URLhaus Database

You are currently viewing the URLhaus database entry for https://risamfg.com/wp-admin/JtqFQW/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2104142
URL: https://risamfg.com/wp-admin/JtqFQW/
URL Status:Offline
Host: risamfg.com
Date added:2022-03-18 16:40:07 UTC
Last online:2022-05-03 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-03-18 18:09:39 UTC to abuse{at}godaddy[dot]com)
Takedown time:1 month, 16 days, 3 hours, 20 minutes Bad (down since 2022-05-03 21:30:01 UTC)
Tags:dll emotet link epoch4 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-03-20JTaj34jWdOb7NfWu.dlldll 2b62db47042aff83d2f94c757fcec5eee3de55832967608f81f534527b89ade2Virustotal results 50.00% Heodo
2022-03-20gSfhWk.dlldll 928279710457d9232c643bb0df1d87deea4be76e5cc7c56b016190c755880342Virustotal results 47.06% Heodo
2022-03-20eYDONYdWkvP88Pcxo6.dlldll d4fd03a9531e8c640989ab8833926f6ca4c5165f14048d1dba4052302ce3e51dVirustotal results 45.59% Heodo
2022-03-20ZFhEN7EBHn8r.dlldll 341bf024d7c381da0af39ca9f0236b69e10febdc6a5040facab98fc5db600fc9Virustotal results 46.77% Heodo
2022-03-20iLrrBBeu5JCfIE7SMr.dlldll 4ce9df75684d913a486b07caa852713f3b5a788b16b05436a3f46f8b176954f9Virustotal results 52.94% Heodo
2022-03-206mUmvI4.dlldll f9b2915ac4ac4d4cb85895e7215e9928481674fac84d9a711a7a04f82327afe1Virustotal results 48.53% Heodo
2022-03-20WAxnD2Ew9nn1zeMAgvlr.dlldll 8d9663796cf328efca20a9605595a742914dae8e9a2b6afcd47e1f2a135cfa23n/a Heodo
2022-03-20OYENaDHWLkGxDolUoRnmk7YkIPzREc.dlldll 7478c9ee37173c90bc044446067b615f3666c3c60b17c6d0dc54346b30ce02e4n/a Heodo
2022-03-20oqbxoJ5Za5Yg4ElzFKfzSvkP.dlldll 3f3d7879eba68d9ae11cb364b2b4b2aeb761c9a2841e6e6dd4f9edd66355d0f3Virustotal results 52.94% Heodo
2022-03-20Eb2b8fK3MBjvNekPNJmh.dlldll 82a1104b0bec8e5249981480e742fe7be151bbcd67d6f815541683a4540bc271Virustotal results 50.00% Heodo
2022-03-20EX5coAtBD.dlldll fece956673a17da58a00414e993104b91b4262d3c7669a2fc5561eac7f5e1484n/a Heodo
2022-03-20Jq3QByMeNN3tHH1M.dlldll 17e11aa766704b4a9f329094e2c36d58e39fdd079e0625cfdc51635078060990n/a Heodo
2022-03-20FhuQ0k2pNKRUXQlzYWP5pCZY8.dlldll ca5b3b869a699ba6623f736728b980073d47e8a57428b1866cf05faf4df72696Virustotal results 45.59% Heodo
2022-03-20pZNSOF0fkjof0sUmAp1eXcws2jnuRtOi9a.dlldll 00956ffd5823439c9f0e264cf612f21534e79b84b7d6d9a7969e1979addfdd6bVirustotal results 46.27% Heodo
2022-03-20fxPZMME2kzkW8E7kCvm15S.dlldll 43476b669b7edad0c02f3de55bf274f1d3e5c48ee619ddf5ab403cabe7ef58fdVirustotal results 48.53% Heodo
2022-03-20krSgSncKPdqtAoPRxlpQNnaN7B0OzqmYQ.dlldll 579abffb71d907456cbf0c92cfdb439175351eaf7c818cb4201920284e8f070cn/a Heodo
2022-03-20GajB1Bp62dppM6KpyH7q7dp.dlldll 2e03802980dad5552125b9db4d669a56b6a078717a516bf41023f890d0dbf823Virustotal results 49.25% Heodo
2022-03-20mcRwvqdre7.dlldll 8c0c20de81143a5da79f5199e7eadb96e673fc56e750d3fddf608e6ebde05d0cVirustotal results 48.53% Heodo
2022-03-200SGZ3li0CF0HWYcWyS.dlldll 30a1e7d3a44b88b488e5cd834381c5c90e6ea74fa9be8fec34d02ea52cd2d155Virustotal results 47.76% Heodo
2022-03-20Xz7xIv27EvwCdUzZz3.dlldll 33c19581a50474790ce7e7deae091191b33130453e903caa11a22954de69093bVirustotal results 51.47% Heodo
2022-03-20VSA8EQ6nZ.dlldll bd40da6fe83534de8a67b70598805134c3dc8950d5f47e7de9126c2422f53f38Virustotal results 45.59% Heodo
2022-03-20ogzvXyl5yTpkVbfXKkumwg33XN5DB6pl.dlldll 0c6825779e676bd8c60163914c5aa871c7a6aa857faf1efbfe18b1354ee03f38Virustotal results 43.28% Heodo
2022-03-20cs8btMGeij4c72w.dlldll 303965037c353389a06cd47ce5584ddee6a960f084df7cb1a74824ae435492f6Virustotal results 45.59% Heodo
2022-03-20GC5TnyU2GgOSY8rCk5J65gO3ugnsJ.dlldll 5561e6341ca4156823cdd69f7c9c047f13ada9baae2ee24348fd82f9d72e0828Virustotal results 44.12% Heodo
2022-03-20vEhXGTNP5RhvE.dlldll d62d6d29b2bcbb9079a6fa2e4f62f6ecf953620016971a7735fda2ca14e3d996Virustotal results 46.27% Heodo
2022-03-20fhnZjHGo1EYITQZkWxKxXFm.dlldll 85625ac3a04136918fd8cac7c5ed87eed78c161b8305e6e4e81ddf7e4d5a145fVirustotal results 45.59% Heodo
2022-03-200RHfq2W.dlldll 6730891d3c45e70043a87220431bbb2ed4ff1fea07ae00c60e06312823d3964an/a Heodo
2022-03-20xfaS657BnhvqAifGyYKggab.dlldll 361f80537c7889086c2cd9a0a7e21775f31279fcb29cfad1fef3b5998e526170n/a Heodo
2022-03-20EgGh7jrchRdnG2eyaphqMqLrZZb5.dlldll c70a669c3fac3c01f213a7a63d713edf8f020c64da44c4b997ba0994f915d617n/a Heodo
2022-03-19dnPBpShL.dlldll 74f6b75efe28e79c770b9aa2cd4b6be63dc4b2d625f40de531248b515875a3cdn/a Heodo
2022-03-19hciWT0lSSzb.dlldll 60f382d11582a22aa4ce9746a5d891ab3291597a980efd41ad523af5a684dd34n/a Heodo
2022-03-19njkJN9v1rmNfgJBOpRjReEJcglL4kVyF.dlldll 520ad8a09849c3471306b434f16f402400440b2a0b82f6d226dc951e362cda4bn/a Heodo
2022-03-19a33Nlw1B2CpfD.dlldll cd9ece128f36cf94996a7495dd0241068e55af1d4d67f806f6818b94955ec84cn/a Heodo
2022-03-19dhJNmQGIK3h0RC87uh48DuBOwxxg1w3qQ.dlldll 1dce737b2805699e74ed8fdb7b1f722bc2aaa4b0a39257975d7e7844ab74126bn/a Heodo
2022-03-19JAcFyTJhnuia3KUm45ZCCW0T1Vmir4.dlldll d78ef27418dea85289ee75f58daf312a5e5a6b7765d15003728b72aa83e0e068n/a Heodo
2022-03-19X2qjeiBUTUptutzvCBhSxZSFTwXTjrYTMxy.dlldll b542fb75ce2face1175f71527fa47091777d54d214436758f2143863cc13c835n/a Heodo
2022-03-19rUUspCmiXswgjghcIiIZsZBk.dlldll 22a844eed838d085b73aa552654da030da2ce1e7b91ad1180a2a8421ac7d4418n/a Heodo
2022-03-190RIalw3qg5J5rJZiQK6kTUakNfj.dlldll 6fe3edd2ae49ff576f90ccd022b24c4e7eadd49588a54b5cd748f6e3f12462f0n/a Heodo
2022-03-19Wj3APhjtuuuq.dlldll 1939a6b619964a8b33363381a3508bed47e28fc2e62808dba98f6a5226e45cb7n/a Heodo
2022-03-19xr7K4wpvw9XWzzd7KtpR06.dlldll b810fe368541a1c47884672f1daaf3fdf92b0d7d59c148f8d0d8ded671ac747cn/a Heodo
2022-03-192rGU5lBsRRG9wELKPJQlJSMmG7K1lax.dlldll 95f4874059fd522d052c305c727a2a0c366c37da16c6bf52554598bc56191a97n/a Heodo
2022-03-19p4RFEyzfdsbpk5mBnBQTNaarCiuJ3.dlldll 98f22666ee78410899806a48bee752c133a6e90d570b904add8a12749a350288n/a Heodo
2022-03-194vgATY4z7vtOvvZpPMTY4.dlldll 4aba4e3edfa6d2cae52cc4ced60440680716e61225375e52f196645ff5e8daf1n/a Heodo
2022-03-19C3o5kiEXssl6.dlldll 30d1c899f879c168b3e1cce0eccd7880fa4d7780af21a11673413a23e16f0b82n/a Heodo
2022-03-19RXFHCsAiclKWyu8iFVIlT9EwVV7h6.dlldll e9c66ea764c75a727bbee999d224e6a1d65de7233c69821c00e3e1334109a7een/a Heodo
2022-03-19hXR5fWcJtUUO.dlldll 8ee11852e1273761a6d12edd7b24923e2e3e829a45e4c4439c89abecfacf313en/a Heodo
2022-03-191mpzHpM.dlldll 2b9865b1594978462f66de0205b456126b0c30228e5453f2a4c03305e72d3d34n/a Heodo
2022-03-19UAGGcjrqhnJSGHc5yF.dlldll 14fd0f67897d4246a5b665a458212cc7c2fe6a11813b5550ffa78099eb8b96c2n/a Heodo
2022-03-19iKtG3VyZPLhAREPhZaDal2qd.dlldll 8497dd003e402ed7148d7ce39ef0b948fe243ca04596addf35a03c742e69e068n/a Heodo
2022-03-19BuBT5IgYdNaMdaREKl7TfTaq4.dlldll 89c4f1683e0091582998de781587370e6afdd2df34619ddd60fbdd0744d514fan/a Heodo
2022-03-194Q1dcX5kwrAHqlv7J.dlldll df8b2e5b8e4ef51b59d565bfd5e8ac0e50d6f1c0a0e64d23e29b9ff14cd89736n/a Heodo
2022-03-19lO4uPeO.dlldll f7a6565f386519a78f2b8ed2f8dd8e9bdfaa128844ff8a7d5cbfd86457954872n/a Heodo
2022-03-19C2mkt6bxaWrel8ODOjzC1ko3fJRmXYbNh.dlldll 5d059e0be0c6c1cf274538512081fc853c58999499619cd0b5837884d4699c97n/a Heodo
2022-03-19bOUiIc0UzPMGL.dlldll 7b66732ccab14b1946898253dd1e31c80e3edcc9ce84cc2ad0e1c8a64d863136n/a Heodo
2022-03-19sqzJnOHdw.dlldll 8ec29c33ae43708c9d677424d51fdbd55335d862fb85b0cdf47ba5d5c24d7433n/a Heodo
2022-03-19UeBD43iadgU61FKVc99FGsIlv9.dlldll 06040cc8a7fd2d5b2cbce90e1101833f5053d18d080132f0f5acd07536ad290bn/a Heodo
2022-03-19UR7snwW2mYgeoxEsQtnxvYaVelXyyxER.dlldll 229b91f2d15b39d013ed80ef19dc37da4107782b07a883ab6d856428c458d265n/a Heodo
2022-03-19iDA5IGnj6fghhdbxwY.dlldll 7051a9749f873cddb03139f41eb1bc8ec883e766d03759e44cde6ef5110dc28dn/a Heodo
2022-03-19hHkooEdh1Y19YsAl0B0.dlldll d5553cba572f0671ffae269de2d35215a40a32685bc0d09675380f7f7308ec24n/a Heodo
2022-03-19STxfbN1.dlldll 45393f286f753e6730cf8804564ca50bd3a7732536862db6081da6fc09896055n/a Heodo
2022-03-19BmUB8JpDGCUaCTTj.dlldll 44d88c20752f63c07896f2fe0c6c01c9b2f5e3812ad0d1f7835be4ef9ccaa85cn/a Heodo
2022-03-19FwtO5lF5VuL98l8NSJOm.dlldll 97362cf78e016c73fc32c542cdeb50c8d470d92d9f732571e5dc7a43dc6af1adn/a Heodo
2022-03-19A0IaJMe08Bw9VG48.dlldll b8918b93fc7aef2f189d27cbddc79b0e7e61dd7faaea1b9276f10f44dbff4892n/a Heodo
2022-03-19uPsKrfzQFkAMb5zhBDXmd4IIozTPl.dlldll 6092b787c17bdfe7ad0fc3a99b3350b80f759b29c9a093ef7a09ff187e803082n/a Heodo
2022-03-19C0HZtl5THkaQjkeU0iK96Mf8v.dlldll d3f6e534e5d09fcd54f539c8d96a5bb76fc2bb9278ffebf0194ed2c5c7e10385n/a Heodo
2022-03-19vgUYFGEqbj2RW3.dlldll fe6dd6b1cbada42ad97d69bfaaf7b85fd96bb490d41dfe1e23ea6ac0d860aeabn/a Heodo
2022-03-19McfkorjcptsOBe5JGcumLCEXFX.dlldll 6d3c94cdac738dee77b4c0286149506ed18e3ab7d832d35e7531b3d4a44183can/a Heodo
2022-03-19ShqgJksqsb5tqo9PUN22IIagwK.dlldll bc1dbe416a069cb1654958790628eb6b16bb31812a6ce6ff6b13c416a74479a3n/a Heodo
2022-03-19FdpOxmD3xRlseCyJEXXxRWdViHRkD7mxxRs.dlldll 2369ea12d9a6a3120e85f515a622dcba5cf3e6e5d2a9f4fe579382963e946c0en/a Heodo
2022-03-19TMWev93IIYsg8P7TLHw3rRAeIX54PGBY.dlldll 2869bebd66688d33af1fb275d71363c42b85290cafde3f16b79527aaa58f7593n/a Heodo
2022-03-194b5nMTTJ92HyET4XJ7u9whFRubyV.dlldll 88ff7450465a11f67f95a5255c14bb795a781d9aedd81662820f06c00bdf1842Virustotal results 26.47% Heodo
2022-03-19T2HYRu80lohidzizoATReNBzwoA5LRzhjb6.dlldll 17ffaf130f3b77361d5912961bcb2e4c4bde053368968b62a3e020f01346238dVirustotal results 26.47% Heodo
2022-03-19hJPDa5dDSD12z.dlldll 17538f65ad8545b8cc8bd18f0a33e374401941be4a7261d569eb6a22b5c96899n/a Heodo
2022-03-19QRgleKmtpefWJGhl0XkfE.dlldll b8504d1aad014bb2a4ce12ed2297a66486a75d1b782240df69ed3a0514c3f6d8n/a Heodo
2022-03-19miWxyj.dlldll e89f201d2794a8534a2e7729f85a4e5c35b4d8ee807228950000941c6d3aa1b8n/a Heodo
2022-03-19dKKL8Shty7AuAD8hDLd7TYM5gTiYZHFxP.dlldll b33e4693c0ee5f59b395dc06ada6b517817bab31cb22735ad8c92d21318d8de3Virustotal results 21.88% Heodo
2022-03-19mghmrrUWwC72.dlldll 20489b0eab659ad6b49012052762d6d6d621f6f985e2f620c9717cd52fc4870fVirustotal results 21.21% Heodo
2022-03-18uyXrMUFKiVkPvAgbNQfk4tX6sfRCT0HTB.dlldll 30324d355e63b7a5418b873dbc05b8e0b89a1ee65b9be99d617902629ee86f8dVirustotal results 19.40% Heodo
2022-03-18s56RDKH5GUpDhlhMIzWTddSAb1x5rTM3.dlldll 0f5b50e351b504dc422f1e304f23d151a2ec9b2d0b4d785664cdc915dfacb6e5n/a Heodo
2022-03-18JVD9fL8mf0eBC8.dlldll 9d3a764b18aa5cb7af2d56834fa30759214d84980ded1c5a130f4f9c6215bb5bn/a Heodo
2022-03-18WtogjZaA543U.dlldll 1e50da7b283ddd97a9257f6729e47e2b10cc4cfaaad670fae6fa7ebe5368c260n/a Heodo
2022-03-18xJfKOM8yGpEaBZSOwdik8DwYEPP.dlldll 3e1e5eb7e31ebf36c080e66b34c6f26583177e47c7c4364d55080ecaba26c54dn/a Heodo
2022-03-18NmympVuP3hMM7KzXJkLpyq.dlldll 6f95dbf8ed94dcb2d525a856da007ab16903fa6c851f8878b237023af49871aaVirustotal results 17.91% Heodo
2022-03-18640yPaUO1qEuoo9yLEa9KXj9JXFp0q0dhqR.dlldll fc8d4196ac87dddee5451b23dc7dbf419a2acffa7f220c511574cfb3a83fe5a7Virustotal results 16.67% Heodo
2022-03-18bEuWr8kPRWV4Z5UrU3bNqiTpfqxm3x6.dlldll eb66c16180c5b9f8c71993bf0c8b20226ee277f402d259a62e1f98c16b6af652Virustotal results 30.88% Heodo
2022-03-182vrWYHR3MaiP1vfw56IY5mvUVjiZxx3lV2.dlldll dc803a4de09a1b57968809ea34da6778a96159d304a623c26d7ee63d63cdf050Virustotal results 32.84% Heodo
2022-03-182ixbt9BV8AkE93E3qorZQk18vnY1lD.dlldll 91ded14a6cdaf92119081a61e40c82bc7adb2fbbd519085625130027df92314bVirustotal results 32.84% Heodo
2022-03-18Z6eHlpMNFyhiq8mB7dB2srYX4hA.dlldll a4a8ba5b85de92fb6ffdfb870f081209e8e025b00edad1a7758a1964c75098f0Virustotal results 33.82% Heodo
2022-03-18XyzIHLF.dlldll 183b8fd1d37672327e2f8a1b28e267ff1898ea7994ef64535ec276c0ccaefcdaVirustotal results 36.76% Heodo
2022-03-181Wwb9rLg.dlldll 362fc9e49c97640ba90ef691297ffce15fee71ac84b728f027b1f68123b01daen/a Heodo
2022-03-18xkLunN8M76b2Qhr.dlldll b610f0ca7c1da51afd2319202d54aba5eaab3b20d11929a3d4154d9ecc750fadn/a Heodo