URLhaus Database

You are currently viewing the URLhaus database entry for http://bet-invest.com/mail/nui/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2403637
URL: http://bet-invest.com/mail/nui/
URL Status:Offline
Host: bet-invest.com
Date added:2022-11-07 21:37:11 UTC
Last online:2023-01-19 17:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-01-19 16:31:07 UTC to abuse{at}confluence-networks[dot]com)
Takedown time:2 months, 12 days, 21 hours, 35 minutes Bad (down since 2023-01-19 19:13:57 UTC)
Tags:dll emotet link epoch5 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-11-08BBu49kTloLyxiQL.dlldll ea868dba95a80d9e2deb39fed585ed77cb06bc8e8278a944d6653cbdac9f7092n/aHeodo
2022-11-08Fb2uUb4u4WBvv0BmT.dlldll a94ba8b21b2354db821833421b98dc66facfcaebe92f8e916ae874a7e63f7f1an/a Heodo
2022-11-0856vAxjhr2ZR3ZHpP.dlldll 4cc827fe3b0f7b912b9bd90b6395f3193905df657ee6267b4a34636697a8e1f4n/a Heodo
2022-11-08oVMN0oT5o.dlldll 6e2d254b63f3173b948f91ebf123664fce2fefc019ffa53cb3ed0dd03d599020n/a Heodo
2022-11-08yFR7Pexi7Zwu.dlldll ceafb2b498fc91ea729726a5e9e65af2edd43105af76a83db9ccf52944c10503n/a Heodo
2022-11-08i0rKghK.dlldll bac42aae0369b46b827a08da3ba8ed701f9ae7a1b7bd0bfcf924f7b088856cc4n/aHeodo
2022-11-08KZELfE4kWjchQ5bX.dlldll b8b2b26e322549cda9668bc9fc4537cf1f92e8cb52b9afe24ecf6ad14d9123den/a Heodo
2022-11-086qpjCEleLbacD.dlldll ffff7f5904acc95ea756eaa1d6e0461660a4c2a53a0ba4115638aac77b6bcfe6n/a Heodo
2022-11-08QeLzT.dlldll 94561f7861a2dd3192aef946f27f8169d38fc15f67973c268ff234cc3f55851fn/a Heodo
2022-11-08peiDqiVV0E.dlldll 9f661b3379942e3abc4b065d712688c618ee1d5c8b9300bce99a93ae30ff23b6n/a Heodo
2022-11-08xacap.dlldll bbb6470e876498bde2f54e06a2f73fa6de269ff5cc31186397ff74da0ffb81a9n/a Heodo
2022-11-08c33tD2bOuJII0.dlldll 9ad4a0b13c633fb12eaa5ba48ada204d27cc154f07aa43fa73f06259bc8f2113n/a Heodo
2022-11-08JKejzhhSknTRCNeChJ.dlldll 92af97caa7408eab42b52053bcfb9634a41ebd837241441593889bfacefbac24n/a Heodo
2022-11-08Iv7lZS787VU3NnVP1.dlldll 9fa302996ebe1d1e07f7d6940acfc28aa3774986410ae68a6cf4beeb41ea31f1n/a Heodo
2022-11-089SnvB0TpjdcmPoB.dlldll d2f74389825dc3e01aef2b9eda43697c22e69d365aef3ff1296ba2e082e1dba4n/a Heodo
2022-11-08LfalQk1GqbGntPe9M0.dlldll b358bbbf409107131d2389d1f27b2935cee32e9b7bf50bdd2a8100a4cbc98ed3n/a Heodo
2022-11-08BN18.dlldll 8847841a59d26e21b6d1446d9c3db4b2e84a4239db446b80d335878e84561117n/a Heodo
2022-11-08WkDXLKyLU0RQes.dlldll 7a966f2346a3f503175de7ce0eb15a8f90d6c9d9d5f8f1d2ea4196a0fb531dc7n/a Heodo
2022-11-08EGWueB.dlldll 59bb12f428b9b3a14b504a20019071966375e31ea1e76efb61a2ea0275288e42n/a Heodo
2022-11-08I0bmUO0HhtU.dlldll 34f45d14eba2f8399c154ab424e89136e134efe87c50421ffb9ee8c85ad76717n/a Heodo
2022-11-08dqhtyK0WUiL50.dlldll 07a0a73198a62d8a36aa70cd4a3a0de1f43900394dbb819074cb8a51ea86bc2dn/a Heodo
2022-11-07cHM2s.dlldll 733ede195a80131702ec20e61dbb738f5c760687601c0aecb5caeaa2d5e19135n/a Heodo
2022-11-07RtFdtibiWhbR3LWEC.dlldll dde9a9966b18fe47f6332925a3958e262f8cae9764af989340fababcfca6ed9en/a Heodo
2022-11-07elNciN.dlldll a8504ecc868a84878dc152b046dfd3dbbf337a171b06ec0792ead6e3248310can/a Heodo