URLhaus Database

You are currently viewing the URLhaus database entry for http://www.construlandia.com/templates/BrRf8QDloUqNyTAdXE/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2117028
URL: http://www.construlandia.com/templates/BrRf8QDloUqNyTAdXE/
URL Status:Offline
Host: www.construlandia.com
Date added:2022-03-28 08:16:07 UTC
Last online:2022-04-13 17:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-03-28 08:17:14 UTC to abuse{at}newtekone[dot]com)
Takedown time:16 days, 9 hours, 15 minutes Bad (down since 2022-04-13 17:32:38 UTC)
Tags:dll emotet link epoch4 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-03-30emB8OGK5XN2lU4TwM.dlldll d18742da424c59822f560c48ef07ccaa98f5d0a77d25b37f5643e1945b7cabf4Virustotal results 46.38% Heodo
2022-03-30qOTMSfgtdKAqbi6ADDSqFWCav.dlldll 4347208ee0614d444456e88a3a3bb4df4f730b1cf8bf43bfa52171ceca2c1c83n/a Heodo
2022-03-30fYFPhXp0Onu5wXj1qkPBYH6kxQZ.dlldll 318f87c2a64429f1294da2b5aa4891c9b915dffaca4afc186d208b9faad68c2bn/a Heodo
2022-03-30yJ3zASeqlZe6Am.dlldll 707f81afe537751b18f7da013df1c035bf6125d113f9fb5e7576ad3254d70d38n/a Heodo
2022-03-30VUfUlsol7YBYDqg.dlldll e069b636ea05601b2ec4d32d35187f5860560b48d86b95be8709d84840dd8b4dn/a Heodo
2022-03-30R3EEX1m.dlldll e0cd8ac905b6b7bbba9fc3aa88e978f478b3c977c2bc3610236f0dd807c2d822n/a Heodo
2022-03-30vzHyK5N14HQ.dlldll 2d543486fa0527b970d5e3b4b06b37f19fcd1646a68d3098e283c6d736157290n/a Heodo
2022-03-30TenYI09f5.dlldll db636847023377c09a3e247b5aa519bf28a645102d89bfaf40157d2b3ff416f0n/a Heodo
2022-03-30WxyKTQtJCBWQsYqNECuLIIKuv9Ug1D.dlldll 332cbaea48bd63e7b29e1e2c4b5048a5589d7f713895e9ce5661286e09cb528bn/a 
2022-03-30OhQy5e3fCVoO3qXLrdWDgJP35Ytcj.dlldll a10fae2f52ddf1613af76662e4ea5c5b6afdf13346824f068c472a835b030eaen/a Heodo
2022-03-29TpKrJq1zj3VD6hLwr5C8VE9NCVfOR.dlldll 04c79f60284794542975e29f2f458e4cd8c218254da3e9b45860f75ec2cf8f8an/a Heodo
2022-03-29w9i71kuYJLkb5Q0HDLa873B4fkkk.dlldll 52deddfa0a8210ed72d318cef3dce7275d1495ea47b999b3696bb04663b9d750n/a Heodo
2022-03-296v15JRoAY.dlldll 436ecacda6c051fc1d0f4ae9d38af9f3b1f659112216dd93d2b7a1087a8580bbn/a Heodo
2022-03-29wdjHyaWFdP1QBlPQYTVaVA619m.dlldll 9f823ccc3830b01f4095e08f6f3e10e4d4ca3c36cc3c66eea0b7b9f8ef537ac9n/a Heodo
2022-03-29qjl8nQMRSbk7NIryeQss8a.dlldll f79900aeb47546f23a7a4dccaf61ba0ae07c101379594569e63cc1a1800dc884n/a Heodo
2022-03-29QjKBO9pvYkDMGynlPQOatG0uiHclzm8O2.dlldll e2fc63005f9703fabd1a21d4aaa3009bb00acf06e7d9cc1cb9eacda75e6f0272n/a Heodo
2022-03-29hv2KERofjZvND4EzT1KggIX.dlldll 1dd3d9a14968c39b5407b76820533198f4c789a66ab83a89c481543c03636605n/a Heodo
2022-03-29uhmgEr7yFLkyZpDW366fGc28ZXT.dlldll 0bd0d5e22559c8ac0266822e68218816295b8408f4d053583fcfabf7029a9a45n/a Heodo
2022-03-29F0xELZ.dlldll 79a05cd98d0f224d754054d2a089a5915579fc395b7742fd28b14a20a0b6513cn/a Heodo
2022-03-29B5qmUVQBjL2xpfeidcGEFf.dlldll 085c8982227d81aca07783a82a203a8588d503de135b4fc31db6dd2eaa281d4bn/a Heodo
2022-03-29xqvONUViE1jtuEf7GPPSmMLsNKmIe.dlldll 081dc7fbd58c3791b0ad46fe9cfb0863c191117aea8dca1db67df1b4e400ade3Virustotal results 24.64% Heodo
2022-03-29R88kUzImlnS2S2d.dlldll a10da3bfce8e86be4c2993caf19e384de2b0de965f600345f0be013b0d80ffe0n/a Heodo
2022-03-29v7YaahU0PsHI6LHHsciv7Ppmtt.dlldll 8c78840c03e6e413fc31afc10dacbd2738066370e1921d6c4b299626f2b77b43n/a Heodo
2022-03-293j4BxYFb5FZB1OhP3sbxwLVgiV.dlldll bc66e2aeb4cb5c056d98d00bcb72b2c52050bdb61e34c2161f8baf94ed392b29n/a Heodo
2022-03-29fNtjM6ygZy6jJIq5lCcDQDLYZhK.dlldll 6e3096f65f02db4bd20e575762a7f08680785e9d3df451900b09fadbbf8afe3cn/a Heodo
2022-03-29WmOxBEE.dlldll cfa56c33e0b2eb5cc6ba9981d8df9c38e1c3ce98ef80251e34b32a91ff70caaaVirustotal results 19.12% 
2022-03-29RzhVP8ZndlHglXOonNtpACsqetmm.dlldll da7c19c01372340c9dbda96545356d36ee4bf2ac77bed79cea0b7c04acaf972en/a Heodo
2022-03-29Dl4x1XXEEROwo5GlwBpp5W.dlldll fb6f6f5af9951f961fd9d0aaa391a280939a2d16d4fbaa6198f40b337a019639n/a Heodo
2022-03-29Vvnxk88lZr.dlldll 0241b09fa6ce4c59544a691ec45a21c893c9e8f70fe4d1409caac0f1dc21a945n/a Heodo
2022-03-298yxNJmsFbkTorJv.dlldll 133292bd9df6889f1d765c77aa1bd03ef0d015b50695d0db9a1a2aa29904111fn/a Heodo
2022-03-29zOthe0KEFDnD6aEmn0Vse2O.dlldll 05f6ac88f436636f6f4facc8d764ae6fe7653adb5c6b9bb643a89d22e7fe1140n/a Heodo
2022-03-29gQm6VnkEZnn2KMAmu3jfQw2WsGO4f.dlldll 3c4c562f00d2cd8f6277a032ff6645cef94744a72b99c1c3e0dc33d048bca31fn/a Heodo
2022-03-29BcTQU6WZcZvLyRiiefz1p.dlldll 1d24b46e6c066f7d932ec0659b5cd23b7d167215b8e30bb0699720f04639e0a8n/a Heodo
2022-03-29BJ00VkhX5LzIKfhMMFawidhhO405p.dlldll bb5f2bdc4880d73baec00b85e317dcc25715c2e1ead5b777d4efefb2645a12e4Virustotal results 27.54% Heodo
2022-03-29JUKFrJ22wF7RH.dlldll 67df1cd422cbd04c6534522ae855b711b8276f65c343fee048457dc3171c8097Virustotal results 36.23% Heodo
2022-03-296DCaJQZy2i.dlldll f210c9be6e2184a7a75433a36380e0c879946296f7bf37685582bf7cf3956dc4Virustotal results 27.54% Heodo
2022-03-29ubQQG1Q.dlldll 621fd6228c955806fd62a4bc2401f9959d1d560ce874477880daa6d937b7a1f7n/a Heodo
2022-03-29IcOrivOiOBqbDyQTndbiXZaKB.dlldll 8b5c10801256cb0ebe47c221e30d29934e873efa8f2a016389f84f5ec1ceb8b7n/a Heodo
2022-03-29QLfabX8hidGTDsr0Pdjh.dlldll 24c2037d61657c3d76e733b53d39da8df7d127b51bb3268c7f9bcd771b870adeVirustotal results 30.43% Heodo
2022-03-29oJpbJ7jYxwy3v93OZiqtTl.dlldll 9ecf494d4baca5d341f85e7c8147951e3c02e29d7b98362bb1bf9a825f0ba551Virustotal results 26.09% Heodo
2022-03-297XM0hRg06eyTnARNKOzYItfBUJs.dlldll 5df58c03ab623bf409b077e109a05d8820babadf350e437e1738529ab0b9dd61Virustotal results 30.88% Heodo
2022-03-29ZOP2Uv98FnrOKAAZ7vkqGwdevmZt5M2scv.dlldll 396a4c03973f20440f54807bea14785dd8b1c6a51a3d0dab4669177b2c800613Virustotal results 25.00% Heodo
2022-03-29LG8SIg.dlldll d3cb89ef2a974f5cc92f1497dfcb077471e2a40b63f6a0ca5abb704d262ec8a8Virustotal results 26.09% Heodo
2022-03-28wzamszLPscbVVTwpJ8d5vVZeLJM8u9.dlldll 75fc7e743c9fe006ab410773d4def5720a2f0f6654477f872580dd0f24f102a4Virustotal results 30.43% Heodo
2022-03-28O4Dwm9Y8Ui.dlldll 322281c62ba66b1928a4edebe3ce1770b50a4a87f5f7934e6f6be69a55654215Virustotal results 28.99% Heodo
2022-03-2812NVKJk.dlldll 33cb9bdb385126c805f7f75d707a14a2082f41433676014321bd6d42c8e88535Virustotal results 22.22% Heodo
2022-03-28K10jXXNHLi5ALTTg1sq43P5QmfBORAK.dlldll bc74faa1895f173620d5b8af4bdc149b495a3312abb3e07c8312c0f808198480n/a Heodo
2022-03-281edTJw710whwu4z3Pi9VDsbf9.dlldll 966fe30c214f72d3707dd6682704afd0bb027bee62c891defb887f666158177dVirustotal results 23.19% Heodo
2022-03-28KgsAu2R.dlldll ca141dd77e29510f87ef32b1b6dfd255897938cde0533fe124a14b2f2dd2efa9Virustotal results 23.19% Heodo
2022-03-28U57ndu4.dlldll 083b6965bb075b6abbe682a64f0270da136d6dc5e32881ed2d775874ca5c6f32Virustotal results 23.19% Heodo
2022-03-28HcAuhKJf.dlldll fe8a8ea37f5f1d5403bd525f4df13ad86eabfc91ccb3842a12645f5dc0342235n/a Heodo
2022-03-28Dd1IEETFlGU9g6p1cIzNbDNSIa.dlldll f4abc3b812707f72a776b75820559fa1b0cf115d11ae518a3051b5edd0c716d9n/a Heodo
2022-03-28wTf0KzbLHklRnVWWuSJkWCQXl.dlldll 188cc42fbb2bca3c15a66614601324e8eb2c922cf239903fe4b79be8b11b1d76Virustotal results 24.64% Heodo
2022-03-28fL9XhLro1dB65v1c4thod7v.dlldll 1e485e297fcd4394d34a8526f58da244593fcb3b6a110c086d2a6e1b0fa80210Virustotal results 17.65% Heodo
2022-03-28KkeoiiEvQ5LH.dlldll 84a991c4ac88bf95806d75542c570e128b009bd78358bad78d6b487e275b6140Virustotal results 17.65% Heodo
2022-03-28RnKQmRR6Xn2OGmN8nbOWQDfP4ywMDeR.dlldll bb788cd05e53df317c9c48a3eefe77b041f2550475cffa2a89986bcde164947bVirustotal results 23.53% Heodo
2022-03-28RyGRWkTbB.dlldll 2d754a896cc7416fe4f9fd25f2fc83af5f61297d1c22951a99deb09a8b584663Virustotal results 21.74% Heodo
2022-03-2863EoJrxtE.dlldll 79edaec227016c2a089872b2889e0e8e3b95630d62caefebd15aae0cad4ba7f3Virustotal results 21.74% Heodo
2022-03-28OFnw313ezl9aAOXZnw2xWRvpxEp5.dlldll 4350b4babb042b69cc73118408bd72abea0e60782a4b5218afa569bb025108bbVirustotal results 23.53% Heodo
2022-03-28QXLjjM0jAFVKDwKpG4ET8.dlldll 4e6e3f6c606d50bd95e08361d55c9026400694e8ac6a818d078b58822c5f8f55n/a Heodo
2022-03-28NlF34SQIhXPcYtC0IU6o.dlldll e07e2b08092f57355c0736d3f4a3badfcfc6998a139c1463c6234d6209a3b6a0Virustotal results 21.74% Heodo
2022-03-28g0daxTajxqZYQ6IukUO7NnkpMp2csanG.dlldll 82a556675aa3b17a547a38a8886de350e03bf46bb0cfe14a826b04c6424b9d53n/a Heodo
2022-03-28Q3NsqIgkOsEfJHMv.dlldll 88d98e9d6c6a47ec46310e5ff5c2472ce1402cfb408400bddad462c949c7d842n/a Heodo
2022-03-28k46Xcn5XHPoYUNRBOOGtO4hisUyCnkSM1.dlldll 40a03eb0744fff5d76f0ba938a869f0ae9ec5fce02254ab4495d7d530019e5f1n/a Heodo
2022-03-288ZB3mtElP7oSBmM9lCek9IA9.dlldll 79716f259b0eb04981fe29533ef771bb7204c57a61a4f3d61c76943dc58f9a72n/a Heodo