URLhaus Database

You are currently viewing the URLhaus database entry for http://www.sunflowerlaboratory.in/fonts/AUeoA2Wz/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2257120
URL: http://www.sunflowerlaboratory.in/fonts/AUeoA2Wz/
URL Status:Offline
Host: www.sunflowerlaboratory.in
Date added:2022-07-13 22:19:05 UTC
Last online:2022-07-14 08:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-07-13 22:20:05 UTC to abuse{at}standardwings[dot]in)
Takedown time:10 hours, 11 minutes Good (down since 2022-07-14 08:31:32 UTC)
Tags:emotet link epoch4 exe heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-07-14EwBWMWDDK1i1Lf499PyIhgC70EIteYNmKm.dlldll 3f70944260f13444d17b19fe8c4e95c2eb72f2c113be452ed6b5d84ff2f487e8Virustotal results 37.68% Heodo
2022-07-14hnMpzVJ8RvhpXYzBonurSlg39un9WK.dlldll ac52b552f58484d1ad250b3977d46a620cc7be8a73423568ec4fc84a2a8d7894Virustotal results 37.68% Heodo
2022-07-14BBNgUixgdlseHt7tGf6JJ7m2bmPFfV.dlldll 3c4a874800e69c7ae9d3c04d91d266ad22e50e3e16d3cb3099ff7b07a04dd2dcVirustotal results 42.03% Heodo
2022-07-14fTkKxIPNqtsy0fQJgoemm8WKc2Nzvv1k.dlldll 9615843a7c05791b006d311effd00fe0cf1d6b2924689292d73542c487ad2309Virustotal results 39.13% Heodo
2022-07-14w4mAZrX9LqMssIYshmuwSKbyFET.dlldll 6a6c190edffcc5d8f1b185646320d065d1e2c8d2df17667f4e22388d172e523bVirustotal results 37.68% Heodo
2022-07-141Mp8y0MfK6GZQRfXHVRSTxagZMGZAx.dlldll b92a98d45bc399ba24f35416be40ad6f852838dd0dcc95e691d2a3b3aca200abVirustotal results 37.68% Heodo
2022-07-147MKwKHahOLsEYyI.dlldll a8fe77d1d483a6306d4e834c3b96d81d51f53ab775699ead0100b576f1bbb2a8n/a Heodo
2022-07-14nLa7nPCl16hPTOgsHPZEQ55XmyyyNBBltK.dlldll 4a8ebe54e29c92b679bf50af9e4e0bff0e89c3f0c554b1de6ccdab9d79bbc002Virustotal results 37.68% Heodo
2022-07-14avOq795yQiT9.dlldll 6b7084e19ebb8c30f1a085df2d69f4b5a0cf68d9ab3603d1857288f4c663b48eVirustotal results 33.33% Heodo
2022-07-14Op84L55tgUoaZdhd.dlldll 6adb574c34a1aa2567f3f5ca6456dda95672aa0d2b39d71c0f142b9ce5f86172Virustotal results 36.23% Heodo
2022-07-14cPPClrD55vBI5kR1ajPlTgTKK6.dlldll d40835def2f2473ebb729ad92ab969b905d75a8e37846a43c52fabb73be2945bVirustotal results 35.29% Heodo
2022-07-14nFQEssJhKiV.dlldll 6e587830d1fb3ebae2367dc9f003671e5c276f9892ec868d5eec9cd107fde59eVirustotal results 36.23% Heodo
2022-07-14J75IyGmCwXstb6yYOzg784.dlldll 9d6a8cbc81eb89d1529ad15534282b6b7b80943be6df7e332d2802f3c95a090aVirustotal results 33.82% Heodo
2022-07-1405APbHCvY5IHJyyQO4NDppxNxuw48.dlldll 6110ebdca18c4d73419b5bef10c5587f90e044657ea40a5d059c50b7b227fa47Virustotal results 36.23% Heodo
2022-07-14dfMkB7DLCjSntV0E5spHeF2g.dlldll d81e40ba71b3b4152e74c3ed813ce16790e8a4fa674e0a121809d74bde911162Virustotal results 34.78% Heodo
2022-07-14IrVtohT0QYmrECSDXU5m68XXz0wM1sd.dlldll dd554270d17c8bb10ccb9e02ad9056dbb05eb9470d2e387c6121d4af0126afc8Virustotal results 36.23% Heodo
2022-07-14e3Nad608waOZArjcGGbuD65pZv.dlldll eb51d6ea3956c2d1c01168d4e2a919e19507f5a167edbc288185205b2729649dVirustotal results 36.23% Heodo
2022-07-14EKdQ94twwrzshQ3ejgfr2WKR7sUUeET.dlldll e1ebe5f29d0860af3f94657084b5c2c89fcb5ab58c0ca032728e85d9e5232b08Virustotal results 36.23% Heodo
2022-07-14zcY2349HXcZ.dlldll cc567919aa7dffba6f601c9208487a4ef55662fb317d6b68003c1e736ce7ebbbVirustotal results 38.24% Heodo
2022-07-149NEcK63fBgAeUsqoatmLQp.dlldll dabcf11e02b94e4110e14411fdd7243018398a27435c62818c87bdbba5fa9603n/a Heodo
2022-07-14loYvBXK.dlldll 54aa59eaf54861853000584d5a95d02ac408b89d84acb0fc119d7c572cd716b5Virustotal results 36.23% Heodo
2022-07-14e2pJHYjLTe0FP0oVq4BL.dlldll e50c0e68b806426e6e6ef53b2b92849ae0dcdaaae2dad4c01f00ce7b3d74b212Virustotal results 37.68% Heodo
2022-07-14vpR1Zs3GIqPWQguxEKr5SB0A18na.dlldll 535423b003bf888f93ac94ef310ac1f10d84bd89ff107d329692a3f4a9777603Virustotal results 33.82% Heodo
2022-07-1473dC7ObyMg0NLd85MXN.dlldll 33e2d4613a9a3d9045f768d28e7e73f100c656c2d86334541d81eec73e114cf3Virustotal results 36.23% Heodo
2022-07-149L6Qi6bO3VTm7tmio.dlldll 79bd8bbebc597edcef51e43ca69281b74ac780452fcfc4f3370d403673e3de14Virustotal results 34.78% Heodo
2022-07-13T0828MlR.dlldll 90b74090efb4001e3cbf66b4ec32451abacb609964d14b7d50a14df6698d2f7dVirustotal results 36.23% Heodo
2022-07-13DsWnHdVC8SwLxDEKrpIPiSTRqQnDZcbB.dlldll abe5ae6e43278991d1f8b0db4dc9c69bbf14cc842ed58ed20eaf685003d4f600Virustotal results 36.23% Heodo
2022-07-13PQR5aIMjJ9yfV9k.dlldll c51bd04bd583d10e37a96f74b967de88903b2db851ed92cdf1a57e46ea1d2f7cVirustotal results 34.78% Heodo
2022-07-13TyjJm0Ym8iyVEHKho82QNMB00PzYdv.dlldll a502b01bccf7cd99b0101ce2e56bec112c5db79e4036ff2ce0a23975298a8339Virustotal results 30.88%Heodo
2022-07-13jD5g0G6.dlldll 74f7094b0cf85c2b625746a55f02090e9808b6560c71ec294d48f72246dbf92dVirustotal results 32.35% Heodo
2022-07-13DtGj9C4MgCd8Zezs8mQlVhVD02oIBlRvMk.dlldll b68cb594079cd767a6628fe32cf3f0674b686f4fab28b515b5816cb99d918427Virustotal results 28.36% Heodo
2022-07-13Xo77CyxCin7yAl1qkBeU8ZVIeqMXAS.dlldll 905b87b0b08be751d172b5cbc892488d59582d37a9eac82f4c24f2b9c2e5dac0n/a Heodo
2022-07-13p87pmvKvHAMS70BhdM.dlldll 6b6ef642fd57f0d843e74379fc5fc2c0f01ddfd87fcb39d32c686c2c7eb1827en/a Heodo