URLhaus Database

You are currently viewing the URLhaus database entry for https://garrinbar.com/css/skwFZe0U/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2104719
URL: https://garrinbar.com/css/skwFZe0U/
URL Status:Offline
Host: garrinbar.com
Date added:2022-03-19 00:09:08 UTC
Last online:2022-03-19 10:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Status unknown
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-03-19 00:10:11 UTC to ripe-abuse{at}0-1[dot]ir)
Takedown time:9 hours, 54 minutes Good (down since 2022-03-19 10:04:23 UTC)
Tags:dll emotet link epoch5 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-03-19eTVZaC9.dlldll a1adc7bdf9cd66efa7ae8cab166ee64481204a80f46a7772fcaa2b0618a26219n/a Heodo
2022-03-19sQSDOqCaFnibsimTE.dlldll 8d33643de9b5692fe0c3db8e34949eded5801d433eeac69d5d2d7d30ced721d9n/a Heodo
2022-03-196UUQcmNCXKNTfp0l4.dlldll 598822aad5987da147b6b83133f260fc04a3c5f5faf7effa56f47575360fc982Virustotal results 30.88% Heodo
2022-03-19z7pWfhH.dlldll 847939fe87ca4ec3c4e4616bd2fb86f57db68648955ae4e005623954b36212f8n/a Heodo
2022-03-19Bmmn31D8ACRsf8xk.dlldll 556944818b53c693484028c33bf6e9ea35f25b433306a578d23a0cf6b9e9a7dfVirustotal results 29.41% Heodo
2022-03-19a4kcO9I9.dlldll 698a1fd2a41e0dcfdde4e8a9edeacda2786eeb3acc80b62fa705272de40d449eVirustotal results 26.47% Heodo
2022-03-195qmhg84pN.dlldll db1e7ad9f2c95229249c05fce8e54379a4a1f315b5664290c3e42f1b8df4cbe4Virustotal results 29.41% Heodo
2022-03-19Vh2BddITX1IF9O.dlldll 2748165d5da66361fcee2943a4ed3af68bbab33b247231700c5d0c9b7ad3ea45n/a Heodo
2022-03-19cp9ryVjeaihgqN.dlldll ea4232830f82f6e37a356880d3564d76375106f48ef8ba15a677e5d9e46786e5Virustotal results 29.41% Heodo
2022-03-19ZQyVF4KngXw7wwZ.dlldll 4d33142a7966b7a5b3aeec4ec881422d7b3a13ad80c5fd21d320e82a33fdbbcbn/a Heodo
2022-03-19PkcfqFuG9fST.dlldll b3ad8df3bfef200c1a848525933ccbd203c62d0c240b977d019fd3a7491bfcbdn/a Heodo
2022-03-19uOkCYb1.dlldll 02759146200432fe5341f04157715fd73abcac3f401601840ec2a94f18a7f93fn/a Heodo
2022-03-199iwhWNOctMc.dlldll 5949b446f7e227e46524f2911080bd2a0cfe04b89a00d03c3fb8965837f5c0fdVirustotal results 29.41% Heodo
2022-03-19AvWhI0UtZIYWrX.dlldll 4a54a4eb236afa12d6bc4d509fde66f72bfffef0c7e3608f295eb1df771404e0n/a Heodo
2022-03-19XLCXCI3YhaeAr6B.dlldll db4e9ad863549e50e9aee84a2f9c87e68ad3f18feaa0e385ceaed84c183aa072n/a Heodo
2022-03-19FsEWc67Vg7KJcL593Tn.dlldll e133626f4ec5c2a3335c0f120a98b625f0582a563b51fd4f5a8c79b0a73b4323n/a Heodo
2022-03-19G5V5U8hLqPOAmgdH.dlldll 51c45df4ad55a27528de48e14a516a439d0f3ac811728e4f7b67495cf23e6989n/aHeodo
2022-03-1955Vr6doIM.dlldll 05e11fe7f9411c89b8a9777e032dc2686c8d61062c696ed5fec491ff51d43700n/a Heodo
2022-03-19xafpIB6QWI.dlldll 2c3f5c956909b23a19a8b623e3c60fb729f7f651d98c7d62e58ff80b4764acb0n/a Heodo