URLhaus Database

You are currently viewing the URLhaus database entry for https://winnieswondersaviary.com/wp-content/GfGvSMj6HihGNZZa9T/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2068957
URL: https://winnieswondersaviary.com/wp-content/GfGvSMj6HihGNZZa9T/
URL Status:Offline
Host: winnieswondersaviary.com
Date added:2022-03-01 15:12:08 UTC
Last online:2022-06-29 13:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-03-01 15:13:11 UTC to abuse{at}fasthosts[dot]co[dot]uk,abuse{at}oneandone[dot]net)
Takedown time:3 months, 29 days, 22 hours, 20 minutes Bad (down since 2022-06-29 13:33:43 UTC)
Tags:dll emotet link epoch4 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-03-03GJQlBXY4X289y6gznmMv1FttPQ3.dlldll 4ffac8d4293900ff1a42ab16d60300cfc6f327ed2766206fc0835f3a3abc6e12n/a Heodo
2022-03-03mbn7e652Lx.dlldll 1db1ffa29a074c2fb83117c9192a3abaaf9b7709cd7c65371f1fba090d579958n/a Heodo
2022-03-03XN11l5Zkky2wVgEkvYE2jlJ.dlldll ef683843e6013fd41aa5e1c531ff398bc45e79412a1b4b1993e1ac345d604b2fn/a Heodo
2022-03-03uDu1s3r6T9s0wrQ8VHLuSZjOf4er4.dlldll 3ee9b7820b44625fd0f999789096cf43ca898ed90f742773279f2d6368b43fdcn/a Heodo
2022-03-03pUeX8wFaACPhf5uc7rRVdtQA2mwfx.dlldll 9ceba58b7dff3c253ee9874cf71ad1f643502767423afd098cb2bf6d2cb980a9n/a Heodo
2022-03-032ofSztE9WgV.dlldll 4f4695bb1cae1e82b58a62c73890ac292883e7a642a721cad73ea1e75f2b03ddn/a Heodo
2022-03-03nnDpmfZavfjbA0mL3LodE63wHMx.dlldll 0fb3cfc0c8dff36d8e8f4833c7072abcfbafca31f11b71c9b658510792340261n/a Heodo
2022-03-03sXEgfPq94nh8Rx.dlldll bbe7392ec4bb961bb263491c953401a77b50ac5d6348e067ad35115c5b321060n/a Heodo
2022-03-03ObqXUb5yYjCo7MW5CYMMaG5.dlldll bd907d8b71b9859cc4095118d913fd51b25b3fcbe32f09e5ad6b43cad3c26c96n/a Heodo
2022-03-039ykFlRLy3hlDP0gTQ.dlldll ce0b85fc026688f09ee28a0b5f410a84a21660d9a3b4ef054665dda2f2a4e322n/a Heodo
2022-03-03IDjdwkWXFI2DP6ZX8mry2OpJOZfFd8vn.dlldll fdf42182932d6b874bc0dc0c72ebf2dafaf2bc428640d86f8f2ec49add08da22n/a Heodo
2022-03-03i4hV1XMGSm2SjVvW9W1OEYsRi4i9.dlldll b80f938e20ee5355963d8de2c2c42db21b9287bcd5c7c3f7e862eadb2f8fa079n/a Heodo
2022-03-03KE1mxEXYrMHF6wbC993iGJpnfBpz4hv.dlldll a52ee7c0c6c143a4eedd3e961bccab7a8515560a64a0cfad664d52a4f5069190n/a Heodo
2022-03-03guCrq1IM7H6PvUX6b2P3PSgzunFpBjrR.dlldll 115dce0f41c84b1a1bc79caf285f66fcf394697c6219e6e48c6d932369dd2fc9n/a Heodo
2022-03-03qcxQtIR6EDCjLgO.dlldll b08982f1e3b2ca85723c1e15b3b947336e02be1ee658710a6c60cacce5d667e6n/a Heodo
2022-03-03tLDaTQyyq40qWjghJqnUJ.dlldll 68c2cecd777ae7ef405661c8f262478536a800743fcf635eb9b90bc3a0dd606fn/a Heodo
2022-03-03nHiN4mpM1.dlldll 12de16ec2d59588d339a2a2557b2966b87e7b4c8c4e7655c89b9db0d53f16ed1n/a Heodo
2022-03-03dr0qDavfLEUUnt3pVK6LWvk8B.dlldll 175b066ac607fc43432b4e3a17ccccbf5e5f9d0f604f6ee8130fb1f25f35b09fn/a Heodo
2022-03-03bTW76OAAjcSUOzeXPweDp.dlldll c76a9378dcb2dd454822cd0b763b11e21b20986acffc01659c9c7ab2d75b4498Virustotal results 13.24% Heodo
2022-03-03VtGibIR26PgsfRD7V6SDDKQjCggYTh.dlldll 7479da36ff9f24904085f29c1a84572d3946a4fdfb89039f978b4e1388c89a91n/a Heodo
2022-03-03W5MM3vQkLKZa.dlldll dc3074cffe9704f6282b109dc61210374ef59bf0b260bee4c70b763d11ee51b5n/a Heodo
2022-03-03NB9L4nir.dlldll ef0c3fd62610ee4feaadcf7bbf25032ee78fda63084d11e3a05ba73906a2fe17n/a Heodo
2022-03-03BpkbMTLyH0IIkl6aNZISqyXRP5eTcw.dlldll 9ae19e39f1bb933c4f88cf594f3234f9fdf5f5f1b212ed330c22997e0d6566fcn/a Heodo
2022-03-032ofF6HubGIlfujXlBocnWXvUo6fZ.dlldll c07b0288f11a07b189a7079d244b3ff21a708627d7e983f0b0794719039c2096n/a Heodo
2022-03-034H4PBLiFeZulyZcDIHCYMUV4kVzYc0.dlldll 8c890c5759d780bb594e6c0b1fb7bc8dc2a4747e0d79d956ddaa5b4d6f66ff36n/a Heodo
2022-03-03mOapkpiLWsXFZwidlJqTI0r.dlldll 30a159e2f0b065fd52f305f550f214d934dbc8887dc6b05f6759cef448b49ccdn/a Heodo
2022-03-03OoQCtXmcRBlG5m3wxHvttB.dlldll 22d6a2005bd4fa183d7b01ba193b02e94e2dc682f9ce2851e1a49d1c8be88b4an/a Heodo
2022-03-03JuJUMxqI50Pae42evAlNdlYSd6uKng.dlldll 052d2e4fbb2fd9c3e181ce8a2ebdb784dee2fef86180494de6bea4b8d3ee1ef6n/a Heodo
2022-03-032eEQ8r0imUjiSSQJDmKQGGsaWM7dSiT.dlldll 847192eee2168bbd67e35b4dcddb80e929c2995bb2bd0bec03c050352d326c6an/a Heodo
2022-03-02WD4HPUOXEy.dlldll 2f1b87e7bda9989250a257fa84462df287e49a07d0cd755e3ef46f1f91e0236cn/a Heodo
2022-03-02LRlByosOHRsrADcL.dlldll 34955169f5ed13b95db70d402c6ffc8b95f40f3996f0626eed10d79548c8a68cn/a Heodo
2022-03-02T2a6dvJarlQAfY.dlldll 653fea4fdbc99063ad901a1efe6f4b9c59a9bf051c7822af5c7300cb9854ea39n/a Heodo
2022-03-02RtWkZh9Y.dlldll 1e4ee931c33334f13213e1901026cce39d9a435c6ffa70b5cf1c2baac17c05f3n/a Heodo
2022-03-02ikgzvetQsAkS.dlldll dfccebaafa6aaedc868c31ed2ece6c9cc39fe2a0ba1a745b213ca5c5450b0810n/a Heodo
2022-03-02yDCOZDD9UesrQPNQ.dlldll 3d27c03ca6068f47d13e93cadaddb0cda020b0230355336bed95dee4cfcfd2c5Virustotal results 5.80% Heodo
2022-03-02m7o267r7LgkxA.dlldll 54db242e32910ec69bc13e1a0abb5abb12557a633e895735958fa5f796251846n/a Heodo
2022-03-02iooXG6txsCr7ix1SWCPk3Sa5.dlldll 9e8036addcdbb95b358661184a6f9868fb7f2976a2cac53b160febd62dba369dn/a Heodo
2022-03-02jjluxuL6uZAkWtth9Xq0OShxwJEPVXKO.dlldll eec49af65eeaebaacf2d67d6d8065ec3a224791b2fef51affeb7c6fdb40d3717n/a Heodo
2022-03-02LDf1CFf4OYR4J7N.dlldll aeb906c1bd0c5c9dadf8e7219e9b023c782a45cf3ab3d0e9df2957e793371facn/a Heodo
2022-03-02GETSQLkVPCumuV30UCEO4fHQZ7lZ4.dlldll 7d702e8c7cf3c123bd36c69f1632b5904ef80fdce8039fc3aa145c32161dc491n/a Heodo
2022-03-02SFAXxl22WzXRk4IPhucrTq3GJiOPY.dlldll 4882fbaa2ec5cc203ce7282e2a5fb864c71bb79fbc999681b725be957e6a3bd9n/a Heodo
2022-03-0285UA4BMrUTTudrnG4C31umZV.dlldll 63725c3d5089da195919a7fae04d407d141eaa6ba05ee259e21aaba482ab8183n/a Heodo
2022-03-02CcravrmDOddm9MCn677RIgLYt.dlldll 82a63c9003a3dd70d68e102a3ecf22b5f3fcf143f4d182740d80cc94d223dab0n/a Heodo
2022-03-02kqovnVQq4VKzYpwDagDJ8Q.dlldll a3f00ad2280f59aeec39a7ddd894be14b083bf59b1a47a83f529fbc94397a429n/a Heodo
2022-03-02Y525bw0o54oY77Ewm.dlldll b5125f22338517f8cc2033866be2690d709e66e1fd220596d485e50b0eff2e96Virustotal results 23.19% Heodo
2022-03-02ZpDQmzBSyGp.dlldll 576a677fec10db276227c6d5c8dccee2fe2c3560055cda922911f1df3b3fca82n/a Heodo
2022-03-02kNhI9flh9duG4uU.dlldll 00dc28a3ad9a68ce8036c620a97db04d89fe2a822a9d3028bd9e13a2dbe45874n/a Heodo
2022-03-02Kkds6JslPsslZtk2IQ28RXkBSYO0cg.dlldll 0dcbf87c1bbabddf734b0e8896f60f41970e6733a662b883d4e41e5c56aba5abn/a Heodo
2022-03-02dz2SDBkheN2AW.dlldll e21e1e1810ed95c17552d29cf7bd1a129830d3a7ef63a5c30c2b7a35ce485339n/a Heodo
2022-03-02OLD3JF3Y.dlldll 49cc4a6820ffda3240246014b3283e7e051f30cc5f32b79d9de83ce84b9affcan/a Heodo
2022-03-02V7l8owbJDJAnxZjzQhODey.dlldll 301ece1bccdb176722a145d9d830fff94f824c32902fb4984ace75bd370a16e7n/a Heodo
2022-03-021GkrlLVJlkLmkefvDmXN9wGaxyXFAb4DCd.dlldll 687ed43fa31ba2373127f438de3a8d88afbdf586ad6be779a88be94137ba4271n/a Heodo
2022-03-02Jb21z8rVnE5dzssiaXCoH.dlldll d9e17a3820aacc07a255f646ad482874b47e5c65778d8cf33ddd6ed58b5b7c5en/a Heodo
2022-03-02Tm0NbTRFWtJFp3s.dlldll c07635bee6647f074d4ac47ba3fa8475c77b1df268b7587ad05ad97937e22011n/a Heodo
2022-03-02XtuvQNA28gdHPiill8sAg22ChKL.dlldll be117530daadec797667ab2a01b1e59293d6890b8a4103464d213d098c4adda2n/a Heodo
2022-03-028Ag4Pk4Gwa.dlldll e217f9229cfeae0a683d3f503fdf673e23dd2327c62ba035492684fd75304edan/a Heodo
2022-03-0280NWw0GGncNbp.dlldll 4032a41f73ebbae735f0dd02637f0c0000f4a0c6d144c75ecefc2c1e716d5a8fn/a Heodo
2022-03-02QHONgRSnuL0NxKjyDpQSXC4GK.dlldll fa1e4f85a26b8ba93d3bb9c8a7278dc66bad450e5e084c610a570d0fae4b5e85n/a Heodo
2022-03-020U5om8mHqoHXBh8feV7kBCOKcOd1GjQ.dlldll 7aeb9a2a1122ee3830dc1256ec2cca3cb10eb120917b0e9ffdebaeee78948d10n/a Heodo
2022-03-028ggTwvmp.dlldll 65abda2441955f3ded5da3a8fb8a4b5a13133ba49dbc28c30f6b0dfff12b26b2n/a Heodo
2022-03-022PzMZyn0dDT1NX7.dlldll 1d934ba80a06e18aefa543cbb415e95735c315f8c74bb1b253cce352cdd74e9cn/a Heodo
2022-03-02Zm4BKI6g5OhYC.dlldll 1bcb154b4bca18c6e47ef47c9a0eeed2900c5f8c07eb888b464eca335847d185n/a Heodo
2022-03-02E5fLPzuIgjhRLHcUBDvBxB4JeLRsCrizsFz.dlldll 37da22485f244764a9b7a91d5eb8f100eca7861be3251d3dc5b178156b368f6eVirustotal results 20.90% Heodo
2022-03-02tIm1YnOxcUz6hVv5fE60UaKb.dlldll 4176ad51c76ba8943f4e8c4f8e9eeba64f8f1822398784e43d7ce243af8949ebn/a Heodo
2022-03-02vMbn2gxHkfwoNe9XQDXNhoow6k7pp.dlldll b6dcbb374223f209fa9d9cfa7230711139ff3ea9c97b891d6a86f8d7ad4cccf9n/a Heodo
2022-03-026JX8U1ZGrN7mqeROa4P2WIzeh.dlldll 809c1b6d0f5e8f48db5a9f973292471f3e3d90a0da4554a81c38f2ad031d955fn/a Heodo
2022-03-02U6kRoIM.dlldll 14c64a28349a8d2d57e779256f6075c0aa6c8dce53927b90720ddda00e6d4d95n/a Heodo
2022-03-02I100WIYAPvjIaZu57sGuJv1mssMAcC.dlldll f65c2454a6a371d6bf13e9b270509539e6161930f7890c3f69ef8676fc9e6aa9n/a Heodo
2022-03-02Ja7trqnNsIHpI9FtDMUapiYO8Y.dlldll 0d766586aaa08dbd1eaaf098f90a29764268dab065806aed1fada0f16b2f9003n/a Heodo
2022-03-0213cOOZwXqEc4ydveCRNIX.dlldll 876ea0f0b7ab190fc4f8fc31b53c27fd7d155104a858f8b6b70e811e1b09f4ddn/a Heodo
2022-03-02nyo8dJdoglWOdwcOqyCPo9ZVFGlmagm0.dlldll d9ac728d3a7022010abd6b3464faa02237e48c996f0ccecdb0da9cddbde3e869n/a Heodo
2022-03-02tNAzqsDI8KB9Rd3Ccy6669v8rKzL2.dlldll 9e81bb36dc1f03087c46c1951c0478df58c962dbda1b8e4c231eea351616c4efn/a Heodo
2022-03-02Vs5V2KI5yL93QCi5dHcfEgE.dlldll 72126304165c97cb0fa791fc0d6a9de613eb12a0f64a0d3c6a6798b4f395c96bn/a Heodo
2022-03-02giNERClwxPgYmFIlC.dlldll 18b92cb57603f9042057cd0d4f83f32d45b11a624bda0a8eadb276efa0c605e0Virustotal results 13.43% Heodo
2022-03-02v2GtSasxFCiQXxh5QvinZ4y.dlldll 3299f8cdebe5d4819b2239261e377b0c9df7cffc1653b03d1f3fbbe86d18a523n/a Heodo
2022-03-02IvbKU5h9L5Vn.dlldll be638af3b114acafc067d3d83c5ea1e03d930d10b4092299c9d826f5c864bec3n/a Heodo
2022-03-015HGzeZrkvNhdUiZaNNOLzE9ayUTf3.dlldll 2512839d4ee4d4481a8ec81cf9f022099d48f143b66466eaabace59f19dcd3c6n/a Heodo
2022-03-012cztnk9WmB5vGzQHc01kuFrQwIiZMoORCyR.dlldll 0c68f8e5cdf402ac816b01ce792d56e7a2ddd3d73083ee1f92dcf21a06dba539n/a Heodo
2022-03-01KLDCyUYi778y4RTqx.dlldll 9902e8f85bd550b2fbba70a27fa9356861508962e90088d88a0c4b2f325807a9n/a Heodo
2022-03-01TZiYYMK3p6TlfswdvW74D77gRbf.dlldll ea28c9d3f34fb05730e7c78453f8d139818b65c922e8daa70ce733151786ac74n/a Heodo
2022-03-01eu9kS60AgUEHrPG1gYe7eR6KsjN.dlldll bc3e4626f797f42f5867e032632f38d5f7bda912166eed49336126da6a709858n/a Heodo
2022-03-01iO2Ci472huWJYejETUmsuh4LOf1R.dlldll 54039f2b0edbb37c7dce5e5c06b47c704df77cffd57ac86300cacf012977b360Virustotal results 18.84%Heodo
2022-03-01LYfCyeG8TzPtJw4jCZfcZXKgutBR9tV1yrr.dlldll b0badfd88cc51f7fec4319cfcea11642f1caf63bdae5ad2f902b6fe60da1840en/aHeodo
2022-03-01M6COp5DxOZeq0iWNwU6cCVZu6zr92pRihvF.dlldll d1dd7f76b283293f573c1556e67ac1a29f771a518ab47da60ee13518e39f7680Virustotal results 19.12% Heodo
2022-03-01PYfX0I9DRP5NiOsVe4SFwpMV.dlldll 33343227a2f82330e89d0fddd83a73d8afc5a643f9283ed0d699eb34b9a71611n/a Heodo
2022-03-01vFau8ZTMCgoQzD4EmaP08TxkFQSh5y.dlldll a4f275d3bf4ae4c508f126b18fda7921e89bd57e3b37e3ba468e8d8997035bdbVirustotal results 20.29% Heodo
2022-03-01VNhm3gumz48aUrl303Vii.dlldll 08db1098255cf4dbb837375f9e466767b46848c17cbb4ab978c680bf95201c93Virustotal results 19.12% Heodo
2022-03-01aDfduU0hig4dnTtbaWAfGG8YkK.dlldll 1575f820d27279c4bc55674d7c891852145c7790b81996feba58642fc9f6ec98Virustotal results 20.59% Heodo
2022-03-01JI2LD2ZW4e6Wk.dlldll 9ad550d977f66b384f2830f2ddc006e80ceebeb9e9660a27ec2c7fe8f522e338n/a Heodo
2022-03-019ryNThMRkKHHAY.dlldll 4445aafbb18a70639f244357e2dfbf34d14a56368c32bceff87d3d6070f767abn/a Heodo
2022-03-01CXWBFQ.dlldll 16b84ae010a986ee2f710461068367c18e5f99e481cdd4d263165a4aca333495n/a Heodo
2022-03-01TVP61lCgCxZH1.dlldll a214e394d26921ab261c1fe683313cf915ba67872c1fe42eb1bf7154e2f5f1f7n/a Heodo
2022-03-01TPm66AeWYq3Khd.dlldll c8dde39d3b3f41e849ae98ee35f8281ed6b5bff503ae165d67ccbda999d4fb5cn/a Heodo
2022-03-01yChVz5YwIubcdloQu4mSuy1T.dlldll 7a133e8eacab9ab7b07f44241666cb882293b252235ae497de4c0da03dde287bn/a Heodo
2022-03-01ir1al2liQKBfH9MsWXWF9hYbzL.dlldll 896e4978a9bb2cadaa7330d54af4b437ce10850caf8f91fa90d806f2b60f076cVirustotal results 15.94% Heodo
2022-03-017VzYtlZEjdEV0V7y6gD.dlldll 123f0bbbaffb8fc6076b3c49aec7313f8387c8382aa0ff24339de1586008f2c5n/a Heodo