URLhaus Database

You are currently viewing the URLhaus database entry for https://mastermasonsinc.com/cgi-bin/wdGQ8F9rEKhWJz/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2023924
URL: https://mastermasonsinc.com/cgi-bin/wdGQ8F9rEKhWJz/
URL Status:Offline
Host: mastermasonsinc.com
Date added:2022-02-02 10:00:09 UTC
Last online:2022-02-07 07:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-02-02 10:04:12 UTC to abuse{at}hostgator[dot]com)
Takedown time:4 days, 21 hours, 23 minutes Bad (down since 2022-02-07 07:27:21 UTC)
Tags:dll emotet link epoch4 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-02-04jHa.dlldll 7bdb01814b471f11bd7ed2df3ef807bb91ce6b880983ed216d26f42959bc2a46n/a Heodo
2022-02-04rhQDKnXM7z.dlldll ebc908dc711ac851ee3378a85e74dd1bd1639f56eb244008f50ac9be7632be88n/a Heodo
2022-02-040Mn9dlQLI.dlldll f07ebc2c8d44071cacc21763a7f8dba6bcf4602d10e75f43fd5b68becab671a0n/a Heodo
2022-02-04mJW1P.dlldll fd517c9d2482c03e3b76e525ac8cdfe512467b6043b5e0dd48a347f953292bf5n/a Heodo
2022-02-0447rOKRvqEc.dlldll dc36df5a79b0efd6363602e59e664658bb1fa12c41bcc3a52422c5f178e4cc84n/a Heodo
2022-02-04AM.dlldll 48c7d9dd0ca3f37b71d47c1b701ea54f14ce4131675634175ca64defc0e2f765n/a Heodo
2022-02-04neemTfL73EMB4DTSdd.dlldll c91898e86d3dc47db0360cfa09cf9a0e933081ceff84640da7852573ae9e0375n/a Heodo
2022-02-04R.dlldll 0846e7c7e15fabebe7fa6e50ac6311657680ee1a074c34dd4186b1de56e4f565n/a Heodo
2022-02-049zB7oPzF65e9TLPy.dlldll 7c9ab6946128a586a6b15c56c2fe832decbd3287ce9719022016676b9088212an/a Heodo
2022-02-04aCN30.dlldll 75eee2467ce1fbcfce8a13e400461b2b4ed18ee203c5474b00577ddecca78352n/a Heodo
2022-02-040kImb6L2qCsxwax0.dlldll 91edcbfb22dcd75673758e52fe96b9c4c11fcae52bac957cad472553f8ed5c4bn/a Heodo
2022-02-049.dlldll 92853ce8d8da30d2f16529784681ada9c63668dc32e0203b6f281b563bcc25b0n/a Heodo
2022-02-03oGj25.dlldll 244872af91580c6b24be39ef9cf7b0521a3aee2d3f4bd31972e317f8eae1ba25n/a Heodo
2022-02-03BT2BP.dlldll 683951fe7fac349044a85a2fbf571db4142b1f4dab41d798082c5e0a05952a54n/a Heodo
2022-02-03yErZTjNg6oZhm4S.dlldll 2f7331b5051651cadf8826f6383bd3709dc6715887750744390518368b087035n/a Heodo
2022-02-03efskU3COM4.dlldll c3e52edbe4648eaba4ab63a43286b69c53a1e46e5e683ffc96388a5626321e99n/a Heodo
2022-02-03Mc4W7n7RK3E1L.dlldll ed42bee04cf16cf55670943fbbe8707edfd0484ae902ab4ce9da553b1e590bdbn/a Heodo
2022-02-03p.dlldll ea1849ec959d45a27a0e45fe321f4467e16a111b9468a519f482f982c7d00662n/a Heodo
2022-02-03Aif9M6vOlY4.dlldll 996605217e4775d61180ecf67b44bf0d475532b7dccd20ec434b76b321e9c322n/a Heodo
2022-02-03a.dlldll 571cacbd0e15a577089fffc0c4ba38ac39e334d2cd0df10d16180f70f5e65f68n/a Heodo
2022-02-0334.dlldll 473d827b50dd826d629661a557c70a016a9800f7ad779e106881d5eaf9f2d7e0n/a Heodo
2022-02-03qliejK36.dlldll 24bf90692974aa703f46070d14ca10f9477802bf377435f39d50c5227531adc2n/a Heodo
2022-02-03fjT3frVr9iR0.dlldll a2ffdbcd1d406557b9ea98cff9d87e21e0ebc086225daebd57313dcdd3d091f1n/a Heodo
2022-02-0317m3.dlldll bb326d62480188ed38b5cdfaf90d69828d8bc2ed712c111a0746bd517fd7f17bVirustotal results 53.85% Heodo
2022-02-03j4TY.dlldll 7e3843d800d0e8f519015da9cc28fa50838b6278639659d472e893a28e384fd1Virustotal results 50.82% Heodo
2022-02-03cyALTAE.dlldll b0f2303c079886ce0919035b79985eb971df6ca46dc057ec7ab46a6286676ef3n/a Heodo
2022-02-03A.dlldll ed441552538a8e2ee56e2dfab7ac01eb4ba1931cc90e2c2ae54cd7178e6513a7n/a Heodo
2022-02-03sktIrkW2l7MXf1zLi.dlldll 06d0498639900ea671022f757e891029751db8bc16b28ee9d3509dcc28a3b678n/a Heodo
2022-02-03Tp4ZzYZcGa5c.dlldll 9efab64e371d36af395d004bbfc15d6c7f032d7b4e112d29ea3589f9bff2546dn/a Heodo
2022-02-03wB8JbyIZVDhL34.dlldll 53a9093ffef056fa9368d47dfbef5efceaa3626a8bde58bb04a29944a5770d88n/a Heodo
2022-02-03hOeRir.dlldll 7b4ca9f9d49bf64482481ff84594fd43d8292f92f7bbebeb54cf6b75f2209e48n/a Heodo
2022-02-03N0c.dlldll f555092ec6d3ff48b2974a07ebcef8f735202db4fe9a92f63846819d22b7635bn/a Heodo
2022-02-03mhoQfeO3a77e.dlldll d3bdb811a13e628d2427b1b5fca2358dfc585fde60a817304b63d296a24cdae8n/a Heodo
2022-02-03amr8hoEEfU.dlldll cbc77100195b3c1da0c6d3e4538be3b92849dd72793ab4ac344f23009f642339n/a Heodo
2022-02-03CdSRUVyxiReyFmS.dlldll f42d2cd000fb4e585e0765ed354f027d3c11fb44f5b30ee1cd6f02f456294516n/a Heodo
2022-02-03T.dlldll 93553982bd0788f922bf39085f0a3d09bd1af9f646a96331d7efa62d0738d354n/a Heodo
2022-02-03B.dlldll 280062c584b1c6110447ff026782ae58e72e98d3567c089176e7954106789b2cn/a Heodo
2022-02-03PNAuHnaITqTD.dlldll c45861f8481537687b272f0282b60dc232baa0ffddcb7ab5a9ddde010503aa12n/a Heodo
2022-02-033wMCq8l.dlldll a290fcd0cbbc80fa218c10633d514c214d2a1e2d047a22ab447385c5e15730a1n/a Heodo
2022-02-03Us9LQVkRPfbSleOV1J.dlldll 449c4734c5a5d4823dbaca69bdc6d79d87cf23c8a495eeb0a02e8b42c7aacc7bn/a Heodo
2022-02-03XUJmVlCXEy3n.dlldll 1cb3c09143b49a894e8ad95a8a790978f07e028a185e3aded4699b52b5268e75n/a Heodo
2022-02-03tbpraJvLu8N5.dlldll b0fb643953e9f647a0e607f756ef21564e7dac8de25f315cdaa53d94d0a89094n/a Heodo
2022-02-03HERw.dlldll b6fe1b0e14bf7d0879c914cd773442f03a71d640bd9d43af322c6047ed20b403n/a Heodo
2022-02-022rsIbDmM.dlldll 57ec79672bbd0b5d62066e02d4e133f11d0b37a6f2a873dd4e372e9f0ccdc77en/a Heodo
2022-02-02KR.dlldll a72d64de293967249a68f2dcbd3d7b39004409dfa5838b08966d214315307448n/a Heodo
2022-02-02UaNnzPbp.dlldll ed86b6af5096bd5f62c43a96e88465c4e2af5abcf34f559250553e31bc39d372Virustotal results 27.94% Heodo
2022-02-02Qz.dlldll 7d08306906d2a52b81dedc6808c21b959a96bfd95ebba439f589d09ac99efa13Virustotal results 26.47% Heodo
2022-02-02Jfqqnrhgl.dlldll 322f081356c6fc8b981d3eb8db8f10457bed8692a41d595a7671f9882744dddaVirustotal results 25.76% Heodo
2022-02-02NQ22wqipdxWbiA.dlldll 1e1a073fb912cf619fc97e845be69f7e1d3f0f0d95539d49508d8c1cdeb3b4acn/a Heodo
2022-02-026XiNhNI0Ucl.dlldll 53c16b01b2745668619ca4928ccff611a275916c410fa9dd01ac6040fbc39e07Virustotal results 26.87% Heodo
2022-02-02MvFqaY7.dlldll 23949056581e410546ecfa339e1d530467c2f99f55e5845693cac57214fe3f21n/a Heodo
2022-02-025TlLU.dlldll 9003315bb79f55bac474465ec9c2f77957679f15457d5a67b70cfef2d1ef62e2Virustotal results 43.48% Heodo
2022-02-02aJhW2.dlldll 07379d215935da5ed03313f3f2973953b1133546597827ed363173a647726593n/a Heodo
2022-02-02nnyca2x5dsgSk.dlldll 0b0d3d029663ba92b748feeffc0db5f28ef62c7527c3122e45cb37f7a17ff4a3Virustotal results 35.82% Heodo
2022-02-02S2cbmH3PmHJ.dlldll ed2dffb86e007b32d5ff511cba1f3c091e9937689e86c3b4cff12cf2c3b71656n/a Heodo
2022-02-02gbEKlQ.dlldll 8653382392fe4b4ea2dca144a7eba622ccc1127a74e27dd89aae85d86329ca57n/a Heodo
2022-02-02sp4x.dlldll 5b7570c984d3243271a31cdbe68532ad664af1dfda7a17af432a88f5bcbdcc72n/a Heodo
2022-02-02TcvidoNPvhL.dlldll 26e2f5ba00a8a398b16c2aaf5176e4fac8813ca3e9df0b87598e639a8593eb07n/a Heodo