URLhaus Database

You are currently viewing the URLhaus database entry for https://dancefox24.de/templates/owT/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2159078
URL: https://dancefox24.de/templates/owT/
URL Status:Offline
Host: dancefox24.de
Date added:2022-04-21 21:21:04 UTC
Last online:2022-04-22 22:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-04-21 21:21:18 UTC to abuse{at}1blu[dot]de)
Takedown time:1 day, 1 hours, 10 minutes Poor (down since 2022-04-22 22:32:00 UTC)
Tags:dll emotet link epoch4 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-04-22GqflgPuvJsI91P6D0LAwp3YRh3r8C.dlldll e78f92e5fdfad218c86ba34949a245009d603a0f135d61fc6279d03cf12265fcn/a Heodo
2022-04-22y273Rp39FKnG.dlldll 756454b0988b3e9ffb79ca94a44b71c8f0bdb7979dbdd2615ff1984903ddd7f7n/a Heodo
2022-04-228pJXR2Vd0wLH9e.dlldll b0699b7f3b2ac61aa63a7a6e797bbf76c5132d242cf39c0790be52c5635074cfVirustotal results 18.18% Heodo
2022-04-225ofKjz3pZKw6lpuAXQcATPsodlKqJ3.dlldll 7b1561bd540294cf2e9eeb4cc18b9b604f7258d8312f76ee64a1370ddaa90055n/a Heodo
2022-04-22dT0TwrRBg86PRljrh.dlldll 6d56cd35f5113417191ccbb9a8d31a3d0f3e935d13c256116ea572a660222421Virustotal results 16.18% Heodo
2022-04-22x6SwV4JcyYPklPLhFM24Thm8NFJA0cez.dlldll e344736f9058957e156807e44686eb8add3a9fd19f47786bd48e60ca479f0f59Virustotal results 16.18% Heodo
2022-04-22vQTQqhaUQS03FhD.dlldll 396cea63ade859cd041ba49808cf2cff6e0dd5041413b998f76db2449d2a4767n/a Heodo
2022-04-22bVGEnLZG9oVN55.dlldll eb240780b2da3679140be3a35819db2044b337380987127142208c0b7c0fc222n/a Heodo
2022-04-22hxhmHVmLVa8.dlldll 3f28d6f3d667ee3db651b19001ac9a9c0b4ea37825a9f8c54c8b43826a63b3c3n/a Heodo
2022-04-22VZjs2RxVfMzWUr0HV2QeAkD.dlldll 47bb060df23c18a968b29d69c429ea90ceeeef94a922b27b94361641f75d3f22n/a Heodo
2022-04-2266RdHgg7aLlve.dlldll 1cdc142bc36553cbd54bbd13744006d39bfcb0ca8f4e6e59473c46f4a80cb711n/a Heodo
2022-04-22MTVmGfhHpTS744fjoTdT3ryOOfJyvM7.dlldll a7bcaa0e06b097579f466c4d6cfa7606f983b92cf60bccd28081243f4d5b5c54n/a Heodo
2022-04-22bvlR1t4Mxzr3L.dlldll 3943708a5fdc7346b0119bcb1a2908149cf64ff162f74518e72fcd1ea8d89739n/a Heodo
2022-04-22ierHVP5aR5aGf5ZaBpqzR3ISuqAFQir9P.dlldll ddbb88369f3b744f4283c4daebdc9c7f7b86095cb5b8c0672b49d7021c77f480n/a Heodo
2022-04-228PNfOSTGzYQcdQo.dlldll 7ebddb45bf5a280b4b825231b8435f132c2c15d49fd0028e82d18d0bca0a21a0n/a Heodo
2022-04-22TXZ7EC3DiYKjwkNhWgjuB.dlldll c5759ccb5b7e9797b6e285657bbe56abe48be2fbc0fa76925933e651d73cb869n/a Heodo
2022-04-22DvyQ1cchKYzh8vj.dlldll 76805d746a57798cd08c652a21a995363633b4cff84672214ec49d09f835314bVirustotal results 13.24% Heodo
2022-04-22EcHQsZgN.dlldll aff4317b7c6378f786a8feff55f8e20479ba264e25c203b5048f75ef664a5ef9n/a Heodo
2022-04-22qx7J56xREwfCBki4Lk0.dlldll c6dc7f437b9e7e7ab4c1fa8216a6307c7876bedfe87ea072cc1e483aff3649fcn/a Heodo
2022-04-222wN9rO3SAfLb4A736vN1p5Vj9qMGA3DCNh.dlldll 07f225b707a90ae3c53b249e25bc06eebdc05ef1620de6ef3f73aaf9c2eb5123n/a Heodo
2022-04-21WkFz9b5AvqUDlvzN7ZCsXII8RZ4mpU.dlldll c771872ba3e0724e5a0b844f8b1067e8d03e2537e27827f5b253edb0e1e4536bVirustotal results 24.24%Heodo