URLhaus Database

You are currently viewing the URLhaus database entry for http://erkaradyator.com.tr/Areas/1Dg2PeStqNlOjuPP3fu/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:2581176
URL: http://erkaradyator.com.tr/Areas/1Dg2PeStqNlOjuPP3fu/
URL Status:Offline
Host: erkaradyator.com.tr
Date added:2023-03-22 17:35:13 UTC
Last online:2024-02-07 17:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2024-02-07 10:53:06 UTC to abuse{at}sh[dot]com[dot]tr)
Takedown time:11 months, 7 days, 20 hours, 43 minutes Bad (down since 2024-02-23 14:19:39 UTC)
Tags:dll emotet link epoch4 heodo link zip

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2023-03-23uDXTYEs4Lx95sq9d8ACNEDJylh.zipzip b030f4ef75c8ef13e944f87ec7b700799b5f2906f4f3cb262c0fb1daa3b41865n/aHeodo
2023-03-23XPMJr04Qtq2qMFEmxPl.zipzip 14730408e69d2edb6ea360dd2528b3d06fc274b2625c129ad15510ec999994abn/a Heodo
2023-03-23o6hxkNXncvAvRjCCCGYG4gu23rP.zipzip 2bbee605c1510e0f08149dd322490d13f7011ac1cf769cb0ffbbb97c4bc32da3n/a Heodo
2023-03-23TrPy05oUj5KIwP5i.zipzip 2fbb88137ead1b6c31b840e1de853017e25088f5a05d345c2f040b6a74383baan/a 
2023-03-23x21uJKx.zipzip cba372fad7a1234e6af21c295ccb5536416c34a399195429f38c600924096ef7n/a Heodo
2023-03-23IkfVK5jikVf.zipzip 5f8ab1523e25f5d9724130e44a3c960aa04b04ed6bfcd19f20d709265096a0fen/a Heodo
2023-03-232PhqGWqnqjTi.zipzip 59db44dbca60d03b6c50d3d096732db84955fe24e76c46fa43dda4095fdd8a86Virustotal results 18.18% Heodo
2023-03-2270rbGjTRwJr.zipzip 66ec3c195df7bfa445d9e9f99eb29dfc953e0885c760f651a7c467d533ba965fn/a Heodo
2023-03-226K5WiEaFbzns9fc9X.zipzip 3cbf332dd71349c370b2b4163aea418e31d4afcbdc9bca54b10ac27cff009d80n/a Heodo
2023-03-226h5s4otFKQVV14DHbust.zipzip 9f5413100fe4a3e468eca1fd1f0a70e3c4f8db6028578cc73852b6242c6bb991n/a Heodo
2023-03-22gATDvTc6jhZ.zipzip 7484b8347e5cd6b3a333fbb1a8a622fe7f5c129d49adaaf7c73cdf8bd8a297fan/a Heodo