URLhaus Database

You are currently viewing the URLhaus database entry for https://www.yepproject.org/wp-includes/lC45zFsHmmsMDElKT/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2009439
URL: https://www.yepproject.org/wp-includes/lC45zFsHmmsMDElKT/
URL Status:Offline
Host: www.yepproject.org
Date added:2022-01-27 13:46:05 UTC
Last online:2022-01-27 18:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Status unknown
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-01-27 16:40:53 UTC to abuse{at}cloudflare[dot]com)
Takedown time:4 hours, 25 minutes Good (down since 2022-01-27 18:18:35 UTC)
Tags:dll emotet link epoch4 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-01-27Zw.dlldll aab1aa6b97dea0307ad75e3e512d87d81e18b3ea507947c167c6c245f02116eeVirustotal results 20.90% Heodo
2022-01-27vBtVwpW8rrp3sQS.dlldll 705e0bdded9ec18facbcc9f2230acff32b917025f8ff6dc870b7b1b918beb06dn/a Heodo
2022-01-27Hu3KT3dO35Dr1qQ9xF.dlldll b41e0dde70277c8fb0128d8652d5ef9d16659d56d2cca3ba390831ed6b949d4eVirustotal results 21.88% Heodo
2022-01-27LwMFca4EhwP.dlldll 17558c86b8abbd29cf5a7bd7a6d5898ce6a3d42c589a98d159aa1d6456005148n/a Heodo
2022-01-27hEQWxD3Gk4QQli.dlldll 30e37fd37a583763603c31639cc1d447e0db90e2c7d209e3cf5e963d81869c48Virustotal results 22.22% Heodo
2022-01-27MtH0E.dlldll d466b839bb9b4b669b5a4b8c95b6c176a2bc3dc231eaff7326565ab71bea531fn/a Heodo
2022-01-27LD4AbVjBFwQ.dlldll 45a0af79a0fd8066ad3c2842d3281c619d6d2bb65ecd84dd4d08bf30b73b0196Virustotal results 20.90%Heodo
2022-01-27Mbw0fWo.dlldll 9f8834a2e09515715a7d70169a9221cf096052b5e031c43906e469cc01eb96aen/a Heodo
2022-01-270DRs1TuwUr2xVHAS.dlldll e63d7f090f0e3cd382913674ec0e796077f688d1598406d4cafe9bc5b5bf3cc0Virustotal results 22.39% Heodo
2022-01-27QFcjDP.dlldll 1ee4e5f691842f990e683c6c6d1344589616d1c6f9916446e876f450b86f4223Virustotal results 21.54% Heodo
2022-01-279kKyJta.dlldll e62151f7d3b412dd721db33104fae9bc823f56571441eb4ed7bc0589ac8ff6b1Virustotal results 17.91% Heodo
2022-01-271MkI.dlldll 7737983405837f67938c06afce7f8c35eefdff5a37b9a03030712147752a120eVirustotal results 17.91% Heodo
2022-01-27Buh6f.dlldll 44bccb1dc5736f18520d0cadca1aa6404f90e1974666b568633d5b147ec7c66eVirustotal results 18.18% Heodo
2022-01-27VX9FWvnknu.dlldll 7718c07e061edc5b42f454df5ee8651f7aeac9cafe9224be8bbdfae61732cbc1Virustotal results 19.40%Heodo
2022-01-272akIv74jEPt.dlldll e6fe02f7821a60ec663e0e6035acee5b4bcb1b67debd2cf126dd4e7f77b2dd83Virustotal results 17.91% Heodo
2022-01-27XOlFSh.dlldll a7887daa80c544d385026e870dc41e47d2934feb360d586ebac9c697d62c4e48Virustotal results 33.33% Heodo
2022-01-27OwnFvWVE3ymdEmB6.dlldll 3864e9e8d7e9cbce47c557e1369126686b7922f03880f9c20983bc1074ece3f6n/a Heodo