URLhaus Database

You are currently viewing the URLhaus database entry for https://thelastpeopleonearth-dayz.com/wp-content/Ehy/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2065881
URL: https://thelastpeopleonearth-dayz.com/wp-content/Ehy/
URL Status:Offline
Host: thelastpeopleonearth-dayz.com
Date added:2022-02-28 07:21:12 UTC
Last online:2022-02-28 15:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-02-28 08:52:08 UTC to abuse{at}cloudflare[dot]com)
Takedown time:8 hours, 34 minutes Good (down since 2022-02-28 15:56:56 UTC)
Tags:dll emotet link epoch5 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-02-28XvZb0VHF9McZMk.dlldll 8e58c937e8a992f76f561b9e2b3716206bc485646298f9bc230255f717887ff6n/a 
2022-02-284HoFP3.dlldll cd290a826749249506b0151c0ee004eac5b8af4e129260eb82220490e762475fn/a Heodo
2022-02-28sXX8.dlldll 467b2fbf9615ee2c631b0767dd5a343ed36a964be03b0fb4cec9e6f5a86daca0n/a Heodo
2022-02-28dEi012OC.dlldll a15d81c6aaaecd7dc0b1ea18bad4dae32ca495e8ad23e5f349f5ddbd40c5017dn/a Heodo
2022-02-28QTsDK.dlldll 21fcc7a798bdb3d59bab1157022343596565389da7c920fbbd4750f8381cb5e0n/a Heodo
2022-02-28vtiugkfTZ7gJAW.dlldll 6373ba30ea1f824491d4b6b34d15c38d829fa0551334e9b8c36eb8dc39587443n/a Heodo
2022-02-28VK2c9I6N.dlldll 9a180ae34d2a984b6599d846668b61ecde964b440bcbce7ca06ef376eda31b02n/a Heodo
2022-02-28E1zr.dlldll c0dc7ff3e71f92ef3ad56b3c89dc8b5de973fdd5a151d5a4e9af641f7deb33c8n/a Heodo
2022-02-28wDOWzd.dlldll 387df6b8e6c415bbae1b9f08d00b6c3ef66845569c83ebe59261888bbdb062dfn/a Heodo
2022-02-28x92a2jbrpilriU.dlldll fb9e77c51775fe97b26e81596caa0950dffc4d7e5332303a4ac7b6ac86f785dbn/a Heodo
2022-02-28WCpg9h8kVkK.dlldll 0885df5927e422a27902aeeef201448b78876c0ad0e157b32ba7837cee791943n/a Heodo
2022-02-28OLaJEO6urzqw.dlldll 412c2d0aa62b1071c1f10eb6cfaa94ef00b3ed83f1dd15284cf3d1e6052a68e1n/a Heodo
2022-02-28KXpWkc.dlldll 8906c3d9a3a1abf0a17ee1521ea8667216a7dd029eaf250337da4db6b0aca69bn/a Heodo
2022-02-28gdJXilow2kE.dlldll ccd570995ed3f38ab70804bbd9ad5c543656cdbf514d7ae8af70c8e9bccce19en/a Heodo
2022-02-2805y9oLg1.dlldll 7425014a0509349f58e35527893f76df6c433507dae0c3cbee8f886b7976cb9dn/a Heodo
2022-02-28yGd4PVXJ2r8Nk.dlldll 53262a47bb00b8b0c3669328785655aee00e08ea872a797378c8fc943a2f0ef6n/a Heodo
2022-02-28ySGPK.dlldll 7b3bdec7839f02425bbef6bcb3edb5da5d509a372e37da60fbe874130f3ac7a3Virustotal results 19.12% Heodo
2022-02-28uAw.dlldll 55baf9bb69b27b5ba0be01f4298b51db000aa0f8298de9c5fff8c5c2273bff34n/a Heodo
2022-02-28DybvwyQB49RvH.dlldll 8432e790a8d4c4fc49b7ec2c8a16731fd2175d71fc3ffbce52bf217bc48398e0n/a Heodo
2022-02-28p2hqOVzk3zFGs.dlldll 1b60fbd00cd2e847d3bc2edd2964d79508172c23f4bf398b46a683cac9473bcbn/a Heodo
2022-02-28SZPekJDlGt3Fw.dlldll df68a73bc809e8dab8f63c5be4b96efe206e7cadc8f6eb1a1e13eee3441e91a0n/a Heodo