URLhaus Database

You are currently viewing the URLhaus database entry for https://cheffsys.com/css/5JqXCHJmidSY/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2403204
URL: https://cheffsys.com/css/5JqXCHJmidSY/
URL Status:Offline
Host: cheffsys.com
Date added:2022-11-07 11:44:12 UTC
Last online:2022-11-08 22:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-11-07 11:45:14 UTC to abuse{at}amazonaws[dot]com)
Takedown time:1 day, 10 hours, 36 minutes Poor (down since 2022-11-08 22:21:18 UTC)
Tags:dll emotet link epoch5 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-11-08xtUJobqRvdkjz.dlldll a1950ec40e1ec3d56034d20fe02df412fe8dd96f54869f97268f3cf0ac4e1eecn/a Heodo
2022-11-08LF3gKYCeMkdurZ4gXgZ.dlldll 576da2e379dc6030f15a97e850b5b39d7650df97cc6b4ff0565bba6b21fc3b42n/a Heodo
2022-11-08beMRZPm.dlldll 7972588683ee5c0095525484859e89df0c903fbe0197d1fabdbd7a15f2318e5cn/a Heodo
2022-11-086Zh7xUx0t.dlldll c1ff9e4bc30a689e3afacd66e9d1c4aa3387056076d884974ed072b4b27d2f28Virustotal results 10.14%Heodo
2022-11-08tCgzyhrNST.dlldll 33a1a753ec6823f3a76846849fd8c75db08467e128c4f4c4707e12839d9c4c9fn/a Heodo
2022-11-08ZsxIJKswIc70.dlldll f2c8f7ccb1c862bb7893c25be5fe254be0c4ecb98a39eaa13fb0df74c323bdf8n/a Heodo
2022-11-08N1XBXVD6Icu8caye59.dlldll 9a2a793b0e37947afbd14f233fb101295fca9aa65401144900b933f4127165abn/a Heodo
2022-11-087aoUq880lf8P9EbTu.dlldll fecc4d6efad87c62e358715c9e7f103d0f9e9cdd36c185eb9313b72851790357n/a Heodo
2022-11-08cIJfoG1ms5.dlldll e515b0e1c9d40e28a3f5503dd185fa26fd6e372e9c69f281231448623e6b4f07n/a Heodo
2022-11-08FyksOeaBYo.dlldll 1bf7bed6eb837558e2c1ded799b28383b85452c9a3513fbfed5907c53c60830fn/a Heodo
2022-11-08glFOZPTwQAjK1ohE.dlldll 092a744568015f084fc13652787e9b20151f5d3b46437185784a43984e472e2an/a Heodo
2022-11-08wEbDiTa.dlldll 35911f683dc71ab10a2b8776cddb68c71c12a440bcd10f0d8327279ce27b8dc8n/a Heodo
2022-11-08W4s1xZADX.dlldll 389ee02f9e174c52c53d9c8eae5104568b3eb84eec60145aaa3edd9063d78866n/a Heodo
2022-11-08KfsrmkNc.dlldll 5c960a54dfa368ae48fafba80043c41d3cc34c2ee95472060adc2c8af3f0f388n/a Heodo
2022-11-07CCqtctr5o.dlldll 62f697fbfff412f45840ada72bdb94a625bd642bddb10be4205237fd94c8e331n/a Heodo
2022-11-0735dVJczXy97ZM.dlldll 8d0e1faba56d1d919aabdce05d7d1f814eed9929ed253ad9ca04ba4933cc28e4n/a Heodo
2022-11-0729wn3aol3.dlldll 14f8b576b140b2f5e281eb2834a4d45783504dd9c28b4daa02672d9f494f4ab9n/a Heodo
2022-11-070n4fZLt.dlldll 0e14f843f7e64a5d0e6d5a67f232bc49d111d5536733f35307e9a68def59baf6n/a Heodo
2022-11-07LeWnZqesku.dlldll 3ebfd585ab9918b842dfbf1ce763177c52ff38b27852abd9fd799ad6030dccdbn/a Heodo
2022-11-07AX1.dlldll 2b27bc531612ce6e28794a19d89954a880bd22047353c8a8769edde805fd0b83n/a Heodo
2022-11-07uC2OmwfLyCASRgP.dlldll 90d5990823413698ed4509faf972f9a4dafb659a7d0c538c57a2b7982ddfcabcn/a Heodo
2022-11-07UvKSQK15mY6NgUwR.dlldll 312263b03a654411dabb2adbc5fd4489d16c06fa52f38e49f9abc28608c9c45en/a Heodo
2022-11-07B3n.dlldll 1a7da804da4b9242467e95016398c0657b2f113201aa6d5b9d9b1f96214ed8f7n/a Heodo
2022-11-07yIRhHeM7CHsQgcF2V.dlldll f8ac5f126b2487d4216beb8c32c4c0aaa8eb2a0df69fa89c6c8693fbb5d5f04bn/a Heodo
2022-11-07yaFLq2qB3G9y.dlldll 7c917bb8f749f6bd4b6eb531639dbd51f1af528aa1245207b2743e3946c1cf0an/a Heodo
2022-11-073M8.dlldll dcd2523e34cb7c1f0b9ae2aafba406aa2aa7284d81afa4bbecfedd5dd14b47e3n/a Heodo