URLhaus Database

You are currently viewing the URLhaus database entry for http://bytesendesign.nl/cgi-bin/LolX/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2406185
URL: http://bytesendesign.nl/cgi-bin/LolX/
URL Status:Offline
Host: bytesendesign.nl
Date added:2022-11-09 21:33:12 UTC
Last online:2023-01-23 10:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-11-09 21:34:10 UTC to abuse{at}versio[dot]nl)
Takedown time:2 months, 14 days, 12 hours, 31 minutes Bad (down since 2023-01-23 10:05:37 UTC)
Tags:emotet link exe heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-11-11dQyqwZhKpkv.dlldll 4dfa363918e577746ec2b1e28a21f73cdca3c15ec7fa703210fb15a52707b46fVirustotal results 17.14%Heodo
2022-11-11Yz9.dlldll 27135b1bd83250d641c4ef6225a99049d820ec4bec5c594a1a4338466ee9b1fbn/a Heodo
2022-11-11UKasumCKoHCfOglUidh.dlldll 5e16ccfb88c1079c65abea96aa8399ad70cf70bd1c5046f91b933885bc262608n/a Heodo
2022-11-11c0iJ.dlldll 2e98879c43b6bedb870509c4d133d2a2dc34f506879add0791d84fa22969d08an/a Heodo
2022-11-11IckjJxL8.dlldll 2dec8377c2b9a2faf929af71827ee64f732782f90588dc0c60da5fa7239fe92bn/a Heodo
2022-11-11W2wkkq7TwTeNDS3R.dlldll 2381819dc8fcc9602c044a6ee87dafc17357cd603954d784d09cd3976b286808n/a Heodo
2022-11-11RLSyMM7EQEpzE.dlldll b99163cd301429be030cff3d1ee99c339346339d0378a76acf5800019114fa5bn/a Heodo
2022-11-11aG5LUgEBP.dlldll d062c226319a0a68afb3ae4c8dc6b2d9d4eeff1d2382088ef04252fb489d3b1cn/a Heodo
2022-11-11Be5GyTLH.dlldll 9170b25d16b0807d975fb0c72cdf38498add4a3b7db7afd1410d853b26520f41n/a Heodo
2022-11-119kdWn0KwnBh9gtcc5V.dlldll 541023727d88acd6e2eff374c2b3cb6ddfad36bca77f27aef46b628e4223aad4n/a Heodo
2022-11-11DAUc.dlldll 80a2498ca9b3ce7954e513f1cb516dff84ee81ad5233e34e084e58ad50c58d90n/a Heodo
2022-11-11l0SmZQM6SeVmvl1.dlldll 57abfb536aa921b3782a714359d43282794661a01c97e5d462a2ed38f80c675fn/a Heodo
2022-11-11KoYCmspGuW6mcvurbVq.dlldll 8fc90427e037b4a4688c83ef61fdb55df086d6014204f3f351b494e507fd3912n/a Heodo
2022-11-11p9PkUpJb.dlldll ce46bb1b7e10a384c6a5d51c6033e23808a38a13822af20d2ca488eddc91fbb3n/a Heodo
2022-11-11xvX4Gm0pb.dlldll fb854507331a912bf54373c4dfebf8f96046b4886085a6d154551471a54057bfn/a Heodo
2022-11-11jZKyK22.dlldll a336c421823ed6c39132ba2688172b0c2e0151c9a79e5a16cbbb2424206d3672n/a Heodo
2022-11-118N0z6iD0Nsr.dlldll c781c71f47285d0fcdbb916197931a2ad0f2d6d149a5c2ab7bf0f34f92a04f1dn/a Heodo
2022-11-11TZ987Rg050Who87O.dlldll 01c4d63c764dc3dcefe9960b1dc8c21c71f892e32f63899444ff83b03f583f9bn/a Heodo
2022-11-11iiLjTN8GW.dlldll 8a2046e95de5c452161174054662f1a207744624817ddbc1da73a84aed1b2064n/a Heodo
2022-11-10N8AjLron64.dlldll 5e38ee77201015174b954ba9037caf85c958fca5207f81712856887abe989b21n/a Heodo
2022-11-107Tpy7dcjLXsN4.dlldll ff09eed5fa60ef0af40dc464575b2676a402fe21fac21f2c6cf0838e3e128e56n/a Heodo
2022-11-10Le2.dlldll 85c291b74627583f2e269bd8f89313c3c3dc792ceaaecc27d32b1d9c06759fa7n/a Heodo
2022-11-10azAi7M4e0w8.dlldll 7c7780b1d3d6e8187c5a465dcf877c76451792067103d6de65389f7c5e01a38fn/a Heodo
2022-11-1074Sg1OF.dlldll e779d538a068aa955925d6fa1538303dcbe59e82db66ce5f3f935cb8acb72010n/a Heodo
2022-11-10gw59S6bav.dlldll 6407191bfdaa57e99830aa24c9ec02cdeccf1bf767f6d865b97cec9cbddec1fdn/a Heodo
2022-11-10r0OwIrM9M.dlldll 4fcc25c50e58a02fa2098040c613544f901170691d914b8a12fa3dccb06c417cn/a Heodo
2022-11-10VcA.dlldll 7988338715abb9503dd9855935839b79b6b35a8dbbb5d00ed82f6ed41537e04cn/a Heodo
2022-11-10AgNdTu.dlldll 0a8d0de143fe14a945e4777504e0a95ae0ceacf9513aab89b577007e04bfcc59n/a Heodo
2022-11-10ZL4pLr6K3ygkVAsnXV.dlldll d369abc4edfafe777c948f3445337b96babe6ab7f3350b2868e5efe648b75de1n/a Heodo
2022-11-10AF3E7qecoNu3U5C.dlldll fdcdc340ba26b78cf9c54f3f09d49573aed6de2862d0a52b2fa905ab4ef92df3n/a Heodo
2022-11-10VLqHORJIm.dlldll 0ab407a1571c6bf403a1e0fb18199b4f17b3ac2b09a2b13c31737a07c83241adn/a Heodo
2022-11-108FLwmLaRM.dlldll 891ba6455070c75bfa1d363d6a29fd65cdf7ef0415b6b36ba2c4c236cdf5de42n/a Heodo
2022-11-10sXTcMyjlBGQk3.dlldll a06bb85766486e67c8bd68b5eebb7be46d0470eb4fe7c01902839d906a0e1e46n/a Heodo
2022-11-10Z2L3kEYEH0bR.dlldll db02b8d8c97f19242bb669cced5e33c76ff553e218e815ec8a43ef44ca39bed7Virustotal results 11.43% Heodo
2022-11-10gQx.dlldll b5b36f0db8ce64d0a50ee4ed0076334d8563b6a3f8967a247a45f659b09bf90an/a Heodo
2022-11-10OYq4B3.dlldll 3f748ba05a197711c156564bde3fce98f8095511fc2020e513b0d0960d088ea1n/a Heodo
2022-11-10Y1iyywqS6wFlah6pZ.dlldll 46adcd0294c5875d6f4b5beeac1c34d43d7dd2447ae3d44b90bacb3d13f94b5bn/a Heodo
2022-11-10y23qfVUe.dlldll 4a0069b370c21a97861b92e189ef18adc2965c23c3009d3616a0dabd8f16e877n/a Heodo
2022-11-10MUiL.dlldll f33e299185035d232ce676bc94235222040309bbe5efbfeff4bb931556ffdf40n/a Heodo
2022-11-10YPRZe.dlldll 9f44e4f9583a9fa41934175c2e580e1e27fbaf60117e29973540b95ed5a77615n/a Heodo
2022-11-109GddtW.dlldll 416250a146adead03349539e100c4f30ad0c6f2290b31a6cee6566adec0199a2n/a Heodo
2022-11-10Hfnb.dlldll bedd33cee5aad56ea62fda4400600f0034abad7a2f0928826a442603ee8a42c8n/a Heodo
2022-11-10CC5l1WWxC8.dlldll 3dcd17b6c061a02c34993c778e69f7716e6f1c9b790fa73df5847dc4b57964fbn/a Heodo
2022-11-09GkHE6GjcWXHkqUWyxN.dlldll daac0e293d6f2982b8215193769233146ac5fc024b105767785acf2e5ac02f77n/a Heodo
2022-11-091NkDp5Saujrkwz.dlldll b7f2e062d2ff01ccf39fdf959e2252ec11b14ea3c238cf02d750b5dd97410ef5n/a Heodo
2022-11-09lBp34.dlldll 5c55df77060b90ea6063a21ae0cf631c9a2bc0a80511042a358c691e338b22e3n/a Heodo