f4873cf91c47a95c75bae4ccn/a Heodo
2022-01-13ZVpXYCMZdxt0CZhsV.dlldll 2355ddd87357163143fc5f970094956377c1759c6177002b71a751cbbc8a838bVirustotal results 10.77% Heodo
2022-01-13lVf8NX.dlldll 3e819f9d5ee365c6bd6838f0db0739173aa6c49bde797880066a7b0685eae562n/a Heodo
2022-01-13wHR5D44IM1iqyDN1.dlldll ba99f349af4e1df887c724561305934952c70b30db20a319a7379024068062b9n/a Heodo
2022-01-13iuyyASU38.dlldll 020bef49b0b227f8fa03209ebd180eb2c5bfdbd723e58f92a2643b61cd4fd011n/a Heodo
2022-01-13gsH1CVx6aUGfcqf.dlldll a34fa023a95a707d6a2d2ce1973f89ef2efbf460c2d69b8e6e4972ef5ecfe4c7n/a Heodo
2022-01-13iCO71.dlldll 66a4839b4c5598ce3557d417c91579ddeafce47171504101aa3d9cbaae3ba92an/a Heodo
2022-01-13H4pOFBu0SJd.dlldll 6cc2916d8488ce746495f71dbff198f442e6bf100e9898caa36fd262622a1d97n/a Heodo
2022-01-13RJeQP109.dlldll e598797bae652d507c4d2bfac9055bf1d46169933c92a75159fc0f6141e040faVirustotal results 12.12% Heodo
2022-01-13utC1zG5iNoT9iJsooIk.dlldll 20a12b1b1df1c0a66a1d34208e92f03fd4f6a5786307b74345159619875071dfVirustotal results 12.12% Heodo
2022-01-13yhLM.dlldll f1cb7e4641984adfab2a9a909b283d9f1e639b5e4db2096bcbd4cd13171df390n/a Heodo
2022-01-13rtlKn3wT.dlldll 08104fd30756075d62df09bcc7bb4ba350f687063e22e500cd66769425dd5730n/a Heodo
2022-01-13zQdF6jo.dlldll bc93b8cd6ba905e7b838e86d898db4548371421faf407600a04267d63fc9f14dn/a Heodo
2022-01-13Tol.dlldll 4f2c2b8edb1fe9638ca1d849f45c993f5174547e7a9c437d918e0519e25e8636n/a Heodo
2022-01-135uYAFqEt4k4.dlldll d57809098f559c94434b9d37a560890b1b6cefa20e7237422c6ae45655f0d799n/a Heodo
2022-01-13iMNhNuao6jcR.dlldll 183d3f6ab67acc99bde36bcd1df42ff07d9c848faa1cfb1c670b1abb573c64edn/a Heodo
2022-01-1342aqe.dlldll 1d5c4153a9656b683ac836e2c89b913c34ecbd300bcb23be3a0a20e84542d07aVirustotal results 41.79% Heodo
2022-01-13ZDB.dlldll 8788c7703111d6c63f67c33be2dc8b139269df0bf8fe7af68edc60c04c8dad59n/a Heodo
2022-01-13cLdeELL.dlldll 05694ea3785964138b2af4147a1c74c6e8b764bd8dfd547c2ea46b150feeccean/a Heodo
2022-01-13f91y3IiNPQ.dlldll 5bd8f4967d124f1b3f276483e32127706ca03667487a0ab3a3ace828a1c78781n/a Heodo
2022-01-13TjH6C.dlldll 1c69508ca5aad6d37b21fc3704d4a2d905792d29956669489825e1121f58d361n/a Heodo
2022-01-13iTXq.dlldll 6676a74c5f3b82bf8a5874eb2d10ae7e6b178cb1276cfcea18b5e2b55486c71bn/a Heodo
2022-01-13buKGW3Zpak.dlldll a10ee7eb4ed5026cdd06279fbabb263ec3449a9483f1fcd1e99775f47a90f1f1n/a Heodo
2022-01-13EpWIDpJAq1q2pDnD6F8.dlldll fd833914cfe0b316048dd11526a2ad8a81241b38b817475d67da6977b53502a4n/a Heodo
2022-01-138tVS70GcR1U.dlldll f5bd34edb39850f7d85dee332d7011f14d1c383528f5e7a6c7ea5072a66c1828Virustotal results 44.78% Heodo
2022-01-13poN7u6bffUQy.dlldll 75b465335c4f3ba00b6e3b8fbd8cf076cf38250b9fb028c1a4980fc90ea84131n/a Heodo
2022-01-13hffA38NqCQP7SVHq.dlldll 32168c67551625d098e503f23c955332ba05aa19c1495a2bbe68ee3431ae6f7cVirustotal results 42.42% Heodo
2022-01-135IdBc0NoLhGlf.dlldll f0ac3bf616d57818d8d68a9c1c2ffa1d18ade717b7b6ec27f320d9b93cd0b55dn/a Heodo
2022-01-13Q73QORwa.dlldll 55da9e7d34078bca13fe3a03d63d97152969467ce91af4b82622a056eee0b95cVirustotal results 40.91% Heodo
2022-01-13fgoyyNsjt51Flzu4X2.dlldll 0c6b8b3f7dbaac9b0bb627235fbe8025ded2721889b63ead6ec1bf141e377538n/a Heodo
2022-01-124yZo9zq5DWuHj.dlldll 120373a3efab38a2a52e44e769190f40a55d5ab8aeea7ddb211edc3ea5abe314n/a Heodo
2022-01-12QLCD8c40uCrApWToo.dlldll 5b7e1027e6e6214a8637438d4893c742d65ea8843e416792d0c92db342b5e623n/a Heodo
2022-01-12ERzgnKnMAoGatr.dlldll 1c8decf39e11880182e62ae305af1e51fcc13de0620c9ecf4a6491438ca06cbbn/a Heodo
2022-01-12YWjZZ.dlldll a8804fed3825dd23066f0cb480b71f56b91a5640a43b4a03ab413de686289399n/a Heodo
2022-01-12Xh6PpvZlPTlJ7x3.dlldll ec97e997efc9ac5294866e47962e698c3f2695ba981bfb08faf3048158b8f9ben/a Heodo
2022-01-12Va15quR0jh.dlldll 326b3aadfa3ae537977c74e86c99842729a61d62e1b41fa0d70118e818763cf5n/a Heodo
2022-01-12pOHdiKZB4AAI.dlldll f3d64f6c55b02cff55ffca1f37e1e13352b6192459600821a433b82447a2f80eVirustotal results 37.88% Heodo
2022-01-12k1dCnWlP.dlldll 9935c679d4284bafdc93713eaa28f1153e0cf6c4afa400772c533620313f3a5en/a Heodo
2022-01-12NLUMwJSiQiB.dlldll 1ebbbf9dec8672565bb236feffc576ad8ca62fa7298b564e2adbd6f3420e9e33n/a Heodo
2022-01-12v5GGCpOJIMD3YiO0.dlldll 689df7ca103a62840de342fc4770a7dc8023515357f537504f12e1c139440a67n/a Heodo
2022-01-12EPjQ7ZT68ta762GX.dlldll 9dcec9c99f38be4f76cf6258e532fd2bb8cfd4c52dad23cec3543ef25c14695cn/a Heodo
2022-01-122UlL9aOs.dlldll 328e61a99d28a439ca23fd0b9afdbf6ff12c6697ce3f46a35fb445a96c061a8bVirustotal results 35.82% Heodo
2022-01-12psZ.dlldll 7ab1bea0c2ac97e199a053c7cd94fc5012f5294ef3b269f030e49b2fdc004a01n/a Heodo
2022-01-12ohBbjbEzMkzrlVCQl.dlldll e6e60698e2d6e6b706a6b3edfe462bba3fd272b154763b7f90e8ee16b944ec58Virustotal results 35.82% Heodo
2022-01-122JX1zUmf8fD.dlldll 26d85b4371a4d5ae4b661c3d656cadc492fee82259807837c5fdd3fd300890a5n/a Heodo
2022-01-12E6AEvUB.dlldll e8fb6ea21e0f59392be0d06832708871a1445197ef94df1af39d967f59c61db3n/a Heodo
2022-01-12oO0rB.dlldll 509c3482edc5059d01b26a9595f8edb9041047df20174aeb9808c98674e17d1cVirustotal results 34.33% Heodo
2022-01-12nqfW6Augc.dlldll 094d8340e10f80113ec2e6445f0c4929b1cc5be432c48a1ff4506c141fe00634n/a Heodo
2022-01-12Di8aA0DpLJCQ9etFFUL.dlldll 53094d6a764fbc15b6cc543bb00be1d7c32323694a1e4ffc88af1134adc5e97dn/a Heodo
2022-01-12N43uOMUiw.dlldll f110318bb3f0c628584efadbdee70108ac9e4d80ccc3c854c890c1c781fd8ffdVirustotal results 31.34% Heodo
2022-01-12IANw.dlldll e920662772661d5c351b99fe4216a3598c47ae0fb013391da9c75134ff4bf557Virustotal results 32.84% Heodo
2022-01-12JzDtjP5cKGXtZy.dlldll 1b10b77797bd1c77db3280606d96e867d51b9e6954830b32164245fa33043f89n/a Heodo
2022-01-121xynJIyteFb9IStGL.dlldll 9b97675d0d03877a16447fc1107c3c77d5c5addbcaca32f542f1f6a5f9e890a4n/a Heodo
2022-01-124E63o1Pjx.dlldll 9d9787038fdae0b9420eb66e81b70451f44d02d2b284910ad952a03b31c756abn/a Heodo
2022-01-12oRoXpPiQ7ugE872jRFO.dlldll 7f40f2be9332ee918edb5e29346098a0d72ecbe127c35ecc7c5804947f60bc98n/a Heodo
2022-01-12DrcggYS3MpTtznLxY.dlldll 8b904cc53c156f7c43dcf26d9799d619baed1e36087e9acd2016e23d40ba0db9n/a Heodo
2022-01-12LlM3nY.dlldll 394b03039a829aa581e476c01e2a2243f83ea1c8a4031dc48fc1a630fdef3afen/a Heodo
2022-01-127NXB2tmWRbsCr1Rn.dlldll fcc98c6522fe3390f31ee172982f571d02ec840e3580aa956da92054a5e1434aVirustotal results 31.34% Heodo
2022-01-12NMCRHT5XvP1Yx1.dlldll 5ae2abb49e06bf1f390a52eb0fc75c29b56dc3f84215ab0a3226089976080d69n/a Heodo