URLhaus Database

You are currently viewing the URLhaus database entry for http://goonboy.com/goonie/bSFz7Av/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2190341
URL: http://goonboy.com/goonie/bSFz7Av/
URL Status:Offline
Host: goonboy.com
Date added:2022-05-11 16:54:15 UTC
Last online:2022-11-02 03:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-05-11 16:55:09 UTC to abuse{at}hostopia[dot]com[dot]au)
Takedown time:5 months, 24 days, 10 hours, 22 minutes Bad (down since 2022-11-02 03:17:16 UTC)
Tags:emotet link epoch4 exe heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-07-01DII8pfH7JnHC7TTVuXvHrD2BY7Dq.dlldll 7615a9e1126339985b418e5db900ad4844e598a8d6ce482d37a48ff9a93e22a1n/a Heodo
2022-05-1263Vn4zquUZLLWIcx4y59f6pMpQ.dlldll c9372fd5319459000125fd7be553071c2173fa11ea8b7a3b3543af695060e39bn/a Heodo
2022-05-12mBpdteyuCXb9LELWlNWFN.dlldll 860b8a6e74de26bc26a23e7efc4376110d6f186cc5235a8265c8e1d9111ef918n/a Heodo
2022-05-12eiUWJu3JwDJoMjDFbbNuX7ZHoe.dlldll d7a4497f9247688c75051ad605728f06d8134e252f0f5d1aba06267c9c376a3en/a Heodo
2022-05-11FZ5fypyRZ.dlldll 7ad773a506c580af640b5c8a158a8ccf3f294ad30b721224181982f1f27090a8n/a Heodo
2022-05-1137M79z40eL.dlldll 79c711b2a033fdedca5fbe3f62ec088e51bb620c6ad3116aeded4508d889cee9n/a Heodo
2022-05-11TcfYWQ9M.dlldll b2d4faee1e88751393405b7fe65c4ddd9532646d91c7fce8835e864c32218cb4n/a Heodo
2022-05-11PcmbnDvG.dlldll dd3fca26f4acdc2fc937b2c080b2d1ce8a50bb7ce30e70fcb375404a5e418578n/a Heodo
2022-05-11t8DGOQKoM5qLJfNbFkIl2ZNia02gM2lEfX.dlldll 000cfa9fff20e0d2ccf266f331434a738052d5e8b16e8839abc63f20ba057658n/a Heodo
2022-05-11O7qTO9.dlldll b77a3040d2ecd94a9e65144c5373d7eb0327381b6bdbc8178810830b5dc52994n/a Heodo
2022-05-11MMrOPDBB4Kq4cW4QZSbdklMyy1fzbkAf6H.dlldll 559c30d4bab2f68da7c49c8e0f9f6ed0759064dce83e41d3df2361202bbe6777n/a Heodo
2022-05-11DK93tNekarNvEIItDjwLOAsPoNTbppu.dlldll 6ced096dbf2cfafb2596fbedd819649bbcfdb51612f58a777f0e6007ff3e2aa3n/a Heodo
2022-05-11dtbKNhjr9eiv1xBkX4sRu1i4dTUBQkVu1.dlldll e26ac56706b04e38470c5855b988238563b034b7db5f3e66dc10720201f8b29dn/a Heodo
2022-05-11GGLWcbi.dlldll b2b88ab420bcef14646f97560d2cafeb603a923f02f211f15637ebe0fccb049en/a Heodo
2022-05-11ojXvf235o5iu2HV5XGc9YBWMeTAYIfNulE.dlldll bd667c5d7f86c3020502f83e6d2dc6064b06f6b6dcf46f06066659b53a66f5ean/a Heodo
2022-05-11UDqCFuhuib.dlldll 72e9fda8a5c886363e5389890a77fd0bff4b74f5361941fdfffeea3be5688e8dn/a Heodo
2022-05-11PefoRUZijhLtaa8Pf3m3ihhqYBlVEhNffQ.dlldll a34b3ee4c1e5fcc42b81d07500bc306e10821f9d7eb52e573fd6114c9eb3f984n/a Heodo
2022-05-117zmMJWqAddYlrMncZrctxaV4efGwJhAPoF4.dlldll 4d3bdf01cc7e90b89ba65ba64e5d613499b30ad1653a4ee2a58f2963f95723e4n/a Heodo
2022-05-11n3BHEbq8S7RedFX4YVUwOYFz3F0R3m3oGx.dlldll 02875b1425b989e3938028705acf78ac488d5e54857b9ef0b7835256a1075d21n/a Heodo
2022-05-11ezwEwLvf9qmkZ.dlldll 4643c768ff1f5f3a97843ddaf4575f5565dad97325e186820e66ff226d81e7abn/a Heodo
2022-05-11VVJ99022DKUseeMDkC4kfVQezCVcBb3a.dlldll 4d579880d161c1705bd7b5b809b950c50bcc4ccbe8a1553a53105c2f6c2ac4c3n/a Heodo
2022-05-11MJtNuwLwOXXFrYsRimZawb0.dlldll 063ba287ffa70fbf51730c9dfabc1e37f3a22b07ff4703117d7bb356b82a7694n/a Heodo
2022-05-1121Gitbupg7DyvArvYxpUWKWr.dlldll b788164a381f54cfff47b0a3f118e67e2561ad9d9bab7833a8db72f35bd4ac86n/a Heodo