URLhaus Database

You are currently viewing the URLhaus database entry for http://nlasandbox.com/facebookpage/JFqg2Aqkl3UPZi6xGz/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2400317
URL: http://nlasandbox.com/facebookpage/JFqg2Aqkl3UPZi6xGz/
URL Status:Offline
Host: nlasandbox.com
Date added:2022-11-04 07:20:14 UTC
Last online:2022-11-12 14:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-11-04 07:21:18 UTC to abuse{at}godaddy[dot]com)
Takedown time:8 days, 7 hours, 21 minutes Bad (down since 2022-11-12 14:42:54 UTC)
Tags:dll emotet link epoch4 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-11-05jbcBqFONLW.dlldll bc590f767e6924d38dd769b3f24365f7f43ad919d61f6871ef2b96b6daabeb78Virustotal results 33.80% Heodo
2022-11-05KgHg5Z9z.dlldll 0703609ed376911f433bca1574d9ad082834a61f9d94b8b001b2dddd1fc0dfcen/a Heodo
2022-11-05LH48HYL4MRSVWxP8.dlldll 83a696f4ad2d42b2b91c262d3ce53d77eb6f49df729c6133eebb124e6ecc04f5n/a Heodo
2022-11-05GtcfNJo4b032stiCpGDIjoz.dlldll 537b272b8814db18ad2bdf4f70e80fb92fdf9a0e1fc9f6400d579985ecb33b82n/a Heodo
2022-11-05ii5cL0GsWA4XaFEdJWcbtmsItYq.dlldll 8c9cacc97fa10c87171bfc2735ddc058e8f4155248d426bcf02fbf1c9c06e36en/a Heodo
2022-11-05bgAaqi7L9OxqPTvhm.dlldll 552cf88d5854f8c2c8500b2a54be739795ff1d409de1d33209e4593537d8efaen/a Heodo
2022-11-057lfsqMlYxjuu.dlldll 449ea1859a5afed7b2390ce4566bb26d001575396435e8c5ce2d18000a5736bbn/a Heodo
2022-11-05EjQMCzGLnWR5T6HrZddcRehMKN.dlldll eecfd1d1b195024793a447fed75b0e8c81d1542be27e554c6f19248fa6034b6bn/a Heodo
2022-11-05Vb74qZ61qQwmXxn.dlldll e7ea958cd725039843715f6f71151840851e0f68d6fb763b22378b34d143d452n/a Heodo
2022-11-05EwIwyV9DxjYIj5gw3NqbNyx4.dlldll b809bb36c605ce66a00c3a090fcc57a6f69dbedceb48fbc428b8719a15833667n/a Heodo
2022-11-05HuZvP6FEcNuDF.dlldll 2e7dce8596e914c359a3b19bfd367dfce35cc681f75a9bbf1360c786833a9cb1n/a Heodo
2022-11-05pQrTPYc2.dlldll 0c6596e6a61915728922c42a7e6cdea48201dd8e83b0c046e129207d9853d67cn/a Heodo
2022-11-05M8MXEXhQKfUfaLUemfEFprqNT.dlldll 40a064776d9b991e0242a5b9c5343b6d4b6fa0c4641fda707d01b0614de94181n/a Heodo
2022-11-04BBAvoGtYxeBwFB944gBiMARhDs0T6r066.dlldll 945b6429b01aef7c21845e903825d00ca305bb6fc5dfc3e23c1cad43f6d3ecc2n/a Heodo
2022-11-04mFFRktY9miyaifJxupuhbKNco3Usdj.dlldll e86cb9b159d78a6443c42e2cc1eca299a07c6d48138e3c9606240b0c2f5b24ffn/a Heodo
2022-11-04nFnPAJDmaX2Ya5DMKm89ixvxpA3v.dlldll e9e727141bdeef8bafff0e1c79e88362eec56a9f732ae29a3a2035e9cdc15407n/a Heodo
2022-11-04vsq0iQod0OSjba3.dlldll 3f9d7b841fc25c9e27e6958edcefe95562e0a07c8ce2935865c5d225ef68870dn/a Heodo
2022-11-04hWiPuQ89UKaeNi3qZ.dlldll 508a100839393dbd8bfda1bdb82c3f5627c227ef9717c3cddca11921e9ea9364n/a Heodo
2022-11-04UVtQHSOsYuBEX.dlldll 01feb639f7cf7345edd3575ecb262f7684c3b5ba896cbdc7844263e5fd96b00cn/a Heodo
2022-11-046tkn3HYOZ3TlK4po22z3Y.dlldll 9fd8aaa5b7f21e591bb15abdbc6e8be53705274913af12f71830682c01fc1cdan/a Heodo
2022-11-04LDpWjzGn6S95ElJvZLdG880.dlldll b388ff0b2ee5151ae3123228447836001f5453cf84846be09613a23c788a7e78n/a Heodo
2022-11-04HLrAlJPOj7CkDFxwN33I9I5kcYe.dlldll 7e400b5ec53c78f1f6f9826c0295f5d85aa7653cb75544bbbe6f0fd896a7ce70n/a Heodo
2022-11-04bC7Vk7D1oFCBMdCFkpMeqeIeQlXU.dlldll a6d1ea8983eb89b76b3a301c6c893da29714c1eebfcf09a06458f9403ab7af97n/a Heodo
2022-11-04HekA8S.dlldll 1cc264bdcb00fdb87b67967a1f3f6484a4aac36463dae13f8dc3479bcecb0ff7n/a Heodo
2022-11-04Y8gZ4dL9JOlmTGA49TgX.dlldll d86a4c96dab5bf4603770e170ef176d52fe4d16c307e7220bd2bcb9a76ba72f0Virustotal results 7.04% Heodo
2022-11-04RWMVekIIn.dlldll c99899221afeda24ab68f200e66c4040f99bb8cdbe863ecdedbca1f0347a014en/a Heodo
2022-11-04xl5VWN9.dlldll 4cf263452751f7e2d4184ac3248d3450d01c06719726ae4dd4d320ad7a9f4ccdn/a Heodo
2022-11-04g2KXolfKAepr9b9JNrA.dlldll db3cf2e3d1a947657d999aba41e55fb541bfdbccb0873496ce210a0cfed1dcf8n/a Heodo
2022-11-040XyU6DIwgFxX.dlldll d9097533db39df27bec4aae8aed2b6e746cffd0e5b7a8ba82ee3a8aa00e9643bn/a Heodo
2022-11-04Jhpa3yJj7HtYysYld.dlldll 6af07780b0287c14855a28b823ba9caef4703da1b30ba6f408013137604136den/a Heodo
2022-11-04KDTJoDrnzYmMJe67ouS4QSx4t9ze.dlldll 70a948855d94b54403a533d62b19583913a30e538251b46cbcb3ec0d84d5ea59Virustotal results 11.27% Heodo
2022-11-04k1zkyQAgsNmLP78VDJ5x4fcdM1TWrvyNdC.dlldll 260991072e60a01c41b556adc081eb5d8aadb4bf918a02cf67890b8fe3730fa2n/aHeodo
2022-11-04BhGsyUMbt.dlldll fdcfc377cf4c4c9b8bc0a7ca7c5391d5f905001a9902e65762d7b3569e27e8e0n/a Heodo