URLhaus Database

You are currently viewing the URLhaus database entry for http://dunyaaslan.com/cgi-bin/IwvOXl/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2125073
URL: http://dunyaaslan.com/cgi-bin/IwvOXl/
URL Status:Offline
Host: dunyaaslan.com
Date added:2022-03-31 16:10:07 UTC
Last online:2022-04-09 18:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-03-31 16:11:08 UTC to abuse{at}bluehost[dot]com)
Takedown time:9 days, 2 hours, 46 minutes Bad (down since 2022-04-09 18:57:48 UTC)
Tags:emotet link epoch5 exe heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-04-01DUEqmqN.dlldll c80abd8b06f9abe379d181a7db8316c5ef3668c66b447b271ae00feaf169c052n/a Heodo
2022-04-017FDFHD.dlldll 04b6990bfca0dae6e4b1bc8fcda3f382488da2d80fd8189008f804b020cb5ed5n/a Heodo
2022-04-019k9xXHHQ.dlldll 693c24edee102ab4563e0fadeeb2996a64cea82bc95f28b209acb82497ca7facn/a Heodo
2022-04-015dz6Mmm1RW.dlldll 0c15457ea28de4556bcd3056540ccc3987cb77be006be585e72248d5ab2d2b65n/a Heodo
2022-04-016iz4.dlldll 73620c4ddaf35deb245fec994045f86901de41e537392c7c0dfc9e86c44de588n/a Heodo
2022-04-01BaooWQleZvT0rpt4mt.dlldll e92b420653a3f99d1e39154fa03e332174745f769f2ea6da43d0faf90c49854en/a Heodo
2022-04-01BbwTX0bWAR0g6A2uso.dlldll 4bc95cd0807b9b2a869945153f3cd1f1ebebb1e4719bebd8fed4e2d2614d3fdfn/a Heodo
2022-04-01uukLcyKi5676eIaT9zD.dlldll e10756fa76607cfcde287924deda7260dfd95354b27f0ab268d35b06e2185ac1n/a Heodo
2022-04-015FsMT7Pa9fpmxCl.dlldll f35b64ac56353d211bf878fefd70983ab1d15c5eae1afdc14070e60037738b64n/a Heodo
2022-04-01UScHNVqSgHea.dlldll 64d3f22e61bf7afa140fa997e93f5bceeca446271afce1d3063f3fbaa8be1df8n/a Heodo
2022-04-01kMlnMl0.dlldll 7c8bcf02d225df95446729539769cccf995ca6c3e896e084f2fb9c19c89777f6n/a Heodo
2022-04-01nnJKQhvMTX8VgNO.dlldll 7679377b7cbfa365c6ccc8a338e34afa43a62631e36a030f6824d8f980cf2c56n/a Heodo
2022-04-019bExiO.dlldll aba0c31de4da20b4f0f1956092bf8b30419bb2cf3cda259d769ff5ca7748b0f3n/a Heodo
2022-04-01zFM1E.dlldll dfaaa8fdf26e7d90d73722434823124637f9f4f768b06f201c26b524bc58b291n/a Heodo
2022-04-01SS2i0C9R12nV.dlldll c1f91adc7791c89715404d7312f83affbd136f0adbd2d113e77508a11fe36e9en/a Heodo
2022-04-01JwqLhg.dlldll d153de0be46e076613cdd63227a697f93aef6c1783885d1bd5a14f97d6a84dc5n/a Heodo
2022-04-01PcCMhUtwz8RwQGE.dlldll e79a8b8be072dc5201604adeaca85d5a338bfd3d8a2702b85be9e16d30902cden/a Heodo
2022-04-01U4gpygw934hsHkbpJ.dlldll bdfd7002f77e1d1e3b70154df43d1d9f9f5a407e779159ed04722a515090d16dn/a Heodo
2022-04-01eR20.dlldll 439a31c479960ec09ef01bcdbce1b6951179f55d99cd12ae53e34c8cf260364cn/a Heodo
2022-04-01GASNwyCTo.dlldll 3e73bf1130d535ef2a98691341bc28c292281f02ce03456ae50db0b32f8ae243n/a Heodo
2022-04-014aaRmx.dlldll 5e0f2e9bf3e0fcc9d6071832111ed080c0a3581ce0939bc8c68f0db42eab7ddan/a Heodo
2022-04-01sHAACK4fnAlGWG.dlldll 70c495b0372267c061f6c3b508fc4f9a034e1de99dad10020f3dc2fa4824230bn/a Heodo
2022-04-013cggg.dlldll 1bce5f0dbf9f3671c94ca5fabbd6a8758fbbebb59fff716418cbdfe7ccf85c09n/a Heodo
2022-04-01xF4d4MQcVN50Bs3.dlldll 9117d52a3323969d88e6081d142388a102cfe11d8a860a8594294442080d5519n/a Heodo
2022-04-01hknwaBEZMJ2VUvgWumQ.dlldll d8040387bc429079023384f976628b2b5c363a3cc68d641bb193b8a59a12292fn/a 
2022-04-01uLQoPXvo1Lxb6.dlldll 0b5f9e124e90d558ae38f68205f9e2c551c628d521914cb4e0745ed90dcb4b82n/a Heodo
2022-04-01rlIK7n7MMF.dlldll 0a79c63143ea6dff7e746812e9e31d22f5c448bebf17c8e9f5af795cf21fe387n/a Heodo
2022-04-017isU1XtJ0BB.dlldll f7385ba82e9e600842c06107d1e09bef3b3f54fd743a1b279bc77628926b1000n/a Heodo
2022-03-31xwSc8v6u.dlldll 0a2a6040eb0abc58123cbd509df15b8b6a8bc90bcd33bfdd5286fb94c1b9191an/a Heodo
2022-03-31K2M49Wl.dlldll 3bc51014a111a7b7990fbeb8153c3ed3d7398951d0dd5cca89edfcdd1b6ed339n/a Heodo
2022-03-31DkQzBXVhooR6Y.dlldll dd439f8407f043cff1c69eefa8b03f4ca48fd18c70d6ba21387ca7e1684d0937n/a Heodo
2022-03-31wiC.dlldll 657eb02d348081f5a5bd46efc13b08e6e00bc24c6cda327e9a1f55eb70ebe6c2n/a Heodo
2022-03-31iEOIGv.dlldll dd3002a4efcfc9af7cdffb0754f1bc2d1d66c0b18fe1d9f571a60c83783c4657n/a Heodo
2022-03-3100rBdn0BzS7zYX6oo.dlldll d5d22dd9d356b510ac640bd5f4fb70f20b1f18aa7ae56f1b3c17525ec7ac4f68n/a Heodo
2022-03-31Ih3LQ.dlldll 768f26ee5b814a5cf3838fbfe9d73690297c6ae5729e6462e07de8f5397580b6n/a Heodo
2022-03-31VXrqUpjK6I99WR8.dlldll f4ee6824fbf188d8f79d5f8957f9fb4fc60795b346648c0362c83e57547e35efn/a Heodo
2022-03-31AXIcN1NgxlcNaiC4kt.dlldll b616b8388d3b6df27d63e3bcb103e290a7aefa07d2d36884f89408dc0bef6bb5n/a Heodo