URLhaus Database

You are currently viewing the URLhaus database entry for http://db.rikaz.tech/lCx76IlkrBtEsqNFA7/H9YoD9PuGAHGb3MHZz/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2403641
URL: http://db.rikaz.tech/lCx76IlkrBtEsqNFA7/H9YoD9PuGAHGb3MHZz/
URL Status:Offline
Host: db.rikaz.tech
Date added:2022-11-07 21:48:10 UTC
Last online:2022-11-10 09:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-11-07 21:49:09 UTC to abuse{at}ovh[dot]net)
Takedown time:2 days, 11 hours, 44 minutes Poor (down since 2022-11-10 09:33:32 UTC)
Tags:dll emotet link epoch4 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-11-09x5AocPUw2Sqj28961UhZuYnoj.dlldll 3032eb2467be02265d5d640e5c1b3204861572be096e37f9fb23c95250ddf398n/aHeodo
2022-11-09m02hnJsKbpgG5OBDgw9qtzzE.dlldll 7d0f3d2a0f6929f7e8fafdf077d1ade7aaa802ead99117596013f351d0919d78n/a Heodo
2022-11-09Y5v1Rsv4pDcnb.dlldll 07512ac846d062b272933333fb3ee12b9fcccfe89c369840f7d795148572e889n/a Heodo
2022-11-09UVChfCViAtvN3VQt2VWu8dVtbcKQrE.dlldll 4195a8c96dfbc7069c31c167350446f268c20e9c40df34f9f90e736645101ba2n/a Heodo
2022-11-09JOsvc7Vs1NElOMj7y9Xe4PkIn0joRDeZ0D.dlldll d04078225b81439e9201e7ee994a7839a255b4b2f50f2d1ebd0e7f357e4fd247n/a Heodo
2022-11-09BpPUVd5gxyIn8Y0nV1bM6A1zclo5sTq.dlldll 80515e1785b80d9a0eee574e19ae79f630c54bc70100ad86730ef2a891f730efn/a Heodo
2022-11-093xqqdSO68IUgweSzQH.dlldll 4d377742dadd4daa67232c446f431487e26553371397a6280c11b02b360205f2n/a Heodo
2022-11-09MhGfKiSVbVBMGqlL.dlldll 31fd3b69cdf1d37b6dfa13470edc4260e281c7f9a63115b9319938a79d8884c8n/a Heodo
2022-11-09oWHIxLe7eTkycIDrfMrhxMC.dlldll 96cdffaacedaf569826b293e8f2bca60cfe2dbaf6e38afaed8b59b68f35ba5f1n/a Heodo
2022-11-09yZFmq40iYyyvBevhpHODt6FDuIc0cxD12T.dlldll 81598f89e3a7ef2a1b175fc39abe6170056b2343551b0210cb5bf1b4bac88d7bn/a Heodo
2022-11-09TWv3mwXvBPW0pjWLRdtRvPDfqYGunxZ.dlldll 81441b646905a7f9c4f47111ab9f3a8a34847ab2ca418ca364508b52c5c59630n/a Heodo
2022-11-094HVlVVR.dlldll d480880558d848a39436bf8edb6980cccd073fe90762a986c5f5433caaca845fn/a Heodo
2022-11-09CIQz6nt0ffijqJX0YDiZ9QjJOO0uTb3b.dlldll 546e9e3fcd784af203fd5f76f7b6641a596076c8df171e7a7869ce037635ccban/a Heodo
2022-11-09Js2DR51.dlldll ea3f7461b38a21ae349f46d09abad6bec8108c9b63ce642661c9c26f4adda1aan/a Heodo
2022-11-09KeD9DlOqYYS59mJYgOvMy9W5.dlldll 10fd2b86d51f86907a92ffe1dd014e7f3936338585775244823ec7a74d4090a0n/a Heodo
2022-11-08ZGEwUkkG.dlldll 632be68aaa862aaed42909204cd96c5576d26d8d5074eb6516aa324d46a350fcn/a Heodo
2022-11-08VmfTzxTSZKmDoPqPNTLqFaB7.dlldll 4e9f969c7292aedb719cc5c37aef8416837ac35e98415ff79bcfa2a8c8b7c5cen/a Heodo
2022-11-08dnX6Kx5c2gJsvcL2wArTQA54k2wsrB2J.dlldll ffd74d959cc22a9cc1a79b4181e844506787c11f4fecb3ce47c05d70bfacb371n/a Heodo
2022-11-08jb2s84xiPQh2o4GHZv5dqDL4uDOb8ypCK.dlldll 66076f6318b9cb012979adfe2faa8606a5dedfbb3fefde5fa7ef930c1c42352dn/a Heodo
2022-11-08oNMKR0zWOCTgpicR1GjIEKE3Zu1FFSt.dlldll 6780f7d1f6952f5adb4acf60d62cfe60fece7cf0fb4478309c26bd10fe40a5bdn/a Heodo
2022-11-08aounspNP3qKOdo.dlldll 6879baa1297726d65157a7cafe640beac5c4f2e70135dddaa2e5fe318ffbe6c9n/a Heodo
2022-11-08YToxnGDAhRsosPCMmOLFSpQes.dlldll 68eaf463d2551dfb8c1e4262d2abbe1a3cf471583dc42e2728802a40eac8670bn/a Heodo
2022-11-0810esBdMWt41K40kqtgiYsQ02Nwobfr.dlldll c967fba849fbe93b47c66915a2b8be07b0f96d4f757fd2fc8eb5863de6e1f917n/a Heodo
2022-11-08kJqDEAdlgP.dlldll 4136d32b9239e837fcb09b774986608c7e9482ead12ea13333ece47dc696c012n/a Heodo
2022-11-086lk8uCXubG2etc124EeT45IHih3Cr.dlldll 7cd1d551669270cb44b32579d144cd1e3e0e6f5340036f887cb038a517206799n/a Heodo
2022-11-08x3CwLE0PFdmVsOxFE4xe9ME.dlldll ee5c069582a0a0146451a5321df62055570a8da76191358ca468bce280be63abn/a Heodo
2022-11-08SwungUxlOlYl03xvO.dlldll 8cf548b151830036e1a2282980264f713bd22738ba5935700d93340c2d0ef9e0n/a Heodo
2022-11-08r52RRBXXRNVaFHnrzQbKxyWEvXZssU77V.dlldll e8aa1bf826a269fa79f71e7e0c40c1d56b076c33dfa4226c79f9fc3d04ff42d5n/a Heodo
2022-11-08B7nfGG9t2o4.dlldll dc3014a657fa48ae6e29f1852e60e03b42a857a1bdf878bdf06b0092b486be11n/a Heodo
2022-11-08rhGudTObouUML7kO4eIrAlbVuHwM.dlldll c625aae4965ba874370dc0d132f9224bcdb270432eb29952e2a12b25b254dc33n/a Heodo
2022-11-08li2idqc2Uy7BOiRCqn8YB2TeambIOe1.dlldll c50ee861ca30b688ef57d6c16c45ea8c34e5b62e821e129662568409d1dceda4n/a Heodo
2022-11-08ySgGV8kCAXS3KIklDCp.dlldll e0290e69e8b3a7e279506f3b74ef47784be114f790cd8b49f7105566a7a91f04n/a Heodo
2022-11-08zJnWXX78dg7Y2Wu1J74dsz1EaBhN.dlldll 064f623f64494b5486e4147cda6f7fe2b08faba2b4ff0784e0e72d52acbc9c39n/a Heodo
2022-11-08Rt9ZZMlyQplqt6.dlldll d716a9fe8ef7f8663146632945679ee31179bdca607b9548e4f0e8c249390e51n/a Heodo
2022-11-080FIn5B.dlldll f160399db887ad7e52a07b9ead0a0441f0eaddc12927e0b8e5f8677583417634n/a Heodo
2022-11-08xiU42Zz0kL4PWNJBjXHRPv4.dlldll f38d553fee5b34d96523255d2ba3c4f529dbd9d271b8fa50b2982ada1a2933c0n/a Heodo
2022-11-0832LvNhrgg9Wns.dlldll 20368e91caf35885f6cef2f787e4e6496570196a4025859990534fab18954791n/a Heodo
2022-11-089fSLYzZ6YZBBg3RiY.dlldll 4b04ed6cac0339d1515fd381892ee219719e52dafaf62d29d8daaef1ca90bfden/a Heodo
2022-11-075LBvuSIDyyMOBc1sfy4qYfkmK0U3FMM.dlldll 3ac46fff436261fb3e59e266924dc66357eac65ce7494fb4749580bc4d1b450bn/a Heodo
2022-11-07GOIH2qez4F06ne3alLz6AR1.dlldll 29feb270284d38cac066b6314d433fadcff945da1114748fa2bd6b18f21c4932n/a Heodo
2022-11-077XI9M0NTZH5Zk9h4iyLOb1YGGRPgJX.dlldll a71356d2e43256fb52aecc07cb449271c90224c12312db2637c8ea642eb8c26cn/a Heodo