URLhaus Database

You are currently viewing the URLhaus database entry for http://ostadsarma.com/wp-admin/JNgASjNC/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1976905
URL: http://ostadsarma.com/wp-admin/JNgASjNC/
URL Status:Offline
Host: ostadsarma.com
Date added:2022-01-14 16:54:15 UTC
Last online:2022-01-17 13:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-01-14 16:55:10 UTC to report{at}parspack[dot]com)
Takedown time:2 days, 20 hours, 44 minutes Poor (down since 2022-01-17 13:39:54 UTC)
Tags:emotet link epoch5 exe heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-01-15cqi4t.dlldll f95469491bb6515561d33eb66c999cd40523c7b67f74fe5821e8cb71b740289bVirustotal results 44.12% Heodo
2022-01-150tKAgNwagB2W7aA.dlldll 44d6ab6052ec09a092381303710ebf1cac20a38e21d4f6fb840169c80ba9f42cn/a Heodo
2022-01-15uSGayjcXKHt.dlldll 2121ce274d759458e959a964fec298d0b366b278b3b7ff1aed0075f066a08574n/a Heodo
2022-01-15ruF.dlldll be2c7c4127109d7d32f410076c98aa496e63a091dfce9af5329cfb7324219d6dn/a Heodo
2022-01-15seNmBe8W9EEK.dlldll 41568cb1ec7b89f8be09c6d38d383469c4294e8f2b14dca31f0dc5c90ee4125fn/a Heodo
2022-01-15qnt9U2vmf.dlldll 491cd09b3e7c3254d696a57815276721c90f5add83207be1bd193dc1d04295een/a Heodo
2022-01-15rNG2hGLFj7hNxB4OZ96.dlldll d5bcabc55e6b1c612b39d2f403787a356b7007194be7ba19f57deafafef0f980n/a Heodo
2022-01-15Agif4qyI.dlldll 33311efc052edd2c85a6d16aa7d3b55eeb74172191655aa550cd13f494a9703en/a Heodo
2022-01-15KV0QYYN73yys.dlldll 3609fd264e08923d2662211bebcc9be2400ef830db92cd2ec1e1361c9f654bc6n/a Heodo
2022-01-15axOvN.dlldll b711d6b48d65095b613b41e8ea2bb3f2a4c356223238059e899d3e80c9852f95n/a Heodo
2022-01-15ZG5myy9c9ohJph2I.dlldll 37a8aca60ee251111b2a7db8312ac87881d06d937fa0425d0a62ea0b5949d543n/a Heodo
2022-01-15qCop8.dlldll 20e6d41ec40cb09ea29125f1d68e571de3c202ff350f54fe8df4e386bfcaadb5n/a Heodo
2022-01-152zzSK5LcX.dlldll da5a097ed1800b8c2867ee03fd9e96f01d436644b74ee5a392f6f77863a0b36en/a Heodo
2022-01-15RuydRyKGsO.dlldll 4fd8c198ecca2a47e948d6058261e28827775fa3f47e7eec1e4fad1f37489e87Virustotal results 46.27% Heodo
2022-01-15uLA.dlldll 105d23b5a221113043e5b352739795fc1a159cb8b1932e74ff11f6120f7e9d03Virustotal results 43.28% Heodo
2022-01-1569LYc5MCrnY.dlldll 1fc4d834c9339f3a571abd563596ea74678a58e6efec5e05c65dc79931388158Virustotal results 45.59% Heodo
2022-01-15A95Y3Esh4OY.dlldll 2dc5a01671a0b64736258b66b49526f55f4985fdab69aa3974fcc753b0dc3f2en/a Heodo
2022-01-15h9SBMVyKJlW.dlldll 0c8393512dfe12ea68fc726b1c76f3e9b359f1b145be7eac794b184a70d295abVirustotal results 37.88% Heodo
2022-01-15KEk0QlaagDdt.dlldll 085b34c120aef92cba244c6ce245c2252fe116747674ad0b42b3094ca0cafb9aVirustotal results 46.27% Heodo
2022-01-15jlB2wg.dlldll bd5a34a25ffef8e9b4895c5845a3a33e853607031c0fcb150bf01e7d850b7e86n/a Heodo
2022-01-15hgB3T1HxVC2TbT.dlldll 6f5f3d00a6151a1161524d3f564aae5aeb5be27339ec9eca676cc0cc0e355c73n/a Heodo
2022-01-15jaTd.dlldll 3b6ed5d5f94875b23109c266130abe14af2621051765096704132c4b722a9743n/a Heodo
2022-01-15d91rKHug9WlFocQKEH.dlldll c22e09b874d0b318e1d56f799f07aa2d57d2432a25e8afaee92169f152c6cd90n/a Heodo
2022-01-151cksIz3XpUT34nlL.dlldll b10b261fedd8b4426c3ba5ad8090a3ffa99f03e2fc92e7ac5f48ea2cd7370d72n/a Heodo
2022-01-15zilsNI8.dlldll d57ba53d3fb8f9d03018bdfbbc68531d6e069f0a706c032f8c689b4cc4de5f54Virustotal results 38.81% Heodo
2022-01-155lAFKulF.dlldll 2a5a844b328e86efe699474d516db91e18cead3f83ce22962fcbaa0be887459an/a Heodo
2022-01-15Ab7Q5F8cofbqx8t.dlldll 7187ff5b81002810a236d996738b2c9127b836e038f118ece7d191d8ac2ca1d1n/a Heodo
2022-01-15OkD5.dlldll 32c28d68a07f5a5ee6f9238bef68e51f76eba35c545e0ef4591f5b1b76d75b64n/a Heodo
2022-01-15fS1fnhk.dlldll 498c305280dcf5b55b2d7d5d1c31ed8462f972b2c5a547ed5617bc2eb4ed4513Virustotal results 40.91% Heodo
2022-01-15x7IKjWi3I0o5A5i5KWF.dlldll 3c7bf237a28951ce7142e26ea3c5ecaf4bf0ed45c347e800b86dbfcfa76a9aa4Virustotal results 30.88% Heodo
2022-01-15qhzL3E.dlldll d08742e20346faddeb5219d3ddf11345ebb6451ec1bc2f665d8776126019d2e6n/a Heodo
2022-01-15B8gOXH66WupMm3vEtHQ.dlldll ffdbade5daf4eafe31040bc5d752928d8e1c4892e99d73c3dd83fafec2ce5d03Virustotal results 30.88% Heodo
2022-01-153ig55NtIy2DDzLr6dV.dlldll 9bb71d1ef270dfacc35eba49642746e43f746d51ae247c5a5244a5bf800f6adcn/a Heodo
2022-01-15tdUk.dlldll 10dfbb3e8d67aea8bd48924b730bfe1ee97e8a6e5997d1e257d88b0b60d2957fVirustotal results 31.34% Heodo
2022-01-15HCcCUewCPg7CO7.dlldll 2ded71e2e4145f27f65113f5c852512ae9c1c33908ca5fd1ab47ba13b70d73dcVirustotal results 40.91% Heodo
2022-01-15nJI0aI.dlldll 0c60377b39027baa246ae60a9e77f199a07174bae751669dd31725895832799cn/a Heodo
2022-01-15TK0lqTHBDHu.dlldll 15dd3f8533bc8eb6d1272fae86e35f595d662b8f58e3877629e19193d2a6da8bn/a Heodo
2022-01-154n8jdTuzbB.dlldll e4f71e1e6cdb1b12142b2a788fa0a6a4956aed4dd3ace1c31fb7219e3ea3715bn/a Heodo
2022-01-15C0QcVziKiqb.dlldll 0e86ae0a7b6c484fcc92332b649afe3d2979c394de2c961988d325391b5f4225n/a Heodo
2022-01-15JbkVOa.dlldll 437ee7964d39b393f1f84c13b8b89cd642d9774b498c5baf4d5abddb8b260f94Virustotal results 34.33% Heodo
2022-01-15eOoLGmTk3.dlldll 4d206e987251baf9aeb240204ecb2aab61c27c40bdb7eb3c3cec42616fd2b477n/a Heodo
2022-01-15YR2G28Qsw3D5uo8Wo6.dlldll eb9d9e6c9141aa144a7b704dc0430d3e28d1e1ef2151112999d075693d6f79e7Virustotal results 31.34% Heodo
2022-01-15AeBWC.dlldll acbce87611b990117c43c96e5d9502842a4503ebd00f88dec14865ac03957a61Virustotal results 33.82% Heodo
2022-01-15p2K4sfQ.dlldll e79fb395719c8880dc79995d92b52a4bb1d47c21536d07cf26f3f178a2ebd653n/a Heodo
2022-01-15Lri3ecZVnxp4av7.dlldll 319a76d08db46214c11143d30caaf6185f7bfc745ce12a67e84e2b76b5388afen/a Heodo
2022-01-15cudU8Knr.dlldll 7f7830c399a85dafec9671dc078904beb45b408e95dfc916142d2cf049c360d3Virustotal results 24.62% Heodo
2022-01-15ECRIKRz3F.dlldll 5deda744d50ba76e8cde8f0d7737402e4d8f46f22952119dc00aec1c928d8f86Virustotal results 26.87% Heodo
2022-01-158sI.dlldll 3e1fbe82723407ecd7f9c2e5075290abfd731077f93d18ad6e3293bf6e50d382Virustotal results 26.87% Heodo
2022-01-15Ov9Tvwsc2AzM0Y.dlldll 40232bdd052515f8a24cf930e5e58bb863796548da4942f972722b27f2face1cVirustotal results 23.53% Heodo
2022-01-15ND6C.dlldll 9b057662cda76a7231ce48c34e95b53bcdd499453a768dadf8f2dbfc273c9810n/a Heodo
2022-01-15bDczFRCD.dlldll 9bc65f8327749f6c46b79a9199e68b707edf651f5dd3dbcac102cf3e851b3a9en/a Heodo
2022-01-15Q48ocFpo.dlldll 0cad24d7949caeedeaec5f22c862e44b0f5668713b76bb7cda30042a3ed31804Virustotal results 23.88% Heodo
2022-01-14ox4A3Xsg.dlldll 98ec2c6380ee38b848e41a03fbde0f179dd85b0f271e4f765ad048f94864a4d5Virustotal results 23.53% Heodo
2022-01-14aLt4g2yCoc99d.dlldll a0ed425ab57448714d3e014ab2a414499a916c42fe3737eb9bdf308da671572dn/a Heodo
2022-01-14jeShdvvONG1e5UUE8V.dlldll cf0117fc4569ac996b778150e97ca759eef8510cb961c7ac1292160aa26acd3cn/a Heodo
2022-01-14STb7TTfo5q7bM.dlldll e988837b08a0bff9b508501a5cc405c7e23f1f1072f51019e783b9c69f77ff8cn/a Heodo
2022-01-14g49a0sfUl2h.dlldll 4998a8113a053cad3a43b39b7b338f7581c70cae450c22c1159f2e6b483ab709n/a Heodo
2022-01-14XqAyc9ewKAI0D7ej.dlldll 5ffaf60a542f7f704c12509b43a1ea5ee3a21a8147bfeae9908622319e682a22n/a Heodo
2022-01-146bSCxUSpAHv.dlldll 4242d182a69c00cf01e097258ca27aba429d490e4d6ae1132a1c26c27f444dden/a Heodo
2022-01-14iygbj1mism.dlldll 7fca437f705e03a4ee03a1df65eb2ac64fbcbde179bf45204ecd0c8f964aea55n/a Heodo
2022-01-14ZHfhyGzCSP.dlldll a273ea296d53ea3999ab221743c315b9047dc5b8ad296d8798762c5e2c42e65an/a Heodo
2022-01-143mHRbGmlFM.dlldll c04f41a0f0dacc570ee9f7d5e99c6736464f8419acaed1c42b27e28caa6af1d4n/a Heodo
2022-01-14ko4H7Z1.dlldll ad85dbae629170285459c8c01edb9db71adc4f2458b0f449291506e98f45c099n/a Heodo
2022-01-14b8sT7b.dlldll 9e2a9a7f9c64df36c2ec16116b3548728ed730a10a7183c3fe3415c2a44faad7Virustotal results 18.18% Heodo
2022-01-142QIQ4z.dlldll d2fac046ae41242658eabf6051b2412dbfb6af77fb5e554fb348240cbb3b9478n/a Heodo
2022-01-14gMc1fg3bCRZ.dlldll 3a0b4b00d2c8b559fed23d33856c020b2d04594eb59dec314b0f767ab00b9de5n/a Heodo
2022-01-14z1Hxuv4F48N.dlldll ad0fdf647a5cf8c6e868fb57e512151c8b69b7dd8b3cf84628ed63aa7a30fe52n/a Heodo
2022-01-14nzEXmV2sBd.dlldll defaa65c3a6eadfb357b6d29f2e13eb3744e06971dc732d03deca943340ff214n/a Heodo
2022-01-14x1nPE2.dlldll f68926e21c5cc8fdf706762c0339df851fa33ac2dc2bb68796ebac348440cb86n/a Heodo
2022-01-14DiUEc4.dlldll 6a6ebe7485d70d6e0bc04609edda0901726f355a9765df4c1a18d6f95539af83n/a Heodo
2022-01-14QR0h7M6PG8.dlldll 7393504ebc786a3602a65724ae382815187ec70534dff70eed6186bafd8b60e9n/a Heodo
2022-01-148MkcCpEr3iB.dlldll d78e57a330a8f653ef236a8f5dbb278d7209a10cc513aec72cc733870b1447bbn/a Heodo
2022-01-14v2ZTICq3E262sfB.dlldll 50dff95dc4ac45fd04da92fa7dc355088555f3131bebf67bf78548cc1b60af6cn/a Heodo
2022-01-14kO4NXa3.dlldll 3b2be9f52979ed94b2965119b5aac588f554808e1955ad82ee5d3b7b1101a099n/a Heodo
2022-01-14Wrvhc.dlldll 243f2fd65df4e2ec98f304ee3a5fb8b00a043d09bbd82145e7b17c1a0b007918n/a Heodo
2022-01-14SmZ.dlldll 062b57e806cff4e8e5323dbae3a70c21650a6f80c2743160ce3b72b0b3fca334n/a Heodo
2022-01-14ZnSW1xGc.dlldll 96a514199db3547b4550e87639f446f1370a2b2fbd99eba145b262d0de58f534n/a Heodo