URLhaus Database

You are currently viewing the URLhaus database entry for http://wyldfyrearabians.com/cgi/1HyEagziS/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2034869
URL: http://wyldfyrearabians.com/cgi/1HyEagziS/
URL Status:Offline
Host: wyldfyrearabians.com
Date added:2022-02-07 16:28:06 UTC
Last online:2022-02-09 14:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-02-07 16:29:17 UTC to dns{at}aplus[dot]net)
Takedown time:1 day, 22 hours, 5 minutes Poor (down since 2022-02-09 14:35:06 UTC)
Tags:dll emotet link epoch5 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-02-09SJm.dlldll 3486b2c85f7a0f66d2939738ba6b0e041c8856ba6ad314f2e8822699d4427b84Virustotal results 10.61%Heodo
2022-02-09K7yf40b.dlldll 4b2f8524edf7e365dc3272a9373cea1ad5b0779307dda68212f073d4944105a5n/a Heodo
2022-02-09Td1ajUgHLFSW.dlldll 2367d6410221fba04ba4c5448fda340b5dbd93839f677330eaeb210bc1e848aan/a Heodo
2022-02-09VUSij1.dlldll c0e320a140af50b955daf8730db261464477873455c8428bb25a8ee86db0588an/a Heodo
2022-02-09n6o11MHH462vmn.dlldll f3c026fb623aee3a6262e6c6d5f37c5ef9341558e7ce7d8db645d11a73acb60bn/a Heodo
2022-02-09InesBc0AddrAjA3.dlldll e63fda79ffe4398767bd48bd4e8e2f6479de8fadf698ad10abbc81477bddbb48n/a Heodo
2022-02-096AYryCN0w.dlldll 7d01a73e7f145ebd5abc00cf0c3d251d41854a86bebd7090de7e839e969a2cden/a Heodo
2022-02-09XCKCu6tGEqVSsTJiisf.dlldll 5cd6039a3874ef2449741ef11dd3683cbb4720b55a442db5562e4dcebdc85fd0n/a Heodo
2022-02-09AxgomeJd.dlldll 8f1c8e320d56f649b3faff489bcbb6936a2d58c87fe5b806516c295dc678f7f1n/a Heodo
2022-02-09om8xouxomqTr0.dlldll a125ccf565bc0941238e60261cc6ee93f630c6f3232d097d44d3734037196155n/a Heodo
2022-02-08nFbTTkKAT7G.dlldll 19a770a5f0fb14983a3258a8d1077a75140d41420fb82badb308106bb19190e0n/a Heodo
2022-02-08Fdj.dlldll e44937d2ee6d439c83c1016b9afe19b1f25adb52daf7d39f9134a49eaf4312efn/a Heodo
2022-02-08QVvX68cfyNYXFIrgIx.dlldll 7839508ae8a33a636b5e2cab1ad74e751569a774bcdc27fae0aee18a91b58394n/a Heodo
2022-02-08HcEihf6eL3od7yF.dlldll 4a6e1968fed9dc7391422b1d8f40c1563cd8f14237feb309ea77f77269937f5en/a Heodo
2022-02-08Q0zbQvk96.dlldll 0a91824b6f3e8c217bd67f29bb97a8bc16b32eabf1212cadcc77d9152dd1a1e5n/a Heodo
2022-02-08tzIOU.dlldll 67ee17aa1936b1de4485adcaaacd4be5fd296009f642243491a51cbbb63ebc66n/a Heodo
2022-02-089Glr96YZFp8sQksJV.dlldll 648f76a6a7a20c69d0f533f3eb787a6be0ba968de236e981a00954aadbba1203n/a Heodo
2022-02-08spwpUlyONxZmEE7.dlldll a366e1118833e27f6b0fcdec0029a872b876807bd97c719c9ea182961c524357n/a Heodo
2022-02-08jnVuPz8u0mPx.dlldll 5e831a66b8312f0d3cfbe7c8254cf903ff32a6c79e80492904ee779b6eca1f10n/a Heodo
2022-02-08NdW0rHbmWfca.dlldll acc8a32a32f5b2bab8cd4f50f60195020bc7d8fece82e061c0ad64e94f75d64fn/a Heodo
2022-02-080sUAaV.dlldll ca1b1fddec5f2a248fdc5f9f778fa8a7462a980b9b90e086068b6c2b5bab3882n/a Heodo
2022-02-08ZiHFns67Moh7G.dlldll 9c3a155672db824ecf4876854fbf4196c524eba58ce1ea71297c51d1dc8d124fn/a Heodo
2022-02-08Kxbl1UE2ULyc.dlldll 9bc8c08a16ee2ec52908c3475e2a4025faaa0d1c68bc197d4059b36ac4b217c7n/a Heodo
2022-02-08iKArR0LYDw.dlldll 21794799dcbaba55383ecb4c03e53d17369eb0cda18725407f25179172b2d3b7n/a Heodo
2022-02-08dOthY.dlldll 9ca47ac145693b6073caf1bce3927ada8dbd18d79494206d8d813a0f615e8794n/a Heodo
2022-02-08cqkWhjTT.dlldll 1af4a90adff3d814f1b73ec039292dea4d7ef5aa443c06df353624efb672fa74n/a Heodo
2022-02-08Ief40HziF.dlldll ff998b8b9ae3a5abbc041fe0f25ce2fcc8394a75533e8998a675454dc6d23942n/a Heodo
2022-02-08mmrMJqBNgHpLM5VXu.dlldll 31ac3bc3b35538c39467878135dcd13528cf633f53a7122cfaa749ef1d19b5e5n/a Heodo
2022-02-08Ot9aDrXxP9nz.dlldll ac7e6c5993410574b50bd21476bab041c0735e7ae9e161f7a8ba9dea685cc2aan/a Heodo
2022-02-086H9GT6f8gtB.dlldll c8546dc55b7e545eee0e2476693cbd4a09b33bda41348463be1f9108be70013fn/a Heodo
2022-02-08hGGCxeGTgAP7oYSwH.dlldll 463c79b34d134c6e75ce91c30f0854874ee378d5dc89b241c2cecbd2ac69dcc6n/a Heodo
2022-02-08yNTkhXGs6RruM55aA0Y.dlldll c43eabffdbf9d13d09785704695fb33859ab25bc331e02021f687f8fbb9dd775Virustotal results 19.40% Heodo
2022-02-07Af5dnFIv.dlldll e9fc5516fa53fb815255375ee57d1b047c042d486e05891559c9ee68926ad1a3Virustotal results 22.39% Heodo
2022-02-07B8ubq9TeefZOqPr.dlldll e1abcf66ba8b06c61f65cfdd7e78d70071f27604dbbc68fb0c65f8724851214an/a Heodo
2022-02-07FBPXdzG4C8wiRL.dlldll f84216679516442cda9a365acb7f8fd76d090f1c0f6c75ee30f2cbe260d87efcn/a Heodo
2022-02-07aIbGG0hrKxpe.dlldll a869753a041a4939b42f3be80d0b4e0fa75c764b03bbc4c748ff22dc409a8b39n/a Heodo
2022-02-07MNq7P2CCf1SX.dlldll f3d57070ae586c1ba5810b792b601fb8777a95687eb01d1e02995d0c8817be8bVirustotal results 19.40% Heodo
2022-02-07lv9Yt5g.dlldll bd7a33d220c6048d121f970fc475272bfbf0a5f215603cccf253975bc98a8c0fn/a Heodo
2022-02-07tEzoG9HeMw0JIUG7Afn.dlldll 2234763a4524bfd2298898a5e72e7e2d0842a9ff429353cc8d27b4002a046718n/a Heodo