URLhaus Database

You are currently viewing the URLhaus database entry for https://bcbillions.com/assets/LUltpIKZ/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2007523
URL: https://bcbillions.com/assets/LUltpIKZ/
URL Status:Offline
Host: bcbillions.com
Date added:2022-01-26 15:06:12 UTC
Last online:2022-01-27 15:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-01-26 15:10:27 UTC to abuse{at}inmotionhosting[dot]com)
Takedown time:1 day, 0 hours, 17 minutes Poor (down since 2022-01-27 15:27:52 UTC)
Tags:emotet link epoch5 exe heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-01-26aSye1.dlldll afabc99bc96d85871f548d8dc82a5c39a02c78ae99604a078b6ea5e8a593c02fVirustotal results 37.88% Heodo
2022-01-26y1DqZd5kBO7BZuhv.dlldll e6a98842d011c4c5566f32650a44d9a26e4710fdc366e3907151c0f3864f7b93Virustotal results 40.30% Heodo
2022-01-26F8b9rQbXekQKDTU.dlldll 639aec531174e2781b67ec802400492207d739da8a177b8fea3f668982d78265n/a Heodo
2022-01-26IXEdNbQA.dlldll eafd782d654e0400a9f00558f76f0cf6da1ecea4149e489362af0e737ee24bc3n/a Heodo
2022-01-26n2nbQnkQdkG9GQw.dlldll cdd7f7818552da2e4e3ca207c32aad88da5688d0d2d712a1f042c1ed38b025edVirustotal results 38.81% Heodo
2022-01-26ZsOAyvmiiD.dlldll 015ec8844e09e83f3ea98f07a258e0ce94da1c588accf3a5b060d698a6de2474n/a Heodo
2022-01-267vP.dlldll b4df7c8b9cd7903184c168f07e3b97e323398c53af36b76ca4080d8f1ad03ea0n/a Heodo
2022-01-26meFaUUHe.dlldll 1aa9d2659dca414deffa5dedd23994aaac96e47e748328aa3dd20fb3916ed7c6n/aHeodo
2022-01-26OwJmH3tQ7kyW.dlldll 087e0aafe679673f2fdc567b824c5a46b0dd63d8b59f5bb05117cce8e6043de5n/a Heodo
2022-01-26piIFQWWjlLMHSsy.dlldll 60885f86dd78ce75a7d573dd65cec1f503c7c970d5a9f1bde71721d6c70a460cn/a Heodo
2022-01-26MpU.dlldll 06e4252365b76a623df5683f80da96633747bb23ab82da340c6664ae991fa6fbVirustotal results 35.82%Heodo
2022-01-26RKtvK1rm9TigFyKMMjF.dlldll 3ec069f62c94992fb1d0352d87a469fa638d57924ddf5be956dbf019d9379ddbn/a Heodo
2022-01-26YTP9.dlldll b8bdf948e73107679ad2606b554585561c493ac14f669e2123bb9acf203d7209n/a Heodo
2022-01-26OK8seS8QfldQYN8rKT.dlldll 14956e28c84a226ef726cb9c286e6b0a5a37f20b95d2e2cd7a13a05aaaa5302an/a Heodo
2022-01-26v2VZ1k5r.dlldll 7db467900be5eb2d8a43f05bfd3956035a96813a4bf0ced9b0e1119d8ae6e382n/a Heodo
2022-01-26JQ1294XKBRM0dOn.dlldll a4ace2545b879c0673ff34c3957b764a25a2a9f5e364ee4a826b0631b2b74504n/aHeodo
2022-01-264m0xiL.dlldll 2bef3845d2606fbbec919872cdeeb6fc9a01e12667e5579c05aa660a316af2c1n/a Heodo
2022-01-26eElo31.dlldll e0f05836d422c99dfda4bdb69a798ad86488574e17e20fd7efc7a2c91ec33e24n/a Heodo