URLhaus Database

You are currently viewing the URLhaus database entry for https://kinetekturk.com/e2ea69p/9U52O7jTobF8J/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2055470
URL: https://kinetekturk.com/e2ea69p/9U52O7jTobF8J/
URL Status:Offline
Host: kinetekturk.com
Date added:2022-02-23 12:31:10 UTC
Last online:2022-03-15 15:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-03-13 09:49:07 UTC to abuse{at}as42926[dot]net)
Takedown time:20 days, 16 hours, 35 minutes Bad (down since 2022-03-16 05:08:07 UTC)
Tags:dll emotet link epoch5 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-03-13n/aunknown e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855Virustotal results 0.00% 
2022-02-24eQTvZkfkmP.dlldll c085cc541f6f4242991446cbd2122d808ef9f6d5c236ccfe6f5e40c96c6b6559Virustotal results 13.04% Heodo
2022-02-24VfT.dlldll 1c533b7f49f91edaf2fa6bc8aec2825deb38a64b746a68e3ae94ab14f610d04bVirustotal results 13.04% Heodo
2022-02-2351oJ.dlldll 439f2f7ed07c195de2a25cdf9af998bf478cec96fbd4530de48504b5dc1196baVirustotal results 13.64% Heodo
2022-02-23JqfSEX6fz1edCYi.dlldll 09513afb3386059acd2e90685ea53552d88307d9fe823c3e912a037870815e64Virustotal results 10.14% Heodo
2022-02-23wsYxhZ1p8dhxY8O.dlldll 1c3b98c99e9e3c868a4d139f1c8f1ec3e912535aa77f8266f07bddea00cd6ac6Virustotal results 11.59%Heodo
2022-02-23fergERr36.dlldll f903da43dd176dc10e13b586e786ef6a2250b7198597742fcd0391053779b980Virustotal results 24.29% Heodo
2022-02-23SQX.dlldll 8d9add3d22b459d3aaf7071973fdab96bb067e5e257ccdcc84ce96d4882f6b52n/a Heodo
2022-02-23Ll0dvbztrUaMAss6v.dlldll 4f6785f10d11d5a0643699e73f2fbdeb8eb4b4b536806d81d004f1fbcf0285fbn/a Heodo
2022-02-23mPT6Llq8LoRA9a.dlldll 3e5114f60f24cc71975aa254f24536a4499c25a7dfcb2ff4db24accf33cf3770n/a Heodo
2022-02-231hAenDn064MMh.dlldll dbcaa2c8d07f830911d4c6025cf2bccb221e0ef4f4884f68662514505f76c82an/a Heodo
2022-02-23RP3nwJ3r52XiLSkjjiD.dlldll 5be7ea3320593d7fa5839b452f38944051f280dd9183d862ed7f63c26fc40279n/a Heodo