URLhaus Database

You are currently viewing the URLhaus database entry for https://guardagfq.xyz/wp-content/P1ZRZyNP/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1987309
URL: https://guardagfq.xyz/wp-content/P1ZRZyNP/
URL Status:Offline
Host: guardagfq.xyz
Date added:2022-01-18 19:56:05 UTC
Last online:2022-01-20 06:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-01-18 19:57:11 UTC to abuse{at}cloudflare[dot]com)
Takedown time:1 day, 10 hours, 30 minutes Poor (down since 2022-01-20 06:27:19 UTC)
Tags:emotet link epoch5 exe heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-01-19pblpSyA7y.dlldll 904c292fb0628bfd4a72171e505c68dced4b04a725df1c347e7325b583f304ccn/a Heodo
2022-01-19xsVJ2WDLGAfE.dlldll 5a3b29e293e7bf4f04b67d7f30d6c738efec28de3831c0da4f535a5294ef7767n/a Heodo
2022-01-19nGQktpkS.dlldll d080bdd886bbd31564ec09c9dc4f84e015d773991b373bd1dceb2d28e05bd04dn/a Heodo
2022-01-19mLXLO5nebgViloA.dlldll b00d52e6929da2cef44895b765e393f792a9406108fd4f2d5937947f9392a510n/a Heodo
2022-01-19ZWVxCTYyUTtX.dlldll faf8a3656bdb17c60f948241aafe094f44c77f87a22da8a7959e1882e73401ben/a Heodo
2022-01-19PLVKyp.dlldll ce58ae784923cc171917ba3ed9e41d694d783489abc66eedfbc68e91ec182de2n/a Heodo
2022-01-19rIMK9PQDGijqDJqd.dlldll 5a62697492dd1050258bf8a04959c908111aa8ee4e27a5e2d238adeddb3ec7bcn/a Heodo
2022-01-19V7l9SRQIFd.dlldll ebe20855fabd754180b0be57f6e50ad20da8383f0afaf56c262cae2f6d29e6b7n/a Heodo
2022-01-19Jzq6.dlldll 89549027c899a33aed9c7e5a90916713fb032ffd4c9625c545458fe7c228dc90n/a Heodo
2022-01-19gbS1iBjKCxgnClw3g.dlldll 20760c7fd6635ad75ceae236fbec67b95d64d247869b3008fbbd19260de9e03bn/a Heodo
2022-01-19pE24UqE63xaiDirZ.dlldll cdc876c8c2ae6d9550d8389eacf0259845ba272a3c6795095b13dd9cacc9fd95n/a Heodo
2022-01-19dns7vhF0en.dlldll 1b35ad6f7a466c9ae938c53de8e1fecb1a2065116c9a46331c63169fcedc1916n/a Heodo
2022-01-196R0p3V3c.dlldll ef8779d16c49d76d1819366b7a72ca10d2b5224001a6b968d8653969042c3214n/a Heodo
2022-01-19KiJUczem8myO.dlldll 54d9bb8774e74b00e4c051ddd1ffb904b28c5b64864f78cc6823be55a915c379n/a Heodo
2022-01-19G0BKy.dlldll 636ff78dd93aa28194cfd813b6587384e276acfb55988d6172025b27021e33aen/a Heodo
2022-01-19N2NVQauOwiSJpM5Hb7W.dlldll befd67d9880781e54beba8cbe3c723a6d78bf890979eb9188cc6bb394023a12en/a Heodo
2022-01-19BKcuFIbmLL3.dlldll 64e06a85bf8b7a21ac4a9312d9e2dffe4e8d65e75822a31b44f722a2687cf5efn/a Heodo
2022-01-19Sh0RIPHsuMRQ.dlldll 4b655e7f3a34922e189ba4e21c234b97a84e2447f3e22e7af539a7c8348f687cn/a Heodo
2022-01-19H9qV3cVbIJ6Ib.dlldll 8235671fbece799dc7a963e2d3ed3a75530a62430484f3da4512c8f58e32056fn/a Heodo
2022-01-19A1U.dlldll bca19082f185bb474bfdee5fe0b9b66fe61e0998e65b8447e636a9fa34638d46n/a Heodo
2022-01-19FeWx345A2SyYEXR.dlldll c1937dd346e4fe0af51268e1b10219b4b560f2c84188ffc5beb4e8d1f9898235n/a Heodo
2022-01-19L87RlytfIm00usSLKT.dlldll eee490434c0df833422c91ba257afa39282c1ee8952128274d61a00213c29eaen/a Heodo
2022-01-19XRyIu.dlldll 7034ef0c211e7c4abb505f5d7ec5713a52a9ec2c1f102d67ec8fe90cfeb688f0n/a Heodo
2022-01-19fNGWGBymhLEOh0I9Bnl.dlldll e4642ff588fed66821bf3d12cceed282ef50fdb036bab0d3055390b24899c583n/a Heodo
2022-01-19MtKzagTZT1JM.dlldll 1e9d60a55ad77e6187fb75ec795d74527168aff9d7495332035a6ac42297a423n/a Heodo
2022-01-19hk4F6aBK9y933.dlldll 8b7d2cdd05a15d354909f4a49ecde0629620b94b98f8c203a843fa43921424ben/a Heodo
2022-01-19Y6EqiK8UYXtSuI59Yl.dlldll ae960f929b2dad68ffddf27dd747f11b80c771a2677e2b23e7f757a25319ec93n/a Heodo
2022-01-19hyXzJzYnPUVrZn6V.dlldll 7a450e04152c9efafbddd0abb2f0131a7f3aad44b196d28c9035ece1ebe1598en/a Heodo
2022-01-19zQ0RhW1QPYvUtyXDv.dlldll 4f8bfd2fc3f6c4254cd77e87a97c38764dfc9fe3fbb96c354321850386bd2020n/a Heodo
2022-01-19M0peI5u3VsC1DZfniZt.dlldll c09dc5eefac3070e4d3616b65cb88892912433e9b3ff2cdfc4ddf128f6053b52n/a Heodo
2022-01-19km86Q.dlldll 3dad18741317470486479e86ce50cd62169878c848524b102f00ec4bd8a00638n/a Heodo
2022-01-193wKwrDEYcMZU6p6SBq.dlldll 0ce44745780b5b8d504e7613d46d97b0c96abda85172982d92ca4416689cfd61n/a Heodo
2022-01-19eqqRWhUFdNGDzn.dlldll 1e8cdfdc1b9be1350e5a4bc8715eb4cb2171e1df49816ddd1a98cad602c22c61n/a Heodo
2022-01-19WTX0YB1vSrwTgE.dlldll 1c8c2870fd4b5bdd7fcc9162cce7e2b64a5437ff105557776ee6e4ee58858747n/a Heodo
2022-01-19iYFs.dlldll a8a26027473c02b8c6fe7d91301f61be9d111aff71258f63f76737121c6c5a67n/a Heodo
2022-01-19Z3XsmH.dlldll 9829aa45fa646f61d23c67b82b64f4feeb1726e8c8cf4413b5b69fcbecf93fc6n/a Heodo
2022-01-19KNUTBVwuIOC.dlldll 61914beafeb04f63e6f8cacf0a5593416984c65081f96f1b100e09dede79920cn/a Heodo
2022-01-19McZRf9GDr.dlldll 779deec204c385bbca2671909d148949720e41932eb97d87e50638c8902da688n/a Heodo
2022-01-19J6ldMZBsRMLLESDBXWw.dlldll b5f21baf4e841789c991fe1ff80e6341e6b2180cdfa170a0651214fb26292c8bn/a Heodo
2022-01-19nGmSD.dlldll dbfbabac452e00e601105ff4be3bf28f6ccf1e1572493cb3ea91185dd39c883dn/a Heodo
2022-01-19vTc6jhZ.dlldll 635db67236b63350fbf073b92860d59bb491973f745a83eba2472d2712dc7308n/a Heodo
2022-01-19VbM0X8.dlldll b43872334bca903b5cb150dcfa056ecccbc78a9107731d7bf63ef83356a9b07bn/a Heodo
2022-01-19SdvPx.dlldll 35ca2859b4bd92e2367cc5924947d19ad37ed978fd423b57d6649d2b0196f2b1n/a Heodo
2022-01-19FKJBA.dlldll b195b322f41dc57dfe00052726c25b4ad8ed5e5ba72cde8347d9da4af1618464n/a Heodo
2022-01-19Fyuao0.dlldll dbff33d16daf898cf9f443465ef0f009472a57ade430637ac0314c0a1255cef9n/a Heodo
2022-01-193R4IIj.dlldll 3147d23b87811b28c582e779f33e82e49c76f817a2641dc95c3753766cd3b453n/a Heodo
2022-01-19xrRWfjzUP8PI6yjx3gg.dlldll ad1a2a5e0f13d12f6d188ca87b0cf9cd4418e9431eadba67d19b2bdac0586a52n/a Heodo
2022-01-19UWTU.dlldll cba750672248aa7650eba9dd720572787c1af1bd71b7a1c19996f5114a8170b9n/a Heodo
2022-01-195PjzKpdr5bBdKFHlUR.dlldll 07f41ffc0ea8116104691ebe61f691df34772edf44dc9db06f2f6e8d6245be7en/a Heodo
2022-01-198chLvvTnmLAzu.dlldll 3ee5536f823268fb512db6fc04408c0995ead0ef1917133cb4e3452148b09de3n/a Heodo
2022-01-19wjgX6QdGiXz9P.dlldll d301fb01ce7c379c43e910a39f532d619c404033d0c1ebba42036581800e5711n/a Heodo
2022-01-19oRVG6Z52g.dlldll b2a7a41f9e998025ded8ddf2b1c57e156c0b0efa076e3d7b12bd1c8e97e2e4f4n/a Heodo
2022-01-190NGtWODO.dlldll ddc5ed69812a1e97b0ee7cd7604001e02c2ecd7ce95ea10e8eb52b8773c9e28fn/a Heodo
2022-01-19EPfD.dlldll 7384d82ac3202bf36aee5aad08947c3af031d69aa6bec786870555f65bf6e5f7n/a Heodo
2022-01-19hEELQElgEmXF7W9.dlldll 3a4aeaebde6878da070f570a62e49944d74d8e07e5b801487be8d084cd15ca26n/a Heodo
2022-01-19bVqHOklAaGHUM.dlldll da745a69bb23b2adab5dac61c12393a99cbdeddf266a4ba2dc50b563d9784e31n/a Heodo
2022-01-192h4KID0lJBqJcP4OJt.dlldll 242cb5e0e3d986a1a13568cb1e05671daa8a290913fdd8a6d41863402742f6cbn/a Heodo
2022-01-197j9pq4FFVph70S0.dlldll ed36d46c5842ca5d4fc8c676ea736f73edb3925d914dd616f2fed263a5b7ef35n/a Heodo
2022-01-199JMvbTgJBG.dlldll 1e4a3c54941ef2b04733b5cf7dfd8934d9eedbf0f2467b5c48ede7022db3db73Virustotal results 25.37% Heodo
2022-01-197P367Qd3lJACrnQ2.dlldll 928d33b91d7d420b1a980c3a2663ffa6d5ed01a5668aadab940f639ce7e722fen/a Heodo
2022-01-19zTSe52MmX.dlldll 43ffba8d96cf553ce62272b79fac4adc61c26b4109e92f5b0a3d1c0c36df7772n/a Heodo
2022-01-192c8lY.dlldll 3af968c86cddf64d3a3ec82852c6bdbaa1f632024d9c7c27999c5d7616f0a1cdn/a Heodo
2022-01-191Ko95KQtZ.dlldll 27b736e1d2e0907a0524df0ecd198895da82f0f2908490028cc6e76bedb1276bn/a Heodo
2022-01-19G6OThW.dlldll 0cf4c758dbea0c5a71f9f363161616da78d5dee576718ab9689b26f3017b702cn/a Heodo
2022-01-197PF7jnB.dlldll 06b6bd3539823ef70e9b9545f0bcbe295e495df6a1a567debff9451c701e330bn/a Heodo
2022-01-19G0qK1B33A6ZcJlHaDc.dlldll da9c09456f03ef84a8da9cc8d4f906b87dd3c24be06cad0bcab20762d451b012n/a Heodo
2022-01-19TaYY.dlldll 9a5affb41863336f75b57ead516b22c9cdffbeb7167e5833f7963421ec4c7795n/a Heodo
2022-01-198HLLYUyM.dlldll 8851c97a539e7c7e97beba49aa284e9cc7f0603df88023e3e4471db4b36bbf0an/a Heodo
2022-01-19uut39c02tJGa8Dqyc.dlldll af4ed7a97e0e0f36f4f2649e439668f88f9575520b509bbeed3a0391b7ec055bn/a Heodo
2022-01-19E5ThWq0urnX9E.dlldll 2e35bf63883f81f5a1568ca57aafe73b591b10d35406690d41a11f288efd7f1en/a Heodo
2022-01-19tFyzE9agOx7.dlldll c514fdb3baabb298d7fdb0c085ed0e67bc13d0450a83e69f00d11d58b1e34b5fn/a Heodo
2022-01-19FSleIErOZan7xKT.dlldll 6549523ffb9a09af8b7584b7215705edc7d8d7985cfd27a2419f60fccaec996cn/a Heodo
2022-01-19tpBd9.dlldll c2e05c83e48f80c8f36ff41b57083cc686c91594dd93d869b0b542538ada32dbn/a Heodo
2022-01-19asfFx.dlldll 3e9be738ed25c9e389fcae1d739e3bde79e4acfbefe6ea3fa739fcebd46b3f67n/a Heodo
2022-01-1921uOFle5JGHlGqN4q.dlldll d17d7b705efbd7090134812349d1078ccfbad9a40e99d4ac4de4ed64182ac634Virustotal results 20.90%Heodo
2022-01-18UvGeQ2E64LumMe96AS.dlldll 9a2535b1f1de04bae7dd9477b48bbe0860f1074d4d6cde3e04751855c6170c77n/a Heodo
2022-01-18cxpiwW3bXZmKWvnWGq.dlldll 87e77b5af4df9ed5cddbb546746bf88c8d1f3976beb367c3110196df0901271an/a Heodo
2022-01-18AR6ARq5.dlldll 4c53079e9d48fe1d0316972bf48b6f6c3c855e9fc5685895c926958b7fafd01cn/a Heodo
2022-01-18nVyOWUqTjHyH4Kp9hcX.dlldll 78fe6397ed7240f5e78e2870edfb082a54e086833dcb4cc7c71eaade79fe978fn/a Heodo
2022-01-18jjl78cECz7bdAcXMruw.dlldll 3b8c0f91bcf76d20d95338f27c6135f9b581cdaf2d4eea644734f397622371ean/a Heodo
2022-01-18uLqlo5muawBUp.dlldll dd255a22599fb4b54694fcc399e6c1d670a6ffcd47b454d2b5b87e46643f72d5n/a Heodo
2022-01-18vX67JJi.dlldll 1e6daceddd11f1530d4a991699dd01796f20bf7f8eae864a889e6278ffba0ddan/a Heodo
2022-01-187C5lC0a6gN0cD.dlldll 655de16ba535fa30d6c15ba4cb299d74fcf95489090160e9c0b2aa89d07c47a5n/a Heodo
2022-01-18fwhUg35fN.dlldll 34f418ec3db7f1a64bcdc4aab28621b22f6cc27594b173146716ccdaaa5df55an/a Heodo
2022-01-18GrfLHsZKq.dlldll 433f162dc41f6ca2fd96e353310972061590457906005a144f629bbdbea4115fn/a Heodo
2022-01-18GIiMnx.dlldll ad78d839dc3d093b2692e24ca3a827b88060d849cc2e610f6583fc4676c99063n/a Heodo
2022-01-18jWOdA9VzSR4.dlldll a0ff4332dee1d96c94a2566754fc2c6635fad2d5f9fb3bc6951967f05bb6a435n/a Heodo
2022-01-18r18FuH0J37Cpl1EgY.dlldll 9e9316fb6d809190e1c928b422e71868311155e47c142b85bb073a3f06ed3e91n/a Heodo
2022-01-18opkxpgRijUf8wEm.dlldll ae16f09d10b8bbeb89bc38ae445a0e40b5ed9e697af167553bcd22d9a5b111e5n/a Heodo
2022-01-18LYBb4HQ3aS2gY.dlldll 00ea1ee0cb43aaed63a83a63efb1fd7cb1ce6a70675f204aec94c47c57a09506n/a Heodo
2022-01-18fhXfmcH.dlldll 4b1289814bfd1a92b354f076f2d4a22dccf6e2f8f9ba469d277685495dab07b8n/a Heodo