URLhaus Database

You are currently viewing the URLhaus database entry for https://test.ezzclinics.com/elxaji0/BnqhzGnKzDEi01/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2108704
URL: https://test.ezzclinics.com/elxaji0/BnqhzGnKzDEi01/
URL Status:Offline
Host: test.ezzclinics.com
Date added:2022-03-21 07:31:08 UTC
Last online:2022-03-22 16:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-03-21 07:33:01 UTC to abuse{at}contabo[dot]de)
Takedown time:1 day, 9 hours, 15 minutes Poor (down since 2022-03-22 16:48:32 UTC)
Tags:dll emotet link epoch5 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-03-22e48y.dlldll 9a9e0acfe652b7f033bbd2822e4083a82e15e26483ecccab78321b7675046d5cVirustotal results 50.75% Heodo
2022-03-22yTBRtjRd.dlldll 8db28e1acd927ec42492a99c75394e6cd6dec5e46e1e0eec2abd4dce6bf375e0Virustotal results 47.76% Heodo
2022-03-223x6rC.dlldll 5169b4f8917026aff9b1da8f9a13410850a81ee651e6a413b452379f7d25f162Virustotal results 42.65% Heodo
2022-03-22QEzbNV.dlldll feb3b5267241d72335e575371379ddbdc94b718da1e29ad65fdaaf2e93c0a44cVirustotal results 38.24% Heodo
2022-03-22OyTj9FJp0fPewc0hmn.dlldll 7b368e3e045d4d4442768f4b219e9b3b0999453efd1ac7fb439b38b7fd3a25a6Virustotal results 43.08% Heodo
2022-03-22JR89G10Z20djc0BSH.dlldll 4481f424f4ee6955f1e67ef4d26f4bccdf14153330df3e7c59de268a7054e475n/a Heodo
2022-03-22EZi3ljjZsh2yj.dlldll c23a88c51a11cd18968a924da6789309c1dbfe62cc84e18f3cf58ec3dd4701d9n/a Heodo
2022-03-22idB.dlldll 1c0fbf3c51af91cbfcca53d3adb241996759cfddd80e509ed94c8c006b5e5c52n/a Heodo
2022-03-225RX.dlldll a5104ca69d1b08f44287bbfac0c09d996a93bec3dbabff93408ab085b53508b4Virustotal results 33.33% Heodo
2022-03-22pBM4aJVIwH5HvONM.dlldll 5a1347595cdeb137b68f7b71ecd7d713da39f385f6385309977ca66004f9c367Virustotal results 42.65% Heodo
2022-03-22JYnPoG5gUdWWoQzFl.dlldll 5254e038d3ae277c9675092c745fde202a6c573621ca920d6069939a15e67b18Virustotal results 38.24% Heodo
2022-03-22a7SaRUJda4mZC.dlldll f83690e338f8a084636eff4910620bcdbe255fe677e8bde970d3d3496a93853dn/a Heodo
2022-03-222pG7i7yyOcSpzGr9.dlldll e4155cfa7005b103f8a87d85e5b076ba93e9d7d8d70df37bdb335801dbbe251eVirustotal results 42.65% Heodo
2022-03-225hHeGt.dlldll bbb76f0acc7199614dc47e9fde4b16357fc67a61e82826630585ea41a9705aa4Virustotal results 35.82% Heodo
2022-03-2281NJQ5IDX.dlldll 1864940ed1076c1afd776331256e9d95c6258b3197918d057c50a70f89cfaf6cn/a Heodo
2022-03-22asGeqMlhW2Ofb1Dky.dlldll cd0951dc6952deed47d10bbcf40ffde25d24903c5ae90d7106974c8f6d93c7c0n/a Heodo
2022-03-22KjGj8sMkzYJdO7.dlldll d183e50becf3673e6b5187622849973f2da140b00001ec0e0160a62f4ca3557cVirustotal results 35.29% Heodo
2022-03-22bFVkAg1CuSwOKwPy.dlldll 41005de2781481a305b38fa3b429f9121306169137d60b4440a40cbb227632a0n/a Heodo
2022-03-220FBOUS8.dlldll 62fc5818a8783833ec08938a4b2571ac5a629f0d47db6a3f07eaf65c917a55bdVirustotal results 38.24% Heodo
2022-03-220Lu2sRc6.dlldll 125299706e82f6819e254660fdcc07c61a7aec0199fe2521d22f307bb2062859Virustotal results 33.82% Heodo
2022-03-22iGodjcv.dlldll 1962d1342ff1f9c528138d5c1c0347ac976747e62de6edf7cc618fc363500909Virustotal results 29.41%Heodo
2022-03-21ch14QF822sQlnES7.dlldll 99dd2d6c3fd0149d74ef246c6ff60fafa58c1f884218f9626d9c8edd8fee6506n/a Heodo
2022-03-21Xgc9MHSSu5J7kUZLKDw.dlldll 52764196f87a48c27a828cfa0be03c0acd60473d72dcc1d1b49d080d02ab1478n/a Heodo
2022-03-21jLu6bW6EwD.dlldll db3a799a7931fb4d3fa75d5596a0169500478cae06f50f7582aaf1ac1ee470eeVirustotal results 23.53% Heodo
2022-03-21Xsxh.dlldll c1af22813ed04cb9cb5a406e3baf9ee95c663fbdda961b7ac8fec6f697254854n/a Heodo
2022-03-21UQMiXvER9fyxpKc4.dlldll a24d34451dc4aa9d60c1f2b2ebf2d687c16a18bb6accad1752bf52eac7b225f6Virustotal results 20.90% Heodo
2022-03-21kgZrIketr00.dlldll aea44ebf9e39310497f1ec8d77927b91e97710ef282dd4ab2c7a80f9aad02285n/a Heodo
2022-03-21ToTuGHmnOb5z.dlldll c69e3e15ef58135a04f3f7a3c0d5ea673b193b28c70be2265d3903592d185481Virustotal results 27.94% Heodo
2022-03-21JQXZVbvWFDYt2.dlldll c97637b5941e83d4f3ab78e846d7951d3d498bfdeef2814a4c3614a0f5bc61e6Virustotal results 28.79% Heodo
2022-03-21YXnHyUq1.dlldll 9e35abe195e1b34ec78b5f0cbe3cddd49ad33f76cdfc31bc013f65f47779babfn/a Heodo
2022-03-21KlI4eHoH3PbkFaF2FYj.dlldll 2c88a52750a5dfd9c184d5b36b8138cead92afdedb86d0e2562a7ae71fe5a78cn/a Heodo
2022-03-21Tr6p.dlldll 9c37914e2523ef679d80077ca627c0c223aee576099b94e17a505d0972f8bc96Virustotal results 25.00% Heodo
2022-03-215skRlOyK.dlldll 0edbdf660497935f009d82351e110f7a7124d9b1159fada6ab4f0012696813a1n/a Heodo
2022-03-21rHlLfu.dlldll 507074b7b664eaa67c72f0a2dedbb66460a4df371b51265a362b4ba3762a9cfcVirustotal results 22.06% Heodo
2022-03-21QEhTAMSFvzMPU.dlldll 87d6da73fd4f7a80b52f878595c5c8647a52cde077e80b6bf06a62eacf701f23n/a Heodo
2022-03-21JbwR5CH.dlldll a54a426180e45b414efc0e04105ec169d95a594dacd024bd49200d1f6b6cdbefn/a Heodo
2022-03-21z9gpmczdz8d6.dlldll 09e68a8e7467df13cc0197b0007e76f752c395cf24a77caaea90589798c0048fn/a Heodo
2022-03-21c7yhVA.dlldll 2ed545030c33a4e7103217f63b5e440d90a42029af15f8ba2dafa3a4670e52e1n/a Heodo
2022-03-21uySi1lKfKyECJG.dlldll 3a14f17d01bb00eae4dd2344ffc872d524404d6e0febfeeb51ced7eb299e28dbn/a Heodo
2022-03-21GliIzemoykHFwGpUvRy.dlldll 2abc555e6381b82becf4e21c73d9f8f34f96f8ac7364977e8b4be6f6d9e75b0cn/a Heodo
2022-03-21aoJb.dlldll 422fee18bce2138ebc17166aa8762fab7818b7bd7f1acd12202ef1c3bb61b2c8Virustotal results 17.91%Heodo
2022-03-210WMzNqdir.dlldll 8e783802934895a98d35f343209cca4bc8a255174544e2095c802d7dd4025f00n/a Heodo
2022-03-21aUbT4o7.dlldll 266935ed67ce4b73ca7f2a4568690e72ef50aa21bf257fe2de1205666239edban/a Heodo