URLhaus Database

You are currently viewing the URLhaus database entry for http://collabsolutions.co.za/libraries/qn8LLQ66K/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2251310
URL: http://collabsolutions.co.za/libraries/qn8LLQ66K/
URL Status:Offline
Host: collabsolutions.co.za
Date added:2022-06-27 16:14:34 UTC
Last online:2022-06-27 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-06-27 17:04:05 UTC to abusepoc{at}afrinic[dot]net)
Takedown time:4 hours, 21 minutes Good (down since 2022-06-27 21:25:59 UTC)
Tags:dll emotet link epoch4 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-06-27eDF0Ywk.dlldll f5b13af72f0d035cce2d99e649c437293cdc48990e7f57a4d5c77032b2b4ca35n/a Heodo
2022-06-27ppBgXzKpYwHtPYB.dlldll fd8b504bed2f01c231c2c1b4d00bb8ff83a6a122f646606ffa7da9e74a7939b8n/a Heodo
2022-06-27FzMbe5.dlldll 019d73116cb8f75499fe03b5549f3ee301b023a2dd932ce7831020d4eab7b777n/a Heodo
2022-06-27AYJJnnZZSwrB7qrnWDx5zW5W4l.dlldll 74ea70daeaa972888b220269c8fd8e6dce3b0bb1ce09ce15a7a21cdd49fb63e4n/a Heodo
2022-06-27VTitWxNNbZzDiAL83fPHqFNSQctBC.dlldll 664591b192e3033fcf7865f416e1ba716b8275a345c869346e334018e4eba583n/a Heodo
2022-06-27ayfqBgEQqWtEVGMjUWTMa6Uw1i7k.dlldll ec0f7c288ad689b9b0c21863d5f5575204346638a55368f08818543d22ef51c2n/a Heodo
2022-06-27fQ94fSpiSd2eKJ9ZpWpMevH.dlldll 711c1f2dd5c6c6112a1e97bdc23be82ad6fde96ef19596b3a2d51193077e2d8cn/a Heodo
2022-06-27kbu486J2LrT5GPzKqhLIc4m.dlldll ba8da0b633916a6e918c87f18ff8e1618db5d9c265313c962881157734675b33n/a Heodo
2022-06-27ewT7d4vinTnonyG4YhQy60PvdiyjtXRoz.dlldll 24250560ef611b39f11dbef4b12ba8e960f798b516c4e61e2425ae8474043b93n/a Heodo
2022-06-275nwjuNfRylkAMxo1Teshdj4KWW.dlldll 3a53ea63ebf70a7eb11b20eb105425bea812b98e600993232b7647204db01201n/a Heodo
2022-06-27kZk8uPicUJ49KVfiitPqDJWpmJWPmZp5.dlldll b3ea2bbb93961350a2784790f46636317867df01e470bfb45f795f3c0b2c6aeen/a Heodo
2022-06-273qx0nuragUivzz1JrRExa.dlldll 890ad6a661bfb0787aecda2d9b91863e520e487b20dd4ff0750c239d44d3d416n/a Heodo
2022-06-27CzSaH6eVjXLLgNpA4F9ZXpKz7m1.dlldll 5c998c1ec2bb14b98c52a20eb82d9eec6803f5dfa794428a21b2c76caae8ef46n/a Heodo
2022-06-27BNsM8AjSmTXIOanSu0YCh2wPnA23kBAob.dlldll 698e189e1739630045a18e4c0678e599e32afa54d752a3c94b7310fbaff3c61en/a Heodo
2022-06-270oj7xczQ0.dlldll c2e4b5b8b82ae17906cb1bf647f57f806e90d2ca7d856cb0c3b970bdcc147429n/aHeodo
2022-06-27dbbhseqdM21PQQFa9UKPSP57Q4X3HbzmLG.dlldll 89e3bc9b4c30e9e813319b63e5460f7710bc98e7a0c36f4375d53cebb91ee3e4Virustotal results 28.79% Heodo
2022-06-27WWf8FSAYr4TXy6itK8FD7FnmWVWn.dlldll a734ea73118a602ab3f427bbe707f67f242fc1f759fa665e630b251788195c3an/a Heodo