URLhaus Database

You are currently viewing the URLhaus database entry for https://havuzkaydiraklari.com/wp-includes/YqYdLFA/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2055499
URL: https://havuzkaydiraklari.com/wp-includes/YqYdLFA/
URL Status:Offline
Host: havuzkaydiraklari.com
Date added:2022-02-23 12:41:06 UTC
Last online:2022-03-09 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-03-07 04:20:08 UTC to abuse{at}as42926[dot]net)
Takedown time:20 days, 3 hours, 3 minutes Bad (down since 2022-03-15 15:45:20 UTC)
Tags:dll emotet link epoch5 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-03-13n/aunknown e3b0c44298fc1c149afbf4c8996fb92427ae41e4649b934ca495991b7852b855Virustotal results 0.00% 
2022-02-25ImB8IzA7K5gY.dlldll 3c3292da2e30e7d765e4643e4c7bf261c0de9aec08fb3c3484ddfe51a847fb3aVirustotal results 23.08% Heodo
2022-02-256UuGSvmx8q1P.dlldll 2e9d5e26b2e258b2cd8e9a030d21f647b35dce40ccb87261127b00e19c4c6a31n/a Heodo
2022-02-25eyQITP4Yn7.dlldll 25d4726ecc9822d264267069c97eb5c28d658dc54ae3cf82adc1dcd890cf00beVirustotal results 15.71% Heodo
2022-02-25wdZs36SE21DLANDmDO.dlldll 29d691d00a62150b30f6af308aa93aace80ae996b17c1b4e9cb0eb74398b66cfVirustotal results 14.49% Heodo
2022-02-25l6VdxYJhCAjITmD9aKl.dlldll a12615369bfd2e2d81b1da8119bb73ba2145dfc4161f577d33aa4fcafea5728eVirustotal results 15.94% Heodo
2022-02-25GAlh.dlldll 72badf0f1acd328d2d797153980545561e6ea3852ed0e65c662fc4d2235810ben/a Heodo
2022-02-257vyElmgBT2OFr7.dlldll 9053f85ad1c906d978cb3155f3e3e8d481ddcaf3047315ac410a606b4fc249c1Virustotal results 10.14% Heodo
2022-02-24qnoChdwXrSztJ4K.dlldll f7cc4c2ac08be784749f6fa77ccab81cd67f279820931e2b35a1b6af491cdde9n/a Heodo
2022-02-242vduWKF5cc7HxaYEU.dlldll 67bfaeaddc37ae07e3b64868e26dbae22e1bdfbaf0f796b49e383de31d125bddVirustotal results 8.70% Heodo
2022-02-242TPE1i9BFlsb43VZ.dlldll 0a8c097c2adf59ec43d2c9ca8f1d3d37c17665acb99b0672180a48c0ea652dd0Virustotal results 8.70% Heodo
2022-02-24aWeko.dlldll 90a076054dab129c1afa3a71203bc28152e67c4f89d54605f27f1d97968dd613Virustotal results 40.00% Heodo
2022-02-24ubSHn.dlldll ef92e1767691926ccc66ecec2bb3c3ec782419a7632bd7a3535cb804e2cbf935Virustotal results 30.43% Heodo
2022-02-24oGkgXO87.dlldll 7245322855f976a04bf7adcf4a6a9eace0516dd08e50ad89bd205765325af915Virustotal results 27.14% Heodo
2022-02-24dzGwzElOUz49QU0.dlldll 24cca6e7f2ef94b2ddba7041699c97976d9c9b91e9de7b19e0c4eac8a1eeaad4Virustotal results 28.57% Heodo
2022-02-246QpD3bhkYq0xyPzYWJo.dlldll 8d96a7d78b4c2fd6b49003ae9506b233b34d8368ac1aab489ea76cb8cef0e5b1Virustotal results 24.29% Heodo
2022-02-242tPwlEi9.dlldll f5bde1104dbbef0d7dde0f095cb18c2eb53a493891926451cc4ad3337ded69b9Virustotal results 22.86% Heodo
2022-02-24fjW.dlldll aab51f2b202e92cb1159f5e264b5601c2c69a9c66c252dec68593e7824304a4an/a Heodo
2022-02-24TXPPoq8wnGs86VnqVj.dlldll 9808ad19b6819ee84d6d4f2a455a531a61e4eb317cabbfc2ecd6df026acc31b2n/a Heodo
2022-02-24Z0PfA9feahTG1.dlldll a5e563d48e71779b0774d7e18e504e90077fff77d346aad3c0567d70235621ddn/a Heodo
2022-02-24IdHBJrWSDAkWncXB.dlldll dd5505ca26423d5bc618a946d36c1d5f923022ffc5f611d1acc0eb48879596edVirustotal results 11.29% Heodo
2022-02-24OzdvtuvLADo.dlldll f4d0590af21b42ced434bc0fc79cfd3b705e5b25ea24ca2c9be116664a5c8ec2Virustotal results 25.71% Heodo
2022-02-24IZV7QB8rB7vpbBz5HrJ.dlldll 154029bacc1238ff165cb33bdcd3f0c331cc5532c0547cdb588ed96709d60984Virustotal results 27.14% Heodo
2022-02-240VIDPPiIDkTHzxUy9I.dlldll 863009e2400d9e17c5d6de5784f6aeb7483403bed2473aae0206b3f92edb86a6Virustotal results 23.19% Heodo
2022-02-24GpWQFFTIJ8kMG.dlldll 6d80cacf457a12c8cbe75194e4384f1ba1e2632c9a9b60696b118c3ee58ed6d2Virustotal results 18.46% Heodo
2022-02-24su0WDFvOIcyDQ.dlldll 8439a0e379db9be93f963dba09332fda3383b7511803faa6ba73847380c62e76Virustotal results 20.00% Heodo
2022-02-24H4gF4hnRukl06KzicK.dlldll b95c907b95982d9a1f72bd5da8c7fd8ffc0c48d98a674701297e55755d696b9eVirustotal results 17.14% Heodo
2022-02-24UbuFeAJe.dlldll 28f240ae4aef81439bb39734ea9d58464d7ac2ed4b15430c5b8f38f37ca55e01Virustotal results 18.57% Heodo
2022-02-24ifkjI.dlldll e0054259811d11fdf7b6b67fd113ff3a6b783c56cfcaceeef4cf81c280415fb4Virustotal results 17.14% Heodo
2022-02-24mXz5NWqDWityf27NnMS.dlldll 02b2ef22fc49874a0a780af55f1b4296ee523bd4401e7476e9fffd821c3e1702n/a Heodo
2022-02-24lo9oRw.dlldll d8bf7c8683fbe504173815e871abd0285389edff0342fb3b55b2ff9e8c0c34d6Virustotal results 18.57% Heodo
2022-02-24GYDms.dlldll a1d091a26c9b9221039fc41288f9aa9151244ac95556513b0f54a09696730874Virustotal results 15.94% Heodo
2022-02-242gmb8CZ9.dlldll 6b3ccdeb1845bff994e25ef9e75c02c238fb82c77f082a6e287cd4621d1f4aa7Virustotal results 13.04% Heodo
2022-02-23DibWy6FwsXRAYhZtnN.dlldll 8b0c11c06cc90695349c0348eb0a4b32aeff6710490d3c1ad04b4e350f0701a7n/a Heodo
2022-02-2380k.dlldll 2709409ca5aa060c5f0866f2ce692fbbb69634a9ec62f5230ee611ed493f3276Virustotal results 11.59% Heodo
2022-02-23ZhruIBTz.dlldll 1c3b98c99e9e3c868a4d139f1c8f1ec3e912535aa77f8266f07bddea00cd6ac6Virustotal results 20.29%Heodo
2022-02-23feraxHtq.dlldll de8ac25e2a01c53da906c74ebe6868dd54e935a3b1723bcbea4c630f4b4edc43Virustotal results 27.54% Heodo
2022-02-2342Fo.dlldll 641087292576095d6ad92bf52f71617fbeeb813ed927974c0369803dfcef71f6Virustotal results 27.14% Heodo
2022-02-23kil.dlldll 4e15d3d2839f9109a5c23957fa7dbadb9125486830dc4f8f74ebeec6f5044877Virustotal results 21.43% Heodo
2022-02-23OKrOw2YgSbRSHmiY.dlldll d92dcfc5350746af7e777b10900b7f7b7d03ca84e82a7cc0705db42b32eba38cn/a Heodo
2022-02-23A7bIyntRnVlMNuHC.dlldll 55e36f83adc239d974852e374a27bcfb7cf158aebe78efed4a598bb7c28a154fn/aHeodo
2022-02-23dvW.dlldll f560ad14d0233f86a5daeddb2fce49c133a688e42b47cc66fccab2e601011e96Virustotal results 18.57% Heodo
2022-02-23QBYaRk9wkE8YLXLX.dlldll aca115b3a1b611367e0dfbfc933b5f49be3b3b18d9744c2efa751b8913efe3dfn/a Heodo
2022-02-233yXPjkGDGJ.dlldll e2ddae33f6ae1c198b4044ac6d2bb4ffd1841e425c47ae467828e1be8eba95c1n/a Heodo