URLhaus Database

You are currently viewing the URLhaus database entry for http://dn000893.ferozo.com/agenda/ckU4orOn4/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2166152
URL: http://dn000893.ferozo.com/agenda/ckU4orOn4/
URL Status:Offline
Host: dn000893.ferozo.com
Date added:2022-04-26 15:20:06 UTC
Last online:2022-04-30 01:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-04-26 15:21:14 UTC to abuse{at}hostmar[dot]com,abuse{at}dattatec[dot]com,pablo[dot]pepe{at}adinet[dot]com[dot]uy)
Takedown time:3 days, 10 hours, 1 minutes Bad (down since 2022-04-30 01:22:20 UTC)
Tags:dll emotet link epoch5 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-04-27HVqUxbrb643512tgwpl.dlldll 34ba8d9a2fc9779c2261e2c93856d5b24aa6c46048b3520bea0595258f0b9f7aVirustotal results 12.12%Heodo
2022-04-27MFb8RoIZxvQlG.dlldll 05c62a24bf9f0aec5cbae61f451f56a63446fb4b6a58cc6388724c0bdee1389cn/a Heodo
2022-04-27wVs.dlldll be8553590e2d418b10cea1952aed40029a7bdc51c5dffad6180f8c9ed47c4f51Virustotal results 23.53% Heodo
2022-04-272Auqv.dlldll 54d06c8f637039da1f4171ea94ed9e6d67b92fd93117e8511e4fe6b53be7bba0Virustotal results 20.59% Heodo
2022-04-27YXlVPzcSZ3gX1md.dlldll 6e2e95e27339158d9267ac92baad48b6796f36ba8fd4ee94925b07ed3352eb80Virustotal results 19.12% Heodo
2022-04-27gTJJ.dlldll e914a0a14cb58e2839361e5163d98cd79f57aa9fce001f4ab0f2196c61db37c5Virustotal results 20.00% Heodo
2022-04-27GE08uQjoYoSTW9fotgt.dlldll 8b75ce7a2da59afc044ba3a1f00c5f89887d7c1669b766d35a083f5867753e1eVirustotal results 19.12% Heodo
2022-04-27TGcz3bjovlGqH.dlldll 8c8795a6b5be2718354c4e457d768fdaf280eb7f5a9fab5421741a580f929173n/a Heodo
2022-04-27lxpA2c9Hk1TezcFTGb.dlldll 420c77a03bd36b7c075318863304c6c1aeed9672db1379060064d7b3400acda1n/a Heodo
2022-04-27sBSQf2NMN.dlldll 4262525370ece6df748e36d570c35868f7f39d78bae1a1ec7c61a7cc16f653e5Virustotal results 10.61% Heodo
2022-04-27x3QeeL.dlldll a27c6a77d0112f6c6b8efb9ca1dcf06fd2dde2c356a7aa7eadd59f690dd3cbd6Virustotal results 13.24% Heodo
2022-04-27Uy4iOKpw8l.dlldll 67155d8dd537e3238c177b03e4b291ded34b260cf8ba1d3bc4ecb20fb977cdf9Virustotal results 11.76% Heodo
2022-04-27x0A5.dlldll 119d1b336bff14532e1f81204f905051e4f37dc96326591d797eb52b9d9ee7c1Virustotal results 13.24% Heodo
2022-04-27dtipFa.dlldll a81913003e0a35665492151f5b9485b878bdfcb0c41033e701606bf7cf78041eVirustotal results 11.76% Heodo
2022-04-27Qyr.dlldll a95e1511b4bf93529b9a5aa1bdbd3d4e5922a3ff8a7c1626fe71b27042694331n/a Heodo
2022-04-27KOpAdlrb62MRKT6qH.dlldll d6536854ca079306487c63064c1c66cf165204ae76968ac2822990df0499b3acVirustotal results 14.71% Heodo
2022-04-27eddnAYJIURJ8ImWLQz.dlldll 27869a6eef98a74ceb6a464c5971a04df6ce8d56d83bcbf7f3c3e2e0a5fff44dVirustotal results 11.76% Heodo
2022-04-27vk1oeH09TfbcGB83k.dlldll bba717537db0b7636033fd99b72d5cc9ed72fe900b22dda41efa0ed8991547a4Virustotal results 13.24% Heodo
2022-04-272zOZjXHJ.dlldll 1a891095e7a401c35c745bcb7a25513ed76843debc3d9c4334d1c80136ce014dVirustotal results 13.43% Heodo
2022-04-26FSow6eqfu7SUS9RqWmY.dlldll 6e37d8ea6fe1011e470fda76a5c166a89346c3d296d38a955a1eafb18a56b4a4n/a Heodo
2022-04-26JniYCXgysjCRft66TPq.dlldll d849555771d9fc2aa4cc4eae3f6abc8d973f75de0d793cd5e7f5733400d86dadVirustotal results 11.76% Heodo
2022-04-266RdUuO0dQGMX7A.dlldll a79cfe6df06057ebb6ca537bfcde3422bfd1293a961c03645f0a3ab8110b60c6Virustotal results 11.94% Heodo
2022-04-26qdkEVupwsbNQnis.dlldll 59fd2c5a84af0a2e531da4af977a0dab76bd4a82bdd6ea34ff333b8b1d95b7ean/a Heodo
2022-04-26zBZxV5vJXO.dlldll 7d1f1a380bfa8e81641289df2909b549d1fd7d814f0cd3205b675280781474d9Virustotal results 9.09% Heodo
2022-04-26S2Oiz.dlldll 57231f16cd342808a8d8ff5aa8aafc0dea5aa4002c840e171b1b162d3ccd468dVirustotal results 8.96% Heodo
2022-04-26AC3BBmFxLBOjz.dlldll 2c62b76f22f2e2d1f3f9e4229d9ea67fd1a8de97f16480a5e54c4f980ed24e80n/a Heodo
2022-04-26Iyzp8PON.dlldll ef888ecbd176e30f864265e6b60320b086f2a2085f9ebe5b59f19c8a37ae0a5fVirustotal results 8.96% Heodo
2022-04-26ESCOsWadr.dlldll dad58550d976db46c070fe79b0e72e4139774e3750af8926c969592d59be8e2aVirustotal results 8.96% Heodo
2022-04-26NhazjO.dlldll c33f3f22d4d6c8adf8f663bd7406702f45751576e3ad459b41ce708e4f316a55Virustotal results 11.94% Heodo
2022-04-26k4FP238PI0kZzq.dlldll eb905f25191904bf2d6042b5ce9c53e4360219482eba6142b14752cf0aa4fc0bVirustotal results 8.96% Heodo
2022-04-26BVMrhz0q6DJgSEum.dlldll f691d17ce31759de52dee81f0b20bc8d03d0e90d55d3af3a5f8d5f5a1218d7d7Virustotal results 8.96% Heodo
2022-04-26IUePvKA.dlldll 17413b07295aa0bf8cc8aaeb5eac56145377a56f270e1b8175182b985080aa07Virustotal results 8.96% Heodo
2022-04-26ZxOZk7Agj.dlldll afee5cb8899c8b55ead2efc91149ca8d1ea2af61ac5de5f98e24a110671ce20bVirustotal results 8.96% Heodo
2022-04-26paN1gMMg4Eg1Rc.dlldll 5aa0fadbb392baa985547ed842e49328985e834fccf35135a9cfa3e95f05e199n/a Heodo
2022-04-26cTOw12Uaqj5bCU.dlldll f0a2f35e4c866aad18f436a9a6bd801d03ad4589818a5347c903afac7c5df5fbVirustotal results 8.96% Heodo
2022-04-26m2sIswNl.dlldll eb5e7e61a5dbbb6513435d6ebc922ccc84a04ef60e0a604d0f203183d2897a9bVirustotal results 8.96% Heodo
2022-04-26NUwVy.dlldll a6df20d9ddf122521d374425a91ea230faf59c55e20e1009d62ccaee222a790bVirustotal results 8.96% Heodo
2022-04-26SkgE1B4dzUYyBuPH.dlldll 7ea923bc424c5fde5007defa9c19811b655e69ffa2c66bc6d2d6ce587222a732Virustotal results 9.09% Heodo
2022-04-26PqBfDEj4VuJ.dlldll e63b968c1443a05341a1d9bfb2aae6f2a40e82c454bd0b886787f3791045f438n/a Heodo
2022-04-26D1OCEK4mWEc0m.dlldll 22cbd5c4cba4ba34dbec006cf24c910e9407aadb10b0cc48d6ad628ac2f3f1d1Virustotal results 7.46% Heodo
2022-04-26BKybdQNsiMXnBcP49.dlldll ab7f2f1e67e7b77b479eb60f05ab48260e22a020a616835caa98f17132015ec0n/a Heodo
2022-04-26kLhv7A7.dlldll 7f5ac25468391806398f191f3c5c93c0c660780515c166482de19b6e5afc407bVirustotal results 7.46%Heodo
2022-04-26ggi2Vx5yg5QCMTAxVLz.dlldll 321a04c81646a8b3e070715b16b80d608315a671a0d26875dd15973ebd1051d7n/a Heodo