URLhaus Database

You are currently viewing the URLhaus database entry for http://capslock.co.za/wp-includes/LMngUUTuanBofr5zK/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2101831
URL: http://capslock.co.za/wp-includes/LMngUUTuanBofr5zK/
URL Status:Offline
Host: capslock.co.za
Date added:2022-03-17 10:50:14 UTC
Last online:2022-03-23 09:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-03-17 10:51:20 UTC to abusepoc{at}afrinic[dot]net)
Takedown time:5 days, 22 hours, 27 minutes Bad (down since 2022-03-23 09:18:27 UTC)
Tags:dll emotet link epoch5 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-03-19Whhx3j.dlldll aa8f007a34ce89b8283b6c580982c060d6294a5eaa9d853e9ad504498fd26db1n/a Heodo
2022-03-19Q9oIVp7uuX0Iw.dlldll 82a63e0eb82158bd573fc05e2c6357d53f87572e5f8c4c6c707fa938a3196120n/a Heodo
2022-03-19vc9kVae37jyaaL.dlldll a46d0c0418d0359a78e0e546705ed6a18c574bc8f557b4cf2b44638c5b232d68n/a Heodo
2022-03-196RK8GkfWrv6LRr.dlldll 98fecbc4fa461df2499e2f0f462c18d9e73319500f3da4e1a277d649c09c2d52n/a Heodo
2022-03-19p8GOhJZXvubxnceg.dlldll bb5e0dd55e135de3cf5c24390a6292f3a657baa993a4ac4d88b753382582ee9cn/a Heodo
2022-03-19vph.dlldll 3598291a49bebf83b36f1b629f8dade6ca7ca2bd24706d595ffe893501a622c9n/a Heodo
2022-03-19iVR9tppCvYGUFwx.dlldll ab59cf8fc2334850d94096e2c64db77223ecc11f9cea0a85933627f841c54e44n/a Heodo
2022-03-19VkA.dlldll cef0057661e8d764e00395daa9d0f02454581e46a54a8beaec90b8a28d675474n/a Heodo
2022-03-19F22h.dlldll b15f0b16e48912f7b6bf27d1106ff16d1f3ea3f07d1e0b6d54e7d3f08c851424n/a Heodo
2022-03-19wIPFhuJOIdUSIuXk0.dlldll 992885c886e9c36d20c247d327146f44b888eeba02e8ffc7659656846255c7f2n/a Heodo
2022-03-19BpirS.dlldll 0d424ab6a2c83951cf795c00af8bc7928ba25ed7539b8d8b175e1b1f02437d69n/a Heodo
2022-03-19gZTT.dlldll e45a891f63f6a0407a951ab8b489cdbd237ab7d4b84e35ab620ed0ba905933b2n/a Heodo
2022-03-19UwgoOffh.dlldll 11ad1c63c3bdcfd249c3f479c6525d1b1ab0a00c51f5c4e6a25189a734419c22n/a Heodo
2022-03-19PSFIR7y.dlldll b6e05b0ce05dfce6c37bd18393ee8932d6edd820f90e864622588dac9ad27cbdn/a Heodo
2022-03-19jgw2d7cQmLg.dlldll 780b042e83a1b0163ae501c6ef2faed700e35086576d0762c758799099af867dn/a Heodo
2022-03-19vbGVYIDp8dmsMnAR4s.dlldll 57200b2db8b166498100b9526342c74ea635841a249f729fb537ba34cfee485dn/a Heodo
2022-03-19kO2s.dlldll 0ce0d1bfac7dd70e01d40fa4e04a9bc70239ee19c0a33a88c37705e567331ee1n/a Heodo
2022-03-19hTSkqqAQ4.dlldll 959d1125695607bc08eb548ffdababedd113feeacf5a80f06d11999d84ac7fb1n/a Heodo
2022-03-19pL9cybOOP9uX5.dlldll e0c80ecc1d152b1a9bca5ff9ab4a9ee27269068b87712f0cca3fb29163f79fc4n/a Heodo
2022-03-19Rug9U4b43.dlldll 1d169bad60b1b89784ee40135ef9f23f2cbcba02f598f9bd00dc982497a8f852n/a Heodo
2022-03-18FaxP1X.dlldll 55c392d2fb12ac99c41c78ff3ceae983718d6e75f4ca371fe48be7289e83ecb5n/a Heodo
2022-03-18HLgfLocirBBZz.dlldll c5c831d7ced4474707aedb7b7394c4839b604ecf3d22093aca1501534d0281c2n/a Heodo
2022-03-18IWSQEstf3a9fjYnEb.dlldll 19dcc4c3800109f0f8811ebfc405c32b81a5ac7d446903eda0eddc2bc33d6734n/a Heodo
2022-03-187WCuBwzh.dlldll 91b76e8a7649acc3152aa87c740bdea0dcbef13673b707d03a94da0d9bfad28dn/a Heodo
2022-03-18ZKeGM3N.dlldll 0308bf343dfc5b1885e282be37ccf52f5a1d74221268280540fb70d35e34e5b3n/a Heodo
2022-03-18jC4JPhZ.dlldll bd72fae5d161c3423a4428370b9831c9b007292eab59150608822efe07c40205n/a Heodo
2022-03-18JqbQh8A929dMU8osPwC.dlldll 07fbd0ff724d1932861571eff2c0bf6bf50e9b52bcb967e47ddee8f0cab26c97n/a Heodo
2022-03-18pDZLuWe.dlldll fac9467c40d099ef042c8e67dcf6cb49c1abf73f6c1e1cefd44314e88bbba73bn/a Heodo
2022-03-18ov2xn2eQt.dlldll 52605e83a00830de33632dc032b6bb9046c3d625b004f400c1113a1f6c10f126n/a Heodo
2022-03-184UuDgSt.dlldll 37b6aa5accdcf533ff9472ac6eae47c6f8ab2ed9832d6a6762710ddb8013d0b7n/a Heodo
2022-03-18Ag0SBTz.dlldll cf40913733ec7406c923cc6ce771b2614b4a157cf2ee1368349f7f2fae08f02fn/a Heodo
2022-03-18uaqTc.dlldll 06a265a19dbad3f9bdb91241dd50c5d6083cb48a5030cadf55ab0787866d1660n/a Heodo
2022-03-18IqOzaMKGp.dlldll dfb82842531f992f75212dd520a7eff1cdbef8c5ed0eb94f7a711fe485a97f49n/a Heodo
2022-03-18nkM.dlldll c7bd06cd7052270555a1b3ace1ecd5c1a99d4df762f9af8988b0b041b3d16175n/a Heodo
2022-03-18C7nMzvPjCC5e6rjlsV.dlldll 0b4d3442a75fd050b8cc12344606b237872372e3b2bb9c103d9ce7a6f9edf549n/a Heodo
2022-03-18I2UDfmkDc0yrmr.dlldll 447fc451d7eedecf0d12990aa86415c837893d84d279f89959c6b85743fd33a0n/a Heodo
2022-03-18TO2beH.dlldll 6bc03909748fc22858f893738974195b8106171f70be10662570b64bf5909fden/a Heodo
2022-03-18K2TGZU4T.dlldll 0df5dedbbebe59d834c2c07ba0f9c9bd57cefe846b3b7a7c68e2339dd05053ben/a Heodo
2022-03-18QxiIuT.dlldll 39b46e6bdc897875a0b20bf19152d423a11aee118b9b53ca8349bb34a4881214n/a Heodo
2022-03-187IOqG1A5u2faxaGnoXp.dlldll c1dc1fe5216d83624b6800130c597399d3474dad20634ff4361e26976cd6e548n/a Heodo
2022-03-189dZT0HTT2rpEKu.dlldll 018d73ec715ea6974ce70bacc9eaef0136e336831a90523299798e0cd1d30af0n/a Heodo
2022-03-18wYZJ88Mu.dlldll a902059772f2951fa6e6fb7d6d519e04e96e73634388f6f6c4d22cd81602f3d7n/a Heodo
2022-03-18GccaVssWAreys.dlldll ede0e1a641884503bee63ed8522af6aa5dfa394df5b15fbef43916855fbdf550n/a Heodo
2022-03-18OOfpbY3Q7qY8Tho.dlldll 21c9975ec7a27f090f593f230b44bae5fb732bc27167612f0694a755722fdbadn/a Heodo
2022-03-18LGuoZ5.dlldll a97f5ae70800c2d27d28ae6ff9e5f961032f019664394380e6ecdc0e15c25b43n/a Heodo
2022-03-18JrRcKG.dlldll 3beced18082f9160a128528674f02bca901b35002418f48bb2e28e6afd44d11cn/a Heodo
2022-03-18uFgiL5.dlldll 58ee708929e27ee06ab537199702b1c0a79e617a502c245d4ec96d62cff88cb6n/a Heodo
2022-03-18UuwZju.dlldll 17390a7a0c97cce16108251603115e312bd0af464080d26653822b4a182c1ad0n/a Heodo
2022-03-18Vt69S6UyTWOuxNQoS.dlldll bee5777898e7e54151b0304a22476e22ee2829d77dd608d0e99e4daa81de0369n/a Heodo
2022-03-18qnnlQWnbcvH.dlldll e9a672ab3fcddefb2ee7adcf014aa2ce058c26e32a764946b7d583334c477a6an/a Heodo
2022-03-18EyKkVve0P4QAQ7.dlldll 1cec4e5c54e61950b9a26a9a57792f4b9042978c6cfdb8472bbf501185646d32n/a Heodo
2022-03-18meNiBlNHC4C.dlldll c0aa839d9ca6d2a225452d215a9389abad6cc1f5d04111dd2160d27fa8af567an/a Heodo
2022-03-18U2uqR1IHNfP.dlldll 51a229d3cde68e919f6af6c145c60453872db2ba4bf931d9d714352c3be8ca12n/a Heodo
2022-03-18GKJDyRJn.dlldll 71d6043a6f910e733f735d0dcf5af9e0834d2f4205f3377903c50a929436a493n/a Heodo
2022-03-18BVjJSVV77t8ffwO.dlldll d14c0b4eeaab1af5144c89acffbbb7adb6a62a12e7dfc1587aa86082503c5e87n/a Heodo
2022-03-18dNozyttgHq3OQi.dlldll 631b204933dea8852c02f79ba3eff164a32cf3e62dc044361b85facadf453bd2n/a Heodo
2022-03-18riqkNr0uACTw53AdH4.dlldll 2a36c416a7b5799a03a36e2ff6ec65d86dfa62a207e52f9d498553e0bd78ba72n/a Heodo
2022-03-18DpnVZgn4.dlldll a6ea3bfa37f495bcf9bc36a5886dc2db15b2dd632ba7155d15b7f4ba11b6855an/a Heodo
2022-03-18zG1o.dlldll c082c4ffe8d7b869a1fe0b4651346076754a2f222345c1dd6a7f7cf95c6e63a2n/a Heodo
2022-03-18b3L.dlldll b39d314e55dfa29ee66a31ca82eee632c5427ca0a81fe2ef04761cc18f98f999n/a Heodo
2022-03-17h8ocCXiG.dlldll 2eb059370a7b6884aa3b9fb7df644a31397545f8c53bb6e5e986136944109426n/a Heodo
2022-03-17T28ozVkxpPgRf.dlldll 8ac0d061b465fc1908b0802b92ba3122ae1feb1e946f96b1a5f28276c1ebecf3n/a Heodo
2022-03-17ZAdbH.dlldll 3737f888897a5625138006aa13df8dfbafa33cb30ab507e917fb72a774bd14d7n/a Heodo
2022-03-17Y620IvD2jQKQQi7EYa.dlldll 91671afb1b6351eaffd3e09f6e338b20408df48782a7076c37de90ae32882835n/a Heodo
2022-03-17J8y4ZRe.dlldll eba003f2750f38e6a5b1c3a78953eebe50e3703e8a1fedc7df38d3ce836a7427n/a Heodo
2022-03-17zRl.dlldll 9cd60a4a2e32ef03992bea2f82ae1448ade3ed09f3ea81b40c9706ad49e7c457Virustotal results 20.59% Heodo
2022-03-17AgidQCHjYG.dlldll 54361b6dfde9499f365debe2312df81e4d50fc984e7486723124810bd84d89aeVirustotal results 22.06% Heodo
2022-03-17IzWLipnOTs.dlldll 0f91faf5d31d20481856ab1b6999e50c5ae7b84325cfc83fedcbac9d6ba41f25n/a Heodo
2022-03-17MnZIPYA7P8k7.dlldll f1951e3c1d22dc8c7fe8533010332e5d584fbc9da8d6667b0d0d7c7c089b7961Virustotal results 22.06% Heodo
2022-03-17eufrkJBoV.dlldll 599d43006110fa4607e54284f79ac764f9291ece599c057d91fcef9925aa78f1n/a Heodo
2022-03-17zi23.dlldll 130232336ea97e76fc73457c7691ed459b643d9eb6fb464cccc92bec3c290654n/a Heodo
2022-03-17V9w8rzmD5NYO.dlldll fcbe2ef62ce783a8e9d76a2387180cd25f0b6ec98b647fda49a582cdc752a03en/a Heodo
2022-03-173Y7df19xr.dlldll 1ed2e6649c4d5afcb87953f8fe4b3b499265f40697ef38797d707421e00e4a4bn/a Heodo
2022-03-17WRIVFrQq4bb9T2HZn.dlldll abec16fb7f7cc70a9d9747306f67910395cc1bacfbf1046bd5b24066eddad1b5Virustotal results 17.65% Heodo
2022-03-17vJM.dlldll 267a67685697eccbda9756ad7ce76fbc22815775b90438de41ac4bc4bbfd35fbn/a Heodo
2022-03-17RRv.dlldll f26b5ae61c25fa728a886ebb1c6d60e20b63bfab10428bca617eb030441588f9Virustotal results 16.42% Heodo
2022-03-17b89PbcP3YJnthB6Dju.dlldll 48d44c4a18e7848713c5062cf881313727ce61c105f11612f101b020f38b3cc3Virustotal results 11.94% Heodo
2022-03-17QWEzdjk2bZS4tbE1Kr.dlldll 18a74be5f72a8faadb9f90d8fad3b6b5c72be5f7f94529ed91c5183cbfd7917cn/a Heodo
2022-03-17ODjtp3ghbEB.dlldll 74d85888ab1cb95c8354083aaee4e504ed2be1c460157a519348d868b7fcda86Virustotal results 11.94% Heodo
2022-03-17AXXzmPIsOObbE.dlldll 39f79bcf8fc48c307cbe993edadc2bf2cee8d123e3e372f2c57104dc47a7db21n/a Heodo
2022-03-17rwwV.dlldll e77c6183f90e0d537cc74ee6fd33aa64b323d0b4ebf0ba24ca3a6f84b371d37dn/a Heodo