URLhaus Database

You are currently viewing the URLhaus database entry for http://bytesenbits.nl/cgi-bin/OjOn8icwhyf22SzegYA/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2102433
URL: http://bytesenbits.nl/cgi-bin/OjOn8icwhyf22SzegYA/
URL Status:Offline
Host: bytesenbits.nl
Date added:2022-03-17 18:36:10 UTC
Last online:2022-03-18 02:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-03-17 18:37:11 UTC to abuse{at}diginl[dot]nl)
Takedown time:7 hours, 45 minutes Good (down since 2022-03-18 02:22:41 UTC)
Tags:dll emotet link epoch4 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-03-18s7vGsK8lfD.dlldll cba36882d58c9c7da8659dd67f70b9c79be84f46b2de64a3fde43c09740e4d6eVirustotal results 20.59% Heodo
2022-03-18Dth8oPJvLiIxgg3g4GDSQvzb8HB.dlldll 0c38804ccee919cb3e215f416cee9f1d1f4ba3b215922e2f3303aff1de2dc3efVirustotal results 17.91% Heodo
2022-03-18hUY1fYFi9PdGlebboOABZcb.dlldll 7ab55c6ec7dc7b4e536aedab86d24d4c575d362d903a8aee089211c98a7afb39Virustotal results 27.94%Heodo
2022-03-17SsFOHtsO0P7gKCPhyXmQNEF99iHb.dlldll bbd0a67503d756f57cd71f7fecd94a3192f6c609d42f098ea4637d10f6a795e6n/a Heodo
2022-03-17VvcXIR0rp7bq.dlldll 9d25522bb7c481ee7f23872efe3dd216ba516cc4d0e0aa812f3dc510250b9659Virustotal results 25.37% Heodo
2022-03-17MfhROch48hY1p8hJPuTJLSx.dlldll 83a96804d7aede91048c2fbcf64c86406298dfe2688f0c32e38ed06b42c696b1Virustotal results 21.54% Heodo
2022-03-17InE0hprq9EV4UMEWbL2ATRYovYBh.dlldll 91099b8fd4a9d9dd2879403c9a6ea15263f96780de749a32438932285f5f280an/a Heodo
2022-03-17Oukef76FzIblN9zS7D2eIL3oXt.dlldll 0e80300db4e45e9bb7b7f72a8f3b0002e47eda5fd348558dbd018ded1c31300dn/a Heodo
2022-03-17WvLDH8Ac4o8OrbifOpjTEAH0epaN1.dlldll 2f195a1fea628f2a5e72f2f44e2f26c79a1fd1899589422c5af9cd237b6a0629Virustotal results 23.88% Heodo
2022-03-17YWf6OGuB4qaKOflNBE5gUr0axu.dlldll 82ba0e387c9db18c0614260233fe732ca64b42443ad3813b56260f551a2795ben/a Heodo
2022-03-17DgVUMxvGtfBiqwpBCU8iIn6BSTZT7sc.dlldll 9fe83a4645db14e4b668a97418bcf00446488231307532f6cf7abe9954b7b116n/a Heodo