URLhaus Database

You are currently viewing the URLhaus database entry for https://rjssjharkhand.com/wp-content/ZddKK1KEaCO6BYbS/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2075423
URL: https://rjssjharkhand.com/wp-content/ZddKK1KEaCO6BYbS/
URL Status:Offline
Host: rjssjharkhand.com
Date added:2022-03-04 07:10:11 UTC
Last online:2022-03-04 20:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-03-04 17:04:07 UTC to abuse{at}cloudflare[dot]com)
Takedown time:13 hours, 4 minutes Good (down since 2022-03-04 20:15:49 UTC)
Tags:dll emotet link epoch5 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-03-04dFqbO7P5NOdbOxUU.dlldll 3046d2683a4ec4c3f0a525c8c05106125959c5a089d2ff017cb0c995e7bb7964n/a Heodo
2022-03-04NYrZ9Y4BNNjO.dlldll 8ee7794a78e55148e05636d1cdc8b53e3afb468deb7a88d1e5c4bac6d4f21edbn/a Heodo
2022-03-04dzqC.dlldll f0459e3a0e2dd9e4caf5105104fd1dc1f9be02a914fe3b6569bb733067f01b8cn/a Heodo
2022-03-04BDMR3Bs7COCl.dlldll 4141fde493ca91d62d70f86b14fb34cfd2b16e10693d60462693f888ecdb3ac8n/a Heodo
2022-03-04kGeeKSp9f.dlldll 53d0f5aef41534a94255b210412ef3c0dce3b8cc6edc83e0954eda2ce8517f11n/a Heodo
2022-03-04sPDH2RRyJpbKQ5oO6.dlldll 8dd959f138069b12ee730d89ec1dfe42a5375bc92f70d015449c0bb834c9ddc7Virustotal results 27.54% Heodo
2022-03-04OvLXsSzY6wK7.dlldll 4da829e320b89410f16eb1d2e74604c5e51cc0e748e111976ec4da7822ad1929Virustotal results 22.39% Heodo
2022-03-04rrw5PpOhh4TL7NufR6.dlldll cbacfcaf4b16ed8e6c90c8ec26d814062d0955d9d93570aff6b736e0275f6ce4n/a Heodo
2022-03-04U98jZxjnEQeZYDncDz.dlldll b959b088181fa2520655fe23cc92366867ffe5b8aea5012598df9e0e52c200c1Virustotal results 17.65% Heodo
2022-03-04AA7uDCliZunVIh2tnEW.dlldll 1290b09868e15b43461f6b73c13715cbf3b3e0a0b35649f3d1b9275a42a7f987n/a Heodo
2022-03-04SPApL7wdD82je.dlldll 119ce98ddddd387783dcb06abb034b4ba6db3d09832bbb89caaae96ebe3be8b5Virustotal results 16.18% Heodo
2022-03-04Sq30Fs.dlldll 7365414cdd7b0b2eb512794b8686c2d86ea1eaab660b00d0a590ecd55a63b539Virustotal results 16.18% Heodo
2022-03-04IE8Od7w.dlldll 63f56a1f2e6482bcecb774b335cb5fdb2628b3fa04e2226150ea0431bca0b720n/a Heodo
2022-03-04VYCFqc9CkF0D8IEozq.dlldll ad8e9f82195b960fed2f9cbad84aba3a588a5490f730844d0200d309557b2badVirustotal results 16.18% Heodo
2022-03-04kXiGgUOq0eD5JRw.dlldll efb40becfb19de85d348f277aa9814684697fe7ea3fdc0144d379a7a1cd082b1Virustotal results 16.18% Heodo
2022-03-04s8RRAccXqKYPqQz.dlldll 23e7f2897b5431d54628940d7d26e3bbd664c4f71603810603b561b48acc5cfbn/a Heodo
2022-03-04v4E9AQT.dlldll c667d815e8d9391dfb58873c3c8a17aee24a36b1c8a3759e0fa2b0ea6300edefn/a Heodo
2022-03-04utwiMZ.dlldll 2fd3e282beeeaa26eef171e4f5c2942f7c18578f281256316aa29cef64bf3c10n/a Heodo
2022-03-04QqIIt0tKyqxUcHMv.dlldll 352d1d6bdefc7ef2d64c460b017f8d80186bb40f25d927f0775861dad3d361a6n/a Heodo
2022-03-04jyt2Yh66GRJ6h.dlldll e0355a719c006872778116fae544308adfcfa88bda2f1acea6636f4e79ace4ban/a Heodo
2022-03-04H4cxNWZGPBnWFEhI.dlldll 9c2451a0d76c63ac2242ba44a7de99cf5c73c47dfe6170a37f569df09dd60891Virustotal results 16.18% Heodo
2022-03-04uAgLGaRREimP0.dlldll 9b52db50ed58f98587df12f59fff3c7728df50beebd4230201db49f2adaf4bc0Virustotal results 28.99% Heodo
2022-03-04nOKBr0xJRdRbHELii.dlldll 02cb5c74182ca5b4f2fce0394525f49302cc01a8f412bfe3eb64c6418a310100Virustotal results 23.53% Heodo
2022-03-04OMCCdeZ.dlldll f5470dad90b5ec985b57876e06069a058f9611b115ba41033187ff913a493eb9n/a Heodo
2022-03-04FCmHsO0c0Iehc5i4ny.dlldll c1cba9a29104a34f12b1243c0b3b11965aa269b37075cd19ca4e45a710cdc482n/a Heodo