URLhaus Database

You are currently viewing the URLhaus database entry for http://db.rikaz.tech/lCx76IlkrBtEsqNFA7/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2400773
URL: http://db.rikaz.tech/lCx76IlkrBtEsqNFA7/
URL Status:Offline
Host: db.rikaz.tech
Date added:2022-11-04 18:40:11 UTC
Last online:2022-11-10 10:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-11-04 18:41:13 UTC to abuse{at}ovh[dot]net)
Takedown time:5 days, 16 hours, 10 minutes Bad (down since 2022-11-10 10:51:33 UTC)
Tags:emotet link epoch5 exe heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-11-05hLR4SeeVmiaJJMC.dlldll cc31d2414ee6d4421cc923654d3c7c8e723d20fbe701a49b8ea9989246c94810n/a Heodo
2022-11-05wYvvYSQ.dlldll fb91fae3d2b5e1c39a130ef790471a2afa7189ef8f4f0c02d9e4783849287d09n/a 
2022-11-05nL0q0.dlldll df0addfebebe88598ef5760ec46ffbc024f74f3b81ce5933f176eaa6c7617511n/a Heodo
2022-11-05Aledp5b8ZinsQZPWi.dlldll 489b00af5dc43698a1e6540927af1d6b007b8325e8aab10598b17eca6456d13fn/a Heodo
2022-11-05YF2R.dlldll e6c8cd63adcd9158850af1ad465bedfcc08c01fbc721087facc003310a69abdfn/a Heodo
2022-11-05JXD.dlldll a282fa01ce6038b769de669e9a0a254589a55106d275f460da1384bade762090n/a Heodo
2022-11-05IdNA.dlldll 6a2f066299c1f410940db011e4742d8b5f84150b25525c0a197eace7928690adn/a Heodo
2022-11-05lc2lxsMHjhqy2E2d8T.dlldll 94ec310ae559fc420ddae7b71195793d1be9aee769d927e17a2cf633e31494dan/a Heodo
2022-11-05YmOrgXCtdeKnkB6nPQ.dlldll 38325b1ecc5b4827618b707eca4b3a5c0a9c69b9edb0d72b3bdec2ca1d408dd6n/a Heodo
2022-11-05ahYJ.dlldll 028b6fc8ec0ba544d8e18f0f39cdf7072411dd0f936e0c5332245d81215e05ben/a Heodo
2022-11-05pbYEc5T.dlldll c7900637780defe395bccaf9d0d0175de5c5d74b8956a185dae0f7318b092a28n/a Heodo
2022-11-05nNg2p2InYSSOJ7AuK3.dlldll 4089819ab7f034048032d6f57a0ec004d9a9f390e2a596226c370e3e02d331d5n/a Heodo
2022-11-05DsmGqwaYyQRMBd.dlldll 1131f315c7ad911908f92926755e7158a4e81f6dee4eebb23761033cfa4449fdn/a Heodo
2022-11-05S3p.dlldll 951a49bf72d49316ac5ff1e8ba57005c9d1de38b710b572a868b070773cb5dd3n/a Heodo
2022-11-05Xiyt5cJYV.dlldll d027c906e00fcde7408ce810181e61dee53ca71c3385b40d0c489c3ba6773eaen/a Heodo
2022-11-059YyuDSW6vPNMFh.dlldll f082b8c86e766b39a825cfc7de86b34197b9f4a082fbe2aa1c218b1cb9a6d178n/a Heodo
2022-11-05WeAuUGAEw9zdRRco.dlldll 7fe1f4683fc9d77b5a35edb98b9c273b8249ce662b3fd60b6b95e60238c28ea1n/a Heodo
2022-11-05bhaGS27bJ4Fu.dlldll de64af0ac8f32e9c970e84a1e12e7f0c54fc394eea1f26a9f7457d6b4fb3109dn/a Heodo
2022-11-05LBY2gPY6iqLmk26.dlldll 029f7e8699906cfdf867064aa98fad9161700e4bc216fa14033f4783f2a510een/a Heodo
2022-11-05mNwsD.dlldll 24905a4cc04351d1837905a412eba9ffc8c6290de60a98f521e61278b3b1119an/a Heodo
2022-11-05jybSKgSh9K1.dlldll a9b77621afd472e681c7199abb305ef491d499c9c1cbdcb889b50ba638f26b78n/a Heodo
2022-11-051wDd3Hd.dlldll 583465e904dcad89b44f5694c100abede8f026dc75c9b5f9e75179c3d8ee0dcen/a Heodo
2022-11-05Pv2RLbvkQppZydnD3.dlldll de37f3feb85556225c4df262b810ef76e0546f3af5e6438df214591e6a5c0a14n/a Heodo
2022-11-053AxSMdJUAncf0r3V6j5.dlldll e16c10fd365da40270e6ab8c4785735fa1c54ff6c09fe4178b00fd9428ea5223n/a Heodo
2022-11-05Russ.dlldll 937dd81ddfdb1138c4d6e943e8b8c118bb5b22b438a65a416d198a73f359920cn/a Heodo
2022-11-05Bp3awnTXYSQ4lkEMqZ.dlldll 306291f0f61ef0f3e1fae9b137988a82932275aeb7a44f9c8bf81018e10b0ae3n/a Heodo
2022-11-04b2Yq90adfMxMp6OEEtg.dlldll 6abf24bd9f8467b97698801858ad1427e83ab3e90a83a6f68431fb8b2fa8dcb1n/a Heodo
2022-11-04xaS5I7.dlldll dcca2366808b5f810b290dbf4d1250036bf31fd9b25cfcd48efb9d6c3b523b98n/a Heodo
2022-11-04G0hl3nrRWMH.dlldll a97357fa03b4d19cb1c4e682180c9fbcd99d1fcd4120c0999fe9bb0798713e2en/a Heodo
2022-11-04V6Qtb1tq.dlldll 2cebe23ba55ed49710b0b2e21f22cf58c675a1af7fadd88c5b196ba387022e32n/a Heodo
2022-11-04SlRoLZcmuDR5moGR7iz.dlldll 3df8e479bc144dbbae88eec73673721a335060169d255415333de26b14a9c07fn/aHeodo
2022-11-04wHLK7AuDRI.dlldll b4045dbb080dbfd19fb815c21aac5e103785e6431479ed8432a96d65434bda46n/a Heodo