URLhaus Database

You are currently viewing the URLhaus database entry for http://paulscomputing.com/CraigsMagicSquare/H/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:935819
URL: http://paulscomputing.com/CraigsMagicSquare/H/
URL Status:Offline
Host: paulscomputing.com
Date added:2020-12-21 17:04:05 UTC
Last online:2021-03-01 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: waga_tw
Abuse complaint sent (?): Yes (2020-12-21 17:06:24 UTC to abuse{at}he[dot]net)
Takedown time:2 months, 10 days, 4 hours, 36 minutes Bad (down since 2021-03-01 21:42:34 UTC)
Tags:emotet link epoch1 exe heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-12-23yERd2O.dlldll 5e9f4504b7e0938a2b2eb9a7f090be9f4b1101aa3be145a3b5895cb14bacd0efn/a Heodo
2020-12-23aP6hjRVMtMdwKWrUWm.dlldll c0cd4ae0f04488cf6f0b5492847f35682284b6cd023aca8619ad61ceabde70c8n/a Heodo
2020-12-23Ib5v.dlldll 6da18998ffe6fcc9580cc4a8c92fa47b32285df4f143e66ac767daf9ba6ea2a3n/a Heodo
2020-12-23d2G2DOgbmIHmbcn8QPn.dlldll c6fed1d192eed7834270e21c8433608032493dc7ca10e20d125b406df76132f2n/a Heodo
2020-12-23IdKmZ9M2vV0M7I.dlldll 7e1a281321220e5d9a7387a4348ff6cee9ac182353e16d91192b4381c09ffd60n/a Heodo
2020-12-23TrEZrk.dlldll e68285d5dd43afcda4d4a9291e0b85609c47655d62be5460c2c1fee68e5b3573n/a Heodo
2020-12-23viOUJAW3jMlBZt0CPoGBx.dlldll e39c5dd72d3e5179ed9a96af3c813b68bdfce8e0c3d60bdbe36bf4b36dd47bc0n/a Heodo
2020-12-23oPLt.dlldll 3edb861d74f12eda6dc8a8c6223aa18e94b512e4475553bfcde8f22e53268133n/a Heodo
2020-12-23g0tk1ro.dlldll 19a729390174d7729fa458283ee4dae693ffbb6ad797d0d812ff63a9fd792696n/a Heodo
2020-12-23RqB.dlldll 1b037289dd80e4f17af63fc972de3a8fa7a108f8e4ea0f8334c7b74fab93dc53n/a Heodo
2020-12-23qNGGHJY8aF.dlldll a77ca2a1b828b6bb7919c31b5feafcf49e0619589d6977a0afdbb6094974ae69n/a Heodo
2020-12-23CquEPwojhHdW73PTW.dlldll 36c21da99804b4b26b01ab4f12f997fcf19c68eda4399bbee6c764ce3cae79b5n/a Heodo
2020-12-23VwonhAO.dlldll e5a5f13dbbc09eb42d9bb24df9c24ed3ee1960d18d10f066cd80512382bffee0n/a Heodo
2020-12-23kumwg33XN5DB6plx.dlldll fc02f06a7ecd923cd83ceb858b74535c536675b1bc06559d2bf3fe6b7aaadb5bn/a Heodo
2020-12-22rK.dlldll 05890099c33b216218eb1a27509e56e6e3ea89cb287a063d3e8f337a99e94048n/a Heodo
2020-12-22ToaU3yY.dlldll c36a5ad204967d227966cf78e03e186282e5e3686e7aae1032155e57f787ab35n/a Heodo
2020-12-22ctr6SU4phOw.dlldll 69bf531aa677e13cb59c735d267c640ba0286250da56d51a0dd3395c799ddf50n/a Heodo
2020-12-22MrPYf.dlldll 81d5fe30dab319de930a7230e8b6b4721e7583655111feae0e355d075719caf2Virustotal results 20.59% Heodo
2020-12-22g2mx.dlldll cdf05e8d050b2b34a96d34ee7d2a888adf32418a3b6d96bc2065cdbc909101dcn/a Heodo
2020-12-22a39r6c4ZQ.dlldll 00b78de4760ad3f09ebba1ee12b4eaadf11f24c177d8d1c82d1685a559d21fefn/a Heodo
2020-12-22LJT76Pkz7boMa7LHP1eH.dlldll 16932448e54ccf31f5688f86c4184731e2326c316bce9bfb9be179d416ddb1d2n/a Heodo
2020-12-22b8I48G8NMWw.dlldll 989464932d3743b4be755b8031f4269042fe94d522cd2ab503a0660384a3d923n/a Heodo
2020-12-22MIYjjnOPpCXBIs.dlldll ec865b1ca0826b93230e775f7978a2c0c8bc4af65fef7ec0d128070ab5187489n/a Heodo
2020-12-22ntLkXl.dlldll 8c813210934d0c86c2e15b288e1ff8663fa57de6d4aaa9f931292f0dbea4a2d6n/a Heodo
2020-12-22wbwddn.dlldll c8cecea39a0075053e8f96ed95872adf0af0be020f69db5497ee15ed939d1b1en/a Heodo
2020-12-2232UsllWHpwKbrGz.dlldll fedbed20568eb0d080e7f69a9716d91dac10bc5fcb331dc975ba93704244acd6n/a Heodo
2020-12-22P5BX.dlldll f37946baf1cc7e00a380e593e7bbf95c86d818ba0aea7a3f24ae8ffb2fd7c33dn/a Heodo
2020-12-22MjVItzHrw72pdUV.dlldll 4fb9363f917a39a9916e2052a77799b65670f6a4a7d78d08bf6667c53ebd945fn/a Heodo
2020-12-22JTd1rUin.dlldll 3d6463d6baa00cff19e60c5f347ba1f287e1b8d2dec0c5690b105ba319e11ee6n/a Heodo
2020-12-22Lfed4XdEa8UXaHudY.dlldll 92245f668f82b9f7dde35883afba955cf11cbb7f4e27d129231077cfe6edb15fn/a Heodo
2020-12-22Y9h4d3Xjpt.dlldll df3830baa7d1ea00832f37d77235fb63cde4d06d27ae528f4f4faf0652762079n/a Heodo
2020-12-22EJ3HfiupOYcTS.dlldll 013cefa429a16ea08d7d32a34fadb2e3cecb9be6399248e792b3d5377b6a5b09n/a Heodo
2020-12-22G3Aoj.dlldll 00667cf3ecd800a7c9bd0a84a663b9dd158ced55209c54b98229e6e6f9a7e060n/a Heodo
2020-12-22Yl4OwCBB0rwI.dlldll 78ae7e96c43a6807f7e39d121d0af8206f9bd76b66b92b3c31760f4bc75db84an/a Heodo
2020-12-22Mvm.dlldll 1185b5db9298917fc492d1f10f3d1256a950cced972bc4661bd414416bdabf46n/a Heodo
2020-12-22BDGoDBtMB1iUKlJ.dlldll e691e92ebe43d53d634c0f9cab475518969599e9a5758ebbab4840f294be0236n/a Heodo
2020-12-22H5dMfjn.dlldll 2b0e7eb3e0fd798c11d5562dfa7ab56f5e5de8fd9f55330a5111180cab104c5cn/a Heodo
2020-12-223gtzzv.dlldll ce18200a4092f0a68e0745a3a69cb600e6a32caa410eecca8f45201ff9f38bd5n/a Heodo
2020-12-22Ohw1VFU7hla5IJ.dlldll 195706b32c696a07c15a08ba5c158ed79d7e17eb5b5aa5ea8aad425b6b0da4aen/a Heodo
2020-12-22i5.dlldll b0f9f5b76ef7cc7cc33a64e87ba95b98f79f001ea1af8b54c193ba5edeed5e00n/a Heodo
2020-12-22uB2b.dlldll 1d2503b81123d123abc087849380141ca645f07b1825ee479495512176d66d0bn/a Heodo
2020-12-22H89r2Wvi561pUNNBnmaU3.dlldll d23a9ca2d662725a7f543748641d7a3f83fd48c43351651615b47eca5e38f4a5n/a Heodo
2020-12-226M.dlldll fbef8007d9771d83329e0b347dd17714e99f6596754b2a91725c71dd309dbc61n/a Heodo
2020-12-22MGmF6.dlldll 0efc8f7b090911cba6a3cc07355fd991aaec953bf76ad63d7ce2202e9a4abb05n/a Heodo
2020-12-22TqSgD28MXxmQJa8TgHmjkR.dlldll b8db0da542e57346d6a156b35fc5807865ecb1dfdaaf27b0f8c1dbd57c381f59Virustotal results 15.94% Heodo
2020-12-2180hyhZlXoIFa5fyi.dlldll 6174b01c6a3018507d8a63b2808174289a68f1dad48bb9e55d9d2b7137aea39an/a Heodo
2020-12-210Vp15SHamr9LG0Dh.dlldll e476171592952e978f73cd2d016c20fcff9aca1f874cce48e141159ca0be7104n/a Heodo
2020-12-21FzOsvIMHlKqDm2q1.dlldll 1471f5f5932fc93c345299e7e6d995f28b1d3fb52a88571f1afe1a8468f73e64n/a Heodo
2020-12-21tI8fflCqhCGJFPJMeoFlU.dlldll 902137371f7d8de865aa2fe7da918546ef483f2d93983d03f688c195981e81d5n/a Heodo
2020-12-21ZALgFfp9PxKRd6O9EAD6N.dlldll 03347cbcc9affa274180e5e0e66e931df2ac306f443e2bcb83af4b8eb502b2f5n/a Heodo
2020-12-21FX8.dlldll 8424146c7828afd6ac4c5e51471b5ec0e6448b7de5def3c52408aaa6bd1de7c8n/a Heodo
2020-12-21JuSJmDqA6Y.dlldll dbe0d4e88526679390d0cf4befbb36b21f98a191c702b143e82b396ce8d3dc0dn/a Heodo
2020-12-21dfehCI95JQiiXASHH6SEw.dlldll bcfdcd57a9bf46e9a1be3d882955eff4f5d84a388c374b3b5d1bac710410fbb6Virustotal results 14.29% Heodo
2020-12-214PXGaRZ9WRB8dsXtRqls8.dlldll 3ae268635bcb597ade3d935fa1cf513f9b60081d50787866b7c12748c5dc0ef8n/a Heodo
2020-12-21ggo9pGvlmx.dlldll 0b059b9d6194799185b03e557e8c05d08a15a1ff8d526a14d99db29dd266a0b3n/a Heodo
2020-12-21RAdE0s3T4sDq2ZBzj0WZSxm.dlldll c9879f13fda70439e3e0e45d229194da0f4413ae25abaf2dc0d21ca3549eb619n/a Heodo
2020-12-21nIMOBwm9mfbrX1GU.dlldll 561c644d5e5e64397c7925d7f34b8fadd19ec827df378286caa1e353a02aca3cn/a Heodo
2020-12-21bZzPYdk3SUWqpguQLc4G3.dlldll c1807cf2a1a0145037be4cb730d2babfa0fc2a01ea2d1a069ccb98654e67fbd8n/a Heodo
2020-12-21bvVCzh8XJg8lVld.dlldll 2a1e39a36995e52aa599d9227f4942043bcc6b0a92e33e8cd72ac1eeb5a45fd6n/a Heodo
2020-12-210BEOobRCGHalQsHA4vA6SV.dlldll 0f138bf1d6fd844b119cb90b2553c035829fafd44486bb13545e9fad8c92cf42n/a Heodo
2020-12-21odWkcIPqh4JrwwcKw.dlldll 1936d59ce8001597325d94ab68c3ff09716255ddbd04a75f4c369fcb5554b1cdn/a Heodo
2020-12-21RN.dlldll 9002ac5a61453e82cf94ac4303447f75caf32899ae7c53953c1e1d32e7eb525bn/a Heodo
2020-12-21k52LrZhWthRMbK9vrId8ic.dlldll ad88aefcbbe20f519cb9ac2a0a88978e53313d06ab3756879bd7d6921b005cfcn/a Heodo
2020-12-21vK.dlldll 039931fe44ac102f820a09cf6bbbe28a549fe3cfed00a54c7bb271db39d9efc8n/a Heodo
2020-12-21Bs5cf7zr10.dlldll 93c3a4653fd9a647b67fd2407c2113aa5f9e45209c4ee771e804af7179eafc3fn/a Heodo
2020-12-21DPxJkCG0S.dlldll 21ff76c9efda3c8ea7aee3ace744498f847a3646b80ae2baea01f3b52fdd734bn/a Heodo