URLhaus Database

You are currently viewing the URLhaus database entry for http://mag-designs.com/css/L3QKlr6iTzILVzbnC/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2038506
URL: http://mag-designs.com/css/L3QKlr6iTzILVzbnC/
URL Status:Offline
Host: mag-designs.com
Date added:2022-02-09 09:16:07 UTC
Last online:2022-02-15 16:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-02-09 09:17:18 UTC to dns{at}aplus[dot]net)
Takedown time:6 days, 7 hours, 22 minutes Bad (down since 2022-02-15 16:39:45 UTC)
Tags:dll emotet link epoch5 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-02-1194Q7P4nVG1hYXsq.dlldll 76c6a9b2cafd94e103c81c55eb4ddd7c47e2c141fc10f7cbd2789be849c86388Virustotal results 15.94% Heodo
2022-02-11bfRU1ITdSLmgE.dlldll 1ad27fa64b9e42279a8c84c5ae4f3a3767d8efaf8880b14498c471f548226f95Virustotal results 14.49% Heodo
2022-02-11ejooqb35T3msOlG.dlldll b3a858f71918b393cbcaa1b09589655f0b84d63ea8d235adc2dd48ef14d30ff8Virustotal results 14.93% Heodo
2022-02-11bVno3GaM04t.dlldll 8df9db0eeb6e185fcdfbafa2b8b28950ae9aaacd117d85d1d14dc820e15393beVirustotal results 10.29% Heodo
2022-02-11Y3XREN3GzDIk.dlldll 1f7f4c9427fde2207e2e99889e8711ded62e314414bc75f0d4a510ed15b62041n/a Heodo
2022-02-118CeK4df.dlldll 58738ddbdf81296fa7e05de4fa2963c3adf7bc54ecc678887a74ceb44b269616Virustotal results 7.46% Heodo
2022-02-11cV8MDr.dlldll dc5991cf206b70f9339e2084ed8ac77d343d1587f7694dcd25e810aa9e0a6468n/a Heodo
2022-02-11HAUG33AdVbGYq6dr.dlldll 19d76db0f5f6dc9db6f967aaa1cfa1aaa7023a94572eeb813613d78e04e0f3abVirustotal results 7.46% Heodo
2022-02-113ihn7i6ynXu0.dlldll 5f8d03108a9d27af506a6e724faf81fb4d2891db9b467390168892ff4eb33d92Virustotal results 8.96% Heodo
2022-02-10NNJjaRB.dlldll 0c21d1b4a14a405cc3080c35d6a6a378279c0535582f56adb4efac57171a0c9dn/a Heodo
2022-02-10YC7zOxeGbby.dlldll 844cd2a1cd4a61b7e9f3addf913299e5121927489aaeb8161ce608c84945404fn/a Heodo
2022-02-10A443s4.dlldll 67336ef680e363acec565e2d4285e7e122596825d7ada5a63ea1f014c984aca0n/a Heodo
2022-02-10Cpf7oZQ8OrRp31KW8.dlldll 8dfe08fd1070dc9bbc7eb83b31262ac9d8da7fd9878927be676794edf9c36e6fn/a Heodo
2022-02-10TmArmuja4djT.dlldll 1a87c43f47820ab278d454772d3c67c3ea17d78ec42f9e7aedcba67f60fe78a5n/a Heodo
2022-02-10Ll6H.dlldll 742b56b2c5ed910c774485555a99f85bffc29abbd81150f6ac492ffcc534d8ben/a Heodo
2022-02-10cFy.dlldll d9fb28c2a1f887eefc19daa4fb51e5452baada40b793aa28c52b9a177b32f29dn/a Heodo
2022-02-10Iv0.dlldll 5e4283bdbd38eec57813d1f83b2fd79e662293ba098591bcb66e63f22bc8e864n/a Heodo
2022-02-10Bpp96ou.dlldll db64832d8c99dd1ef1b7aece9d657ca314756600e8cdc486719a09d525049f17n/a Heodo
2022-02-10Bnt.dlldll 3ed898fc26b579c822c088f4f6626f0b10f313afd0782adc698e880be054a149n/a Heodo
2022-02-10cjVFIjw1PShWn7.dlldll 4bb70c1d89e56afbf89cf483c578704b2b337f297895407570d07c681e447976n/a Heodo
2022-02-10aR6DQCdTHUeq.dlldll 6bdd41073768e76f72cec0dac45914660ba4e29d81408f1e44d470f2aad34db4n/a Heodo
2022-02-10qAlktgeYzil5DuVUG.dlldll eba9e6b6893e215109c2c6289e49afbb75ebf82d01abf56e212c6ddccd45ec5dn/a Heodo
2022-02-10I3kqSyw.dlldll 415fab913fef959c4b59622e1287f5220bdb1103dbda45d2d3484e06434897c6n/a Heodo
2022-02-10hnh4o9ECq6c7gz.dlldll bbeff345168767437e0bf0afb1b688328aec564a856e4182e0efaf7894e475ebn/a Heodo
2022-02-10byZV2EcC.dlldll defd0cc45da9f7faa1ad43c09ea4bd780bace2026db234af45b9b2706d8761f6Virustotal results 7.46% Heodo
2022-02-108yPL.dlldll dea9bf8e0f590c6a9abfcb32e65a2c9cad19b181d96788cd0a4907493d016281Virustotal results 11.94%Heodo
2022-02-09Ut5QB1TG.dlldll bacb6483fa67bd9f1c9472e20ac45d47348dcb60d808bf36916e158b8ec1cc3bVirustotal results 10.45% Heodo
2022-02-09FMBxXP.dlldll 4371b093a6d249ceaa707cb062767739635935c704b02376fd520116f6e835bdn/a Heodo
2022-02-09zP4eT09KBGwDnk.dlldll ede7f39f3a6a8379a234210036c6ed158c04b8ee4d121e41384f132d12e8ea5dn/a Heodo
2022-02-09yWXH8DA20SNk.dlldll 3947ab28a1f2da191407c245b4f7011d43f4bb5b9983b42964b11a3fc00557aeVirustotal results 8.96% Heodo
2022-02-09ach7GfMgYGtBCRk.dlldll 5665ebc81fe1d6a46d7558e1041706ce8cc40300327677f2f541834f7e9ca460n/a Heodo
2022-02-09qFuT2Hmy1HXxTTRyZ.dlldll 3486b2c85f7a0f66d2939738ba6b0e041c8856ba6ad314f2e8822699d4427b84Virustotal results 7.46%Heodo