URLhaus Database

You are currently viewing the URLhaus database entry for https://winnieswondersaviary.com/wp-content/BNzK17qzh1WQm/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2075421
URL: https://winnieswondersaviary.com/wp-content/BNzK17qzh1WQm/
URL Status:Offline
Host: winnieswondersaviary.com
Date added:2022-03-04 07:10:09 UTC
Last online:2022-06-29 13:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Status unknown
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-03-04 07:11:10 UTC to abuse{at}fasthosts[dot]co[dot]uk,abuse{at}oneandone[dot]net)
Takedown time:3 months, 27 days, 6 hours, 13 minutes Bad (down since 2022-06-29 13:24:58 UTC)
Tags:dll emotet link epoch5 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-03-06WC7OIWUsk3U.dlldll d465a5069738371d0a911a27dd41ff95502742b43461f32d3252bb149f211356Virustotal results 43.28% Heodo
2022-03-06BtKY1TkTx.dlldll bb4b121c8e5d8b7b19787a40314f7149f1a89715d63bb47253b9ee1e2e9b95c9n/a Heodo
2022-03-06IIH5.dlldll 200ed98fd9a6e44f4351213fde3982c4e31f3ecc8b6c55b3bd09ca6aa3bcefa9Virustotal results 40.30% Heodo
2022-03-06g3j.dlldll 045b959d6db6a8925bd737edebfba6a7c7245f3b5cac1f4dfed5e860e6c478edn/a Heodo
2022-03-06uKxDk13y39z.dlldll fb9b03c74d145c544c55b67f519d1bf3cbe4f8bda975449ba0be5bbfa0915d72Virustotal results 43.48% Heodo
2022-03-06QmJXwKqtEi12EVh9T.dlldll d4feb82800fdadcadaa8c387d6fec5da29764f648901ee97de469cfd9acea6e2Virustotal results 43.48% Heodo
2022-03-06WZK.dlldll 145a9236160e6fb0ea1036db4e0701d198e0be5368f2d4075234236dea194feaVirustotal results 42.03% Heodo
2022-03-06IybkWWj3APhjtuuuq9i.dlldll 9d5a4d8b489ec0d3d4bd4a65a8e84a66ace8d382da39b850f598836d65fbd71fVirustotal results 44.93% Heodo
2022-03-06GvQ0U5bbNtElJqeXy.dlldll bdfd2237447b4b7ad98d797a3d3faae1648c5961dc15ed338fa198005edde8abVirustotal results 43.48% Heodo
2022-03-06Oe14ZoR.dlldll e39f44fc6fa6b5665c938853757d569e1ee9d0450c92c849ed61d9a6660fe1eeVirustotal results 45.59% Heodo
2022-03-06YSM799x.dlldll 0fe34cc07cb5dd81978b3451e02243b0336efcfb8648dde1006c64c7bee30329n/a Heodo
2022-03-06f8A10.dlldll 9e15992071b3b31ffb97dab0d70b08a1d15577d1b2cd98b46aa215cabdf86cd9Virustotal results 43.48% Heodo
2022-03-064okCiCp.dlldll db7465d269cbecd3590f27da01675a69e8ce221f3b236fbab3e7e789b3b3ea94Virustotal results 37.68% Heodo
2022-03-05qxALio3.dlldll 5cb0b7fda36aea026b9f3baea07e2ec47ce719c94c4142c5849eac2844dac7f1Virustotal results 39.13% Heodo
2022-03-05u5bY55om2V7sezBy4x.dlldll 3477ead0cbe25c15be4d9d7ff19475ed23a25a8a2e9e8aa5483056b69ed11f32n/a Heodo
2022-03-058ghn.dlldll 7ee5421ef71777f504fa799d27c18e2f0628188d3d13384de8c8e8bb7bc612beVirustotal results 39.13% Heodo
2022-03-050VVLm9Fmt1fc2Q9lU.dlldll 52cf4032a87f63ef63f013af7d148353063c30db15132fe7ab4048ba517d92b0Virustotal results 42.03% Heodo
2022-03-05ZrIcOzdj3UTNiOkFkq.dlldll 644269d39bee6551210e54dc9e58b27164d989a5b0db7b39b9aec287e4adce2eVirustotal results 40.58% Heodo
2022-03-059ilBnWLVrGGJ.dlldll 901e7b78ec921f543ce415d7740877cd0acf9a995c5b27a151d6f9299255d2e6n/a Heodo
2022-03-05DkJUekuy3uj5gj.dlldll 0b7acc16c4145a13f0a2bce0ae453e610ec418d7edc5a58be479a3f7576e41a9n/a Heodo
2022-03-05mJcuTbBrj3W4S.dlldll 1575210c12b83d1ae019a2ff989b14fa3e9b690272c2898600f558f2c6150478n/a Heodo
2022-03-05jfrPJEW7y.dlldll 18512a0d67cc5f8e96b72ce5277751f4b26b356eacf9fc10fc5a59ea59de4ea4n/a Heodo
2022-03-053C4A.dlldll ee5884307e3968b14c848555cfb43bb0c5660956aec27a6d8916939339ee0e1en/a Heodo
2022-03-05cJYaWA0Pm.dlldll 5355369c373fda9025eb09a83b8f98497c3371ec32f4d5da995329100e97ca05n/a Heodo
2022-03-05VEthmxpXirmvY.dlldll b861a9a23c388ed1c48e99c03c845d2d172ef6c17cbce7a9138b4c3be72433acn/a Heodo
2022-03-0564rEx89I5RAgq.dlldll 9ce1f3fb60ba78cb70f7d443a30625a74e36a8047b7f8f6159efe878d0097035n/a Heodo
2022-03-05UtQY34TRUl2nwkX93QK.dlldll e7ecaa1349e7f9f1d094fb6ef3ebafe62fecb60d3e6560b9fff0e8856f8aaf25n/a Heodo
2022-03-05yCz.dlldll 5e30d3fe5021f67db7bee5e1d10a6afa3eda84414dc8e2329334d4a514aa7a3fn/a Heodo
2022-03-05Cx7CZvi.dlldll c4c18a63eb64c0d18cea479bfd94bfe8531ddd658cd94d3a2a62534f098227d3n/a Heodo
2022-03-05KTExcaFuJPmEi.dlldll 676a0b5b2cca60d63d437670f9e2be569d178ad032e3907522f5cb3155663212n/a Heodo
2022-03-05UZ4j.dlldll ff7d29c8123cb3c1500bacd57dd3f010ceb2837b6c446b464705110482a6ce3bn/a Heodo
2022-03-05NNzr.dlldll 00719e310483cd6cbeb1c0584bbb432f17e7e7e55c6508d61ed1a128899f8ad2n/a Heodo
2022-03-05hRiI0NDVRoGuytQqnuz.dlldll d864372255bd17eebcc0ca4e66e2e2a55515f8777cdfbfafe2a9da45fc66fa72n/a Heodo
2022-03-05Z8b8qwOWiY.dlldll a9e83557928326e2831aac272130eaddf557442301f4af1d0a9134983a8a4c88n/a Heodo
2022-03-05lPKaUz6v22E.dlldll d1ee00b0543d8869b9b07d9533c30f195ca023ed5cd306487763f7c2a9cd1be9n/a Heodo
2022-03-05f5RY3oB79J.dlldll 17f99823cc750f535bd6697d3e76a72d8a78782a09c36b1b61e6ff0b1e33fe9fVirustotal results 26.09% Heodo
2022-03-05ROVQ4SIMYaCP.dlldll 4fdf13f108a12774d19ae1d0b372f7a3e814b2399f95c700f14feded7f8f9657n/a Heodo
2022-03-05zXL.dlldll 5206e8d7fb30598e4b7f9e2d1c711e9e75e2370a26ae0e56d07c57403b726bean/a Heodo
2022-03-05EdzdQgXTm7fFefT1S.dlldll 9d4cb26c9d552bed0139bf8489a54c772d81548aac0826d5b78e23bfd96f1e63Virustotal results 28.99% Heodo
2022-03-05jP4tugt8AnO2fYb39.dlldll 3108bad0d8ee3b6ea76f21ec5aef3a4a29d75413329457770b8a3e9698bd7e8eVirustotal results 25.00% Heodo
2022-03-05mrhFAuURMCZ5P.dlldll a8cdd0175833ae40ceb3b1850bebf9e694cf6b7ff2e750d20fe07dfae8e80968Virustotal results 26.09% Heodo
2022-03-05ZAB.dlldll ae697939a450f563f698acbe18e9c62d7ce85e8f0684f185eb5fb28ba8a67e45Virustotal results 26.09% Heodo
2022-03-05bz6lOCLVqI0GntVvJH.dlldll f5059fe0d7fd71933d87803ab040c3101e38d14e64519a7f5ade259e6bf5efbfVirustotal results 27.54% Heodo
2022-03-05ifpOe6.dlldll bdf10d86ca17c7c7237ce9ecd0f9819d752c76d166a894588d25e28328e3dcd3Virustotal results 24.64% Heodo
2022-03-05iYtFemzuY8tbG.dlldll 39b3b5019d4c217761081545a572dbac2979e4366c49029043e751ac1c26114bVirustotal results 27.94% Heodo
2022-03-058ls77lCWijBzj1p.dlldll 272125148d41b44c2d5676c95dac842298e24cac8f968d22ca79400400471be2Virustotal results 26.09% Heodo
2022-03-05GJda9PHLq.dlldll 3a74bce8a0884033b02940bb6e11dac700f7f6902d199b4ce73197acfc271c57Virustotal results 26.47% Heodo
2022-03-05bm62d7vse9zfan.dlldll bae027669f912f43e01da6dd211868e21f2f06f27d7e4af4b44a19c80f9f738eVirustotal results 24.64% Heodo
2022-03-05aANb.dlldll a10db50cc5fd6217323a7f59d096d7e6da5aefe696cf6fd6b58f58e9be68ff55Virustotal results 24.64% Heodo
2022-03-05Lay1G6gPNSj24.dlldll d8e69566d855a93766b142150358b5e33f339c01c61c5933d13a31e6fd8b96cdn/a Heodo
2022-03-05c3ndpUP.dlldll 906a5f828717438765e946d69c86cccbc63920f73242417959a12b515e02b311Virustotal results 18.84% Heodo
2022-03-05dAXmRoVMI50oJg.dlldll 46960682b7fe76b778d6d3e125c0b579bdcdc364e1e1943728208946140b56een/a Heodo
2022-03-05D3jwLNrW6NDJJz83qV.dlldll 6495467944b04812afcc48d321ce58adfa74f007637eeba6d475e50a91ddcf7bVirustotal results 19.40% Heodo
2022-03-05bSxVSPlkaJhV.dlldll b81d3f498c0eb6685c656eba2faf8f4cbda0ba73334af5214a7dbef2b9a27cecVirustotal results 18.84% Heodo
2022-03-05mjSku9V34u9J.dlldll 83a3df2e5ed571219193e4e953f0a7f74db38106544459495fbf8a562bd71afcVirustotal results 17.39% Heodo
2022-03-05UcYUIRPsxPcKPQx.dlldll 651abf4707bdb9537b4099b51dde3f1a6a27a4a1ebdecad7285d84ad453a0743Virustotal results 15.87% Heodo
2022-03-05GaZUxBDJHVf4Al.dlldll 3df9c6dac7193a0ff543848d89c84009f5959204b3700f5976f93fca06761143Virustotal results 18.84% Heodo
2022-03-05aygeXBMJuNneaqV.dlldll b849546064becfe8b0398e6a596fecb927c311ddd5951c8abcfd3b74aa641ecbn/a Heodo
2022-03-05yvnNWLizg.dlldll ac1dd140d6d2194617deb6d6d1e2f88df89cac7e394d6fcc31d6b33108450be4n/a Heodo
2022-03-04UgXVMqk4FBVz.dlldll f1befc7e5793eac900b1e2f94a9152eb5ca2b8b84a68c5f629d0013ec37ef66cn/a Heodo
2022-03-04wn4.dlldll 10cf0e2f906c7190501af4a24cf8a65195cb302ef422e09fe4d007334bd0ca71n/a Heodo
2022-03-04a8kmucM0yjt3nyYyZvM.dlldll c1e510c8371ed363d2676c814b7416ca8743cad24e514c556e862a707511288an/a Heodo
2022-03-04RnmRfdw.dlldll cef6526792d70e7c69b8bf55e1ae10a220b2fa4fd4971b8524362bad96f3d363Virustotal results 15.94% Heodo
2022-03-04boQoXActQLPI.dlldll 77c9f7b0da65ac2ca05b637bb9732ddb3b91fe8c5df67fae02b61718f5ae92faVirustotal results 17.39% Heodo
2022-03-042cy5UIygfKBVBMHUD.dlldll 4498e8c5cb515446469de95ba6e8ee49a8e62b413a374de1e2fb772f5bd9b77fVirustotal results 17.65% Heodo
2022-03-04JKk6ivOVDTxY.dlldll 2ea74aaf19aeee854ec1cb645119189cb7d1187fa01f536212974aff5752f1c6n/a Heodo
2022-03-044tL4utdN4HIE.dlldll aa2759e416f0bec306a64cdaee3cb6c5eee0f88205de853b5cfa3cf664f22b8dVirustotal results 13.43% Heodo
2022-03-044JiNyH8NirtWhHtjWaC.dlldll fec7395c72d6c7a65ec0056c25bf182cf587523f063c2d571388a5b5e3dc618fVirustotal results 11.76% Heodo
2022-03-04taIXqJvIJs5I4.dlldll 7bdb4db910b69f0bc85d5cd508a40a2ecfe822c48a05a605ca6e42add8a437b2n/a Heodo
2022-03-04XNv.dlldll 66b0914dcb6d518ab34aa370ac38f1e7cb672cb37ada59c3c57b4e23381009daVirustotal results 11.76% Heodo
2022-03-0475xgD1JfnLoj.dlldll 95401b1a5cdeffa4207f9450302cb242a1692e5cd15ef0abc7ad5774b3d3aa01n/a Heodo
2022-03-04IxA.dlldll 0a4720f5305b1516929d0bdf5059cf5f9e37be92b1e05307bce7a6ef88be8a25Virustotal results 24.64% Heodo
2022-03-04wRLklT28.dlldll a63946f2fa1b9e9251598f1e63f281ce16e75dfd0031b85060c6f98a5c87f6e4Virustotal results 19.12% Heodo
2022-03-04Oen3opT2.dlldll 0bb1ccdbecbaa278428c1fc847ef7f0189fac8f25a5e09e2f00a456b1199fa86Virustotal results 17.65% Heodo
2022-03-048ecsSfZLlR3Z4e.dlldll cf8cd4a249246a38f727cd7dc6994bbee80e4f0024e17c8345d5d535f0610b99n/a Heodo
2022-03-04zh9aXXqDRxgphuMg3.dlldll 8d4eaa0971667a6765a16de3b54ad92535abe5d43d79bf831dbc7874e1b14b42Virustotal results 17.65% Heodo
2022-03-04LWxP7DG8MUX3C.dlldll e71d3a67d9a8535dcf84037ff77a31809f917785085789581058b09e0af7ed1eVirustotal results 17.65% Heodo
2022-03-04AdMk.dlldll d0b4e15e9abc81eea514f5e2b0bdfbd5f9943fdc03f907fd1192609010f3124aVirustotal results 16.18% Heodo
2022-03-04Pz8u0mPxxMuvvm5oX6o.dlldll 1e73cc40e800558d120849a8bf08d3be524dc87d13ea72c77efc88bdf0e8a7b2n/a Heodo
2022-03-04X6PWVLbqfhVJFV5o.dlldll 5536ceddbaa4755ca99fe9a777364e41cfe066c7ab1bb66c37273f723d980638n/a Heodo
2022-03-04JreXdHswuWrcOFsl.dlldll 5903ca632e9b22e3a11cddea9d4ff7652742fcb7589e7021a0a2da7f33124d9fVirustotal results 18.03% Heodo
2022-03-04rbE1VOX.dlldll f8b6ab7c462309054730cadda7afddf9c1b1e302cd4ea620d3203bbe16338eeaVirustotal results 16.18% Heodo
2022-03-04f1OlcmCAPJibN8N.dlldll 13b8ce025fc14e7eea42075db7fb5a992da189fb1023eaaca62edcda78c23a35Virustotal results 16.18% Heodo
2022-03-04sUZBcSUvhA.dlldll adf6bf98cd0f4f0ce3843bf0a944a8e0830abdf27fe321b9d49446f8018bb614n/a Heodo
2022-03-04CS4.dlldll b4036ad170754051ee2c6711c7fe303773ad02b10d1c599b21009d1e19f12aacVirustotal results 16.42% Heodo
2022-03-04jev.dlldll cf1a5aa32d5a1646d2c2d77eb39b36cfc99bcdb8515cad0754714eef563bb210n/a Heodo
2022-03-04X1P39g.dlldll 77eb9a7c059af97c5bd2200fd8f0c83e580b0f7120a66e4c428eb07e38062e1fn/a Heodo
2022-03-04dWy.dlldll ba4f47d1a914bcfb4605e60af2f6cde3d5884b3180665a05209949954d6af0faVirustotal results 13.24% Heodo
2022-03-045FbXYYt4.dlldll a3e906762e7e73b85eebe914e959664879565bf49778e353b19ee86a56cd7fd9Virustotal results 20.29% Heodo
2022-03-04JNPTVyWS.dlldll 383a1da51724654ced978d5cb1f86551ecc8f9cfa890453ad42a0d6896dcf80aVirustotal results 21.74% Heodo
2022-03-04oHc8.dlldll a14b093a2a076c499c614d6b9de8e7ce3b1433d1a244a8cec5b7af24a1505957n/a Heodo