URLhaus Database

You are currently viewing the URLhaus database entry for http://mapcommunications.co.zw/wp-admin/mdRRbSdU3aB7Xpx6z/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2026618
URL: http://mapcommunications.co.zw/wp-admin/mdRRbSdU3aB7Xpx6z/
URL Status:Offline
Host: mapcommunications.co.zw
Date added:2022-02-03 15:18:15 UTC
Last online:2022-12-03 19:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-12-01 23:33:06 UTC to abuse{at}namecheaphosting[dot]com)
Takedown time:10 months, 3 days, 4 hours, 2 minutes Bad (down since 2022-12-03 19:25:35 UTC)
Tags:dll emotet link epoch4 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-12-02n/ajs cff9e0e78bdcefb3c4e169c514b272d842c3974d3f4e80d5668dc2abca5e32f8Virustotal results 1.64% 
2022-12-02n/ajs 2fc0d36bb374c84c226c0c181402a6e89c558633e72b366b707dfac4cba905e8n/a 
2022-12-01n/ajs 64fd5db2507d4f1a950065dc7728ef5646b327ca0da5d4e1a8ceaf98b61b19ecn/a 
2022-02-05kMRelyn.dlldll 56a44bf1337f6dafe133b2e142873784314ee311693c1466e5101400cabbe926n/aHeodo
2022-02-05oe2XTs.dlldll b7319957473a81abe9c8844a9228e14defd2e91237515145834de58335687b1dn/a Heodo
2022-02-05sDfsEG9XoQKE.dlldll d29de781b57a975c2bfbf9f0b7ae21c2e67d22c213a657f3409cbcf57b23b99en/a Heodo
2022-02-05InYW6t8.dlldll 857e9862778115706e8e0207298f248810b577ec8b681efd3772013bb68b0cf1n/a Heodo
2022-02-05cdEmDkMxe.dlldll 9e05ce6e1c3875fe1504dd65d06b65f0f283995e62e86b2af859a63bf19e3e72n/a 
2022-02-05QkMLlhGy.dlldll 7fefbf29608d8eb476917f3c03dbbf39fb9c3881057a0f3c3b4922f664f3d629n/a Heodo
2022-02-05STpuzUxJ.dlldll 331a9652e650a2e3a7b5079cf333e9f79f0ef2dfa7683c5f72f56430114e4bf8n/a Heodo
2022-02-055yHBrMkKlRdcc3qh9.dlldll c245fae8b89c8ad470636847c3f71ccada8e147577efe214c6cf9a2e49e6b497n/a 
2022-02-05w.dlldll c5ed6440e05c436cfba4883ea778e3abfb8a35c733c92fafa6d638013344f213n/a Heodo
2022-02-05uaBiRj.dlldll f98c24044a614cebf17130512e0b1c965bd6d0487835eec7ba1bdd9a2263dec7n/a Heodo
2022-02-05AdJsSYHzjmNtfNZZ.dlldll 2268decb1006fc206a4c7ae59fc0ccfd12307360b490e2b919ee30447ae60638n/a Heodo
2022-02-05PUU1HYiYoeeL.dlldll e6f825fa8c8a31fac6251fb3fef4b4e0a6c3e81cee30ce9fc20590db563c5be1n/a Heodo
2022-02-05HU5JLEG.dlldll d5b4a2869b0dc2ab4837fc87920476675873c1b28c4c11c10ca83ffd97de5e22n/a Heodo
2022-02-05GTe.dlldll b15a3c2db9bbfbb530f2ce1a612ac92a2d1b269d4d0e1df483b6fdb5dc775a7an/a Heodo
2022-02-05h3V.dlldll 37e7e70df0b99b89d41172818ac5a1325c0809de63b4c03a441a6b33dc021461Virustotal results 45.45% Heodo
2022-02-05ydBoGsbL3uCQS0X.dlldll 9be28e447e644002fcd06efd92abef1a5bd397e2106196a1e2df79662201d9f7n/a Heodo
2022-02-059Y.dlldll bf3d8141bd12b7f0c4ba29558a8839be95238bdc02176576794c731ae60fa814n/a Heodo
2022-02-05k5yIgiw4uVRt.dlldll 9ce22c23ab34659da6c1907ea64a7bcbefe1f00a8744afcdd60fb207cbce190fn/a Heodo
2022-02-05aDMGfLqY71jFkB.dlldll 2372aa3d69f14e75d9cc4fc223440847dec79d91de548389876bf03e311c6428n/a Heodo
2022-02-058M6GbtYI.dlldll 34447e82c36f559a73625dbc22955b9d0684cc2bd5ae4406343afb6d5c7c2ebbn/a Heodo
2022-02-05Rqpn3Z9xsBxV7gHan3.dlldll 192a9980990b8af387b822571d6c29b31d58c94baca4899cfc1bb0f187864741n/a Heodo
2022-02-048XVdTp.dlldll 3882b52df86c23721c9cee3289de01ed967fe1fd2fcda8bfeb5a2ad839ebb5c5n/a Heodo
2022-02-04DxTGvRd.dlldll 72862598040d6b50f73455e42ef706c9f8cc6cafcd5f00dd9aa4d3af9053417bn/a Heodo
2022-02-049.dlldll f53914bfe0388a5ba757dc6360eb2734f724730469068e7998e70223818b06cen/a Heodo
2022-02-04gM139NNWj9MeoHP8v.dlldll c2be3d34ed997f310bd555cb3a98298b1baf8b63076239057864833b48c66fe0n/a Heodo
2022-02-04gEmr0OdqwYtzRROiIK.dlldll 6e803b4d9ca8f6b9fff7c6326cb025cfa25c6c915bc033fe748513e919ca68afn/a Heodo
2022-02-04yA4gwJK4NHW.dlldll cb13322678945531b4b34892e2c93a04582c12ebfc4a3a2b085fc6bc2eb5ed89n/a Heodo
2022-02-04R.dlldll 406ee06c7b92dad0eddded8d71e318177a020b9a32265338c324014662673be1n/a Heodo
2022-02-04qtI.dlldll 136b193c6c30df1d835993be25dca01f768920bdc642611231f5843a718a0b2aVirustotal results 40.62% Heodo
2022-02-04CzeqjteoQy6JrqUy.dlldll a5adfd47f3a3e8b0bc4d3ada4899a65fc6c0cb7a8d96276680432e2d0753fb8an/a Heodo
2022-02-04V5uOcRwlx1U6rVyM.dlldll 1116fd44278d8c55995990092d8ddf57cc23e37a34cb9c43d14db506e5aedcc9Virustotal results 31.75% Heodo
2022-02-04od9GD5A0tYmiK5bT9d.dlldll 8ba6f249fcc6eb65a8073a2507a6089530de3728726e676d044c88e0aac4793dn/a Heodo
2022-02-04n.dlldll 4ec0393d1a9a67a7b909049b5be015b1d24d1a4d93632fde526ef19b2d7a9c82Virustotal results 34.38% Heodo
2022-02-04LdWC.dlldll 3956c82600899877d3ac449560cbe7d0cf6acb3cad12e394e11cad7391a90731Virustotal results 34.38% Heodo
2022-02-04II.dlldll 441363eb50c658b0cf639e31f4079fa036b7ad0c3a1de0873af33878cae611f2n/a Heodo
2022-02-04Wm3KGNvhhjcwCvvfJk.dlldll 4a8e4f6f98e78230911acf0844b50a81158a064c80766b1c0e1e6914a892c0b5Virustotal results 29.23%Heodo
2022-02-04ygbYpo5tM7gjDX.dlldll 0d908e5c7555a5e60033a883fa9dc7bf423489c015ea40acc38363e577213dc5n/a Heodo
2022-02-046DALgrI9gNV.dlldll 7d5c2911f6ed530a2f8ba71ecdcc59215625ce3b20bb2c8a885c021bfeef72ebn/a Heodo
2022-02-04nUWjQQKn.dlldll f7dd3bebb958ae253fb2e0457d882521defa08e4c1ef9879d7da9ebf1d8e20daVirustotal results 34.38% Heodo
2022-02-04eRU9Kqk.dlldll 208d86eea60138647656a851b25e60551d9b72f3ee9e175d45e0fc6d672e3320Virustotal results 30.36% Heodo
2022-02-04X.dlldll 610be3a0f2d7e24e5e800147b0f16c80dd97b9ef5ef8e57c5bd0fa52dee83e2bVirustotal results 35.38% Heodo
2022-02-04x8oDDLAV8avAr3or3.dlldll e42903bba218475e49729e746b68f5539f4d0429339bd5f6ef8e3d528560c488Virustotal results 35.94% Heodo
2022-02-04vVMsJS5Z1sITJH3Oj6.dlldll 0888707dbeea9f0cf39404acf1e1b1902b3c2dfeeb375eddf02c13326c8796d8Virustotal results 33.85% Heodo
2022-02-048x5cxiVA9U.dlldll 53254c9111639c4ec2a9aca69bb7d420706e8c08e1b1f279cad1d3aa930cf398n/a Heodo
2022-02-033Mz.dlldll 37875e6da0214bf2b410f64c91e42138061fa2426337572ac0ca86e29f7ad6cfn/a Heodo
2022-02-03LsxgpZe.dlldll aa8de60b1ef9f8ac99d8114aabf61e8571147e48c414218b479ea94430056566Virustotal results 33.85% Heodo
2022-02-03nS.dlldll efaf537a6e9d50b752e4df96b455af24dfe2cf0463c2c7afe32097ed8a639037Virustotal results 29.69% Heodo
2022-02-0330rrpWtUSR8g2p.dlldll 8117378e2d840c2b47cdb6f35528b1bdb6fcf82d7d3cbc3c23996055d6b07b32n/a Heodo
2022-02-03tS1fh5RliwRTsSk8lU.dlldll 85c6c511a7ff8267c3d4c4be3bac17ea5d9a2a99cb781c5b2fb4cd41dd97a105n/a Heodo
2022-02-03PYoVei7.dlldll ca634d5253bdb4cf86ceb6a31ff78569e2c860d7f6cd5311622240bd662297b9n/a Heodo
2022-02-03IGFFE9Ooyh7.dlldll 10d2550fdc2e92ba6ca097203533a38f91b95f0388206150ea4f451a20d9241bn/a Heodo
2022-02-03jI1Hj7h9T7vuKUKvz.dlldll 472381a2eef41e7c66e25d1b6f8024300fa45be5a0677cf0f646f151f764dacen/a Heodo
2022-02-03PWIZZ2O8f2DxP9T.dlldll bf5dd72cc13e78bb27ffd07d26dd7d086bde1ed3d3d71d7ae95f783ec6d81b61Virustotal results 16.13% Heodo
2022-02-03SJyEVXe.dlldll fa1a7df152490085dbbea4250e56acdcc43f8ea9bc7745ef81147473ebe1c8een/a Heodo
2022-02-037bu.dlldll 2864b3b3cd3c42619b17ddd65657efddd5447f3443737bbce7a9e5720d9e5d6en/a Heodo