URLhaus Database

You are currently viewing the URLhaus database entry for https://curite.net/cgi-bin/SJ2LI/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2254786
URL: https://curite.net/cgi-bin/SJ2LI/
URL Status:Offline
Host: curite.net
Date added:2022-07-07 08:38:04 UTC
Last online:2022-09-25 14:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-07-07 08:39:05 UTC to abuse{at}enixltd[dot]com)
Takedown time:2 months, 20 days, 6 hours, 18 minutes Bad (down since 2022-09-25 14:57:57 UTC)
Tags:dll emotet link epoch5 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-07-07TS5.dlldll 27a886793c653bb69c886a3db1fb6753e9ecd184bd4459af9c315fa7ef29eecan/aHeodo
2022-07-075af1NUyntWlJQ5.dlldll 04b7487bc5382ee30cef39931ffb9428ef8a655c2f4b8a8804733045d9b6da70n/aHeodo
2022-07-073g2KlL.dlldll 68e9af12cdf5a641d39c36f238504dbc0d04a301246e9bdc6e21002b596455e7n/a Heodo
2022-07-07pmgzWhK.dlldll 2806bafa168423ea56a37fa083efd3cf33e76206985ce5b30632049adb2e9994n/a Heodo
2022-07-07hcMq.dlldll 564545e258736890cebb0b3e38a383b6b33ea5c2915179b43950f2765a279976n/aHeodo
2022-07-07NAnlcOvl6FTqA2eg.dlldll dececc1d1b5850ec9295dc361ad4bcb6e369777043cf22b8969bee14050f83f0n/a Heodo
2022-07-07p78p1p.dlldll 15cb998b1d0e318c79ebbd5821f05da2147c0102328d9e9070ccc1a112f7842an/aHeodo
2022-07-071gDqigz4NkNOEeXyM.dlldll e0416d92f394ca530e52a702c60ee0960264ee0295d12760eab3f7b6b9fe4582n/a Heodo
2022-07-07EMXj.dlldll 2fbd36120e3bcded8d4440a0bfd89eac3b88806943d6b765aacd47f6fe49735fn/a Heodo