URLhaus Database

You are currently viewing the URLhaus database entry for https://akarweb.net/cgi-bin/CL13tGXI/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2407020
URL: https://akarweb.net/cgi-bin/CL13tGXI/
URL Status:Offline
Host: akarweb.net
Date added:2022-11-10 15:45:11 UTC
Last online:2022-12-05 17:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-11-10 15:46:10 UTC to hostmaster{at}dijitalbilisim[dot]com)
Takedown time:25 days, 1 hours, 49 minutes Bad (down since 2022-12-05 17:35:26 UTC)
Tags:dll emotet link epoch4 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-11-11V1RZTu.dlldll db1be718f6a5a8226fde11f7f8a9f860f9612ce086e52811e3391c1e3621f17eVirustotal results 11.43%Heodo
2022-11-10LK6Nu7Ztl.dlldll 3070b2d53b35b66c5a9c11ea1e47bd8afe0006b43c5046c5316a67ed8c831789n/a Heodo
2022-11-10XEv4RtDUXJI9SiCDo9fzawrAyOq4rwP.dlldll 917ba8316b6bb0cbe08d50faf202ca3aa07bcb87c75043757ef4717712e0c401n/a Heodo
2022-11-10tfs2R4QK68.dlldll d983c1c8b80f82ad9d267d881848355eb85cdebe6fc2eff13c512ff37e9ff4d9n/a Heodo
2022-11-10ZuTEO0e3Nt51rOGR55zi7pw8n.dlldll 798f760e66cf58a6fbf7ef405bb97d7ed56311070142850f1359ae6ea7dcb6d7n/a Heodo
2022-11-10SMlKYvfbZ.dlldll 50f04a49fcff9af17b0b23ccd34e95d6a90bd1e9dc7063517c0fd3922c067395n/a Heodo
2022-11-10f6BGOJ.dlldll c62b7fbea3e30ef51cf6d188a3163ed59d21e734a9fc0e62878c4694584b3f4fn/a Heodo
2022-11-10mRNCGIHC.dlldll 28058603ea2dd1038876f6f8699d0de0b0004105845726491b6de6da2c67e867n/a Heodo
2022-11-105F2C5RunXPPnVqVfd9.dlldll b0a22b7ab534e1ac198f958bcac4dd46b63168c47548e59f23e73b8b5bd7f87bn/a Heodo
2022-11-10xWHf8d51mjcYbiLU.dlldll aac56c2763cac316cc684807a00750f496b087a44f5636cb239b5928eca98ac9Virustotal results 23.94%Heodo
2022-11-10ob1jAQeMmT5rCyZ.dlldll 4afa73118eb8c970ab5c224675680e95070e9c3d72663dd62022e0385d27dc12n/a Heodo