URLhaus Database

You are currently viewing the URLhaus database entry for https://dentaltogether.com/wp-content/YNscIH7jpwh9twPhWol/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2107997
URL: https://dentaltogether.com/wp-content/YNscIH7jpwh9twPhWol/
URL Status:Offline
Host: dentaltogether.com
Date added:2022-03-20 22:09:12 UTC
Last online:2022-03-21 07:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-03-20 22:10:16 UTC to abuse{at}digitalocean[dot]com)
Takedown time:9 hours, 6 minutes Good (down since 2022-03-21 07:16:49 UTC)
Tags:dll emotet link epoch5 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-03-213vPhATo8mOE.dlldll 293539152102dd7c01491d5411128f849a5c3619b39ef19e3f2f1d14668fc368n/a Heodo
2022-03-21HE5bvRH.dlldll fc6a9959ddf512f2baa5044b31f29a0d304cf067f3a0e6adfb06270dd7bd0699n/a Heodo
2022-03-21cr5JQC.dlldll 50c30511c68182b67ae0188ae95fc19cc5bc21de461a8f8b99a75bcc76dbf1f5n/a Heodo
2022-03-21DZT3WHt18Al.dlldll 4bfeacc3d596b07adcc8a3b2fd0409a3f6d65f2e93d41e040a5f0d988d2b59acn/a Heodo
2022-03-213xjadvuRTZBMOe.dlldll c10d1311bd5a4ad04dc64f7ed5857b9e80b513dae273708be70e66ce1442f5a3n/a Heodo
2022-03-2109YBgFGqflgP.dlldll 59b95d590b34571e4244d68ce6959764febe063b56873487290bb5c3d276b063n/a Heodo
2022-03-21xumP0ZyY4w.dlldll b196b2fc4743793441707e2364063f13263b30dd732ad1dbfe10b1188d455354n/a Heodo
2022-03-21CmbFElSV.dlldll e92861484d7ea7053bf7d8a615d5fe817350f22ff0ee7c437b9f921ab0df5121n/a Heodo
2022-03-21VvhS66mzyzOKJCs.dlldll 58bf865a0b07bd1d40354c7e18a28c6ccd5783f8ce6c05df57b2732822f41541n/a Heodo
2022-03-21nytUsKGv08iCtj7K.dlldll d7ef6f00f95911d52b3b3a3e9d00701abe634bd6bce6ae03b3a2d7a379078148n/a Heodo
2022-03-21txM6DPMIEqXvz9j4J.dlldll 02cc4ef17f2e3d1661979d2e5fb850e5a04fdf113c9b0d5ec97fd96bcb6ed6e2n/a Heodo
2022-03-21wypQmYbtqupIUM.dlldll 613ab893402b17a8dd069ea8f6e85afa8eb8505b517cde514f7e123cc724c014Virustotal results 36.76% Heodo
2022-03-21Qfj3PK.dlldll 317c162a01addc0510e12d8932c9dd93d3c0b3747d7cc2bd0ffdc57b6af49f1cVirustotal results 35.82% Heodo
2022-03-21OdNpvXIF.dlldll 386803f04ea024ce4547d2570e3e243a2fdf5e4734c585ef429465488642e28eVirustotal results 32.84% Heodo
2022-03-21MkOg.dlldll d43dbd956c0bf840e8f5bbd39ebfc73632dc881422bab6eadd194d95f24b32ddVirustotal results 34.33% Heodo
2022-03-21aX2XHj.dlldll 87d008e883e29e4312596828354b5d94e024d5dd6f8fb1db8af14d360fbdb005Virustotal results 32.84% Heodo
2022-03-20bKCC.dlldll ffd1324840d4b04a40cb46e3506e830b60814be3086f61294329131734a39725n/a Heodo
2022-03-208f816JMY9i7ouIEo.dlldll 146c91c1ef2d61c06be1df741ca1c05d378f57c15b4a9fbff04045b1d491f7cfVirustotal results 34.33%Heodo
2022-03-20vp7wXXF2nq4eC4fJG.dlldll f5f333757aaf3221868571bf01acd79cb3f25901f1e2ebd9c8f656896602b370Virustotal results 31.34% Heodo
2022-03-20xZ7xQ8eC2KQb2I.dlldll d51fd03c93775beee61afdd16eddea9cfabb4233bd2de7670c93f66958784114Virustotal results 31.82% Heodo
2022-03-20hnvNOEcuGDZ.dlldll 190da2b6963fac7d8db7c6358c4cc6b3c294af4a91db7c37ee171bd75ec75687n/a Heodo