URLhaus Database

You are currently viewing the URLhaus database entry for http://contrid.com/6vwkQmRU/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2114428
URL: http://contrid.com/6vwkQmRU/
URL Status:Offline
Host: contrid.com
Date added:2022-03-24 21:19:06 UTC
Last online:2022-03-25 07:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-03-24 21:20:11 UTC to abuse{at}digitalocean[dot]com)
Takedown time:10 hours, 13 minutes Good (down since 2022-03-25 07:33:22 UTC)
Tags:dll emotet link epoch4 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-03-25zwysVhJGfy6h2yd7N0RtMRsN0kY.dlldll 536b029a89168cfbc9fcd0269a79b884ac75c4195868289552dcaded1d5423ddVirustotal results 26.47% Heodo
2022-03-25C3c4nF7bo6QL3ZuKe7G90Wz.dlldll afbe6aaf8576692e7e3886bfe5fa22b8fcb686fe1d9b34af91d2077eae3f27a2Virustotal results 25.37% Heodo
2022-03-25mi7S8vJp.dlldll 9d814beba1750caefc11e126ae39dd0be12d71b0eb67e932c5c2aa29e58fa738Virustotal results 22.41% Heodo
2022-03-25bUaafxHK3dm4Nk.dlldll 7470b4296b39b080af53f1c161c61f362f2e21bba9036d4f3feca620d36a78c5Virustotal results 24.24% Heodo
2022-03-25PwlMy3zThNsMXtlEF5k9XdpgZesRsLip.dlldll 8e0eb212ff62f6438d927bd342789c0e4cb04a2e2cf6bd26d66391380822b942n/a Heodo
2022-03-25mdLARXQChNYwP2.dlldll 154f66b4782aed103df90b5d972b94aa9eb790926f21492f42afd9d50c8edaa1Virustotal results 23.53% Heodo
2022-03-25uGABeLZbA659fIfmHOOQAOk6xOj.dlldll bfccfe10da83e67eeab3fceee3b8efb6034f04cb9e6b8fac722fa4f1ff1d141fn/a Heodo
2022-03-25HfPK2mdWUf4aw9.dlldll ff3114fcf357f2db75992e1b1fe052cfa6f576dd71ec08d6bdb41d77f4a4252dVirustotal results 23.88% Heodo
2022-03-25Ke6YPosuVLUR6xXtTJvVVyDmEvH80.dlldll e4345c94e443f77ed3cf171d14289b8790cc67fca8f3fafab7fc2c54aba7a3f9n/a Heodo
2022-03-25KoKnvgWI96wXCGOro6HWdJrVdWN8Y3.dlldll f048d5efe56b80d008776bd8d14def36be896684877fb95f877a8b2d664ab6f9Virustotal results 23.88% Heodo
2022-03-25TTxPJ3.dlldll 77739cf0508a11d7201bf4c476d59d519f4c121bec845435c823d69f19b4f628Virustotal results 22.73%Heodo
2022-03-24WEvKO7zO5Z4GN3Gl.dlldll 926c22048f2223c11e0e967ec7148166a4e764f70667edb67bc0d3aaef2a635dVirustotal results 22.73% Heodo
2022-03-24yLwI2qDVmKZ.dlldll 6f39b2f239446c994c49aeb08fd2c08d8db54aa450f36d8e4418a7a85b23f642Virustotal results 22.39%Heodo
2022-03-246Mr7x6tjFrYfGxtWYR77DHyMdS.dlldll 29c89d17d9d443c70e64d5a24a497655522fef2483694cb46aa474c0a92ced2en/a Heodo
2022-03-24K8JG002.dlldll 6a75ed035dc607c39c9f33a1ca561a30c6fb3f1f01267318ef978a71a8b74847Virustotal results 20.90% Heodo
2022-03-24Pkxxw3nXtCXL5Yx2.dlldll b73f17b77bc9b1b01f31ea6e5bf166876479dd56a0ff14ff600017d11cbcae65n/a Heodo