URLhaus Database

You are currently viewing the URLhaus database entry for https://www.afyonmagazin.com/wp-content/DcnLRE/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2095951
URL: https://www.afyonmagazin.com/wp-content/DcnLRE/
URL Status:Offline
Host: www.afyonmagazin.com
Date added:2022-03-14 08:57:05 UTC
Last online:2022-07-19 12:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-03-14 08:58:07 UTC to abuse{at}ihs[dot]com[dot]tr)
Takedown time:4 months, 7 days, 3 hours, 42 minutes Bad (down since 2022-07-19 12:40:18 UTC)
Tags:dll emotet link epoch4 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-03-16O4QQiRKvDIje6Ny1tLTy4vOYbq.dlldll 93b856ce171764abceb0f5ab477482215a65f7bfe108936d6a7345c0de80b39fVirustotal results 28.12% Heodo
2022-03-16o1RC4QWrdRQjTk.dlldll 57df0d40a1421afee476d72973238ebba3c78b88761469e3c7f23b9299892f93n/a Heodo
2022-03-16zSNHssbEHZEl2lcCAGVwn9FLPjkBFSbvEN.dlldll 01e5de2503e5e662887112e5b5356c048b49cd0bc3be287260a161551345b8b9n/a Heodo
2022-03-16BoIKPcAmdGY.dlldll 0adb9d550915a3fbb80c016307ca03fb80feeca50edab2c7a5083f0608507976n/a Heodo
2022-03-1603h1VjL8qtQTWdUBO4AZlmL.dlldll 0d7c1e9ba76c42bb6c233b55a724d610dc00e75b852b2896ed251ed9ebf1f779n/a Heodo
2022-03-16h6kjeh8blF.dlldll 0bfb4de002569272cdd83051132cf2169eabca0d467e186c38e6ad37387c93abn/a Heodo
2022-03-16ZupmZu0HzPnxrLr8.dlldll 13949c28bd583df58a711a78498ae8b7ecf5f3abf6ff5512784d7b84df6ec63bn/a Heodo
2022-03-16oo2zopegNfisb7.dlldll b5766cbc4467079b969e7ef8219541b4d78cdc7b96107e6d23903e11caa4d37bn/a Heodo
2022-03-16naNoj8a.dlldll 05981f487b2e5a9568e22a66f35269c268bd928610b988dcba007e89b210236dn/a Heodo
2022-03-15EA7psJ6LqnahH89r2.dlldll 2fd9c2be0248e6323ebcfb7461604abf7798b0e2eae7a180c6360725cf36a4c3n/a Heodo
2022-03-150Z8fANI.dlldll 2908e6e95b6c14de3caa398440f7dd5eaae60bb11bb9de176cfcda1e36386926n/a Heodo
2022-03-15b1fNie0vObzvD1hYpyPw5WvCSTKW.dlldll 691dd65e2ced0f3f06adefc180212fd3db427e40a2394ee84f73bb73124be2adn/a Heodo
2022-03-15RnstJfIrd39c.dlldll 793493283d4c6703cdffa4d6ddfe3d6743bc1546a471f3d2aaade52e499f835bn/a Heodo
2022-03-15CLZfzkpld29315.dlldll 94dd4ddef3418b6ee5d195147171c0ecd01fc3a53d71975af0f9a092c329c8ddn/a Heodo
2022-03-15nBNmt8p4F1RqYEMiW.dlldll aae537d5ede5a4aaca3b320ac1c199bda2583bffc3f6376eacda473cf324ccbcn/a Heodo
2022-03-15pZwvoB3Nx1H3PZ6b.dlldll 2a79ae7e77378219844ace967b02a8d295cc42455c6815dc92473f4872524474n/a Heodo
2022-03-15IjmvZNGGNsocLP8TY7RoxFDTn.dlldll f5da307d08f899f3087324408a88c97b1f59f214933f6475fadb7b88846c4ffcn/a Heodo
2022-03-15pKONkmR4e7K3c7GFVD1r.dlldll 272fd54f81d863fdec479734484247a026f191e9cd69d53d24aad5e528763bfcn/a Heodo
2022-03-15oHzPi23g50wRN7ewUERRu.dlldll df25944e29cde1f2c8089951ee504b2f3ffc0352a7605d2aa1739f495adaf285n/a Heodo
2022-03-15uhpzgjvEZCRRO.dlldll 7efeaeda3be8e9074131fb84dc98fb866b3489366b3b2807b0842009249f2075n/a Heodo
2022-03-15cjKvMLLpmBP.dlldll 600dae0c8b7f7a779df245fefdf7380ceab78d4bfd1016540701d314960a89ddn/a Heodo
2022-03-15Fjmkesop95aXgnYVcHvRfAfqH2.dlldll bbadcc12cc75b139d8debed4ccc97e677a225c931570aac4f66bdd5bc7becc28n/a Heodo
2022-03-15PiGJDAOer.dlldll abefb99b50fe60bea83c56d7098436e09784f5f3aeebeb8c5cc39689de4758c1n/a Heodo
2022-03-15g4i6iuEkqUr7Wv3gfNxy7DnFYOYwfO.dlldll 6730fcf48fc38aa489712652f998ea4c139f1be6765f203e850be8d326f986f8n/a Heodo
2022-03-15m89dKDobr1k1j5rEdGJ.dlldll d39c0d2c4f994246b9ae75f51e26ef59dc25526ebb7302f999675955c7d5e5a4n/a Heodo
2022-03-15z4NcSaZvPmU0VdNC.dlldll 56bb87f90db5d62c6c8137c664cd140fd3baf6a086a671952dae58a4c06c5b10Virustotal results 13.64% Heodo
2022-03-15f8FiLJhAV2PzMZyn0dDT1NX72.dlldll c41fc5879b5875605b843ecbba58e983c1719e825ba139dfd28267ad40d46892Virustotal results 14.29% Heodo
2022-03-153d1WPqhyhYSBVr2QkpHrwoaxpBB4A0SI.dlldll 9a42ae583bd2e91e0e0dbb93eb5d0bdacd1fd7bdfabe554320ab5d4933fd83a8Virustotal results 10.77% Heodo
2022-03-15dGwM9oR74c1gW3k4qTmZm.dlldll 7c76c568a3a918eb8ec3476e2f5e45c6b6ac2cc3ffc45eee46903aafb2325fd1Virustotal results 9.23% Heodo
2022-03-158eUXdgafKj5c8353.dlldll 12c8d05400415212abf9b4b39fbc9f0cabd8a06faaf8d6ae1502724cbe9cf518Virustotal results 9.23% Heodo
2022-03-15JyUeIgx9WkVkXxanmnUZ7V0HHS5L.dlldll d8ce526e25a16cb319dddeeb3922c0cbaf1d092781729ea1776b596fdebdb950Virustotal results 10.61% Heodo
2022-03-15epgvzsdOWFnAiz1Cc1GhZxvW.dlldll ace143a1b55533c7178bf90659fd52de3c15d87f0b62aaab6c0993146806ade8Virustotal results 9.09% Heodo
2022-03-15HFRrccxTyv9FSWExmXXf.dlldll a6d4dfa141293827db02185c420d3a932d549a29e9309a1434ace7e5496e5501n/a Heodo
2022-03-15bTAz0UMU5Oo2jel.dlldll 1cfd816979ac88884ea7bdc5ed0c789cc1d30be54356ed467d402b55c54d0237Virustotal results 9.09% Heodo
2022-03-15kk7uhrFbad8YDNfTIJ76.dlldll 65877d7b486b26fa0f1dc0cd464ffea6f7d4d7b9078f88ca62260fe9624482abVirustotal results 6.25% Heodo
2022-03-1503bXA3FkS8MPhALYBb4HQ3aS2gYOp.dlldll a6f46806d892fba3c4c09e0a797aa7383ab15ae49e4e3b03dd529eb749606048Virustotal results 6.15% Heodo
2022-03-15K3Wks7NiQIcHRlqwDwJJ1CQllrZeE5HS2G.dlldll 37984986b09e72d52f8bd7c7d12e15c921ac410cdad2099b0ecdfaba63b5e882n/a Heodo
2022-03-14tAxfEtH.dlldll e024178dae8ba2e1ce0af38f6775e2267f99c88f2db4c107f0101c810a407a49n/a Heodo
2022-03-14XA7LuNITr5g88.dlldll 2ec7bdbce9c588dc1fc51406d27df1c6524a7493915df584c1e0ae0fc2604a74n/a Heodo
2022-03-149ycpyehWUnsTz8hPzWJKw81nlsRPd9eUU.dlldll fc89edd04494cd9e4af7219e369ffbf20fdab2418fc5bc5e024546552ffcceb2n/a Heodo
2022-03-14x8D1AvItQdtxKYq.dlldll eeeaacb2c7b9cd89d81271f5422e24e3a561a72da9b90b4ba44f9c76e875e30bn/a Heodo
2022-03-144Q0oynTmCKwX9tfd73on9.dlldll a043df76f8307830c1937465070057b476b8fbccbfead1a499b13e75671ff973Virustotal results 27.27% Heodo
2022-03-14ci7GK9Yb2OZoEcqNxKicrZzFNrEZ.dlldll ba21f0721dcbd792a8151982b7c000988a5fc336299f967c137362bd20d29ce4n/a Heodo
2022-03-14QksMmkTM2y6y.dlldll 9149657ac453632691a00bac65d6f01213baa6b064a1b58fdab785c0a6a8dd80Virustotal results 27.69% Heodo
2022-03-14ZOIn4uq72X6Xe9chT4x.dlldll 33c396ad5d41456fd5b13bee78dbce58a4625cb3b0775cfa7e14708bd8f3f5ben/a Heodo
2022-03-14A9M9RgFjs2A9HbfSVVVUZehAzx4dGOLLMCX.dlldll 6908d082f839c12c0846679a6c49e9eb0279fd1d9e3ec2dafcf0ed38251dee6aVirustotal results 24.62% Heodo
2022-03-14swbSMUe.dlldll 7a15b2070dcf2967cb74110d0af474afc4d64af985a7c5b20bdab45e3173ce69Virustotal results 24.24% Heodo
2022-03-14UzneJ9Yo2cLlmvcUsim.dlldll 1ccce0debc1d132c067d5ae4eece1f599483f29ff76efb47454db8eb26ef4decn/a Heodo
2022-03-14o1SrsYlKAdu.dlldll 4b56bec48bb4df57a39226bdcdd8d2a6fd4f55cb2834765dd040b2a66eee31bcVirustotal results 19.70% Heodo
2022-03-14TF3rlMF2heXO80c.dlldll a1ff7fe20a96e27e227892631170e601ad14092c60df2b23c07321280075eb09Virustotal results 16.92% Heodo
2022-03-14mlY03MyDLRBRtxvkqIaHOUZPYF.dlldll fc4978147b5dc71da5c0e4a61b1a1fb308563810cacc99d0c8c3ab244eaecba0n/a Heodo
2022-03-14RN6ggRBiaugYdAkkJ5EtaB9v1mrZ0uB2T2.dlldll e760d4326dcfe6ef830bd42eb07f1532b371f9ba8bee16a29e90d0708f751825n/a Heodo
2022-03-14D26ht1I3fP.dlldll a818b871c66cbc6791931957ee7e41e74fc5e742022d128819f571df72cffec1n/a Heodo
2022-03-14O8kZew.dlldll 8494831bbfab5beb6a58d1370ac82a4b3caa1f655b78678c57ef93713c476f9cn/aHeodo
2022-03-14yXWFyVay0v6mEbVYXG89vjuo9jtC.dlldll 2960abf684ff6b3db1531c1309235abb9c6485384857d14c36fc5d948d9a3041n/a Heodo