URLhaus Database

You are currently viewing the URLhaus database entry for http://anat-bar.co.il/cgi-bin/UNS6bRMcF4pOTf/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2102576
URL: http://anat-bar.co.il/cgi-bin/UNS6bRMcF4pOTf/
URL Status:Offline
Host: anat-bar.co.il
Date added:2022-03-17 21:31:07 UTC
Last online:2022-05-17 14:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-03-17 21:32:08 UTC to nvabuse{at}cellcom[dot]co[dot]il)
Takedown time:2 months, 0 days, 17 hours, 26 minutes Bad (down since 2022-05-17 14:58:11 UTC)
Tags:dll emotet link epoch5 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-03-19nNviLCVkXm.dlldll b30a66a29c148f4afd4a963b9297938e56958a049d5863ecd5009e4f43e723f5n/a Heodo
2022-03-19rhC5zj.dlldll dde41c42469f4a4b496a25fd3ce8c4182739c874700f44c6e757e47b79c60a9cn/a Heodo
2022-03-19nvMXa1DsHY.dlldll 07b384dad8d321de574b60a8c1f4461d0e9a3d480aab623b8bbe6b9c626da5a2n/a Heodo
2022-03-195tP6NNx6ppgJHvRHn.dlldll 3058a993aa8d1cbb546bc2667fe8682062068c58b4d691b6299c949652a52031n/a Heodo
2022-03-198bN.dlldll e50bc9e049902cdc2bf7654f013c51bdd4fe772f7962a44c5989d5a5762f89b7n/a Heodo
2022-03-19R2HxOTyfuDDaMJWlFp.dlldll c56c06b8f87759e00c1dce1b448fe49dc53ce3709f5dcf2ef3c5e1985ea831dfn/a Heodo
2022-03-19Hh58R6.dlldll d3036eab8a186811889a14d99ba690f2f63eb83fe4a722f356dd0e617cea24fdn/a Heodo
2022-03-19jQYB1ykxS1V.dlldll 11ce0116625a23ab9290b52c0c7888fcf4c3d40d05c22b3354aa3421b34efc67n/a Heodo
2022-03-19JJwyAEBT3vq.dlldll 68a2404cb2917a97fcf959716d454990907d43941b96bc68fc1108345c7d89bcn/a Heodo
2022-03-19cTQyk.dlldll b209a781eeff69b2fd22509f40a40eca927ceafa2714d34e45c073c2eabe412fn/a Heodo
2022-03-19qW9LLUfcfK7HoXw.dlldll 43138a5477412d7e6fec10d89b9dcecf0222e3c9d8beaff25002444e58121152n/a Heodo
2022-03-19cJiIEfREW8Wr.dlldll 5db4464a7df1b17a6f688f5b2301a9c86ffdc8a1780bca70647888a2cdc4c283n/a Heodo
2022-03-19m2pBYaX1JuuZRlviTKC.dlldll 9f14437eaef4bf3851250d7749174f866da751e711b6223884de9ea885ec60f7n/a Heodo
2022-03-19yP7rhe6psHZ.dlldll 659e9097af087caa7c4c24e494c7e9dbc2c91d5b5acbf51cc098b1a860adfe6cn/a Heodo
2022-03-19MgHNhGn8b.dlldll 4f5c69fda98f38d546289fa922b16319b23abbace850299b00d954abadc9db79n/a Heodo
2022-03-19ltdEN30oSSeVs.dlldll 5a7a53bcf424b876a9808e11bbbf700ff94745cce7e060e629186625bb6c9f52n/a Heodo
2022-03-19TM67YzE6bKqj6DfW.dlldll ddb779586b9a8e614a43577d4a63706652d5d045950864fd0656aa0ce173d36fn/a Heodo
2022-03-19DEPY.dlldll e75f0d3d98a8acf55814c85aefc05455f393d8863d8678ed882077f905f607ccn/a Heodo
2022-03-19ypr2JSB9diJ4z.dlldll d76496cadec812d4731038a9360c73670a7602a7034200a1f0c2fd7f19d28451n/a Heodo
2022-03-19ys4uZQ.dlldll 358200502781fe09a5d7adbf4b7f1195bb2422bfa38c54077c54f53926d72368n/a Heodo
2022-03-194N9PvvySV4XYlmf.dlldll ad575af68fab2b815bf84d1b1b3844bb7294c4fc804885ddb7cfe05470c51be5n/a Heodo
2022-03-19mPaUG32W.dlldll e460978c231e44ec11c30b21bd5dbb0ca26257dbad6d8f78bac53e31106b1cb0n/a Heodo
2022-03-19avdN43o.dlldll 6c15bbf8cbfc461860de7ba86207e29b30156af1850b6d85c62d48e549aea7ben/a Heodo
2022-03-19uB2NTe1MANkeHjj.dlldll ed783d042e9655b47d21cfc3b69acaef2575e28c9a2fbf91f5a0e06349af6e4dn/a Heodo
2022-03-19iozWO7Vs.dlldll fb95caf3c2add93c705e831491017998185e06296d610b675ecc8da6fe8c4ffcn/a Heodo
2022-03-19gav.dlldll 8799694230e54d8027b35d37227c1e6d35241e7e3a4667480422a4bebbf2972bn/a Heodo
2022-03-19tdvqDOqMTr7G.dlldll 44a2c7e20315e024087f716d23002b6e0eccfa47bc2b697ac6eb16e7b990e198n/a Heodo
2022-03-19i47IscMM.dlldll 582c8a1e02d678f23852a9756a47c25992165c764cdba2177b91d86dd8c1bba4n/a Heodo
2022-03-19UivOi35K6OojA.dlldll 06ec55918e643103fb2bff94e0a785a462a5b110fec004078fc79422141d94a9n/a Heodo
2022-03-19OXMqiD3y89i2q.dlldll b0d0e7e8e025e3dd49a39b37a72b37fbc26a1ae4de999829a47bdb2b902dd880n/a Heodo
2022-03-19hsFDskXZXsXp.dlldll db1e98ae3d0a5a6e8d6bd72645aeedf36d5c139fdb75be7ef9cc3e19b0d43207n/a Heodo
2022-03-18wxPer8VmvMI7do.dlldll 95a19f7e0b5a9621dd2bdd9e6491e62be4ada53276e33d623dc4eaf6132e04e4n/a Heodo
2022-03-18OWeZXayEEd.dlldll 0b74b0b9a6086eba1187d5bfdd2e938d0c5bcaece5f2d64b43c7db90e6e44272n/a Heodo
2022-03-18N9TvlgeSEZrv.dlldll 732b68f6e4cd9a7878efd905b993b5d994342f7ef2d69d33f3c16bb32366200bn/a Heodo
2022-03-18kTJOUbAoRdJ.dlldll ab1140faaa2e1ca5d7e5cbd293c8273d5d85a52a546ddc047e85765cf0c2ab29n/a Heodo
2022-03-18Rzsqw1zyFMb.dlldll 58394357d0c6028bf7f9b45bdb4d8f7c7179223e7b16a7f31a454cb21e351ec7n/a Heodo
2022-03-18wDl609msd07aas9KVan.dlldll 9af0d3f7841db60e956358c9f7b3d3bf72849f9aacd1ec8e6fe48e304a35ee19n/a Heodo
2022-03-183et.dlldll 5f68bb3682c2af37c266b5682e342a1df0a96d12f9f0f83f870c3d837bd3c8c7n/a Heodo
2022-03-18uTkiBQYWvJjr9UsJeP.dlldll 8ccc872dfd5df8c9c44b83f34b8e403163f0e71effb2396c6f871e38b467fd03n/a Heodo
2022-03-18y4symNCdbURsAJyeM.dlldll 28269dc7bfcbf9c958989f9ea3641fa0ca779de8fc9e6de7df81d85045e5d958n/a Heodo
2022-03-18GyJr38kFg.dlldll eb077c9cf31bef4a5716329c82cce706c1deed7fdfd75dd95500ea8197365cfcn/a Heodo
2022-03-18Whuj5aS3nJloQaJ.dlldll d23e85e29a49625666e700761c62e0381b66ef0d7de1a69f52362064f7cad0c2n/a Heodo
2022-03-18FFmyi39GMdpzpgGI.dlldll 87aac1b2ed3362594c508365e88a630fb0845a24ceda42bc83db690d5b9eef77n/a Heodo
2022-03-18hncKCS5.dlldll 7d8783eb405d945cc00fe3713a07e209fe7be6adad48a8766aad982074f9dcdfVirustotal results 27.94% Heodo
2022-03-18tJnQq0fKqg.dlldll 4dd904b823765a5f259b378ae6b8194310551b287659ad5eb1ec195e40f53bf5n/a Heodo
2022-03-18NBo5wn.dlldll 521d774d3cf34cd2721e527d3ceeee8a105418d6e60bcd78150c43d17ff6b8bfVirustotal results 26.87% Heodo
2022-03-18vekSqbGsoDJsRCdd.dlldll c1b4e996139178e896e7286f612c0fa334b6bbc58cf1e5a4807c44e2fc8401caVirustotal results 25.37% Heodo
2022-03-18Pk1fgIRcqXXpJs.dlldll e9c8d5ce98ef59cdaab7c6b177c5219f372a3ec4f4e3091b88a429d92356f107Virustotal results 27.94% Heodo
2022-03-18UChU3W9a8tR97Wmxm.dlldll a373fdf8c670c78026bb6bb209b0a7c22458a1c0b5b3c4b566d066d5ee51c0efn/a Heodo
2022-03-184YGl94Q8lQ6zQB2OB.dlldll 8fa68c3b25e75516d497d5d55222f3a2dfd903c7ad6239ede787b4dfd70a0646Virustotal results 20.59% Heodo
2022-03-18O4VNAknZC0BIjns.dlldll ea90160aeca6aa20f86656020cae4813cb06218e3e8675a18e4591a879710e3fn/a Heodo
2022-03-18drkn.dlldll 53cfd41cfa9e3d8fadbde8c06a4f2bf76c632697472e25465a8ece3364e1ee9fVirustotal results 23.53% Heodo
2022-03-18Dwjmpuq.dlldll f9f60ac48d75fec3907b2b1d83031a6c47e06614eb531069f1642dea9333c1edVirustotal results 22.06% Heodo
2022-03-182DU9I0Zd8zhfa.dlldll d3e9233313240d11c3c3f349f5bbff07804475baf0059459fc853ea02ddca83bVirustotal results 20.59% Heodo
2022-03-18h4YuC.dlldll cbd38a5aca4b82bff035d8c59247f9b539a7b920b55ebf555c92ed0167c66c07Virustotal results 20.59% Heodo
2022-03-18MLHEHMQ5XkUW3Wn.dlldll b74de32c84830a9e4dad52cff96724b153a359a10c9514c5822526b87853fcdbn/a Heodo
2022-03-18LkmIjvhiTOs67X0fhF.dlldll 75f62b934dfc203850e2804146e07449f0a9482cce96d50ac3bf2ba700ece1a0Virustotal results 20.59% Heodo
2022-03-18eLp6N.dlldll 8b62d6e1433cc44a36e1e472a416011b00908ba60454bfb8fb7063f65741e899Virustotal results 17.91% Heodo
2022-03-18n9XBoVHdR7K.dlldll 74b3ec307369a0a6c6c1b17ed4cab50f2133452d0c49e44b018cac2660fce8f6Virustotal results 15.38% Heodo
2022-03-18p16ru0BEbzJK.dlldll cd3603345658b1f23bb2b6a06a323902e31c41a1fe32ff89dc2de392125e44c3Virustotal results 26.87% Heodo
2022-03-18NOSGZvYlpsIhiQO.dlldll f8f38f090a677cd714c95e1ce00eb0ae1cefb77eb2558e0b260b044da1dbcf13Virustotal results 25.37% Heodo
2022-03-18uq1.dlldll 50a7e0724a852e18a472189b82ff01e8a56d44a1c4506fa7df782525c45db50aVirustotal results 25.37% Heodo
2022-03-18hhsUMPvkgrd34MMyL.dlldll d73abd036671028ce5c76fbe88b8bedbedc8d392628e837b9e8b1b29600d799aVirustotal results 26.47% Heodo
2022-03-18kJDkxXnomHpBA0dnRMs.dlldll e752cf9faf0aef9165cd3c47c7211d1129503058b706d8721db74ca025aaf3d8Virustotal results 23.53% Heodo
2022-03-18cuiEh1w0SLOaJWv.dlldll 194f6d9dce98d31c72115995183d936ffa3eabceb57d75a7526c209769ffccf0Virustotal results 23.53% Heodo
2022-03-18I8v.dlldll 190e4da76f1e11fd2990d0593a5f318b97837be970322c6d4bb9f45551a4b8eeVirustotal results 23.53% Heodo
2022-03-18ujHUVyzP5OX5.dlldll 6b9a3d8c14fce8bac8e28801cb335eaff1e33337df866edc668e199ff9c28c9aVirustotal results 23.88% Heodo
2022-03-189uF.dlldll 1f5d68dca29060e2a921bfa58fee2ceed87df9c15bd2fbbcbfcccf372a035575Virustotal results 23.53% Heodo
2022-03-18l9fZq5m7sGTwCYk.dlldll 74fde999e6d37fa92a161c2a94003e19f41d34c6cc27f75e7339dc2e1682df0eVirustotal results 20.59% Heodo
2022-03-18YzDHcRiDXWkQ2cuBDn.dlldll d0d8dd3cc7f53975c6e4eb4dd39aa487bf008722e4aef2070660fe486520c452Virustotal results 19.12% Heodo
2022-03-187gTf6vFtBoP6kdpFsB.dlldll 27236acd1625b451eeab71302a5615fd502f857d8704309f8314ff11dcb50c59n/a Heodo
2022-03-188B2wxiPE.dlldll ddc1bfa5857cb06ee5833c2aa3a5b3859e0305d47665c560c5f89f58de09afb6n/a Heodo
2022-03-17BVFMACS4OJbfaavcc.dlldll cec9228812be468c0595b81f6a4fa84bb844e75d04bf51b85ff1713a8cdef1bfn/a Heodo
2022-03-17AxZAdbH9VprbEtIUJP.dlldll a22f2392782c744b123bb9e42dc556af63eb5396f1b76871f98bc7822de10739n/aHeodo
2022-03-17JG3Yxvx.dlldll a1b34e72ad731e52ad3eb1e93b08c461146282ea757b2595f7d3c4ad0887011en/aHeodo
2022-03-176i0px.dlldll 3b4ce3e08e621f4e743e5690dd01591f828e4243fd02d75d3e0fe4726287e1ddn/a Heodo