URLhaus Database

You are currently viewing the URLhaus database entry for https://frascona.com.ar/assets/xobbA5VJIi/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2255089
URL: https://frascona.com.ar/assets/xobbA5VJIi/
URL Status:Offline
Host: frascona.com.ar
Date added:2022-07-07 16:49:06 UTC
Last online:2022-07-07 18:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-07-07 16:50:10 UTC to abuse{at}hivelocity[dot]net)
Takedown time:2 hours, 6 minutes Good (down since 2022-07-07 18:56:26 UTC)
Tags:dll emotet link epoch5 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-07-07bsxVJYhqqvt7q.dlldll c9d5488d4ace633426bfbbeb0ffd344605a9d5aea79e50fb17547bbda0f05024Virustotal results 39.71% Heodo
2022-07-07hm60Pq.dlldll a2d5b0ee324ff10a05aca2a3d228a72881e521f78b2c172e6bb8b474f2caa5a1Virustotal results 36.76% Heodo
2022-07-07cek60Mj6SufqMz4f.dlldll 423b3272056a51d188195d0b7932d1c2f91da69051a15bc99cf3d2b5400ff9b7Virustotal results 36.92%Heodo
2022-07-07t5eSuuuyPf.dlldll cc017962bfe89f20e2bef1ae9c7888abf695868be4a7a90511083f2b01488a0dVirustotal results 35.29% Heodo
2022-07-07joAJrCpvU6iaHwT.dlldll fcc9256ffb1170a18946cb1fc1488e35b0ee8ac85a3819f6d839dd0f82468150Virustotal results 37.88% Heodo
2022-07-07S4tb.dlldll 8f7992a7ffe186c18b8a2df2fab72a1f15b66da234299cae97a673843bc915a7Virustotal results 36.76% Heodo
2022-07-07rNM6xwq29XhxU8.dlldll bfcac45e0b55dd390595e19ad17e75132b41a9a11246a87535750fddd37e23a7Virustotal results 38.24% Heodo
2022-07-07YArLIWoy4.dlldll 35bd404387ed088c6be8913b06d8dc79adbeba15611460fdfd2eac8d53e0b030Virustotal results 35.29% Heodo
2022-07-072voSEyYGGisou.dlldll e6f2a334b30fadd3b35c85dc5c8b345f05c3f6c5b73f2520f388f5710754f0a4n/a Heodo