URLhaus Database

You are currently viewing the URLhaus database entry for https://weboculta.com/css/4teU8698559ttLN/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2254043
URL: https://weboculta.com/css/4teU8698559ttLN/
URL Status:Offline
Host: weboculta.com
Date added:2022-07-05 07:22:05 UTC
Last online:2022-07-05 14:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-07-05 07:23:07 UTC to abuse{at}dinahosting[dot]com)
Takedown time:7 hours, 18 minutes Good (down since 2022-07-05 14:41:57 UTC)
Tags:dll emotet link epoch5 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-07-05LCy.dlldll 7a51034c9e9f9a1c358d649c57ee51750c1ec1fcb4e3e1a389b7e144f8e41bb2n/a Heodo
2022-07-0506N6K4gi5inhIEIl.dlldll cf0ce9a455ce91fda044b946aa243e8743a0979bfe3aeeb4e9bb05c118eaaa98n/a Heodo
2022-07-05jDT0kij0hC8.dlldll c8935aad6eeb34a8441f118e0d5b5a5ea32c9885b1e7c32ac75d48e4257cd4a6n/a Heodo
2022-07-05QFv85D.dlldll 2f7e91683509e9e2766ffb5c02a9146d24e34a36670ba49db90b86771be678e9n/a Heodo
2022-07-05nih.dlldll ab1f64719ef64036e19d92c1b2eae188ee6a538e8c9dd44a029021877b0879b8n/a Heodo
2022-07-05OAiaWMoBXuDwICGpRfK.dlldll 31aec6cf044a7747a6a8b4b239ed108968112f95987e3839cb5171594ed3b509n/a Heodo
2022-07-058KWxqbVEZ9S5qVa.dlldll 214e82f38b0b06299e775a1e96ba910bd9a74a0aa3123a20f97d16dcc7699e8dn/a Heodo
2022-07-059jjDMVspcjA8j2C.dlldll f866966db7cafb597202bbdec1621a56caacdc1b022b38995ffd16805b7deeb5n/a Heodo
2022-07-05SiogB5ieqEKYK.dlldll 8f17604ed2bda29f218a368dc4112a9b82247530a2a2ae82d12f0cc40e56ce6en/a Heodo
2022-07-05mqheECOuFr2ZcFXrlpB.dlldll ecd215d0a08e63ef0975d2b981a9b028ef0ba74041e867c3321d505fd40c8542n/a Heodo
2022-07-05Z8JpN6o.dlldll 6e11135dc4a025cafe2c315aced0e5f5315bdc3affb1f4341af1c19fa96d0660n/a Heodo
2022-07-05eWNzAKihoMR.dlldll bd87470a5d846a4de75623aca60eab9192b0c380cced87c6627e9d78a054b4e6n/a Heodo
2022-07-05bxee.dlldll cd966218244937c0308a413a0529e8d5dc755549a7b7aa1cf5997d476068bc06n/a Heodo
2022-07-05iCUZNmg.dlldll 48d44851ed5b3c813907223ca7fe4c68e058d7e6cce912e6b4931eb3e7e543f4n/a Heodo
2022-07-05ilUqf7ziShvZTl.dlldll 2d88b7ea00e26bc42af922bfd1619e3def5d1f04f00605ff3b83d5cc6f64e17bn/a Heodo
2022-07-05P8DNil6j6NFyxs.dlldll 217587763c774eb76059efc23869342ad8414f39e12e02dceda284a82eae222en/a Heodo
2022-07-05BuIqhEZYG.dlldll cb95e79f9ed3a79a9ffad8925d78060a32511436a1b516dba85fcd17c7de8c93n/a Heodo
2022-07-05cEn8pvzEVKhllJF.dlldll 90addc34c745f9e4fc6b2a0d31607815543bbfa7671f0af4604b63ea7157f2c5n/a Heodo
2022-07-05AA6Zvld5qXTt3.dlldll c454b9211333e9e4213e2e2d6a933cfa95d3ef6008daa753a52c416a3e3f4aaen/a Heodo
2022-07-05NS9Vs38UxMUUofP.dlldll 6ce2b5710b115c2909d42e63c4f3182836cfe3a05860095bae728edb22dfe266n/a Heodo
2022-07-054t90xQWR0VxTZt.dlldll dc0361416a435493d9174a61c858bced33022aa2bf417f46475de6fdbb26e325Virustotal results 7.58% Heodo
2022-07-05H6AjdCvHQIKaeInF8nU.dlldll ac6ea1a1bf89be19cb8e9a632d1340943dce2ee6bf25a12fd8660d6959cbb9f6n/a Heodo
2022-07-053GCUHkY.dlldll 048c39edb145bbe2e79d61c6e53953b7f74c7393d7789aeeb000545d0ec04c0dn/a Heodo