URLhaus Database

You are currently viewing the URLhaus database entry for http://atozams.com/app/d24BUaSin4NuT/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2097997
URL: http://atozams.com/app/d24BUaSin4NuT/
URL Status:Offline
Host: atozams.com
Date added:2022-03-15 08:50:16 UTC
Last online:2022-05-05 13:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-03-15 08:51:11 UTC to eig-abuse{at}endurance[dot]com)
Takedown time:1 month, 21 days, 5 hours, 1 minutes Bad (down since 2022-05-05 13:53:02 UTC)
Tags:dll emotet link epoch5 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-04-01zlUZlHcX.dlldll 9cd76e79dd6180c2353c48b67133fc716e692de010da079637f033078758f724Virustotal results 30.30% Heodo
2022-03-16gjMdwJAVE5ZCAsM.dlldll 0a07eaaf65565d41a2cfb2611bfc1238423162b8f26bd8211ae8cf23bca7a8cdVirustotal results 27.27% Heodo
2022-03-16wUaxvATwx.dlldll d2c8a22c9d8ee0b9c452a09f7bb91bc1cdda2bd5ccdb1d32ff3e768ed5b3a139Virustotal results 30.30% Heodo
2022-03-165B6GwnHNKmOv.dlldll 136941cbdda29d316f90ba30e95726847f60cbc5f214f09d0bf08418fafc5657Virustotal results 27.27% Heodo
2022-03-16EIPtlLchg2UDX.dlldll f351ec7236f24b9992853b5272922ac205c10d1fedbc7953d98a980c7ef7b23aVirustotal results 25.76% Heodo
2022-03-16XuufcJaR.dlldll 1cd53d059c590aff873a60649f8af78a997f9df8fc98c6433cccaa8b8be1a7afVirustotal results 28.79% Heodo
2022-03-16d63.dlldll 48d1758d6f93ed0cce4d5e262d0f93d7e1766d324a230ab3444dfe8c766c7f9bVirustotal results 25.00% Heodo
2022-03-15Zx15.dlldll 4f2964dbfca118ee1839f16fec9bda77886df4c7aba144a7e329c92c9e3f50acVirustotal results 22.73% Heodo
2022-03-15QfEkllYjdDR.dlldll 4511e4ce90b163102d70bcf70bf5e992eba4e3eb32004623b25ddef674cd4e64n/a Heodo
2022-03-15e1VDzyH5A.dlldll 5226f9c51642b0ea90a61b36144a9a7085cd6d56050dc4cbb1474ce2dbd4208dVirustotal results 22.73% Heodo
2022-03-15O1e9JqsEv.dlldll 80efccfe3ddd20207bb2d482baaaf9c0d09349597deeb315d1944730eb3071e2Virustotal results 24.24% Heodo
2022-03-15ioPHILTY6pLsWIo.dlldll 9d838ee241301aca5ec0c098f2577e1d7e1848414fbb7399c2e8fac0b65ef00fVirustotal results 21.54% Heodo
2022-03-15HOFFLGt1Zw9QD0.dlldll 9aac53568a1d0ace6c174e6dcf2b1323735fdaa4deaa7135b02c1c12ca83b1d4n/a Heodo
2022-03-15VKNe5Khty.dlldll 6bb47b6d1c8ccaa94af1c897fe71e0b5103ebd7472c67a77b967412cc6adc7feVirustotal results 20.00% Heodo
2022-03-15FVgkmwkM31rks.dlldll 8c9b5d91589f7006bab1d378b8ca230b61ce2df755151555e0c80fca4659fe96Virustotal results 21.21% Heodo
2022-03-15iEVYGSZwfe7f6uVACuD.dlldll f08c9088547e06b9fe1c6cad3f72488786154d0079e82a0429866920c3c925bdn/a Heodo
2022-03-15YQO.dlldll 70fb89ff11bb5a91368b110282a21b117a070404192b44b81fea60b52ebc958eVirustotal results 18.18% Heodo
2022-03-15OQsyiryOEmheQ9myx.dlldll 44718558526d7413453507c6d6d81533f29fda17211ae0c50ef816cf76488b68Virustotal results 18.18% Heodo
2022-03-15oVe1ZAbZYpzVO6F.dlldll 677fc3c4e3483246eaac7153294b8fef0446f7c32c286a805bc2f4b66e3bec5fn/a Heodo
2022-03-15skbZNdjmt8s.dlldll 556c3c4caa3ebb885c1fa17e6e6c42c31639453a1ae5aa7a0f4b308e2fa18a02n/a Heodo
2022-03-15BDL.dlldll 3b1df9e14ef059baa2cf8d0c5d1a6abfaf976bd982bf42cb8a0f129254f3c5acVirustotal results 13.64% Heodo
2022-03-15HOfuwRinnxlwRGhhr5.dlldll 41638694daf33c06a526c2236ab20c03be181e99cfa31e690983cf2ec740ca35n/a Heodo
2022-03-154Bxp0p9z690kD7uD.dlldll bf53a04d0c1bc73954f5247ef9f32a72f847a454225b2c3c781033d556414e0an/a Heodo
2022-03-15W7FGXQjRT5K3.dlldll f319af997444d4d122276ff9f17ba9f194fc8925c3ec574e36fd49045057ee09Virustotal results 13.64% Heodo
2022-03-15lcYbUoQByZp5G9vp.dlldll 6ffdb22ac177d8a1647a5dae5a83e44b19d78cb64c62806fc49f8eeab42bf895Virustotal results 12.12% Heodo
2022-03-15ek3XMOUC9d9cpqaalc.dlldll 0e3232359d37e3109659c4995d48337bf5249c0c1fa0fed11398fb1bddc316daVirustotal results 9.68% Heodo
2022-03-15mYjtHHhbwGlykCb.dlldll fdd3da3745062a271106747ed88afa3d86f6309bde88d920a8c88c35a9cbf247n/a Heodo
2022-03-15gQXx.dlldll 4d22452f4acce7681309c30d8437cad86d6264995b76e29be671d56e01c482a6Virustotal results 7.69% Heodo
2022-03-154Xk.dlldll 23f9fb42a8bc31a5e0b90cf8a3cfb625ea95f3775024828d38617114e06dd882n/a Heodo