URLhaus Database

You are currently viewing the URLhaus database entry for http://www.die13weizen.at/error/aM099L/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2117024
URL: http://www.die13weizen.at/error/aM099L/
URL Status:Offline
Host: www.die13weizen.at
Date added:2022-03-28 08:16:04 UTC
Last online:2022-03-29 08:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-03-28 08:17:07 UTC to abuse{at}world4you[dot]com)
Takedown time:1 day, 0 hours, 36 minutes Poor (down since 2022-03-29 08:53:57 UTC)
Tags:dll emotet link epoch4 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-03-29gTUeRlVASf.dlldll a8746855148a9d9b84639986f9760551e01d1dc79d969249d323efc0e50257e7n/a Heodo
2022-03-29oW50XkzzsqADxbEj6MRfVhmJgpOYi2lwxOK.dlldll be12f7367d5edca51295587c0e1c86cbac33b365c1e6c2cedf3c6f085b568567n/a Heodo
2022-03-29WAk3ssht6MQdc8SzKJ.dlldll 1c69693d4f5bdfa2851d10f0748eb7eb09a6dbf4de79d38488fa61ea91c968e6n/a Heodo
2022-03-29md4A2rlCSPRYzWXwv5AoYq2XhUo95LmFpjp.dlldll 683182fa7ea16564ff9e7b55fd41b8e0509a98f4433fd0281ac691703a7a9a4eVirustotal results 33.33% Heodo
2022-03-297kBDhg.dlldll 62948dd3f145080bce30322d62f1fefc9bac31b1f9f6ad556384aee8d0d4395dn/a Heodo
2022-03-29xxe3mc7nK3TIB51tpQGNyOEBQg.dlldll f1be4fd22c9881f4b936bbeac0f5af13e27bd53b7a807847b7537cb3405f5372n/a Heodo
2022-03-294gy3Hu2y7nCBtnNA7NFZAEOYX.dlldll 63fe7d4e274d1903bcbb18a9a229d601b3dcfbc5b95b100aebe7d7e70a6f4e5bn/a Heodo
2022-03-29lxBgEjIRhXs40FJQrZGv.dlldll 2f45d1371a27223f56d6f97793329d5b447fbae1f1b69f65d7ba73df2d56b7f5Virustotal results 25.00% Heodo
2022-03-29TnAccIyyyny2qwQkzl5K6vSZbMFxTO.dlldll 4c512996e2caffa9a1abcaf4cb154b9ede2bf904cdb85e6b9c45b1f4814a79cdn/a Heodo
2022-03-29DYt6uKXWSFXazF.dlldll 16ba6a7dfcc71fc36c10061d82c094fa66b85205f3f0f1bba797cd66e0b36f52Virustotal results 31.88% Heodo
2022-03-29Iv677g89nWLgLKPn8H8emas4UcjjYAu.dlldll edf73e3062837175d2978191088d1bf88f7cd9ed1f5c8f8cb44fa8bd56ff1526Virustotal results 28.99% Heodo
2022-03-29ihg78Y7hmTMY9jQA.dlldll 87b30bed39cda0c3402d2b003501fa32aa42ce82a57dce2f99d0abdd701ecf58Virustotal results 24.64% Heodo
2022-03-28AAt6gvgK9HmAp3.dlldll e4a1b6484ff1d69d85259a5b3f36b00f1a506c96e855007507b7f7a517e11b68Virustotal results 26.47% Heodo
2022-03-28ryox2KpXIp7QWrLLuBeafBLJCWQor.dlldll f11a178c27e29f974409a12db236bcaec1d5bf3675cfef9c6eb9ef3128127dfdVirustotal results 26.09% Heodo
2022-03-28cCYSzUCfsMafDUfbp2sqol5kyPFivn.dlldll 43c810efc9ee656ce8470d66eae2f4082fc79eb618f04a959cac4a2a01ff415eVirustotal results 26.09% Heodo
2022-03-28keXmED0c70MC3rVTw.dlldll 7dde9216fd980ac2512dfeed039394faeeb8335c2605362d849046efecd97e2cVirustotal results 23.19% Heodo
2022-03-28Ittex0awKPWVFzaBzOnLZESAoo.dlldll 23a361662a6f5b81817266a8c19312dd24cfc69a52b5d411fee7f7f856499ae9Virustotal results 23.19% Heodo
2022-03-28enKw9xMAE.dlldll 7d5898968f807789c0a81955291bd9cfb78770e019a46ae10eb5207606aef99dVirustotal results 23.19% Heodo
2022-03-28yw3ljd0ZDKrGmhdqGPOG3Bh0oTMZG.dlldll 0696a451deca7cae7ee720761f7c093abf518c37644e025ac5235e6ef6f90124Virustotal results 23.19% Heodo
2022-03-28Uzl00YYW17slJWnz.dlldll 8516fed0efe232e77fe8fac2b23361f2e42a050d784631f0994091b45ca73d38n/a Heodo
2022-03-28McUH145AGz2hlm9FpBAEAraq7AWFUrPRFdv.dlldll 872a134fe3ade673f6f395ce88a773464abb384da1addc6ce23102795a4eb4deVirustotal results 21.74% Heodo
2022-03-28fiHhDRKLlyFjjH.dlldll 629a32e996135871c1ecf69870115f894a5bce14cc680eac139c38999df4b0e0n/a Heodo
2022-03-28SnO1sYSBhhSpiH6yVq4U.dlldll 4215977906458ac82e57754aff272537bb3ff287a045214fdc7defaf8bc92a89Virustotal results 25.00% Heodo
2022-03-287eDVeHqqRCw.dlldll 824c0ed188235554d715392f1eaedd25e86cf02094fdfbd2083170909e10a92dVirustotal results 21.74% Heodo
2022-03-28JoixbziRztHG88uXqJlPhY.dlldll 1943e1578270d97779510ac2c96a68854a1b764e36013353d276d354b805a4f8n/a Heodo
2022-03-28PKuddt8YSD4FplGldS9niSu1PV9DpTe4S.dlldll 00831a08007600174ce688ebad98106940393b9b4f744aa092af479d7c4b6be6n/a Heodo
2022-03-28pVBEyGsv7dNCOd9BFwPiDXkEXB69q.dlldll d4d1714dd6a1987124768f5c3dc0915975667a2ae5eb5b93ff9282530503940eVirustotal results 21.74% Heodo
2022-03-28UVGn7DEQRR8QG8XiUQ.dlldll 4bfacf6f955f2f8b0bb21e91ffc11292fd30b2dd7ddaa063b822688a7a6f2a4bVirustotal results 21.74% Heodo
2022-03-28xB13UZ9AeAlpjWYcLjUx.dlldll f214dfed8f9c519a0def734633184552a32a9cca23f05b65b2b7fa83fd3f8c7aVirustotal results 22.06% Heodo
2022-03-2849i1xUE6WsNYVt3q0Bgi6fkO8Tzb.dlldll e690b6905fb7b5f3f28b93e31215fc64ff27f4fa1674699831fd36bd38e55fa8Virustotal results 22.06%Heodo
2022-03-28uyu3xHStBUcBzCjO3AZ62TXQKR.dlldll e9f83da2d1a66560b5ce51ac1125deeaf6e82fbc51465af6dd86c04b3b6e58f8Virustotal results 21.74% Heodo
2022-03-28162J9W34Zw8nO.dlldll 0635c138723a9ba9381c5abf00ceab62b03cf5620e3ec2f7ca87059c2a37fa39Virustotal results 20.90% Heodo
2022-03-288LmPRs4YskCdA6.dlldll 2232b5b7d30b3d6da6c0eccd09330d841ae47989afad01cf3b56f97dbbcbbb6cVirustotal results 24.64% Heodo
2022-03-28IOoeKHb.dlldll 1d5d5fbf102e2f2fe2662a5a6a01c38d02b0b7874d27f8b793292232776e0e1dn/a Heodo
2022-03-28QbT2EObIlVVTx8fR4F5qPLCjXihAm.dlldll 1dae4eab5f9b5fea44f7396d8c44272fa50ee339875e6d064a45d6c35a4b9672n/a Heodo