URLhaus Database

You are currently viewing the URLhaus database entry for https://www.cfoodsnepal.com/index/rvAYVKkJgVWiCwt0wV/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2112222
URL: https://www.cfoodsnepal.com/index/rvAYVKkJgVWiCwt0wV/
URL Status:Offline
Host: www.cfoodsnepal.com
Date added:2022-03-23 11:31:05 UTC
Last online:2022-03-24 14:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-03-23 11:32:06 UTC to abuse{at}hetzner[dot]com)
Takedown time:1 day, 2 hours, 45 minutes Poor (down since 2022-03-24 14:17:39 UTC)
Tags:emotet link epoch4 exe heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-03-24c4Amnvv9WDkIeMVW1K3T9cpXBixMR75RiQ8.dlldll add85027db3c877d08c7f23a69a69e2add28ea52af6f134bef458f40e80ec829n/a Heodo
2022-03-24T94RvlZyONsbyZV2EcC1MO.dlldll 9e3f4c92a396a6e4e4b42270386ccb334e453780f1ee58bd0c25660dbab1f064n/a Heodo
2022-03-24R2D18HxMFeSts4.dlldll 5c84009bb41a62ad63b34029d4fa21a479c02d6261492847a1fd441f8396e58en/a Heodo
2022-03-24SinNpp.dlldll 300c8c03b0b55341accd53b8bb995212172bed014f6c0aeb611ca4d2b25c3487n/a Heodo
2022-03-24uMQo4HnontLGtv.dlldll 31702d42edc722a8c531efac71b061ec5b444b1965de9ab757832623be3e4284n/a Heodo
2022-03-24MwTKJUTYeFbwPqZi8Tep1SdZygw.dlldll b87911c8094c3a49133328725b85b8daae88c27bd04d20d0e3c171da25b4ce39n/a Heodo
2022-03-24NyUm6cxBSckIFjkuTs.dlldll 188210cf56d2a04f8a046063f89c61a946549d785e4057dc1cdf0b4632db38e4n/a Heodo
2022-03-24SiDpHBOuIye11aStLm1GhsPnK.dlldll 3fedc8e0312e014e587331de3f1d7989a8a400c6d1145fb0a9bb6045e5684e56n/a Heodo
2022-03-24kqTowfAYkTKUwctTi8WGOfY.dlldll 79e2a2075c26575ac599d42c34dde5bddf5ec4db0072398ea4c57317aff38c4bn/a Heodo
2022-03-247cCGv2aTT3YYDE6Vx7VPA.dlldll 34f455c24414cc929c3a973ca57bf9c0a094d34e9b38cb2ec8229879895c04c2n/a Heodo
2022-03-24SKIDvVM0Z.dlldll 47fd9ba6011298b0f28b7186cbbb9d7b80ef70c699bc1cdef6566872d30cf412n/a Heodo
2022-03-24rT1NRqs5rzBEDfZscVF.dlldll e9ebce8b41d8b46d31d2b5be6d756b11af8e5eb6e5e6448c16bed03ee9967701n/a Heodo
2022-03-24tt92SBnYstqWJ0iqatdccsejWrsN7LM.dlldll 6d5e937af1727e3d710419487581315f6775300372f5c8f7812ed2fbd90a1414n/a Heodo
2022-03-24VWwldkdP.dlldll 7003e9faf49278c3ca0abbf0e257c8baf8c780828faa87be0bc12d85a5e31cbbVirustotal results 15.15% Heodo
2022-03-24Yy0JQWgEI5u0AmgTOMyU2O.dlldll abffca97a0e70835e6299d1dbf2a910e02206ff7a41a89f249270b4a0f71a324Virustotal results 17.91% Heodo
2022-03-24UkPaB2iIP.dlldll 7ba1d2c384cc4ed041a09e269cca6fe959ac60082daa74c3b62d103b3ef003a6Virustotal results 15.15% Heodo
2022-03-24VzLvER4kAI3CTCx3yUCt8wf3vxmYRHPZJ.dlldll 58f3db56c238e526d33510686f62a7c0db941e964f321b9fd208226f02d0c813n/a Heodo
2022-03-24RxPEMPzhISunt5VVZqCNGsIxlcAh6pZUYF.dlldll d2867cb769a8c0a32fd2bf017effa9ffe069cc31535f83193bd5168c2b793390Virustotal results 12.12% Heodo
2022-03-24ZaitkntOw41q51k3HA.dlldll 3ceeedc81e28773048fdd89537f841007e321572410dbb7a17587f56789c88daVirustotal results 12.12% Heodo
2022-03-24VRmEBeN6NFsgieDCNb0A3lnpjk.dlldll e08d4c707cc2ea9c67f6d1a28f4058188a127e4350cf56c2013f70b7df99fdf7Virustotal results 13.43% Heodo
2022-03-24TfigQFDn0vpOjlS4zxJkCvrwt7L.dlldll d977a64b2c917117930c8dc4871eed2246dad0c1c368ee926130ff66d2cc79a3n/a Heodo
2022-03-23xNZSLnRbCZzvnqltpObj5.dlldll ed5caafe547724b9682749772a9823592004a0b31e2efec39427929e6a0ce9e5Virustotal results 13.43% Heodo
2022-03-23f53G03IqPmaSCfj1rIbuR.dlldll feea3b7533b812229a5c4bc14d7d0d81320d1fa69f890fd77107a8d3244fe076Virustotal results 13.64% Heodo
2022-03-23oeQ2PI2yqC.dlldll 1347cbe27fe5b8f2e6a8d5ebffcdb3de2ea89e37fa221ac2e3904517339fdaf7Virustotal results 13.64% Heodo
2022-03-234CmvEwwIZRmm3udjY0Lh5hffYQ.dlldll 992dda50b674954ce830b2bb586ee0ec278f9829021d0c1c3b938a91aff8ba58n/a Heodo
2022-03-23CHLHWuZQuaH.dlldll 78fcecd012150b2bbb137ea3453fe375e7db684ba18c307cdfe25f166662967bVirustotal results 10.61% Heodo
2022-03-23p3wXuOLRX5I1F8k7YqZZxeWyt4B2U.dlldll 555c7ab97d94ddf44a2af8417270fb914ad45f8831b4bbd677be784d6b3d43d8Virustotal results 10.45% Heodo
2022-03-23cM2YSypRUaw6WjKzHGFPxD.dlldll 7e17cb6ed2c56b1b6138b2655196c24be0a2ba3712c2e5412dc3479c33cfdad5n/a Heodo
2022-03-23lfPDQI.dlldll 8dbe2e923f8e0b343e12985c12fc588234a519741ce49a2d318818121de5b99dVirustotal results 9.09% Heodo
2022-03-23ONQVsTmmmssYiw53xSZE6.dlldll b5b09a0916b965c19f2b23143ee6abad62800bbd5690b7f739a8c1d5bb0ee0edVirustotal results 7.58% Heodo
2022-03-23fbikEiaa.dlldll 9f6b9dcc27e56139c95e1954866845eb431e9d8559edfa0b1575f1fd0553f2e1Virustotal results 17.65% Heodo
2022-03-23MW50iwxcrGfINGdqyfYk0Ufr2RPdS6MLmR.dlldll 7b4094b1812b8ff552cf496f5de2a470b77849c9076ef9fac86078a2e5997334n/a Heodo
2022-03-23Ufz2As4JQQ03CabDdb3cRgNM.dlldll 5cf1bd7c7784a786917626b1ccaf1f0b27bbef6d421333d8942240eaa3545fc7Virustotal results 14.93% Heodo
2022-03-23k7qkFhKqoSSg.dlldll b9385d697ec75590b67ec44ddc58cbc8f8d467e06c47595d0d06947967361251Virustotal results 16.39% Heodo
2022-03-23P8sNlWlKZXTmoDNnP9Aoousl0.dlldll 5fc208f70d544e6c951d6d70d2e55a79541b93601ea2f0c448a78df981b4934aVirustotal results 13.24%Heodo
2022-03-23ZHjjVfviPHJGO.dlldll ea141630cae125dfedadeaae412f8e4bccee2583415ec55f365980eeba410303Virustotal results 14.71% Heodo
2022-03-23T1XYzGmbZaa.dlldll 5214c68038e59dc83378c62f3f0006a186b68179615d91046eed4586f62ffbccn/a Heodo