URLhaus Database

You are currently viewing the URLhaus database entry for https://itnbg.com/wp-includes/b4aZTW/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2192140
URL: https://itnbg.com/wp-includes/b4aZTW/
URL Status:Offline
Host: itnbg.com
Date added:2022-05-12 20:50:08 UTC
Last online:2022-05-14 00:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-05-12 20:51:14 UTC to abuse{at}hetzner[dot]com)
Takedown time:1 day, 3 hours, 49 minutes Poor (down since 2022-05-14 00:40:16 UTC)
Tags:dll emotet link epoch4 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-05-14BSryqEbdMQGA5nyVWst0wcmGzox.dlldll 597a0cbb07626fd72bc77ac8a94f71167fd03a1262d831a309203fb9db4a9f8bn/a Heodo
2022-05-13X7J7kG2EBghhkBTACBu91Z75E4hEvCf9k4.dlldll 971ec540d453cd1b406a3f1caec41d9b2b3c4c3296ca53f2625d0a33e461431bn/a Heodo
2022-05-13Laz4RxRrMejV9n5ufarpAteSumwAkty.dlldll c1c723d0985d8e70c9b22d9d17c48321293179a7fe025d4a8cfdffcf6c16d58bn/a Heodo
2022-05-13jGhanvfup7N1sDTXocUS2nkTh4cz0W.dlldll de199d178a1b888842044d37c77901120efe7e3cd16a1dacf49992e27157a5ddn/a Heodo
2022-05-13y6h3KzNoDbEC8.dlldll 3120a6dacd59a8597989c2f5e79b73837a54c53d43bb73183f64fcf10b097a20n/a Heodo
2022-05-13Vy4uofEGzfDJZuM1fd5b0WzKRZ.dlldll 47d6d4d8654a0a9a5b9ce612ecc14f6534b5501315b78a64b76547b837064fbbn/a Heodo
2022-05-13PuuoyipRf6035OBCNaqPgpeO1Cv.dlldll f1a49c67308f4e69693ee8051829139fc645eacdf71134752b74b8dc30eadcd2n/a Heodo
2022-05-13acGccLfSQYi2XPtFqxo2P.dlldll bad1120a757e459aab6c3f0c67d8786ebe9c204997c2a1fdea882608b84402adn/a Heodo
2022-05-13GeAsAinIOfS9nUyqssGUR684xcn.dlldll f873983190aed6e59668954ac6b9feacfc14197a175b45237fa6592f7f56b26an/a Heodo
2022-05-13DDLdWCd8YLdZ.dlldll 03cd649a54469b291447575d2a9e0bd74440d7ec1826b124574a1781c6d7b08fn/a Heodo
2022-05-13fkEQlUAxzwt.dlldll 239d2519c3837e12be3bd450240f25a9d179692929a14e10288bb2a1e7672cb5n/a Heodo
2022-05-13HXpR3Hq6ismwWNzggsGZZ5Yg8qDOaFhZP.dlldll 1265008ed6a2417559ec058096b3e02fb9453f9ba6773a133e6edd0536421fc1n/a Heodo
2022-05-13SAGITv7DU49fqiWb76NI.dlldll 452121f81ec15eb470998392e85ab892a146db0385988cf94fc716c07d98af93n/a Heodo
2022-05-13bL6752pYkEHBsKwRGpxoG0wswNN23H89.dlldll 06436fba975f48722f8f2f6a52bf3172d5479899db9bb1fc244f83afd0f17ecfn/a Heodo
2022-05-13OFqGR6B9aHwLTJs2DR51ejt2.dlldll 57f5b45312dcb9882fe67a55e03d52fbc4084d28ce705e1388cc815578c036f8n/a Heodo
2022-05-13V91tm5Bn1ubLYjWcdZmA2.dlldll a10d42f9244c8417f6208b67fb44905c2e6587848f3583f1e1be8d88430bf70cn/a Heodo
2022-05-13GqqMK4foT.dlldll a026aefe6308f839575d531727023c3d0cb651306cc45c971241069f146dea64n/a Heodo
2022-05-13EWzSbuDB3dEh7jn0F2LsEVh8AyV.dlldll e2af657aa58248fc024cbc12d0c6506a624fc4352839964edd004b2f3378715fn/a Heodo
2022-05-13jsCvqnR.dlldll 871d5572a40943796a15be54e85aaef89ed63c78fe5472d975188279c1043375n/a Heodo
2022-05-13Mpg9fU6lBXEJGvRc07KT.dlldll 312e5155c30ec13574affd97f5302af5fc51acc175efc019b254d5cb43adbea8n/a Heodo
2022-05-134xDiPP5ZjLLca8EahbWd7e0qZ1U7L78yv.dlldll e09b1c65ca8aaeb72b9babd1570e8a93cc030445d4bc721703febca344e0c197n/a Heodo
2022-05-13PpnjBikGe2hBIB7AFEmpRxnVTc.dlldll 98a2f4217eb917ac46b67caa5ec644176ca827f0a6d0d472cdd994a3de54e48fn/a Heodo
2022-05-13Y4avDXEuMM.dlldll bac0da07eb0836ba285636a8701585fe9958f39e0d0ed5ac8443283a3e44aeb2n/a Heodo
2022-05-13NW2MO2fg.dlldll f39ead93a593c4e734671fb524c4238f68c8abc0ecaa1e0959df94c5a0f43c9en/a Heodo
2022-05-138Jq8WFaJ3TbPTl0.dlldll 462e5895a1b77e1d75691c1ec66ee04e9ffa5a9615ec4c7accd275d3e972ebdfn/a Heodo
2022-05-13KbeGlOJHTwnl690qmQOy183xww.dlldll 37063fd440316aeb6124bfbcde3d88a685887a8a26c779c5e16b951ee26f74ddn/a Heodo
2022-05-13d17ojmAoWkxIM52T.dlldll 2d7537b48a077e19ce2e1ed09c922db4047c3dae659039ff61ed28dda00601e1n/a Heodo
2022-05-13wL7Tve0dbUJu.dlldll 00e2f120e8f6fdb4e77b817b445e3c726b87910851ab46e52b5cf9ca79cf1b86n/a Heodo
2022-05-13vpdxGUwvPG885.dlldll ad7338771801217039867282ccf5797b3b3ceda30ed6bb57e451990476d5b389n/a Heodo
2022-05-13CfZBBzVJZobDrzYVUAvfOWI.dlldll e38da8f9a36cc668913b89ef6791df473943aa14efaf1e48d702ad3426792371n/a Heodo
2022-05-135gBaKkKWnl69fkGsZlK.dlldll b9d823104a76d665c09dc4d72df16d2aa6a1e027be40aec0522accef2988dabfVirustotal results 14.93% Heodo
2022-05-13zOyfnlf.dlldll 9b0b0c0c39803cc7f1e99d20a63025d8f10d7d6ebd0e25655096b77ab653c87dn/a Heodo
2022-05-13seFG7eWrIyB00XFVrCDQ8NPoPee.dlldll d17e65a9ed2e9f072e4eea13045300202016365d92f112e322f2fdc2eef6958bn/a Heodo
2022-05-13BOGq6YQF9yeHmvoOvdyG3EzoESdun9.dlldll 8038a41adc4f8129e2bf6126d870583a7683723fd5b5a9629ae53a368162ee13n/a Heodo
2022-05-13kqclZpOhfNpbYX4x.dlldll 8cbc68c28794e8827f221763f1a3d77229540c03904bf0115fce8979ae1be346n/a Heodo
2022-05-13ligyxZNOInzz2SJSufrfLN.dlldll f535a17cda9b21cbaac8b900aebf5471f200c33c23e89de9588ea8a550555661n/a Heodo
2022-05-13CeqYi2akzoOmyj.dlldll 941fc321f371612d4965c95a6101dd0bfe2c316d47ecbb8b6a78adb07c737fadn/a Heodo
2022-05-13oslrPLXl8emB9.dlldll 21b1a7c49524aee47655dc76dc0727f591e623661ab4113e7d8e3f8309564d4bn/a Heodo
2022-05-13s4wFTffc9wN.dlldll 3e6c1af360624241b3ff27b088d5d8fb33746e8a413c3a2d22807f45ad5b8ab1n/a Heodo
2022-05-13Ijkgzo2R1XClv2Uj1bDSHp5Hw.dlldll 9f4c11dc6c677c01e321687405b30b5e73548e1ccad917c1c757e3f9c6042bf6n/a Heodo
2022-05-13pY06F3.dlldll 12e310f72b59e3d3a01df5ed175e570696740185ef8bdedf533b3f27793ae427n/a Heodo
2022-05-13ky8R9iaWTQdwF8vp66FIr512ol8AzjSJDg.dlldll d5b31174e612d60acf1e8637bffe936485a7185ae94f699952de149172de6469Virustotal results 16.18% Heodo
2022-05-13Gragaz5xCJf44P8Nf6jz6FIYd.dlldll a69fea115673712cece8bad3fa3f0f6e89897fc3bb1012049e03d4ab7756bfd4n/a Heodo
2022-05-13o16DTURtGlzN1za5Whc7As45tM.dlldll 1b9f955b4d6515ea05248e835c83da9129ce35fc39f9159c9a2a6f0448f4b983n/a Heodo
2022-05-13sUBowzSQeb6FEhIis1ruacra8hOX.dlldll 1633460dbaeaea689f687708686ec114a715f8a9074e933bc4166ee08141c08bn/a Heodo
2022-05-13wrxPakdL8gHHHZ.dlldll 8afcd493bd9a77d75dff110dbd35379288f4c2e0eafaa9167044fcd3bae83726n/a Heodo
2022-05-13N1ys0BUwIfBHEOxW8ZEJtfWWullcK.dlldll aa7c3290bd40ff5dc3d82edb8f06f725d54dd9a8b31f4fdaf7579609a213aabfn/a Heodo
2022-05-13XHrrNQ8ULmV6PfECYPmbaIK9.dlldll 915f4fe92fee0dd41116f5127f6eeeb957b1ff7a99f17a805dfec017b461960an/a Heodo
2022-05-13ypaTcbVgfuPFY8A.dlldll 76d0e26dea31316149e204f6741deaa422cbd96c71d4c2328639fc2accd67a99n/a Heodo
2022-05-13HfylUu1PclfEoZ6.dlldll 83dfc070f73d615cc7b2f7ca4246f445fec2c50cb9dc0519df62737c0a1bbab3n/a Heodo
2022-05-13yHt9AsydCKVkP3Qap.dlldll 0438b32afaa16b8b6f47bde0840712e708b5a922e80fe733ed7cc78497f1fbb9n/a Heodo
2022-05-1392FJFU4ZqmQWBvMNuFVhZQjMKkY8.dlldll e5dca6dbcfa4664c96e65a3ab9c1a210d120cb3e81f32d286aeb2b3cd66e6655n/aHeodo
2022-05-13jYxxcVk82ibrAvtrwzc2q.dlldll c7f5334df0b4676b03c87272904378f0fc9110178dc09a94ad344ce4626c4358n/a Heodo
2022-05-13QXeR327JOkffwEv.dlldll 4e4c38573ff939e1e43272275cf2f80363a359f6147843df3b0fffb6fa41ba2an/a Heodo
2022-05-13HdqXBGpZhhJC8RV4.dlldll 7d633bba1a48c044a25e235bc42b569635733dc1949db4953516b52ea8cc123bn/a Heodo
2022-05-1348hY1p8hJ.dlldll 7fd286349e4c58001448d976ed3b84ca191561350631d0bf7dccc52c745d22e6n/a Heodo
2022-05-1345ngyZ1Ar7oko0Nn.dlldll aa1603577dcc4e486a3e01f22cff012aaa98e5ad99f6f64a1c5a3aeb65b97ccan/a Heodo
2022-05-13Wh05AJK7HiGm5e8qBvTZHGlimd.dlldll 2f6600fe1362f3704b8deb9123770d5309e84c0b5658ae567ab8a32dd46b54fbn/a Heodo
2022-05-13qBQy5FKdQ29ECkXJdvstO86KfSO1zxl.dlldll 14d399f4c40809b5f92cfacc90bfd87e7c8aa1a652320380405f274effe13320n/a Heodo
2022-05-138CPmoNdXjIy4qVKbDmBKM.dlldll 8e4af2697d40b4562ea11ffc91b7f3c5048b96272875d1ddc1c77540f7ed5406n/a Heodo
2022-05-13HXgUiG8VZ818adl76JzBJxHG1lHcMyeqN.dlldll ddde4ca956b597261625ae45a785cd697369cb13a2b8491ab6d313f1c841ec1en/a Heodo
2022-05-13YUwxtQxTyqERkk6lu.dlldll 0a64e0415d3350f4e1a7536b0731b850e0fa1ec6ad125c39f8a1ab1df1ae2abbn/a Heodo
2022-05-13JscWrAwlqp78bUl9guqzu.dlldll c48b952bcb9e8d29ae88c34daad21002aa04149ccf19e35bf4306cfa0b68e383n/a Heodo
2022-05-13jX7pGj7xRnSNHnxnWVU.dlldll 100d0f496821ed5c22e2f26e28a5b9330f2d4d7738d88a4134810dc8357a2e80n/a Heodo
2022-05-138xuTv9yP7Y.dlldll 42e48337e455ef72a8e6ccfeb3fa01c9eef4b9238f795676b49938d95f8f78fan/a Heodo
2022-05-12L6rtwe1a6Ayuz3ircRfw5Sya.dlldll 3082d9ea87cefc9e224a4c95ec7877ff7a6befe9739cda379ea71650bdebd135n/a Heodo
2022-05-12cG4dErxM66nuttvVL2JJA77BjtvY.dlldll a67083dd53b271ea607071cfbedec3dd4dfa37259ff045873990e568ef197d1bn/a Heodo
2022-05-12J5rVP8sFVZX0cEugeo3V2O65J8BldRJST4.dlldll 19d28f9066c052d7c569cfc1d827b3d653b3ea6fdbfab3709906cb9c502b51f1n/a Heodo
2022-05-12wi4w9t3pbYGJjD6LoROgeypXqffyaAg.dlldll 0cab45e33809a9a89c7851b97e933ebd805d70314fa8d1ff7d6685a0eaced29en/aHeodo
2022-05-12Y33aAByQbwyK.dlldll 0749ae4fbaba4c32165fe6a257b19a932fa89ffa0a5831d8ffad9b47725b2d18n/aHeodo
2022-05-12ZTA1rgcrsfeIG5fmb.dlldll 925fb5b3fa24016a52c1d1bd8e02c1d0cd635d7049ddaa123f724a37e028d568n/a Heodo
2022-05-12wl7Wjnt.dlldll 3399e4a1908ef2692a238d7763d9d5a0244baa8fe9b586ea9e7af73a2a06d1cdVirustotal results 19.12%Heodo
2022-05-12ljyikyog.dlldll b29fb11050cd7d0b7c56e5926d742102a168915c74ca076fe4ac220521287335n/a Heodo
2022-05-12hUCNDUvH.dlldll 43fb48237bd050a412fc7f3426a253de5da5b41c87be7b82f7ca483af05c77e6n/a Heodo