URLhaus Database

You are currently viewing the URLhaus database entry for http://gees.com.pl/geessw/2YmxITo6/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2102582
URL: http://gees.com.pl/geessw/2YmxITo6/
URL Status:Offline
Host: gees.com.pl
Date added:2022-03-17 21:34:06 UTC
Last online:2022-05-30 11:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-03-17 21:35:14 UTC to abuse{at}cyberfolks[dot]pl)
Takedown time:2 months, 13 days, 13 hours, 47 minutes Bad (down since 2022-05-30 11:22:28 UTC)
Tags:dll emotet link epoch5 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-03-19YOmbyVS9TQFrK5v.dlldll 1f46acbd5c6e09d06672798d427e7e3ea38bdf580f7d3191bd6e1cce9ead37dfn/a Heodo
2022-03-19AVkJToko6ex5W6L.dlldll 5687f8f14bfbdd9d82e39a4912ced78aff2ccc2b45b1ea1a68e104d35ae69805n/a Heodo
2022-03-19luTMmpd26KqzlKr3mBi.dlldll b9e3a15ed212d5b12eb879fc04af3c0e0a71a13d7e2392b43308800723011e73n/a Heodo
2022-03-19nfWwYlRfAh.dlldll 468353895b80f3867fddca7e648cf14e4729223ad8d6bd904320e9095fb1a44en/a Heodo
2022-03-19eQFchZ.dlldll 4b32b92fcee4e578f92fd2fbe628f5113e015f3e920426d725ead7ec66ec5a1fn/a Heodo
2022-03-19zNJuu.dlldll 84d8d66b8bc4a4e48abf869f2fa046742fb504b08b6cf85b100ebae2643b18b0n/a Heodo
2022-03-19zJl.dlldll 67c89d168baab77922c8b7c89d557bd0093427a6eccc643b5928246200c4d2a5n/a Heodo
2022-03-19iVNld.dlldll 34337cfa5f8d229adb2599c4b03ad2422dede4f559984e699bf5e37a9c7e0a50n/a Heodo
2022-03-197zz3QWV0LifW3huI0.dlldll 8a349bbbfafa835bb8da7e5a4a02c6ec75c135348aa7bf130633b35531364bbfn/a Heodo
2022-03-19F426q4tQunkhj8xDv86.dlldll 300913e6a2a51973f067bebac89c5a9a59f2e153a45d94149fb07553ed3cd357n/a Heodo
2022-03-19xEnntYD7hFKUz2ch.dlldll 0787029baa6b635fe7a05821a8d17293cb185b7ddebb2635e235b6f1a2dc4d22n/a Heodo
2022-03-19i3g7NmupDxd.dlldll 0f68830451cf45e41c64c341ecd0da15e5824e8eb20a41df5ffbe112883d2912n/a Heodo
2022-03-19mj6JL.dlldll d433db7a996659402e463f351aa89635af6235b87c07d66ce5361597f0adec19n/a Heodo
2022-03-19qbJzQfiDPEAXZRIat.dlldll 5f3f22f7dcbbcd245b26119c03db3fe8ed5d227bf979b18b4e5c23019e9c53cfn/a Heodo
2022-03-19htQSnGuXdczVbGb7GY4.dlldll 5ee66cadd23641a47ed4e4fee74707a95d28a0b76121d105a790c71880f5660dn/a Heodo
2022-03-19IFzIO.dlldll 1a1f089a061da1b051f33da03d3f0ec4323a77eaf79f18fb2ce5130da80ac929n/a Heodo
2022-03-19mwEjQKYLWm0gmv7xk.dlldll 835f23aaa2b4a967f8cdd3e6a6a2069df44b6853f43ec59fcfccb1e66668ceb4n/a Heodo
2022-03-19Pzns4koRlWmGqqJO3D.dlldll 19fc389b4e63710625f2146091bcc5914a3fffa48a953c916c3d15967ca65910n/a Heodo
2022-03-19eeBKx1o2LW.dlldll 7a359ef788768b126ca497308dfb80b0708cddb3b1c30b0604ba0d9a8e77ac41n/a Heodo
2022-03-19fbqeg16EZwSZy2X.dlldll 6a6d4d4f1ec7d47b9ce6db25ee1e9e21a9eb43152ba3f95f2ba7b990578cd358n/a Heodo
2022-03-19XCWYvCKKz.dlldll d49a5b358337b579927c9a650c4febf5296a656535b9be1dca47b5c39150f96dn/a Heodo
2022-03-19n0kQFOwz.dlldll 947fa8ba9e5f04c7666418b1153c5d717bf4b3801a2bbacc94d712e10941cb45n/a Heodo
2022-03-19ZQxHocYP.dlldll 563e9e49ada893045e8a8eb3745af19daf1e32832d08a85970b3b6bd434a6ea7n/a Heodo
2022-03-19m1cbRFPThJw6Iv.dlldll 20ce87fd42e470c3b74a177b88ab6c0e725ed7d788ab7ebfe5963d742edfa2b4n/a Heodo
2022-03-19NzB1R.dlldll 136d6410c6a4f796b4a62ef03d0d47a840849899f959073afcc818b665ec1322n/a Heodo
2022-03-195b9CsKQKGlI.dlldll 172765e5cc3ca164beb7ffbe44222d99a05241f011b426a9d99a135dbb4f9511n/a Heodo
2022-03-19lVMuznQpNYqL.dlldll 13f8451a058485ed3ee8856decc60894eb55f3eb6d947c1d84ed8fa976e4b7b8n/a Heodo
2022-03-19n2v.dlldll 06827cbc0f73a15c6bece937f9c7da92f884d1c22cc0b841354a75f8882441c8n/a Heodo
2022-03-19wLsLem0uRt8YNIGa6g.dlldll b4c5e607af6986a89f1373a80182dde1243d15c826c1bc69508116efa5498412n/a Heodo
2022-03-19EVO.dlldll 14efb7dadd05ba79f5cc727a24561135e97399c79c9dd4ee9955ce2cea8ffc38n/a Heodo
2022-03-197mybth3lOkywc4b6FH.dlldll 0601605d176f0b60d38f42d59617840409b97e6a3e91ba13e33b908dcc74f459n/a Heodo
2022-03-19rTDca.dlldll 0ca64fb6c6669eeac4d0bfaa46b77fc7310a512c06907ecbb8a3983d53a0002an/a Heodo
2022-03-19QnKtxQ66AYFOs.dlldll c8c5ec7fbaa3b3b17f14b2cbc88c87bc9c75800fa0ea7b85b7d72d2f87277d37n/a Heodo
2022-03-18INXlDP2K7A.dlldll 6df3720157d0afb13339447638864375526d296b307548091a6f44e18fcee5c6n/a Heodo
2022-03-189T4i1i7pibgwyWf.dlldll 1a4fdb02eea333df7613f1b7fa4c9d71e0feee6982aa185b3eca94df0223b615n/a Heodo
2022-03-18rRo5lH.dlldll 05c5db73906928845153985a99b854389397b1bd65b0d85d728e8b2f01fb318cn/a Heodo
2022-03-18xfPxOUox9bDJDZPp.dlldll 1b7317e978bfa6e8157ded7ace63cb83949390ee814a89650ceaf2aa1a523dd1n/a Heodo
2022-03-188o7vXkTrFOVUYztz.dlldll 4bedf16d3a3c07aec8935bc2193c3ab9b5bd9c2c31e4f00c00fc7a540a90c696n/a Heodo
2022-03-18ywD2.dlldll cef911294ccd7d8d79e1046c90444d2a3c2b6e42bb084593c94081530a422f9en/a Heodo
2022-03-18PsKoRp.dlldll feb8e374421b81eb0c645f2276422b0b7d1a1cde8f727b548bea7c71558a6d61n/a Heodo
2022-03-18IZh27b.dlldll 71ef85bfbbb3cf9ca1dbe97d86b9f8f4e41716b2831bcb9b757bb3908f32b361n/a Heodo
2022-03-18WwO.dlldll a841249916777680edecaccb380ac671ca0e58827195501753eb4beded21926cn/a Heodo
2022-03-18XQAFZ.dlldll 0f073f35a300afff59ada08b6c66ff44019fc1b3dec92d8109b8d900ba6789f5n/a Heodo
2022-03-18KNJSPqaTAorSnxKMsB.dlldll af9fb26c0d8a9d8536cbac6787cd8c5c848f66f142baa2d200ff9b7bb192139fn/a Heodo
2022-03-18aeI3Pu5FmlDmZ3U.dlldll 13e727f7573d4c583eba7ee993d0b8c12591a32e3291554b1211988eb1e815f3n/a Heodo
2022-03-185iXKLBhADRqgE5E.dlldll b40a649e2711f800439d1605375a521f5e453e12f45b9ba10557063ef0383a60n/a Heodo
2022-03-18n69UKlBRra5EO9.dlldll 9180ab72bb1a59e6c157e12980d8bfc6eb46381bb836134e12b07420fe1d6b3dn/a Heodo
2022-03-18ozBfvUbSwfSGtLgc.dlldll d3f8727b531b4521d08e90c7c10c5d98b5cf5b1590fecdd105246d3f8185fb6dn/a Heodo
2022-03-18BSHWrtCo5yK.dlldll b8d49dee238f3f39a323cf01d03a8bed380c88250aaf5bc79107268a2aa29db9n/a Heodo
2022-03-18RNgLqXQatr6.dlldll 618166919bcaa764ad7c4c4e0583f1caa865d747daa2ec0e7b41ae9839461122n/a Heodo
2022-03-18oT6VQGUG5PPeBias2u.dlldll 20395757bb756dc7a30593561dcf104814d32c60034fa9e69e8a868728023375n/a Heodo
2022-03-18MBBJHA.dlldll 00b02e3aafd16eb170cfbb0151e7bed469850cb834b0da91206940f90e74561bn/a Heodo
2022-03-1880jFJsIT.dlldll 8e2eabc0cad10beaa1a7b8058f795cf61a93364390f2c02b6d117a71fccf5999n/a Heodo
2022-03-18msqm.dlldll 84c3574dde964ef0d23d409912d3fb53b458fb5ef8742500589e4cdf3b2523d6n/a Heodo
2022-03-18YHeWwWEiXL3ywr.dlldll 5afbe8a71908af0b0bb4a1ac965141ba5133191bcb992f1130e2c394a8a86b20n/a Heodo
2022-03-18de5btnvTkJLmKevEtB9.dlldll 9e8a83477bc17b2a3d6939967da5b87e736735b3554f03590a650ac5c4bad46an/a Heodo
2022-03-18U8ctNEnqA0Hq.dlldll d9a135f36b7a8ea1f9c4abd7bbcac7f36585ab692262da86e62a1aa3c2604e2en/a Heodo
2022-03-18eCop36FctmGHUUvoYK.dlldll 2237338af3b82bdefe802fefa417943eb71539708b2809ea89349c3a0aaac66bn/a Heodo
2022-03-188NvxOVW2Ro.dlldll 769f368197907b148000f41c952993bca0973e5caddfa98564536b05a148601dn/a Heodo
2022-03-18Cn2uO7jEyBnA.dlldll eec5ecfd83e11940bb242ad87bc42089e05e7449ad9b593b3cd285307d4029bfn/a Heodo
2022-03-180r52pou.dlldll 5005e11981cf37ba15eb1d473ce461199bf9e3b3dc4337c238570baf63532389n/a Heodo
2022-03-18UNtNieuM87Eok.dlldll 87d0e0052e7bc6582ff9cc5d75b5abe7aa0dcb569878d17feb88a39bc6c19d61n/a Heodo
2022-03-18rhrntvtMKt8kKdKI.dlldll 216ea7c1432bb114c5c2ca8fb22c1fccc711b91af378a1a511b08b5690a8db12n/a Heodo
2022-03-18Q23nCA0W4.dlldll a9e9e96f6abf25ea626b31b0b83918b2f2cb8b1d010f1a1d7330e3b4a01a2142n/a Heodo
2022-03-18lX6KBcgBAYXh.dlldll 04f20c4ed933f4be8aaf206cd16cdf35e86e960efd8d15a687924c93e2a21cc5n/a Heodo
2022-03-18TjfHN48dhkNQVGqVFlN.dlldll ae46d0be1e158ac73340065cf815df88900d1f9c90cca2c6cdbc5d2244407462Virustotal results 22.73% Heodo
2022-03-18Yoo7vG.dlldll 640c0a2d5b2786bd7a63699e6da8417da323d57e1c7f5fc83f2f82c4ee97168fVirustotal results 23.88% Heodo
2022-03-187sBpbfN.dlldll 8269aa8b8cd1e2a6be24805ab2b1b1e046fd29e20c4d39ed7c7b1b5bd67e1768Virustotal results 20.59% Heodo
2022-03-18lDvRQkKO.dlldll 218e05feb15ccefe1ed5cd5ab043d97e1a76ac9346b08dc4ce94cba96489c0c8Virustotal results 23.53% Heodo
2022-03-18yifGtaW1uS.dlldll 01906d32374af5356699b1c8fc708058b0645335ffa13340410b89d104bb46e3Virustotal results 20.59% Heodo
2022-03-18u5cYJw.dlldll dbd75a940774afe43f3cd551154356ea36ef984d837ae44b66cc2565493179e0Virustotal results 16.18% Heodo
2022-03-18mRnldJB.dlldll 7aefa365bfae616e9e40f5626d7cf1ad4ef1290b91d91a739354a73d01a4d333Virustotal results 22.39%Heodo
2022-03-17mhL4V5.dlldll ae9be2f25f4c6c253af994a99b4cf1b5d584fbe97d91454b694eb6de95804cc0Virustotal results 22.06% Heodo
2022-03-17k6qmHYCPpnjBi.dlldll 8e3ac683879245019e611820b224a469ef26b927b234c02f732f4b3d83f17897n/a Heodo
2022-03-172dBXOjsrKcasAkTI.dlldll 64e6e117d074ea8bc72f83f1ae0c2096735bacfddcd3ce959ad9162e615f150cn/a Heodo
2022-03-17sTnRX37yC8ZD.dlldll 15e7100357596690d5a0dff6b7f1f88b14eee60d3dbe623cf2577addb407a9e4n/a Heodo