URLhaus Database

You are currently viewing the URLhaus database entry for https://nabajyotifoundation.com/da8uc7jo/4Za/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2034750
URL: https://nabajyotifoundation.com/da8uc7jo/4Za/
URL Status:Offline
Host: nabajyotifoundation.com
Date added:2022-02-07 15:19:04 UTC
Last online:2022-02-08 15:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-02-07 15:20:15 UTC to abuse{at}contabo[dot]de)
Takedown time:23 hours, 46 minutes Good (down since 2022-02-08 15:06:23 UTC)
Tags:dll emotet link epoch4 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-02-08zXJvXkYm33Hckr.dlldll 64255ccfcf6a8833dacd074dc68d5bfe6157775669f5b1a331b9d9e0d62cbabfn/a Heodo
2022-02-088ToDvgxhE790DSf.dlldll eac8028522a27a95a110b573369b7e48778dfa8e5b9e149ce68f09d4dcede449n/a Heodo
2022-02-08ggTK4zDIccZy2VwTVeMV.dlldll 01e868185f726b66340ac463bbb19ced8a10aae884d01a3c0ed63bce95c4915en/a Heodo
2022-02-08zvfjQy2CMdqjGWhw4yF.dlldll 4f144fd7276e921ab4e4bcbdb85fb6b1c8d8fca8dfb03d6a3a1d66a4e40ba322n/a Heodo
2022-02-08KSk8aI2dwWjJKT5.dlldll c5164aeb552dbc11d24f8a259ee6304079940fa3983d56f94a5d78caf6dc3aafVirustotal results 6.06% Heodo
2022-02-08WTvwvxBgXBAFxrgiW7Ao4F87uPv.dlldll 8726f63c86754e09aa92b1c674344ac64d9f49c172e5455f660c9492e6b494f3n/a Heodo
2022-02-08dy7P0hOLra69J6ooFNQxSDlt.dlldll d01197a2ae9c71de08e091ec5d2d8f4ae11e8b4262ba76c17df10da335f3d757n/a Heodo
2022-02-08aIX8SUq82mbkv7q1yIjR7APoEQ.dlldll 5fa3ef9e945d10dab6512d33b7647d637e437ff543673f1f279211063cb2e2e5n/a Heodo
2022-02-08i5HZa5gbstX4RCSWjF7kl.dlldll 91904fec72aec1c4bec5b1edf287b68fa1e1d723c134505fa5ba9141034c84f7n/a Heodo
2022-02-08YpO3Er5GGJk36UgqIKDYGGW.dlldll d4702b8575811be493608757982779dfcdecbe28177d4e850e147f50a434bcbdn/a Heodo
2022-02-08Fun5bPDNPDffMIHra4ugXa.dlldll 644f7b500ad587c9386725da06606abb350ff8ae1b7622b6488ba27748581d2fn/a Heodo
2022-02-08Oq8gdCRu0zgz.dlldll cd489eb90177794c73e79995d1568250eb9e551112f58186d67f06a7a5ae2888Virustotal results 23.88% Heodo
2022-02-08eI3HzHX3d1u.dlldll a2a86a697ff00175e1c8b3130fb4ab82d3a783026fa8e22175327dfc878548e4n/aHeodo
2022-02-07y93wYXYszRmeq.dlldll 5958c9943eda9a93dcd0aaeecd13d8c5bb24582ff16fa877929dfc0328d9aef4n/a Heodo
2022-02-07NM3aDcL64yQN.dlldll 4ee73b66626ba2b871f116e665d98ed81a19ef2dc9afcd988aa57c304467faeeVirustotal results 20.90% Heodo
2022-02-07bMnXuAjPa.dlldll ce9ba6fe1dd214c50e5ff0aa9d7ce3579ff0cd35992b55a6e32fd5fc519ffa72n/a Heodo
2022-02-07NdK4A.dlldll 9023530cc58ae38a347b3861f70542b50e0f3d814b317984e35cb4289c1c8561Virustotal results 13.43%Heodo
2022-02-07xbSRMTYqay.dlldll cc28582366fc8780811dc5c507f0cde4a90dd289bd493e598ac830244795a9f0n/a Heodo
2022-02-07L.dlldll b675c2347756f933e945a112bbb1e6366446cee4014f5d34e31b94984fc99a1aVirustotal results 21.21% Heodo
2022-02-07ZgH.dlldll 0b465f5bdc92d07392b4787527318f9ae6ed3060e0dacbadce76ac566d1c3a53n/a Heodo
2022-02-07jbMGZHZFHEdQuXw5Df.dlldll e27cb3058fa6b4d323280905121000be16f37386b8de6cd384c4b392727f5694n/a Heodo