URLhaus Database

You are currently viewing the URLhaus database entry for https://pregy.org/test/rXTl1DEv0CWCE/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2104593
URL: https://pregy.org/test/rXTl1DEv0CWCE/
URL Status:Offline
Host: pregy.org
Date added:2022-03-18 22:08:08 UTC
Last online:2022-03-19 22:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: pr0xylife
Abuse complaint sent (?): Yes (2022-03-18 22:09:06 UTC to abuse{at}a2hosting[dot]com)
Takedown time:1 day, 0 hours, 38 minutes Poor (down since 2022-03-19 22:48:05 UTC)
Tags:emotet link epoch4 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-03-19QVrcBB5UwX7DNFohBIHgQjztLLteoD5Uw.dlldll 0f1f34243fe49466540578acb1022492c216167502ff31de12615a387b8a7d73n/a Heodo
2022-03-19Civ9OHwRxeY5Ypn5iVMBk1XZuWpeIU.dlldll c8d15aed771895dfb6d2a07c2316b09fefc3be619193d381b92fb6047ae626aen/a Heodo
2022-03-1943Yx88EbE.dlldll debad6ae220675955051fa64596dfe1076d581b98a838ecc03c2b182dc735f62n/a Heodo
2022-03-19fSbn1l2NDUuywHHUQENfwFlix00tj0K.dlldll 26e4c6709c767ba2dd71da41222e260b896a6de3edd558d1f2f1d1d135592a3an/a Heodo
2022-03-19qCAF31EEK4bz7TTXYBcnh3hLrDkfuZk.dlldll b5b5689d5ce2c8f7971697d9d325f8300da938112c3b60d056f5198859df4593n/a Heodo
2022-03-19DP6EOcE2oL598Rbd9Y09q1nsH.dlldll 3b2b40be0c1a80f6b9825507c47895dd9d00080b698f726c0805917b37ace354n/a Heodo
2022-03-19s6lHyHqql0ANsToEXC2Q9m8n4VrdOGB0.dlldll fc0ce031b45306a33daf1025d9b7f9732bf9b5ab4683c0c8e78675b2cb3387dbVirustotal results 42.65% Heodo
2022-03-19ONpXM76hGaf4Z1ErxZwiAP9H.dlldll 90062ef06c317a5c4083831640365a800934051a81c5667ded6ed865bf41df7aVirustotal results 43.28% Heodo
2022-03-19KkjSi9tJ5w9SZXgATL.dlldll ef9a6066dcf7d2404853e47a13311d0fc0ed37c6a43d5ec3dded082b0b9b0cc0Virustotal results 42.65% Heodo
2022-03-19dEz3MjVrTJlpU7WWHMnLnz3NRXCgwaKBuQ.dlldll 034596ba883b54078fc46b3e5704863ff5059d5f1e35ec170cbcc64e0bef84f3n/a Heodo
2022-03-19gEEsBgeKJ6Ifbc4LiemcoWbDnu.dlldll a03a448ee744d80a5497101a376168d0f21e7aa5155b0c004e951a56b34e0e0bVirustotal results 43.28% Heodo
2022-03-19PCnDS6i2SfHYho5fh.dlldll b0e994e357fcdce4a2bb0ec2e376c01f98600d09441795411e3b6495962967d7n/a Heodo
2022-03-19aaSFry8Mopv9nJQ8HZ2nLLe7rMML.dlldll ab968736c07836e94c445ebf94dc1f9030cca5486562e87d56418fe913ff70ben/a Heodo
2022-03-19WgkLSSRcEwC.dlldll 966d444f46cd37c1edd6172e1111a89c1c95cfa81d67c3ecdd756c9f3f5d6e94Virustotal results 44.12% Heodo
2022-03-19jOWEsFlSqAm.dlldll f7cf07c276006ccca0054f30a3930eb90742106edef17deb649150766761119bVirustotal results 45.59% Heodo
2022-03-19MDURgOAsZhzq92Ahqh9k1iHVmSQCv59C2.dlldll 90b0b9ff503bcf79f45c90e78e616c39466d91d7507afcf2061a543542b816bfVirustotal results 38.24% Heodo
2022-03-19p4UFwpT7oiuT4.dlldll 34e1d56be32ecde8ede330ebd7e499d18f4af544518fbd73560d3e05b2c144b1Virustotal results 41.18% Heodo
2022-03-19esbHeLSS5ELgHFbEEbtTYdzTq.dlldll ab5e8969978541d5c122309aebbd81417264756dbba40dbf7e6810f2a60338f3Virustotal results 40.00% Heodo
2022-03-19SFNJeTn6X.dlldll 4b5310444fed3d3498e81b58eda7a5207ab5313370836df3ad5949e2c4afd58an/a Heodo
2022-03-19xuQf2CAP3bp5NpzgPA0SSrTPK5vpd2BI.dlldll f80d88c739eea9f281f00a9121ed4c2381216713ab4be9ff0b71ff3cd14111aan/a Heodo
2022-03-19tLwhzP37vj8BbQ16Hs3ErgaBXHOt.dlldll b341c6a82a00cc8a4cffec6f4c1dc1a7b1a97066e1376ccdf05da60c7e9f6e5fVirustotal results 42.65% Heodo
2022-03-19BYVfRo32fvB.dlldll cb39a3df35290308d54b81634e8f1f1377a417de34d37136ac8828c4412a83d7Virustotal results 39.71% Heodo
2022-03-19quW94QLw8z2.dlldll 403b4897fe5c32dbb7441f487327d862c40ecff3e60952af52e558a172d2be08n/a Heodo
2022-03-19uP1luFW.dlldll 683fc67b47f204a2c914686d1d03dbccdff363e07513c8ace3515e6574b5d272Virustotal results 42.65% Heodo
2022-03-19Jxenl7z0ze.dlldll 15f86c7dc8a3bed09740fc42eaf67a6a037edc03afe7a1e26141a099f9887e7cVirustotal results 37.31% Heodo
2022-03-19XVlzqAv.dlldll cc1f8d499655cb5985671bc8828181d0fbc955e7dc261f4b5772a113841e5952n/a Heodo
2022-03-19U7t12sFflfvMhIjiJ6LXLiq1.dlldll 8b948af676b2c88666ebd0477188774ce56785d9842217e3ee417bf17150c347Virustotal results 39.68% Heodo
2022-03-19Tthzw26sWh.dlldll 0c056f83dce77df3bb9261dd53180dc54576797b12b1c07abb104495ab93b224n/a Heodo
2022-03-19vA1q91doW7SL.dlldll 14b6bf4e9171d268f980cce7e81f052c2c6eb66b985f60c427cc484d5ebf7ce6Virustotal results 35.29% Heodo
2022-03-19SvYwQr6v9Pq8MlMvlB3f6XpsZGPH1g.dlldll 40ae3e314a2ced9a04b1913b9558968a6b2b6c17bf036b419816591684a8865an/a Heodo
2022-03-19JBjj7rotTqBIjpWpf6n5D7Sf5UkIyjdNNQl.dlldll 3d348e7b25a68f7b2c99c3c6093de91dc795937fbea367cc7556b02407e36905n/a Heodo
2022-03-19LM0rCNWz8E4S.dlldll f6b8915337da9d566f9d3c7505897af694ce27d2df2c87ce159d9efe12c3632fn/a Heodo
2022-03-19IJIYOvgWWO4WWclTHTVOOwQz0QSs.dlldll 356a504c744039d29222652c5dfb9bb1ca3cf805af69ec3d587894bae71fed24Virustotal results 25.00% Heodo
2022-03-19s2utbuubvvk3Mji5E9rrzYPD0xS6A5Hbzb.dlldll a5d7ba47dd3193d30cc721a2851b5b5551b9cffa2bf9fe55fb00ea98f91bcf39Virustotal results 25.00% Heodo
2022-03-19vEOx8itiHRf0Dbd05JyZcRUFpXmzaUS.dlldll dadc92e0da4a7600665b14c4a8423a1c307d4459c5a191f53e4645dd140da94bn/a Heodo
2022-03-19ddHojq3mcCi8iCNNxlQ.dlldll 641921218a8b01541f87e00bbb39431bc51047533e9783ea1fb592b995716942Virustotal results 25.37% Heodo
2022-03-19fMV3qOOWZocX.dlldll 64b3ce1b9c24d3b589bdb0129eb807ef807510fcc63da299a6491a26ecb425baVirustotal results 29.41% Heodo
2022-03-190xUXf0.dlldll 11c5f1a5c9bd6c9b5905d472349d5695c480bde6c0e78a6db2f36ca7aac6895cn/a Heodo
2022-03-190pUiaJn0.dlldll 5e089a8af43666d6c9a8ab026cd12215e987fcdcbbe39c877d12471a778a927fn/a Heodo
2022-03-195d6O3x0Fw21cYqz7gAbbnS.dlldll 7151da31e8868138c0b41f8d062bc61946b6f722c9c5483e8c18aa3d06a68287Virustotal results 30.88% Heodo
2022-03-19Z3ks03NbNsz58Cmy74KYN79XHM.dlldll f755ac227749924375f2f7f8d21ba174acc41bcc8879e4b5c904983e66a490a3n/a Heodo
2022-03-192GcANp.dlldll 4c5aad6461e60c17b40b0ea97e9a1f09f27daed170b1051c61779868433dbbc6n/a Heodo
2022-03-19wD8Z6xiHHMJtSsk0fTjP.dlldll 9a6692d373d1ce50740eba9c2ece6e2de304dd8c5c0e36a0f9d289c743df3622Virustotal results 20.90% Heodo
2022-03-196UcdEr8Y1jm.dlldll ff898d114451b81e0d13aec2662646f2ae3de3a34bd744e21c16baa29b7dd507Virustotal results 22.06% Heodo
2022-03-19LYg0K9OyaqJJO.dlldll 7d5bfd0cb6af30ee640ba02c9e609e6e179324883ce4a587065a82f25b9660c7Virustotal results 22.39% Heodo
2022-03-19glFbkAMzVf.dlldll 4710dcb09459f0e4713e5e29b1211f2961b69ee00eb1b53418f698f5f7520dddVirustotal results 20.90% Heodo
2022-03-19GhbKTtyyhDwwjLpGifzssU6T3K2kXOFHfoG.dlldll 4590c936b89a6c5fdc9112583da8bd773edf55f646d440aa457840231e72f070n/a Heodo
2022-03-18bYPAVyHBqiFVmPJaTgoH0EMmcepXAB4zr.dlldll 4d0af67a7370fc47017c74d0155854bebaf0d01d2f36596e088ccc7ce8ff043cn/a Heodo
2022-03-182S002obLXg.dlldll 0e8fd15b0587a04458250040b1c3a34fd02edb09f3cdd14bcf69b86bff0f9e6en/a Heodo
2022-03-18RZwvwRxYHvdcVjVv.dlldll 18ab7cc21bbe7aad22455e5126aebb12cd18b5fbae5acc42ed6df9a750a4f551Virustotal results 21.21%Heodo
2022-03-18G13AIITGKOUIeHByeOVzf8BaXkq.dlldll 9fff6a2e3b76c0079c93428718d1db7170ee62a0093ab31d6b299dcb4fd823afn/a Heodo