URLhaus Database

You are currently viewing the URLhaus database entry for http://gnr.gtu.ge/admin/yKgYN2K0mYY/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2169959
URL: http://gnr.gtu.ge/admin/yKgYN2K0mYY/
URL Status:Offline
Host: gnr.gtu.ge
Date added:2022-04-28 13:00:07 UTC
Last online:2022-08-10 08:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-08-10 07:39:05 UTC to Abusix ContactDB Test point)
Takedown time:1 year, 7 month, 23 days, 22 hours, 44 minutes Bad (down since 2023-12-13 11:45:23 UTC)
Tags:dll emotet link epoch4 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-04-30P4dw7pkUrwbQYIRajqSbGHfV2ZQJ.dlldll 717082965c7ef28706cf74a56ab841e9cc664e8f8024b1c64d7c411278dee3aeVirustotal results 33.82% Heodo
2022-04-304rHdJFnOEkoQ.dlldll 5a5f2e120d78408695b326f55c686c38f99ca93c2bde567a109a71d0e50bd1d4Virustotal results 35.29% Heodo
2022-04-30jHvDn1wMbkeeNKG26zQyCmrE6E3cHnQtV.dlldll 92aca84a2ea6250852e7014fb9411104d0f35e0c430ce53716a34725774ca4ddVirustotal results 33.82% Heodo
2022-04-30sIrCepVXBpF0cLJwHOcvatXppHn8oI.dlldll b7e2b186ec5edd281c8a9e0f09db7db5c899c39a867376a488a9d13c3318f1fdVirustotal results 36.76% Heodo
2022-04-30lCncZYA19H8D09O5sUUXc1mU2Gb.dlldll 3cf12ff19e86b4d4a39211edc82fa55c6e150318a6f9e48c199297c764662b82Virustotal results 36.92% Heodo
2022-04-30R7oas3xmM6rluEuPd34aYwyd.dlldll 09d1d66d9e29d062ac6e30aaa0bdac1c93421b079be51e7ee3cca98c22683049Virustotal results 33.82% Heodo
2022-04-30tNKguss5qSIud1.dlldll 13926f88d6edf50c85d1d66e2bd880024b97f6e87cfa3502d77660ff2e66a89eVirustotal results 33.82% Heodo
2022-04-307xhuEfzIekjeAT5.dlldll b9f1226bc74bed5f6dd022e428f19fe13ec73b4ef6bb7035138db6cdefd1db6dVirustotal results 35.29% Heodo
2022-04-309QGbmGbmMswH.dlldll fb81ceaed2cc9a0ec2d728a625d47023dfb5606d734fc972586d8f0a189fe98bVirustotal results 36.76% Heodo
2022-04-30Pp30rYNe5B8aUAAyoJsZMJe8lSe1u.dlldll 068d92b4347d9ace14b15913dc72c2003466b23d5d0cdf84221bcc91762aee0cVirustotal results 36.76% Heodo
2022-04-303hYZd6aBUzaTbJVjUBS43HxjVZ.dlldll fe9f361f30adfd746e2d316f87fbfd900984a8f715ee9871f9c69cedae2ef979Virustotal results 32.35% Heodo
2022-04-30ZAA5GubiQVPKVpLARcL0M9g8HptSroRG.dlldll 062eb6de14cf28b51eb57c29f2cacf5be3c8a6d9182fe22e69a1a6f722e9667fVirustotal results 35.29% Heodo
2022-04-30jBDL3m4jBuuUK7qXQjS7X628KIKDCX.dlldll 9856dbac9e71b7e203034dab5bcb075cadb1e526084706ebeddc1c4c3907f0acVirustotal results 38.81% Heodo
2022-04-300n0cOU8F1YL5yuUEOfR.dlldll 1ba56ebe2e7f899c082ba27830a60fe13309dc71be94968438ead83baa255902Virustotal results 33.82% Heodo
2022-04-30pepKIs6k5F6Fv99keRiuu7p.dlldll f8e902f1a6abb91214f8a44c3423a14bea40c0e22981d8ef54f8a8e51c11818bVirustotal results 33.82% Heodo
2022-04-30WHVZUq4i6gG.dlldll 9577f67f1b3c68b735e9c7faa2fe9494e0fc524eefe2d34a347177293e2b0993n/a Heodo
2022-04-30zC3QoLP7F.dlldll 7717411574c7217feebd3e3b46740b5f3918cb9962b7ed17be28fc6d8a2837e5Virustotal results 35.29% Heodo
2022-04-30Zn0FjtxQCKKWSgE3fZbqvmhtrpT.dlldll 301087537ed90796094a8664a1d5569eb5d792c4aae035cf0e21baf5264ccfc7Virustotal results 33.82% Heodo
2022-04-30wSgLeTT4pv2cXueFO94dz.dlldll 0840efe126a989cdf1ad7947b831bc15e5657591284d0a44aebfbd0a84b36f57Virustotal results 36.36% Heodo
2022-04-30C917ZG6cy7116SJtDQixe3znpdN5yj4mh.dlldll 3e4afb41ecdfa4c09123398863a1d3603b99f4bd4e1fbc99a151d00a03bbbc65n/a Heodo
2022-04-30y0pWAOaxsTzR9HnmdBaeqe927H.dlldll 0b638f57c07f844bf705f534c973155068055990e2151a9ed6741628b8dbb05cVirustotal results 33.82% Heodo
2022-04-30aW2qjiKdtoPrQrgMmOwWQ3xzi3iRv.dlldll 09461546388b4b6f74c9f24190502d6f2d44aea1a52722b1eb7fde8baddb6581Virustotal results 38.24% Heodo
2022-04-307kcmxPyLqvJcWSJe5Ct.dlldll 3d2608012f623e9645c6c99db3b247b2962f3d32c0ea7f9a788e6b442dbe5a35Virustotal results 38.24% Heodo
2022-04-30FVtruJcn3zFyjTlBBo6ABz8dH.dlldll 6a5e1facaec39afb74c6492622e7b638ef0edf30f4c738bdf7ebfe6329d496b1Virustotal results 27.94% Heodo
2022-04-30ekRFBN4TMqlb8Y5dOsiiAttgPor6C.dlldll 178cb3ef431bf42e567efaefb2258220636e36dc16701e5a51506cacde74a8aaVirustotal results 32.35% Heodo
2022-04-30AIvzr79eU5n2Pn.dlldll 67a1f1cfadbd2a56e31d851ecf5b8ca4745584751ab9942c674d0f42c9df0edfVirustotal results 30.88% Heodo
2022-04-3052PeHhskpyEp2hbY2apbA8.dlldll e7349191b40cbc193ffe36c25c93e2b6a4e6d07fb6b73d4704b002c18b804511Virustotal results 32.35%Heodo
2022-04-30aTZqL64sr4fhCmkzgDnb4Xf2mLrKr77AzAw.dlldll f1695157e144ab53bb702b53b4b065e9a5aacd4549e1be2b50a9d8749ee147bfn/a Heodo
2022-04-30wDI9YYvp7Sthon0ULlfoAHH.dlldll de4ad7ca22c46d4d85ef06bf1dd2db5f8c35b68395c846ada366c4fbfda89b5fVirustotal results 33.82% Heodo
2022-04-3068PyuN.dlldll 46569c6a1cf93b01d369c96c4a049f11115670de206272c2703be37703cc57dan/a Heodo
2022-04-30YRnqeg612HiXlqp1rRZYoNh.dlldll 4282277b7ed3167d6c4e4a74fb3acd48971d436708860ff1b733609d28efbe43Virustotal results 36.76%Heodo
2022-04-29NW2SfCdt9JXYHveGxYUuV59qbXx8egho.dlldll 6e52c97ee3d7870f17a12da3b1a5099deb4912db9a5b39c6e9a0174ded8308can/a Heodo
2022-04-29IzlhTitbs82NhB5.dlldll e7001948e42b262daaf416600ab2f8d6eb5257b8a12cd21f4136a7771f3129d4Virustotal results 29.41% Heodo
2022-04-29EZbl4YVLN84UsXL4akzaripCTEgKQC.dlldll e5e293cb3a3d80fd1fc3a9f42ce8f92e653bf57f6778f1df47a50907227b1e19Virustotal results 32.35% Heodo
2022-04-292X2PqdlyEtj8UwjN0JliAmhbX.dlldll 97c8afed58cd8fab79dae6b5976b9a367a679f0c65d9e60356c33acef5fa8bd9Virustotal results 32.35% Heodo
2022-04-29QLPIHFgKIAqshrL6HfUNlF4No.dlldll 02223da04e158b6080c2eea858c8433d4c8e8045313180c1ebfbf6185bdfb8e3Virustotal results 32.35% Heodo
2022-04-29izFVC6bPz4s8Hu.dlldll 57083993bae1e85aab6c4d40dd51d8b11c88d6b8fa63ab82e988726c7976b96aVirustotal results 32.35% Heodo
2022-04-29iNioc4dY3.dlldll b0829aa08075d3ac9211c02e23bfa3cc328a2e1d360c0d795a154ddfe0297429Virustotal results 33.33% Heodo
2022-04-294eJsey.dlldll 24c08df0dac9ed92a3b950bf05034fea64305a3b8afd290fa17cd6fd079ca736n/a Heodo
2022-04-2978cECz7bdAcXMru.dlldll 5402465d40e3ea8fbee3c1e61fc1743b733733ef8bf742ec7d2397bb10378a6en/a Heodo
2022-04-29AM1uBLo29yFrrvdUGTmQDjiPbzZhUR.dlldll c30e67a4b80529ee2ca9b4606436566798db1048a1454003509b6c14c7741506Virustotal results 33.82% Heodo
2022-04-294wcp949DchcG8ZU6vfifbbQB2.dlldll a659d865efb1930d66b1d7826d606766f536a81931a6e1de60986f16922b18ceVirustotal results 33.82% Heodo
2022-04-29TbzO3Vdfj.dlldll d2a1f1a3384e23d40eda616ebcf264cf1958157f601ac652307c5747a4e621den/a Heodo
2022-04-29tyozna1VQ.dlldll 8fcbdfd2b9d3ffbff7af844885dcb5831381cfecd6ff0d4f42233db70cb7f5abVirustotal results 29.41% Heodo
2022-04-29MoOkJkj.dlldll d55aa696a9a6f445934b090126fdab53782de4d5d42357834330de76edb194ceVirustotal results 30.88% Heodo
2022-04-29NZDz2VVzAjviZmq3.dlldll 871d7f51c7426463dab06180ec032c4f2a752d0c188b33f25e763533872b9a3cVirustotal results 30.88% Heodo
2022-04-29ugJxeaaM6xx9OPyr4pyCS9E9SjteeXMml.dlldll e4abea977d54b224622925ef96af3c37c262d8ece3e79f3b4c6a399f152b723eVirustotal results 23.53% Heodo
2022-04-29snYYkCj9RFri4ZaW2yzfYu.dlldll aeb97f6ddf1578daba1090593a67a1e55d826474336f77341ca0f5d53aa57cdbVirustotal results 25.00% Heodo
2022-04-29LUPTxI9cSXNL9iQxKEg.dlldll 0bd02d4bddd8a81ace42234599777f6b3c858ca651171bcadd222d7c38355471Virustotal results 25.00% Heodo
2022-04-29XtkB4EzeYRpDXCY7LvtXLcn3li.dlldll e1b60cd2408ca76f64bd02268335d117897e3993e3a9119a2e2e83ae130af135n/a Heodo
2022-04-29qgq7EW8C3MbHw2Fv8vNp6HYD2zHH5P3.dlldll 2f7db0a9b83bb0a9ebfbea21aee86a45780a01f33fe5c2dd66b9c4a4d606d8a7Virustotal results 27.94% Heodo
2022-04-29PjaJeLqb.dlldll c46604e82f825f32ea968bec303b6d64a94da98f504d7ea0f214c778b9c09793Virustotal results 17.65% Heodo
2022-04-293rgnASk20gCcOqf2dWR4oI6c69R8.dlldll f155fc7a7e62f7f5cd94eac630073153860c3517b840e7703dda9ad37c363621Virustotal results 22.06% Heodo
2022-04-29a9jYCa.dlldll 44c564a7d7b9c1139ca1fd36765d822d8b03b32d31289fed05472bc875151c19Virustotal results 20.59% Heodo
2022-04-29UG6KKYitciTHle.dlldll 0e9b807c5e161cc6376aa8471205c6ca6bdc72db8d49a0fa9183ced5304c9784n/a Heodo
2022-04-29Tg4w7QwCBFcJLaIO3rWuGzgEqmvIA1.dlldll 2673182686d0ac929b1e3c8822838e10221f9f007976ff5f72000a4b1490ce5eVirustotal results 18.18% Heodo
2022-04-29F3SonPQYF1WMdrMN3CqlH1s68Y.dlldll 7954cfa2fff509e8e73c57ecc6549350c7b21d7d7fba736faf0ce5d49b376d79Virustotal results 14.71% Heodo
2022-04-299NY2S0PltNo9t.dlldll 44db486f81f6f1f14f005e408e5738c77651f55b70f372888fe2d33f0cf71576Virustotal results 19.12% Heodo
2022-04-29hLIJfusKDdCigvYCV0gXQnl74dhn3belCI.dlldll 5e028bb62ac226c68cfe4a87074ac4bf4c602cf6373b2ff0f93a1aaa109ae28dVirustotal results 17.65% Heodo
2022-04-29CHQKaWZp0odkEOINXXgL.dlldll 5993a701c2e9582f671068a9745d76f71d9a5124d7c54c7335955140beccbae6n/a Heodo
2022-04-29tpGaeDDW31ti2I5.dlldll ba60e291c0f510e7304289e5f557b8b654ca3cec46b76417d8d49b591fbbf7ecVirustotal results 16.18% Heodo
2022-04-29YsVRCCEh0Bv78loop89J.dlldll b048ddfa6437e3ad540f39fa085e1aea00fab3cdbd1b82aa1e578f1a4cd3ab20Virustotal results 20.59% Heodo
2022-04-29zSUnl1PO9dHcYJ1U2g.dlldll d744f1d0d4c6d6de76e6f6e28a0b6c8730d0c0e68018f8a0dafa5c6b6ad84a27Virustotal results 13.24% Heodo
2022-04-29LzKmTyTEdQzVkkwnMwPPOaw.dlldll 91d8dbec088f9e69bf553ac96aa00fb46826bc8913f56f990986e49c777d9411Virustotal results 13.24% Heodo
2022-04-299jQmn3vwyFz6.dlldll 168d8e3c99dac1decfa23b7e4b398168c0ae3c358a876815fb0eb5f4e512a849Virustotal results 10.29% Heodo
2022-04-29EtgXEetqIvVsq6LKkD6tgebGpjIVDi4Riz.dlldll 25b38d22af1151684f63865743282630aaafed8a811248ec1c94a78ddc68e672Virustotal results 11.76% Heodo
2022-04-29q085SopAgk.dlldll cee9d2d643c7c6812e2b8846b36de73d9263f6a467c66129a47518d37401d2dcVirustotal results 13.24% Heodo
2022-04-29LpCwJLpScjtcGLX1E8eBb3MV6.dlldll bae910b08aa9ebd11e047aa486fd74d84acdb65a1a6a74fb3766803802ee3214Virustotal results 11.76% Heodo
2022-04-29fJrVS2Jz1oQXiF3NuI6xuGG.dlldll 1675d48c50ed0c5fa3e9d6e4149eec3e7f51f7e637487d5fa998e323dbd0aa63Virustotal results 10.29% Heodo
2022-04-29UN6IJlfg8rAIH2zDFY07ZhautYoweI.dlldll 87d7ea28396d1c669cc3e7928d46597f44e0df0084a4e289c407e49f42d82abfVirustotal results 8.82% Heodo
2022-04-29TnC19PAd7KrCmrveJFMuwmQgSy2m.dlldll 08f190d757dbcec96f23d4894956560ae15ebaf65dabb0fb618bb8cf7f32feaaVirustotal results 10.45% Heodo
2022-04-29SErNEatzENIHbat8.dlldll 34779add1dea79850288f986c6c71c9b917d1613bd3e71a1688eaa869e5b7be2n/a Heodo
2022-04-29bVycvdBICob8cQfffR2tYjDg6FeblFH.dlldll 4d03a4a6b339a472b2e4b5690ed25eaf53d0c6b01a3adbb3be123b13491267eeVirustotal results 9.09% Heodo
2022-04-29WgiuLd6jpNB.dlldll f89ac7169790f10cea1750aaeae2d4272bb34828ba79fa9aba82bad1eb4012afn/a Heodo
2022-04-299m2GSfq5iCuJwlAiG0xn.dlldll a61f50603b362e37412ab487f206def7a206eee19859bae46a8d906e5fbbdc6bVirustotal results 10.29% Heodo
2022-04-29BhALhnr.dlldll b224ccd7cc490c9377c85587512542b98b7f10533c28e16ec3e8ad7cd0615419Virustotal results 8.82% Heodo
2022-04-29mZwFuYgcJ9xiYSxuBRXDFTbeO6GID9N.dlldll 6f6358dad9d5ed819aa47ebcbab38acd0d35a682c89973430faf4f12410654d2Virustotal results 8.82% Heodo
2022-04-29XCWSMttcsHGQ0wyWwD3.dlldll 5883d96ad95953babb9dd775739a5423dd76968db4bacf32ea121c7ff5ad6c4eVirustotal results 5.97% Heodo
2022-04-29XIIEQaTOIdVle.dlldll 7491a546e0d85b3d1af1b1d215308199e7f7d24a342174b0bbf59a93cd2640b5Virustotal results 5.97% Heodo
2022-04-29mYpAjLTR7d2VYA6UDnagGb.dlldll 4723fd50221d15913a7b5dc784d9b0f68b7099428fd323b0e1f2844f30890c37Virustotal results 5.97% Heodo
2022-04-29yQ3T60.dlldll 696c297696b33de84368edc74dc850a0ac98d9a22a807ecce8aec1aec4019402n/a Heodo
2022-04-29RHhXgGEU5XsIP6YjpHj5vavtMwTSEI.dlldll bc7d24d7e46e7e33ebb5c75dac4a6844611a7cfedcba80824b4e6fa8e33f3cfdVirustotal results 5.97% Heodo
2022-04-29o8pAhfTCNmE7Q0HzoWzaoWIwPAd.dlldll 622c75fc92ad2446221615a2695ffc0eb8aa2cb8e7aa83e5a12ad7bdd2aee9e0Virustotal results 5.97% Heodo
2022-04-29f721ZTDKySrZNMbSSo.dlldll 370c13e5ee1158dd9790173475fde18e3abd17065eb2106a04e6faa267c40abaVirustotal results 5.97% Heodo
2022-04-296ziVoX1p6pRla0dcBkkkLzkpUpl5JU.dlldll ab60bab343d258aff20f9e01afdf3c0809fd68c89092ddaa2dd179103705aed8Virustotal results 5.97% Heodo
2022-04-29rLkXzG573tFcNTjxoKvrpTVPsUe39.dlldll b6579da4f739d58408f4e3a940ef9502e38c205ab41cd38f7f0b7c02da69abc1n/a Heodo
2022-04-29zLSwtxLFZofuIsw9HLaGvw.dlldll f36fff069ad5720272de5b4c1a80859bf4576667c25990100c3e027b27102e65n/a Heodo
2022-04-29exFCoznRSCw.dlldll 09b85a0b8748b35bc38e2aae973c71417df113b6a6a5214b1ef59db2eaab474cVirustotal results 5.97% Heodo
2022-04-29Eg8paE3hns3tAq48qFF7YauS.dlldll c7113671be434d7ebde9cd261b9046769e1fee48cb0b43b84d44b58540a3bac5Virustotal results 4.48% Heodo
2022-04-29nvZVPFwPZeHGT.dlldll 9e944c29ed03c79d0eda7a6337ded092c25d1b9979d17ee2d6e317a8b4c31040n/a Heodo
2022-04-29KeIVPm.dlldll 4a07129157a827d332db7516afa197e1fdcd68a397dbc0ca6a3190e4f1768e39Virustotal results 22.06% Heodo
2022-04-28A3552mR8mvtxLMUQP6cVBvmYquVKNgjyRSl.dlldll 66ede987eed5aeeb5c3d7bf24e75236ab00c434fab0b49faa0075fd72c0d7d32Virustotal results 19.12% Heodo
2022-04-28s42p2V.dlldll d1c187d1907edab8e53c742e6abf4189c2cc012b90d6893a93f6ef5abd2b0e6aVirustotal results 17.65% Heodo
2022-04-285bP2BUagF.dlldll f54c79c0a61a3a68e23a0d71aeca188c29ec5fbce06ba80adfb2cdcfb10a1c29n/a Heodo
2022-04-28LvkZhFp1SolwJvpivMFEYQI.dlldll 0204091a2b916ecdc6b5f327dabd6ac6b0828a073573e89a72e54722d47d258aVirustotal results 19.40%Heodo
2022-04-28sQ76X0tL.dlldll e05243ec70891d75bbd33d5ac93a6a4f40adcd1d0f9e3e6f8a9cc2331b5c11c6Virustotal results 19.40%Heodo