URLhaus Database

You are currently viewing the URLhaus database entry for https://mccoygloballinks.com/cgi-bin/HvZWLrLljiRj2ck/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2056548
URL: https://mccoygloballinks.com/cgi-bin/HvZWLrLljiRj2ck/
URL Status:Offline
Host: mccoygloballinks.com
Date added:2022-02-23 23:48:14 UTC
Last online:2022-03-01 23:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-02-23 23:49:30 UTC to abuse{at}digitalocean[dot]com)
Takedown time:5 days, 23 hours, 32 minutes Bad (down since 2022-03-01 23:21:43 UTC)
Tags:dll emotet link epoch4 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-03-01Hcc91au5Nw68clFXWkXb4JT8pnRSEaTOD.dlldll 22ae9906694e646994ad38ba40e3f8fcf828e30c6ee5db2ee9029afdccb3cae2Virustotal results 37.14% Heodo
2022-02-24DT7jxzQcKqgi85ZvzHlRT0TotdWu0uX.dlldll 2313236723ebb10dff8822879dbba14e9003384e9e033da3fa95d56c9a94439dn/a Heodo
2022-02-24LNSUcjtRmHOXzTsSGTFf.dlldll cb7bc4ce77300d99d443f672fcffa1fe6778c0d7e7a9600a79d90937490f3774Virustotal results 28.57% Heodo
2022-02-24eHTTbR6lISt3SF4rmfXjjSMow7ZlcRIUK.dlldll 36e2800ea66b38323a645b17986ce7c60f248e24414df8c4c2c9ab1f46ee8bfdVirustotal results 27.54% Heodo
2022-02-24UdEIJR7JGv8A5J49EEVnVb3d.dlldll 5bad254d020dc9b6366d2bdf0665a4844ac4e43b9c5d508159d769f337f5a867Virustotal results 28.57% Heodo
2022-02-24xe67idI9DAbrGyrrWIYk.dlldll eb2601ceb7f4328f8cdf6ec354bda95118e872ade09d68dfba23b2db63f67021n/a Heodo
2022-02-24ntDXvgycUA.dlldll 1156ef8ec9e714b0a8b323ab39725b2fe1eaccc0aed3a83cfe9b60cd6ab81cf4n/a Heodo
2022-02-24XfpxNzbaohcAzKKYPRhu.dlldll 9e982584dbefd32ea2cdf313e4334982a60238989e24c65e40a658ba7a4bd0ceVirustotal results 18.84% Heodo
2022-02-24JNsJK39uhsPPxcH2svbNmt7Bc.dlldll 08c49f586f740bd3e764be9179901960f10b0b7fcd252b9a7cd7b84abb142c6bVirustotal results 30.65% 
2022-02-24vRRgtnJLTagbQhAonjiTC9I7ywl.dlldll a87d03b3ac5d45a754e4c7900d11b695f6170f2ec8a41068679a463423ba49f7n/a Heodo
2022-02-24BR3JtExGBiCZdkkw0GBAuHNZyGFBK.dlldll 02bc338dd55b658ec2c9a3c5ea2f450034b1c9b57fc320e1437907b8bbc1db87Virustotal results 23.08% Heodo
2022-02-24CtQnNBlq8NV5riNi0SU2TSNGph.dlldll c88784b7d8c9d80dd4e3c35200d667bf30ed5b05c9a64c7740d43cd0b011a411n/a Heodo
2022-02-24vFfk1QXiGPjAmG7C6x.dlldll 008e16269cfef8ecd30864e168cec728518c14fd9489bab161f424ef7f955a06Virustotal results 20.00% Heodo
2022-02-24x26k9B4LQuz6l.dlldll 0515e67c4eb3bd39dced366d6643acfa658926d369a862b36cbda096f6a8f66bVirustotal results 17.39% Heodo
2022-02-24Ssnbdf0RsZRjVbq.dlldll b0570c708f6a694fd2fc9c41221e28864265be2d10cde688e456657dca066c75Virustotal results 17.14% Heodo
2022-02-24v0YDvSlkHZjBav1FnK6wIZ.dlldll c91e07a6c513812de46c89d8df8287e072dbfc2f4e3368a672413239c2280004Virustotal results 15.71% Heodo
2022-02-24G33kVVxiaY29Wq.dlldll 0891dfa8b037ae1369077e45fe581b99b1532b73ef6e53032505434a52e5e4abn/a Heodo
2022-02-24o11HJTPKuju33lnWHs.dlldll 111ea3fdcafeb3baac573d1c4dfbd023aff30ee8fa98c41520737311340a3b27n/a Heodo
2022-02-24jrmU4wto.dlldll 4075c01018eef067e9b314dbfcb54d2cf7425536565999160d4a9d19977bb0ddVirustotal results 14.29% Heodo
2022-02-24FDcfOwvY6ukOht8QrEGyRmrnTKshji.dlldll 569cdb418b0539866de218924727e60a6ccc35f4eb52b673a6b4b37f2b3bdb72Virustotal results 12.86% Heodo
2022-02-24of4mlEv14Az.dlldll 94b6dbf615c968df155363964dbc129e84bfa29fbf4dee0216f64076048b8dbdVirustotal results 10.14% Heodo
2022-02-248ViuAEfIU.dlldll 714b21e32af2a173a4500e56692c7078afc7e8dfd78cb9fbcb260dc5bebe90a7n/a Heodo
2022-02-24OpBZKGxG6Zuqi8JMR0.dlldll 7ca1a258d2920d36eba238d9466b4fd7aaf4d4f0435a332cad298aeffd5f5fbdn/aHeodo
2022-02-23tAGwxjx7N7dJNktXDVS8yWfXkLvRXrpb.dlldll 8e55ef5e73993434283acbccc898c3780de1546d3aa675b6e6de32a86097a5a3n/a Heodo