URLhaus Database

You are currently viewing the URLhaus database entry for https://aesiafrique.com/azerty/DiNo/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2125396
URL: https://aesiafrique.com/azerty/DiNo/
URL Status:Offline
Host: aesiafrique.com
Date added:2022-03-31 19:38:03 UTC
Last online:2022-04-03 01:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-03-31 19:39:06 UTC to abuse{at}lws[dot]fr)
Takedown time:2 days, 5 hours, 43 minutes Poor (down since 2022-04-03 01:22:53 UTC)
Tags:emotet link epoch4 heodo link xls

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-04-01CXQ-83351560.xlsmxlsm dffd85c80b8f8ac8e608958d4821164a86000b4437d9012e20aecc7ca841bd42Virustotal results 42.62% Heodo
2022-04-01BW-74933344757132.xlsmxlsm 68696caf69e14a066ca54423f72a2e7693b03f5ce299e609265a3e72df925abcVirustotal results 39.68% Heodo
2022-04-01NJ-0516763248.xlsmxlsm 3e4ec0babd7a3513e81aa3af746d0a8b2af2039e128b370d0f96b8f7773f1eafn/a c8fc17ff030feb3383d8889f69abbb
2022-04-01GPU-396853276251.xlsmxlsm 9c0534cef949cc4f188e0fb3c1017fcb7b6bc55b24bd980380c5f0a3242a7a50n/a Heodo
2022-03-31AX-27669143938017.xlsmxlsm 3cea415c72cf99f730ca00ed40940ba35c82dd2582786d91fb329459f88328efn/a Heodo
2022-03-31QMT-5294760.xlsmxlsm 10ce10aeef8f6d0f3daf5292f589879e748af9adc9d29ad0bf9143c2115cfa23n/a Heodo
2022-03-31NO-832728828594023.xlsmxlsm e9228653a673fd6de4b3fefe1e1bb7522485198e7553046fe42f97f2f58bc3c6Virustotal results 38.10% Heodo
2022-03-31NK-19104153830208.xlsmxlsm 73a1d60faa31200f09f2567671137d6b5f9be02a97eec33fc20971d151d5c8f1n/a Heodo
2022-03-31MM-7291766976.xlsmxlsm 2fa93c2dfef003816d473094a03ffe57ed6fd6cbbd21f22831af88634fc3287dVirustotal results 37.10% Heodo
2022-03-31RJC-839215040801341.xlsmxlsm 95a5818025092c8bd5c223d791220072df4eee4b7391f34e0868b32e3ce355a3Virustotal results 37.10% Heodo