URLhaus Database

You are currently viewing the URLhaus database entry for https://www.megakonferans.com/wp-admin/Xzz08i514NBrg/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2202882
URL: https://www.megakonferans.com/wp-admin/Xzz08i514NBrg/
URL Status:Offline
Host: www.megakonferans.com
Date added:2022-05-19 19:02:06 UTC
Last online:2022-09-27 17:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-05-19 19:03:06 UTC to abuse{at}inetmar[dot]com)
Takedown time:4 months, 10 days, 22 hours, 23 minutes Bad (down since 2022-09-27 17:26:17 UTC)
Tags:dll emotet link epoch5 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-09-27n/aunknown 7ceaed7f0af430bb76105bbba9318404bc7ee72204e461cb3764c9ecfaeae3a5n/a 
2022-09-27n/aunknown 890bb6834d238a993029a08673d3c24577a2f4bd82c1a60d4d462ae2ff8bdcf0n/a 
2022-09-27n/aunknown 72d83334736851a377ac7921d7887aa80bea589eababc01031c3f7a74f3d77dfn/a 
2022-09-27n/aunknown 589a93a5412556904fb19628690a6b69d3cdc8c3f383894dc5891de541c2cab1n/a 
2022-09-27n/aunknown ec62e5691dc6ccad090461ec7ff56e089a39556fac8d13631bc714fcd571e4d3n/a 
2022-09-27n/aunknown 6d22cc786b847fa4c63a31a8305307f3e675dbfe1fb92922d3ac5922374ac1f2n/a 
2022-09-27n/aunknown 1a87c2e0a1f4dbcc809fe3aed84ae22be9cc5fc5bad9ef9e36b1574327f5be96n/a 
2022-09-27n/aunknown 98056694b73cfa057681c83d89664199217a0eade2b5d2f83e18739207c339efn/a 
2022-09-27n/aunknown 0c6df9a7fccb4575ede45161ae5efbfff6d40908c46faeeb81a0fd54fc2a5f0dn/a 
2022-09-27n/aunknown ddfde56735939d3fb0fffbc7d39c6a2cba81a49cac43c17a859707cd289bfd8dn/a 
2022-09-27n/aunknown e40ce4dec9c5eb63b53b3ac42217b059060c1ba002104cc1420365f6ebaa049dn/a 
2022-09-27n/aunknown 1bfa8d4865038cae365ebafc3b3081a40d5ec4de265cb3372845867036cfcee8n/a 
2022-09-27n/aunknown 38bcda92ee1638140171297afb0980646f429e8160701029b44b0637dcc8b295Virustotal results 0.00% 
2022-09-27n/aunknown 16b343481a42b70951c2bc35b85c8fe9973c69ea7dedb23b949dd23ed3e492a5n/a 
2022-09-27n/aunknown aa0553e14481a143a8fb79b5f69155fff63c58fe40dfdbfdc1c0242136715290n/a 
2022-09-27n/aunknown 4f0c42b4e25dbab545e3639f9aaafa58456b3912623ac38df81835e7c6c76cban/a 
2022-09-27n/aunknown e7bc154ad933ce0a6db7f7d93a7c2224bd017e8b2e99fa45e4a9893a6431553an/a 
2022-09-27n/aunknown 56242d605304b983df020ea55dd08fb114e6408ba15600c005587b83c3769f0en/a 
2022-09-27n/aunknown 1ac877e5427b5e43eb36a30a610243ea68bad9d33b8770f9d81e3cc4b615a5c8n/a 
2022-09-27n/aunknown a5c69f80a5e6d3d41cf584f98a41463fcf49db5457c1a4b3e870648e8e19a4dcn/a 
2022-05-19IwMhdiMFBJx19FWW4f.dlldll a39e7097e9b58a91eb607a94116d4f8266950b27509414b62cc3527a7c7c72b0n/a Heodo
2022-05-19J5eXXu9iDTRwu.dlldll b814b9d5457923aba11bd7e37ed1ecd661ec3f88f671873cb9f3c0e6404ceab4n/a Heodo
2022-05-19OregfXkJHnn.dlldll 9d9554aaca69f258afb4a29864cc0ab21539ed58855a84cc9f80af47bd492de5n/aHeodo
2022-05-19Gyasl7fg8xRSFFHZ.dlldll 9c47a28454e0358523c59fa135304c3fa7a10389ef31eb429ac0e22f9abe9f34n/a Heodo
2022-05-19XERDNk5e62vjVRWZ4.dlldll ee3baff0cb1ba709067687fd7ff0fc65cbdaca82ede227b43759ddf276df3854Virustotal results 15.15% Heodo
2022-05-19hn0WgxUWhn5wXQZ.dlldll 2ef75bd693ce8522e4add3193db88c29d05845c6a773efdd5afad7fc9bb2827fn/a Heodo
2022-05-195t63B.dlldll 1d9951a94bc90ce72cf7a842af26f2ba6c8457402b8361a27423cbf387b06822n/a Heodo