URLhaus Database

You are currently viewing the URLhaus database entry for http://blimpdigital.com/cgi-bin/Munwe49fo4srYJXd1UL/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2100708
URL: http://blimpdigital.com/cgi-bin/Munwe49fo4srYJXd1UL/
URL Status:Offline
Host: blimpdigital.com
Date added:2022-03-16 19:03:47 UTC
Last online:2022-03-17 05:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-03-16 19:04:27 UTC to abuse{at}quadranet[dot]com)
Takedown time:10 hours, 24 minutes Good (down since 2022-03-17 05:28:51 UTC)
Tags:dll emotet link epoch5 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-03-17RYZ.dlldll ee7767bd27b4b20072b2616333aabedbfccba4004bc232fd602e6254edaaf566n/a Heodo
2022-03-17vjL.dlldll 45369329a44692828b7f5d5f7af0c42448832985948b5bf2eeb439286f02336en/a Heodo
2022-03-179kZbp3nllL.dlldll d9a8d5576039da6e38cdba8f2e52203673be92dad611693d40775d1502e38b13n/a Heodo
2022-03-17k5H.dlldll 9ee8775f17e6c617eb4863429f18c3b6c8c96efd095d0fb5b91224088323bfdbn/a Heodo
2022-03-17cOHFblsRKiLzi.dlldll 5b479177fd054e0f475d8329288a8fdd88dd87b3a15bb1c374654e197e5077a3n/a Heodo
2022-03-17S3JmVtPUSF0.dlldll 7df9bfcd37c7380252cb2ab9f198527f3ec34560c291a9bce0d0128c7391c882Virustotal results 31.34% Heodo
2022-03-17gEkHHGoCQWvSn4p.dlldll a829d722ff39e585ca4f83719ee6d7dd771630a191d9b709bc3afe2557e7e888Virustotal results 29.41% Heodo
2022-03-173XJs9iy.dlldll 0a6a19195bd2f8de45299b28fc9e47ac188b071834d600324c04e417ccfa9230Virustotal results 30.88% Heodo
2022-03-16gTwB.dlldll fe67cb652b9f4eb6e997eebd582cc796cf153583c6c4763dc80b555dd0815627Virustotal results 25.37% Heodo
2022-03-160DDRWauSwbDYmW7dlTq.dlldll 8afba74188611c0c72103f1f34b1c419e70ffa7b2558b7ecdf845a91c5329323Virustotal results 26.87% Heodo
2022-03-16Xo1R1sStvGwLMoIFf.dlldll 42ff4691293f8c00007a43d65fecae9bfd274ba23913067b48b686cd39827aa0n/a Heodo
2022-03-16KaeTzDlm.dlldll 77f7a91b17b4d3a328d54235202c10a3edfa01c1b94faf4765472c2faee29d2an/a Heodo
2022-03-16eBr1v.dlldll 98ee4f1f8437ea179acfb5a563a1a3ff982d4604924cd46daf1ba8b155caa514n/aHeodo
2022-03-16ZOo1yZQ3.dlldll 3216b13dcc2d904c9b858bc8b42717396a398872919624d164ee46fddb1bdeeeVirustotal results 26.47%Heodo
2022-03-16oWX.dlldll d588655c8569ae2279a2a1946995ddccb2f580ded9f34ff2c81bf0c864e770f1Virustotal results 26.47% Heodo
2022-03-16Lic6KTDFXI5HUu5Or.dlldll 84147bf244a04f3bf6cbd7fa74b7cbb997ddd9d1c8b0bb4778d02abd56c3fa9fn/a Heodo