URLhaus Database

You are currently viewing the URLhaus database entry for http://lucasandbarbiehodges.net/wp-content/nbKbVJ8E55V2I/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2028906
URL: http://lucasandbarbiehodges.net/wp-content/nbKbVJ8E55V2I/
URL Status:Offline
Host: lucasandbarbiehodges.net
Date added:2022-02-04 16:32:46 UTC
Last online:2022-02-09 10:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-02-04 16:33:42 UTC to abuse{at}1and1[dot]com)
Takedown time:4 days, 17 hours, 38 minutes Bad (down since 2022-02-09 10:12:40 UTC)
Tags:dll emotet link epoch4 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-02-06wg65A5E.dlldll 8e52e9d04e2cfde9064346d3e66136f75c516a9dc81d3223fc81d4676c7eedb9n/a Heodo
2022-02-06IpLvbDZTxx1PG1er0N.dlldll bc5f5169fe3caa2c586b4c535428d5fb568435920049c28fc88dd9e88b93c8d9Virustotal results 57.81% Heodo
2022-02-06dMQONzyFPpRzALw4.dlldll 5fff64aa76ffa8ac4255249fa93b065492140ed0adafb9ab96c67ad08454bd96Virustotal results 57.81% Heodo
2022-02-06vjVTDDo1dZT.dlldll dfae1f92d322db26ad4680812f0a4bd56957c4a30fb7bb57f2ecadf9fa54d92dVirustotal results 49.06% Heodo
2022-02-06Yku2.dlldll 03cbe24b284f2d3ab55aa85877217b371db637de99b531977b76f7f9546162f2n/a Heodo
2022-02-06lCvjuT0DL.dlldll 34f718553c1e4cf9a2a08ad2be2fe1961bd344bbba5e0897f3d3decb368cf19en/a Heodo
2022-02-06UF1nHman6LrO3X8T0.dlldll c8aa7495b54e946cb6dafed67d6a23da027459d28d310f89fe63e7553d8874a6Virustotal results 58.46% Heodo
2022-02-06ffFZD0qrx73nmc.dlldll a12341617d08fc336617926e12eafab41bca295c312ef9440057c22a10900ae1Virustotal results 58.06% Heodo
2022-02-06LddNhkYsdf7dI.dlldll a9e344a355f20db6bb8b4c6914c19aaee714d0b0f79a2584c66198b3e4672c9fVirustotal results 56.92% Heodo
2022-02-06B.dlldll e297623d0a6ec4a39e3c589166aa67032045946c796bd61871df979e7f3e2417n/a Heodo
2022-02-06iN4r.dlldll 0933270658e758d3ac0b1e2d09bef398bb047076ddd990a8ef09c0a618459b77n/a Heodo
2022-02-06LhYaQoaXO44Os1.dlldll f0f36e1c8b3b5506ba10d4357afed5d07e30d8f3376094573a822e803d3fc484Virustotal results 56.92% Heodo
2022-02-06l0R9SwoClLgmYXzEMY.dlldll e472838063ba1177b51c472044fcec9c56700595ca2f4cd18ef95b5521f94e34Virustotal results 56.92% Heodo
2022-02-06TbUIIYWx6geoBQq3sD.dlldll 0422058cafb90f18b893baee51811963a70da8f9ec423aae9d5ff359501954d3n/a Heodo
2022-02-06OQ82DzlgaQeAvPB7l.dlldll 1066293be0fb0330b32660a15709a869b3c41955befacac53000c2fbd8f084ceVirustotal results 56.92% Heodo
2022-02-06XRo787wrjt.dlldll d6b931d3925e45a6e6f82d601d96e8fa7304bdb48d2dee042c448b513cf23c71Virustotal results 58.46% Heodo
2022-02-06NghWd8etYlyb9.dlldll 72627eeab48f529c99223243781788692a2934790141086365c8d65700d66ccaVirustotal results 60.00% Heodo
2022-02-06eHY6bjtZ6n.dlldll a969d3f1936067c9a9db7e1c8bfd5feb358454bbf486ad2a167beafdf3a6d34en/a Heodo
2022-02-06jlPZLvxyb3V2Nkj0h.dlldll 22a6d6b6ead5dc319dd0638b5f8febdc84af014de4f879d3fcc0ab2792f3e38dVirustotal results 58.46% Heodo
2022-02-06LZyMhsMElee3S.dlldll 820dd4b3c7c13a5c71c361f5fb05dd061da24679879e38062f4a2bd4dbf20a63Virustotal results 58.46% Heodo
2022-02-05LZSOxz40.dlldll 27533b718d6916a6ed3704fb95d4e82d862958b461e1beed5d00451832a2ddaan/a Heodo
2022-02-05JQjK0CBCw8F.dlldll 373f3c290352d335762ec8b41bf200865b9573e5ccda70b9d43ce84500cc8c16Virustotal results 58.46% Heodo
2022-02-05zB1ZwfmNZHBSWl0N.dlldll 8703d9a2fabc708de5b4b23e36539ef8889c2ded0e76a15ea355e58d61b62332Virustotal results 58.46% Heodo
2022-02-05I2E9sVRNOCKzbQCYQD.dlldll e93eb0b753f6c3e8790be161d541708a6471e483cb3e873b50478cbd685379c5n/a Heodo
2022-02-05UOReMLhhNDMUB6gp.dlldll bebd302f04acceb7fc724ebc9bbf70a075eb1a8ca067f7ec52ddac66d5e61905n/a Heodo
2022-02-050qmK7o3vlbjJQH.dlldll 00f2f400a6c2d426c514b1b01d18698c57ce0c393d14d485b6a811726d7b92ean/a Heodo
2022-02-057Bg.dlldll 6dbeb42aac36c6958980655897927f84edea8ccd748d0c6b89a1c07ff7d04f15Virustotal results 51.56% Heodo
2022-02-052RUN4nVUYoh17VAw.dlldll 53ec0d0a1be33cb5876f96edb6b0afb23dcb992d0087c93c11f36f128bf8c4ean/a Heodo
2022-02-054K7yStFihuo5J.dlldll 55ad07056bdf025a84e52395667a2376e4136a3c54ff792036535badb4d70737n/a Heodo
2022-02-05L.dlldll 0e83f2d146d1d7870efdf7f8e7a0cb9df28df72eea135173332848789d306df6Virustotal results 51.52% Heodo
2022-02-05ED.dlldll a0893b8907a0c28cb8e7ee48c79120fd7da6ef4c4fa0a40be6912d95289a20deVirustotal results 52.31% Heodo
2022-02-05ujy.dlldll 5fb1a9143138c163eb58d62e5c14df7b0b484e4e958e8d94ef62892c11323047n/a Heodo
2022-02-05qM5soTInuqkg.dlldll 4442cd2b5f96088d1b7fba0f4b23bb01fd746c8ca0bf1d7b9ef7c2a120b14e6an/a Heodo
2022-02-05rhCziZoQm.dlldll 505f8dcadad726a6a578c9fb38c72ba2447637ab83aceb56d01b31dbad247bdfn/a Heodo
2022-02-05S.dlldll 608f000b6a3845a9a6013840becdc209de7bfa5444e12beac4fd311b2298a759n/a Heodo
2022-02-05r7Xl3pXmrfg.dlldll b99ce12da79b0f04bdec84f9856ac18fa7ee3fdc7be1a3e9966494c2eade1f9en/a Heodo
2022-02-05z0D.dlldll aa5de8b6aa86c75b1776d3d8bb679cda125bbfa5a901bc35e6bbfa09a353aa9aVirustotal results 50.77% Heodo
2022-02-05RkQdhzzID.dlldll 193ee23cc7ff669de63a52194a629c8bac68c57c86e5705d8751f6da0b88e2e5Virustotal results 48.48% Heodo
2022-02-05X0YJHp.dlldll 5e77d804021feda691bf95615a98112e902cf87381facd4cfb4265c707cc66c3n/a Heodo
2022-02-05qi9Xn.dlldll 032b4dc90cb5bf7d1f05d71ea028bfc12460a06b584c46eaaecf7a68b1df89dbVirustotal results 46.15% Heodo
2022-02-053b4ViHJX.dlldll fada6af748d4bdbed5e4bad88effcb694477c08891c3debe32ec484e86f6bc4an/a Heodo
2022-02-05OyNMQ1cmXwsUuW.dlldll 01b8e2635f263d857917909e0fb2b779e9b3c7941729670f2fc1ce1646f4625dVirustotal results 46.03% Heodo
2022-02-05oEDkHreVA7FWbvr.dlldll a8191bc8a56cf7b0c8c270ff914ceab892703560f95e111082199e0f786d6510n/a Heodo
2022-02-05lMwPL.dlldll b431579a286019b4d3cb64ff2c24f3238dd7be96456a46ae2f6fe2d6d65325d8Virustotal results 42.19% Heodo
2022-02-05ntxNrIkZy.dlldll d7bcab2e70d7512cf86db0f700bc471afb38c2e7216ad9bfb75db38be217288aVirustotal results 44.62% Heodo
2022-02-05NX.dlldll d7547269a0e37dba5e8c5088f7bf40063f4f75873af89f64c854361465be8799n/a Heodo
2022-02-05YEG.dlldll 387bc6324f9113fd625b6d21ac821e4a4860fe4a77f423d0482ece624cc5d44bVirustotal results 40.00% Heodo
2022-02-05XBPTnz7Cn.dlldll 032de58a21be36e9c44a9f05aa8c465b32f3c7341f3e7a3880dd00745294a92cn/a Heodo
2022-02-04mqplZ7E6RuEnDG5lZO.dlldll bbff83823cf182510fd7eb8b6e11a7bf7c51d36d34e020fdf92e4a5ccdb68165n/a Heodo
2022-02-04r6aWUwpr0qLVjK7J.dlldll 97b8ac8213b6192fcf2efcaa755079f486f7ec505243f770df309a2b35c2de6fVirustotal results 40.00% Heodo
2022-02-04EHXMtOO9TRzIDTcR.dlldll 3b4e19b0985a9f3e54a45142a5a4ec317425bc04253ea6dc80989aad452f9426n/a Heodo
2022-02-04haqokI5v3OdR.dlldll ce16651daa02d14cfac8cb1fad02a9f1702b4618b1330524e4527afaf24aad25Virustotal results 34.38% Heodo
2022-02-04dEMMcy4lrK.dlldll 136af26937e4605c871b2a1afbf7b60c84324490e605e2dd3996afee5612b9feVirustotal results 38.10% Heodo
2022-02-04eqV.dlldll 3f9e0e133cb7cbcc97a5c44f628950d32b57e4ae75214dda369c6df8d761d86bn/a Heodo
2022-02-04jNNRl0Y.dlldll 05e602aae30d92dc6c6281d244f2b0c04cdfb178f04ff3d5dfcd02f964979dc1Virustotal results 39.06% Heodo
2022-02-046Cu9GzSXYvY0QkoA.dlldll c9bf1985d06c42f7f859abfdb7019acf9f7640431b7a45a7761b72d938a85b3fn/a Heodo
2022-02-04cb3G6gBqOaYpgzun.dlldll 95db4ea535313f7be80cd41004ea5cc1d48cceec19ff7f56383e24cbfcdd1521n/aHeodo
2022-02-04T.dlldll ff5fb0efdf8a7f67707ec5c8449217bf93e818f65427c4d0fa6fa4f53afb42b9n/a Heodo