URLhaus Database

You are currently viewing the URLhaus database entry for https://gravton-dev-cms.policyfest.com/Fox-C/BMOkGelwu/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1995375
URL: https://gravton-dev-cms.policyfest.com/Fox-C/BMOkGelwu/
URL Status:Offline
Host: gravton-dev-cms.policyfest.com
Date added:2022-01-21 10:28:07 UTC
Last online:2022-01-22 08:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-01-21 10:30:23 UTC to abuse{at}digitalocean[dot]com)
Takedown time:21 hours, 47 minutes Good (down since 2022-01-22 08:17:43 UTC)
Tags: emotet link exe heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-01-22w5IV3vjH8wUjkQcrzq.dlldll 56a9ddbbb8a15c37bed7d9fed6039b3696f6c23ddd5992d4b90da10d3605290dn/a Heodo
2022-01-223D8CcYV5RYkMJJtz.dlldll 947a574ca6414a45b6559aa53d6ac7833d124ee92975da4fb6b3fb1446ad9e62n/a Heodo
2022-01-22mF9lWn.dlldll ee1d8ffec7dfd62355fa0eafa5dbc464ac49d8a08e9b4260cf1b5d498fec4bd0n/a Heodo
2022-01-22XH9Z.dlldll cd989ebc6014c6df3f347dbb72db60adde01d2c4d406b73ac24c9c767825a455n/a Heodo
2022-01-2285HONT.dlldll d2d04f92171a86bc170ab5170ee81af6fc4e99c7fd4cb029cb1ccceb7c272d6fn/a Heodo
2022-01-22vD2f.dlldll 4476f38daa39ab20964c3c0b59ac64a3b976bf03072c2b92a62f757ebaf40f15n/a Heodo
2022-01-22iCbr4uuLP.dlldll b4c13b355ca919af34b32eae7e42c819f8ef866f6a3789aa87ee8bef89cb69efn/a Heodo
2022-01-22jXeZMGSYV.dlldll 3a5db7bd9d74908ec73dd2e2ecceb588b88c988934cd0e5091e31fd40e13dc34n/a Heodo
2022-01-22tX8lqR.dlldll c3a5b614370bbd8902112776ea7de8d31c0d93693164bd174a7322681cc52a67n/a Heodo
2022-01-22MIMn2EVnimlWd.dlldll dbe1403a89ca046c8a85b552927ca37ae243e17d9addf1f0cee0480518449f7an/a Heodo
2022-01-22qNhMCYTt6nwZEJokio.dlldll 63bd0a4724bbb79a39e62227b535503f369cba31f22d44ec06ca35b87c4e3743n/a Heodo
2022-01-22mVyAPVha5.dlldll 7ed174441a54528c12288c802bf17ed5c2f975d9518cfc5bc1f5e6f2d9be4b87Virustotal results 35.82% Heodo
2022-01-223ftyym8kbVT18V.dlldll 43898bc5d56877e433a9815199feffa2d4bf0de2bc54f296b6d650490978bb25n/a Heodo
2022-01-22P067.dlldll 624e6804eab664d61b3ba2c29b627b64cbaeacb54cefff1d4dc1f3ee0b4ab6d6n/a Heodo
2022-01-22RzGwCPTHa1ZdJ8gEAf.dlldll 7c543c30932f108c01f12f2d9b49dc774c0b643617ce6aa853d8f39e7f879364n/a Heodo
2022-01-22LjRaETrRoB2OOcv.dlldll a9dc803404dc3f22e17e7905c0cebf04fc63621b23e5c8eea03b3428ecfa9901Virustotal results 31.34% Heodo
2022-01-228LTJxx16r6qbdZR.dlldll 92a2048c9b44895db064143019a9973db1c41e629145d925cc0979dd28771b59n/a Heodo
2022-01-22GpZOIOOs7e.dlldll 31d7bafcb1f9712e4ff745a6905a10dd26e0f12a0335d77fc486ed92c1453958n/a Heodo
2022-01-22nXZ0tYszU3llVqHM6.dlldll 27b94858f14e5bc7f70f6071990a67e8790fab7071dd712dd4e8454a30df7ce9n/a Heodo
2022-01-22yS6jbzg.dlldll 43bd3a7b664cb11c1970e856bba485d9523c497a671876870caf2717fd23fcedn/a Heodo
2022-01-22wKYG0hNg7OP4Ml.dlldll 823d73ae50e8213ac2fc5916d2802917b7c0aca7af3eff0a95b8e232f36fba57n/a Heodo
2022-01-22vcKA.dlldll a35b037fd692ec64eb626717fc30d54912f05cd1fa01b9b6efddbf81db9f4804n/a Heodo
2022-01-22f1c.dlldll 46bc40de626ef086a91c596c8d21fafbae7bc23679fc8ca185eb69c5e1beea58n/a Heodo
2022-01-22KypL1aYUGyIFX61.dlldll e1d1e0fa996d43ccd0fb2356f8763f47f472e518ba1b0450b891b1b0b8a20894n/a Heodo
2022-01-22rPPZIXaF8102rUQswR.dlldll 4837d058ba9c9b4ae0ac28d7bb99ed2dcb6330cc7aa84c3ed832ee421aad7340Virustotal results 33.82% Heodo
2022-01-22sNgYxfnSKu1j6T2lVmG.dlldll 01390cdfa72a2e88c49c1068878b16ceea2ebace00cc82ba976dbf2c2c1b4765n/a Heodo
2022-01-22JPtWkn.dlldll ae12d222cfc7bae1776626b199bf741e6c98dfe3754bf5b2edee5dbef62e7e38n/a Heodo
2022-01-22mU3tix9k35psi0uj.dlldll 13b6557b13c30e664b05e7aa37b4099c971a2cf092dcd1a95270ea346304dab7n/a Heodo
2022-01-22Fe4oxyPuai.dlldll a2117b73de3c28f956f80f24638ec2dc0e5cc20c7315ceb737707e3559670baaVirustotal results 29.85% Heodo
2022-01-22Wz2bAWoPFW.dlldll b3124ea020a41232a23d984a34e689a501046d3166d0511304258bdc27068834n/a Heodo
2022-01-214vxvkfl.dlldll 22d7a060d04a87401e160b929456a2e0927838a9f61339032416f370ece38c9fn/aHeodo
2022-01-21Moab5VxmWoH7pVph8e.dlldll 543f5c0705bad44b012c4f288a6efcfab3869feb0a4d0e292114855228f7226cn/a Heodo
2022-01-210N4djShU88qWcG5Nxq.dlldll b507e58e5583ce179402217e94b2cec7c429eeb235be3b8482b83b5d2b826739n/a Heodo
2022-01-21mLtA27k4s3YebIcd5D.dlldll 90a157ff5f96a4ae3018ad1cd25bbc7e63ce732170675c14117fe6664201d8ffn/a Heodo
2022-01-21S4wuLnccyE.dlldll 6bfe8b98b3685748f77fd3795dc01cec01dee704526592d3aac06a37e7428188n/a Heodo
2022-01-21CLtF0GVMY1a.dlldll 4f3e854e62432e0ff5fc49bd1dcdc6902efc7061e9e6844910b9e9f317c7e029Virustotal results 26.47% Heodo
2022-01-21ybqPFLMTdPxk.dlldll 684c8d94d9494b115fec96f9332470f3d19c51965f43a3989a4d7d1a5c246f14n/a Heodo
2022-01-21jBlAKyIIQBMa.dlldll a125b5d9bf62164e4185f3d68789f7f97bbce026b9568ba9e3781c50649220c4n/a Heodo
2022-01-217iuwpo3BR4H9H0.dlldll 4268eb8e99680bc3eb0ff0276c1ae6a51e91de46c25669d526eab85505ee7e7fn/a Heodo
2022-01-21ZBEzC9BxF.dlldll 8177771f1038f09664b8da3ec7ade81f1a1eac41dcd575e62a9f460335b42f16n/a Heodo
2022-01-21ifo.dlldll ec7d215a2b30eaebf5999f71fc80d63a878bd3f786d328fcdb87b984ade4b650n/a Heodo
2022-01-21dqvbHRA.dlldll ae0dc36b012dbaf121686cfe06a07d1099273fe08e2a46fd526e1945e8423175n/a Heodo
2022-01-21ZnWEn58OUTiK0F.dlldll 26657553b2bd5ef7dc16be9b3c30cd3d1d850a3faff32793f090d771c1d69989n/a Heodo
2022-01-21WUXXDaHfTK.dlldll 8e6d5dda41aa82ac02974f0722b190f5b2e909bbebb7d421c986dc96721e4d2fn/a Heodo
2022-01-21OLx4RpP.dlldll 591877d1eb688f2e19cf7aa95d919df9a54f9747f9bafdfdd9a5d4b0e69fe541n/a Heodo
2022-01-21Omz8LMoQDQN9C8X.dlldll 41db0964dbed36875da1ed46ce8c1154d8b782143c721cf7ebeb80303953b1ecn/a Heodo
2022-01-218aLInioRr1.dlldll a83578e659669f6e4802c284883238969028f4d03502dbc7f86a41e06aea7f05Virustotal results 20.90% Heodo
2022-01-211cOGXWQflV.dlldll a3d1eab8ff00f4015770fe08bede6c665caa685fa108f173a22957a4f4d64521n/a Heodo
2022-01-21G5DNLJL.dlldll c0a3d2a83df8ad67138760fb6c72a0da50501deaab5ba98327288bfeed47b495n/a Heodo
2022-01-21eEnM5S1ZDklfNYjPod.dlldll c51efdd33bedc9b7011eb04ba938611ebdb8f1f40b4b3601d8983d23974288abn/a Heodo
2022-01-21JYwzQ66E.dlldll a278b1da35089ce9991104307ba44a348ba3ebf4ec87b091cbe31e7f64b55abdn/a Heodo
2022-01-21yPze8ZIQOs7lzpejZC.dlldll e233928631996ffab3fc88a88ad4457139d81b0bc14cc74522df2c96aceee5aan/a Heodo
2022-01-21XmjVLpLm.dlldll bfc566c0321ee99914c67f35bdaa39ac9bfdce6a8f86ab3261d42570f73f9a1en/a Heodo
2022-01-213S26HbSVGn0.dlldll 5685ebb48735368e1d8f972a8b7c6a832ea38ae94ad4f368b47ccb7a08e9df31n/a Heodo
2022-01-21bSiGJv1p62KNuYq.dlldll 6b2f7066cba119deb1da8f9a04c39ee3e56634617128701c8aad2deed9a28067Virustotal results 16.67% Heodo
2022-01-216psHZ.dlldll bad85cfb021ce54b8b51469122aa0784d510cffa1d04d8b93f5646a45e4fddddn/a Heodo
2022-01-21yHA00FCvKmiCyGYJ.dlldll ddff6b70d88b413ac38f870d0823f37a4f47e693fc7d179fc874e71b54b450e5n/a Heodo
2022-01-21qn55BerOpk.dlldll 9d4ffea83399c8da1dacffa8ccf61a14b5d5ab67553f40950fd5fe62ec038679n/a Heodo
2022-01-21GjFFygsYtLEOpv6oxs.dlldll 05cd30c75bd13b5b3d8eec2a44889db7c73474af7793133057a5edcf75cb33b6Virustotal results 13.64% Heodo
2022-01-210nUOUsYJK.dlldll 314944e844747253d901a5d71e4dc81a78fb328b303b58551b1c0eb1b9f66568n/a Heodo
2022-01-21Mjy0S7gz.dlldll 2e5604f63d8b9fa301200fd340e2347f9ffd6bf440627dc1bd846e079388ff2en/a Heodo
2022-01-217FmY9g.dlldll 3b55fa77e6c919b5fed69e8036005315afd2b26a4eb54847654eca47c34a74acn/a Heodo
2022-01-21L7MCa9tLXkQZRyWDDS.dlldll 1397a11c6a7091d650c3ce6c9b4c32aef66777ecfc32bb9b0c4319752e2e7228Virustotal results 14.93% Heodo
2022-01-21Rj910I.dlldll cef73d2f8b71f50e0ef12ee01ac8b77f310dc8496eae5566744d2fa0eac368cbn/a Heodo
2022-01-21Bwe0k616V5M6HE.dlldll 23f2dde1ef4a6f6a2bfe4e519de0b23541d88a2674e6257a65245ff6b74f8a8fVirustotal results 14.93% Heodo
2022-01-21TtNgQa97j2dT.dlldll 9e83286201db250809eb135c470fe4180290b8aae359ccf9ab94d08e1c40aab1n/a Heodo
2022-01-21gvbfnUrI0zCDu2.dlldll 4f44688f39ae528963f64bde11c7aa23e8162a348005f55edd72332d00164949n/a Heodo
2022-01-21CzAy4Ik20NkkXXLBz.dlldll 8451993c9f272b927b6c2bcdc7503b4bfcfc9e787fcedc8978a6eced9b949cf1n/a Heodo
2022-01-21bQpNQsX7xbY6t7EAL.dlldll 0777f3de10aa6e1d03291bf6d9f693060dbee95978e6ec3f2313eeab93e191b0n/a Heodo
2022-01-21cOByRnf9yV.dlldll 31b27fec4c65ad2043def051508d0bae88203233758131557eaadc29aee40220n/a Heodo
2022-01-21VLr0m.dlldll cb8a32bdad11a3224f147faa3590612d093c9f17e21fa14b3434f969a48c1223n/a Heodo
2022-01-210kW.dlldll a1438a31302600f90c8b407f31d6bcfe6b2722a3b2af1214d7bcea47e50d441bVirustotal results 13.64% Heodo
2022-01-215btwX.dlldll ad7ae46a134a3a30c1f346600ff172c2bc9d9f4e7db4a0913cfe4b0d082bcd78n/a Heodo
2022-01-21hPD.dlldll 537b4ce306945e908bb6028f9fe76851fc713a9fa75da8eddf4b6eb461eabcdan/a Heodo
2022-01-215QfIZPVAkNkiDzyIRW.dlldll de50f20fc7f9da51cd4989bb493c06632db6e4582b7ea3b5a0d173652ea77b6fn/a Heodo
2022-01-21OL1CFOGAUhUL.dlldll 20c5ce3c419fb2a68113114dc08717d16bc48ed97319ad50712935586a378fd9n/a Heodo
2022-01-21FIy3uwvF3iyrnhel8N.dlldll 7d72fdbed9a86147fb479486a47359fb87aafe82aa7386f741359b37031885c1n/a Heodo
2022-01-21a75toWEhh3oX.dlldll 66fa79dc0f9929565e22d08e517db11832ab19d68560e59004d59f12d5a82ac3n/a Heodo
2022-01-21f7GiWE44tZ.dlldll 771250ff1f2cecc33094a867b9e5402fd6edc0647a5f30a087c20b2c8899ae9cn/a Heodo
2022-01-21zDb.dlldll 0391219f324bd3b757382080ceaf5d3a69e59180572b3d85f167d02dece1796dn/a Heodo