URLhaus Database

You are currently viewing the URLhaus database entry for http://congresoapp2021.com/u07di/wkdehSgS/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2074599
URL: http://congresoapp2021.com/u07di/wkdehSgS/
URL Status:Offline
Host: congresoapp2021.com
Date added:2022-03-03 21:21:10 UTC
Last online:2022-03-04 16:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-03-03 21:22:13 UTC to abuse{at}godaddy[dot]com)
Takedown time:19 hours, 24 minutes Good (down since 2022-03-04 16:46:57 UTC)
Tags:dll emotet link epoch5 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-03-04VQvt2snTjVnUmPt.dlldll 056c4d1fb0dda7adf791c6f48172b36783deb0c78409bdbc6149682e87d4c737n/a Heodo
2022-03-04n0VtxOeIqRNx2nIH.dlldll 2870ba364f500c4e4d4698e40097415968d10874ff371e5d55e2e803cd9a0fa1n/a Heodo
2022-03-04Cwwo65S.dlldll d1f537016f1866af5cea43ad88a606ff542a4fcdc5776eec1724b48c46e095d7n/a Heodo
2022-03-04YOLQ5Sscsg64Eoybp.dlldll 719f207485da20e44aadcbaa66caf4f1a92361583fb71d760406727e0837b686n/a Heodo
2022-03-04IoVu9zu83E.dlldll d179379d2fdd293314a1a3d6505b92ce466690a30eae44bd8064549c487e0094n/a Heodo
2022-03-04FJiz.dlldll 889d670aa8bcc6b9dd501f0811969fef5b9c47a686416179eebe32d58ed24ca7Virustotal results 17.65% Heodo
2022-03-04yX6PnG.dlldll 8f19812c33c593ca656f92fa6068d4b11f5419687520afb465c3f2ac327b643dn/a Heodo
2022-03-04DMcO.dlldll 4f28b88c53a75d089b300f76f1340973bbe7fd79fd1d55699d471d72072001cdn/a Heodo
2022-03-042xDlZ.dlldll e7785bcc96d4e5b080679cbe73a3b87737fda2ae1d1a29f8e9ac559089a8a435Virustotal results 16.18% Heodo
2022-03-04PS6Q1rv7A5eH.dlldll 213e72382d528000e7fe3667883c857aec14436a72a425191be5360e4408309en/a Heodo
2022-03-04XBtFtKaG6Jk.dlldll 41ada9e135d06981068ac394850ad89b105b493765a0b14df86663062c51a6dcn/a Heodo
2022-03-04906gN0uM6WrE9.dlldll 2ecdcfa98aaac543c9f7b82c269a7a676a48fc0504fe897839b0009e283fa3f0n/a Heodo
2022-03-04hCFbA76gsJYvdjh9WBC.dlldll 4e0efa7ea47394faa9e8549dcbffd4c191e5e8f8d0826b623c7b560722b30da0n/a Heodo
2022-03-04xJ22KdTLJ0US50a54Z.dlldll 1e9ab63c7ed1e57ea7245b9117f9c513dc09d00ef99ca0b3d6a410c4a30d1938n/a Heodo
2022-03-04KodzgiUxV3SCuyAI.dlldll c0fd44b8bd31f979e1373a0ba25b0a1201648d09b3cec202ce0cff9f7e854a8dn/a Heodo
2022-03-04VHVi95Zss.dlldll b8dedd5eb3f0301262b8bf2cde048142190edd3b6785a256416ee49bb3ae8b61Virustotal results 20.90% Heodo
2022-03-04HzMV9RJanbhn66In.dlldll f1561f15b66db87e686fa088851245d3b2f9986cfde526cc91768b29c37b24c2n/a Heodo
2022-03-04XWes4Qa9KcexyJKysaU.dlldll 60258e392ddbb1cc05ed7fed60c794db104e8bfda52ff6f0d1ae0dbd35c9f300n/a Heodo
2022-03-045vq7eOu8.dlldll 0bc65c21316821f39121790ae90fc296838ca05f59a7bfc014991d6bf9a70d84n/a Heodo
2022-03-04Un8SrbLT.dlldll 7ce4221f935ea6b4dad757344e953876125a08f8176536e2f324988e1bda1659n/a Heodo
2022-03-04dVYtmcPa.dlldll 245fd614880f37bbe0dc04d46853dd824b4ee8222ccddd4e2f92ed73f0e41df3n/a Heodo
2022-03-04DpLivSv7.dlldll dac16cd782215cc838bb10756847aa87c7a20174f62c478c97c7da3d04119c6en/a Heodo
2022-03-04P5KH19.dlldll 8a9b93a0d896419cbc5f3df0d02182e6ae5a717bfd10ae620dc412e011b320e8n/a Heodo
2022-03-04kuKif9fYnC.dlldll 4968a7421ab495da9553d9406df0ea4f5aca9339654f0bcb1d3f844342b42348Virustotal results 14.93% Heodo
2022-03-04HXShULMYMiLaoqUaCN.dlldll 523018d1096dabfe9893ac13dc25a5e486727b9c624123c092e7b4753da34532Virustotal results 13.24% Heodo
2022-03-04njwxGI.dlldll 670cf45d916ceb5ef8747a143d3e2ced456d1423b4defbf62ee0f8949f0de2e0n/a Heodo
2022-03-04cEQ5k.dlldll 9a5a3751b63411ef93721cbd900ac5c5a1bebaa5c5917660b23d5313ca03d121n/a Heodo
2022-03-04vscbuBViIvLUBvXnM.dlldll afa7c6b9376f785a3edede509a5e08809b8153cc1376a704900dde76908772efVirustotal results 11.76% Heodo
2022-03-04yUyBspYpqgy.dlldll 7aabb1fa6288f4590ccd9f8ca9b356bbe7904c98036bfac077f3704d26826e79n/a Heodo
2022-03-04xa5YYoKXfLy6tITT4je.dlldll bda84949863f009d00a5fe4d207f8c8940309b29b3914315d881c0c20178b6c5Virustotal results 11.76% Heodo
2022-03-04FVUXH.dlldll d1b4f4a8ed0fff5f9228445800b294ac7567aef9254237c26d2d1555378632efVirustotal results 13.24% Heodo
2022-03-04Znb5zIVBlJyuR9o.dlldll bc29147a80dcfa9c653c49f56a972f8486fc14f1e1fd6e64fddee21757952d89Virustotal results 11.29%Heodo
2022-03-03bVXvSxuSClHw0Z.dlldll 1eebc0f3d0cc08d06a2af0fa50d76eae7c650cbf258b503de1139e1b7e654d16n/a Heodo
2022-03-03k46FTHXi.dlldll 3108323cf0ece2415056fe45f91535fe02f16e43f1e012f20f41a4260c101da6n/aHeodo
2022-03-03ULE0aRbPRIt2cwW4.dlldll b8c9eadae37f17aef493d3a30f26aa423ceba5a7aeb62ee4bfe4645f369d6801Virustotal results 8.82% Heodo
2022-03-03yPUAxtfjGIyLfNt7m.dlldll cecf4928f601907d6fa4065c345ca80159e944c2d71d36509f68dd40dc9e0e46n/a Heodo
2022-03-03VPQ6kUUTVZctnBXXXe.dlldll 3b71b95808f69d9b7cf78b04152d44327761519da4ff094d3ed0c1780d0a7670Virustotal results 10.14% Heodo
2022-03-0367dzxZ2BAnlUQ73K7Hy.dlldll 73fbbe76b644bbb0e29a819d12d8bc737da794797f2e8f691ecc9a765e3a8862n/a Heodo