URLhaus Database

You are currently viewing the URLhaus database entry for https://ecomdemo2.ogsdev.net/wp-content/zWWB/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:938014
URL: https://ecomdemo2.ogsdev.net/wp-content/zWWB/
URL Status:Offline
Host: ecomdemo2.ogsdev.net
Date added:2020-12-22 11:37:07 UTC
Last online:2021-01-26 08:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: waga_tw
Abuse complaint sent (?): Yes (2020-12-22 11:38:08 UTC to anti-spam{at}list[dot]alibaba-inc[dot]com)
Takedown time:1 month, 4 days, 20 hours, 42 minutes Bad (down since 2021-01-26 08:20:26 UTC)
Tags:emotet link epoch1 exe heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-01-22zYQWMGtGKQ7It4z.dlldll 6610d2cb90a953d945f05e3acdcfb4a912e3e5bbe51b17a2f5dc8f0c4bbf0e48n/a Heodo
2020-12-24vlYc24RRoHfLK91OZNdiT.dlldll e65cf4992c38b9e41d68a4defcbb74eb975ab1c6bffbc9840ac823943f1a42c2n/a Heodo
2020-12-2460eO17.dlldll f596b55a7b01f4c25504c35e3e53ce6a41aaf858d6d5ce4e724699cbebecb453n/a Heodo
2020-12-24JGHup6rmxPlA82Ga11QxM.dlldll 63f1858edf9dbf997d6cd106df6eaac923e846e323d8c5408cf953cd98dc8d17n/a Heodo
2020-12-24wjiDRlwfO5ocrjb.dlldll af7b95aad17af3efaff97148a5f659e2a707eab739d431b6d5a9acbd79fab3fbn/a Heodo
2020-12-24k4Qce8topP9QlzgmJJ.dlldll 8fc2b103b2983e55353bcdc0d1ca1e8f8e5992e14b93cd42d3a1c678525c3bc5n/a Heodo
2020-12-24FZ2NDPzAEY9LYRtOcsQ3v.dlldll e7816fe593010245d1ed386661887b3eda732182615455c40218e3a71f52a73dn/a Heodo
2020-12-24OuXrKxWCwrEN0d5Hle2.dlldll 80aff4a2dc81336d917b56a73ba78d78769f0a1213551e5e947f75b6e7a0c8e6n/a Heodo
2020-12-23rgFfEsUj.dlldll a502326184b3e4053ff48c8d566621c686f9a95b781ff07db43b7376444b00fbn/a Heodo
2020-12-23YWJXu0FWIAXYkrkVVDt.dlldll 3285b27c479ef81b782e86157b69f080bfe827dc54d9f58667f4ad2234960b64Virustotal results 11.59% Heodo
2020-12-23HhV6C.dlldll a19754651fc9eb3714e1be9944aa20231258b638815ac1275d3071889a89a6ebn/a Heodo
2020-12-23C4.dlldll 88df65d4513fa54b23a2e2e9d9bc7f5cd304e76facfa23ba0e3520b822571695Virustotal results 11.43% Heodo
2020-12-233goKI2m.dlldll 8e15682d99b8c488203cf84fd210dbdafe7a60dd5b408742f90c75f07e7c9681Virustotal results 11.43% Heodo
2020-12-23zPPXqjJ8GdAw7N.dlldll d3fa2bcfa2db92f01c958ecbaac8fe1806c3fe9afd025b8b6238027987085e03n/a Heodo
2020-12-23p6YjodEJwYbrAcRz8gFB9K.dlldll dbdd0260b5d689856093f4d53511bd058a17c25bc6c22a51cc222f58b1ea3b1bn/a Heodo
2020-12-23WUSnb.dlldll 784062af30806eab6c708de23df3ce939bdd8e08a99d7b3ff9d2e94b5532fad5n/a Heodo
2020-12-23RiKZl0qx.dlldll 25693042c3ff078263b8a6718eaf26e8ec5333cc8a20b74e676f21ff2fa7b264n/a Heodo
2020-12-238i85Oj1ep1vv69.dlldll 35645259a9a96273bb7a3f634e3232a4b0680352678c9d2cd2835731c31a7f94n/a Heodo
2020-12-23clBKnQy9hwQR.dlldll 30c51471e0e5dfb57d689062e5e28a8935d8e8f6225e0beb6e778a01ba8d467cn/a Heodo
2020-12-23pcdo0.dlldll 356b468e266ad09105339f018b96832ec940e1fd0bec9ef381f6de134e19d8a4n/a Heodo
2020-12-23lBXSqN4vrft3of.dlldll e057a4e01e429263778e5094b75c63f9ba907c95a0e1306428683ea10c8d52cfn/a Heodo
2020-12-23NOz4JuiOvn.dlldll 336dc472ef7d91657f914a550986b3c03bf23ff0eb0104f991ab572e938faa68Virustotal results 11.59% Heodo
2020-12-232tGAc8dU.dlldll 872f35dd8679f3ea506f029b0389d641e2685eb8ab20c8844c3fff8a3fef1258Virustotal results 52.17% Heodo
2020-12-23bEJ7y6YIWBjH72s8Tgn.dlldll 7a2c915c334c58893b75d533b3ef658a16a49dc10786a2cd1a22c43eca8612dbn/a Heodo
2020-12-23aX88CvEu0qPqibr5x5CA.dlldll 79247307170dcf3d804414332b114e2db96ddafef9baf9db3f09d4245f5d7a59n/a Heodo
2020-12-23VYT3PpMHXO32WNW2g9Gm.dlldll 4a240afdda2e5655f077c8b918040bf08e2a3ca2d8ea83a7b1a53f704a856354n/a Heodo
2020-12-23y34GG41VGGTLr0xcqV.dlldll a092b4ee2fbd3cc08bf96c03909f0bb6e19b5e4b88ec551276bcccb424fb9aa6n/a Heodo
2020-12-23zaR7oas.dlldll 392645547e6a4d5915f8544da9e2d5694207f1814dfc2f4548e9f83e927f32d3n/a Heodo
2020-12-23kBr3Ho.dlldll 776c9e6520a68a105fce1724aa1ed5bad8c93c54cde7fb1b46d41468ee6d67ban/a Heodo
2020-12-23MEbYqLgAQGGZ8bYrGb40.dlldll ec6fb3e996fa5cb3d62b6cb733e880b6331998f6181f6e52aa4fc3b1668634b7n/a Heodo
2020-12-23f8XCx.dlldll beb6921f5faeaa80aba29a189e4b04d3f7851bb2953e6a00a377faec0d4797d1n/a Heodo
2020-12-23a8i1hQOsD29nr1sPb7q.dlldll a84ac17fbcc998e2eb1aa5de80f6edec13972e3ef27dd140221ed873ea96052an/a Heodo
2020-12-23yMhfWcO9RiiqVSTnHzFDSG5.dlldll 6c679f8725ab29f425ae815cb0cb6887e977fa8c9e02441cd46cca1184b59262n/a Heodo
2020-12-232pkzNlvnoDrOJW0te.dlldll a2e5f8aed946055eaba9de1488ea68754893f44fbacfd31f5825b76bc246451fn/a Heodo
2020-12-23r7B6IPuundQOJ.dlldll dac07c2d4550ed7f8583657cdea255ce913386fd70c69601a212a33e5c5f6ab8n/a Heodo
2020-12-23El0IVWkurwPZROe.dlldll 786c4c9130acbc80485030725ae31c3e393d4878066977ac8ecc4cd2dee6f6beVirustotal results 30.00% Heodo
2020-12-23On1QvoTkAT4y5YO8YpUdqh6.dlldll 4101b2dfa3d2e252247e39fc5a63e13719f5d1e355fe25e4325897d3b510e494n/a Heodo
2020-12-23ZH6cdut1s0e.dlldll 8ef4c5e13528a37093dc6ef70ee8da59938afad0ae170a8027f2f6f347b7902dVirustotal results 28.57% Heodo
2020-12-237xzZOTwl.dlldll 93525b7df2f5c7732748acb239ff385ac0c0c5e3a48fd9d444d4d9d45a72e9c5n/a Heodo
2020-12-23Ib6MksX5ai5enoaz.dlldll 8f8ed18537c84d1c9bd4f46b216d474a460f61f44095a8ddd3b724113d7da847n/a Heodo
2020-12-238krfXPPb.dlldll f66fb87a48ff7aff9ad498a7573f05225f3610e35bbd52581d50c87292fae6a7n/a Heodo
2020-12-233i27rAjlKue2T.dlldll 4874b1d634ca100914241c567b79aa4a5dbf1f938fb3cea3e9992dd6ac9905dcn/a Heodo
2020-12-23YzTTfcF.dlldll 472e990aab8ca806d167abb350876c259a96046ef60627a24f14bf55f56a7492Virustotal results 23.53% Heodo
2020-12-23M7CsCOu9asbPxBh8e33I.dlldll 95ac679e90434cb7f2adfdff5bd7c585a70dfca6d04d3dafaadf1c49cbc9f273n/a Heodo
2020-12-23PIB3RAk.dlldll f95313159ee31ba2fcffb22724e234f413217cf9bae4acc0c7739a4ad9190549n/a Heodo
2020-12-23tDeKwb.dlldll daf09b56a26fca26019b03b897a6aa9c115a17d86ee865299626f886ccfe1241n/a Heodo
2020-12-23Av6xRvU.dlldll 76e3e05fc14322e61e7b2d265c7079bf5a5abd18f685243c8803cc0103342a05n/a Heodo
2020-12-23piQN.dlldll 32bcc8cab3793b8f16ddfe694bca1f6a461b66fe6adb33b5b7939aebc2ac32c2n/a Heodo
2020-12-235RjOO4XKyGe7aMIo1.dlldll 7769c42609b237da431f19f270957e08183c21818694985a09ffcb4ba7a3563cVirustotal results 18.57% Heodo
2020-12-23DzklfT7ztZkkt78qx6Y0.dlldll 60a1a628057cb0e22ea720d352d3e057dd391445587b1c40c6d81b11207130d6Virustotal results 20.90% Heodo
2020-12-23xdHj5qc7Ea.dlldll 4ae195cf794aad6b9adb4958d3e94e4fb9e64a505271e76f08bfc2a9f89fcec1Virustotal results 41.43% Heodo
2020-12-23ZGKJDyRJ.dlldll 1f6dca0679479ab28eaa9d22c7d8791e52ef6d57d128f664f4e836b251c8de9cVirustotal results 42.03% Heodo
2020-12-23TJ62c7k1th0TaKwfHXwjkS4.dlldll 753b08270ca769d697d3ae89d931fd4be6e8fd4cb4ba1226e3c787fcc867bf06Virustotal results 42.86% Heodo
2020-12-23rc99LX2GyDVyMs.dlldll 5e6cbe2771173398a96f3fc05517679d9a72371cde2bb4b2e709b4d39b612570n/a Heodo
2020-12-23daA9IQJC7WF1n.dlldll 13584ceda8c4b3a0fe52c5cf18d48c43d68c721989e03158106c8d3903bc9765n/a Heodo
2020-12-23CI.dlldll 6c84cd7d66e16e7f1a603fdfd629cd24f29b158477e42a039e855cd125349134n/a Heodo
2020-12-23Dzfvmc3gpqp3648pdj2p.dlldll 2753a932bf383afcfad7892b9a390927889cbc5668ee62de183feb2574810eb4Virustotal results 34.29% Heodo
2020-12-23fygkIHGTzIW.dlldll 75d7b723599e4dd567ef59001918b62eda141b24a52a42d261bc8c50f360d1cdVirustotal results 32.86% Heodo
2020-12-23nZZ.dlldll 690189abd9dca60f6061135cae3fadf3f3ed0632f803fd8eac27aa09b763d5a0Virustotal results 27.94% Heodo
2020-12-234svVv8rlM4YdV3.dlldll 3a919478fc1c82f32bc4bb4d309df6ad6fa83e435140e2d6313b09eba8369920n/a Heodo
2020-12-23CveyMz.dlldll 8d68c554555743f33f4293b7743c8332f88e25153648b56481fd10286db34c27n/a Heodo
2020-12-23dzbkO9DQUAQ8DqfDhaCw.dlldll e4884ec6600f23c839f5d41f9fa5488e551d77bf093419bb91eab0273ef11b12n/a Heodo
2020-12-23ewfIVCmqBvNL7IbQTTr2.dlldll 3b37e585f4943648b64c804fcb58a32fb9ad7b5cab390d99da5677b6b7c0e1b7n/a Heodo
2020-12-23H1HGs924CCfnvQqsbG5oR8.dlldll 8d3c8e7ae8ba934afc3f9a526503804bd063f13071988fd8e1896ccdbfc3b5b4n/a Heodo
2020-12-23TU.dlldll c2a0310f1a19cd0e0e4848d2dd8f6d61a80042fe11622dd92238b0f75d79478dn/a Heodo
2020-12-237F0.dlldll 1d69aa2f67d052c5bd75f006c1895377cff868091efc196503c223df3a6f959aVirustotal results 20.59% Heodo
2020-12-23C9UJqD.dlldll e86d565cda64a79af72e59e1f9fd8151e5abe856264995d6aa9480b9080627b4n/a Heodo
2020-12-23FuOPZdkiFMWcN4ZDDpjQ.dlldll 9346515b183331442d99fe275bfcfb1125339c6cb655c74e5daddb9cb507196cn/a Heodo
2020-12-23YPHzC.dlldll a817572eb127d8f432cb646312256f0b0fd59e05ba9e80da37110c97bf5442f4n/a Heodo
2020-12-23Y0JjvGw2uwU.dlldll 7fb9091e115e9327bc113acde28c99e8fe51ce3b542e04be6af885037889ed6an/a Heodo
2020-12-23FG.dlldll 5972820fbd4dc5bdc7f636845bf0fd793fd5253b756c016a1ab4dce7f9d78029Virustotal results 21.74% Heodo
2020-12-236d6A.dlldll 801ab220b82fd0dbd6a1ad764e922c4561b3d7a963f749ba37c275ace633a90fVirustotal results 21.43% Heodo
2020-12-234D1czPFqjjeI.dlldll f28a6ffe4918cd49b6251c9503a1ca1d7723e985631bf16d7c5c324fdb36e83an/a Heodo
2020-12-226FRJRxp5UqsaZev3R2onl.dlldll 191a0680a43382726ce938a74efd27a2b093aa6b463939b76e60c4e3e89310baVirustotal results 21.74% Heodo
2020-12-22kyTYiSK.dlldll 8e97c97548b7152768eabd0574da54b4c99aca1b8423055ddb93a49b9b22a4f9n/a Heodo
2020-12-22UkJh7.dlldll 71a21f2801e840906533cb1eef0850c0e6b0d0685d26e85bb3c55c55e9b120c7n/a Heodo
2020-12-22WSYtEd.dlldll 28e116964697d11a20ab087cc9d108539661cdd725923a95b7b34696ef21e917Virustotal results 21.74% Heodo
2020-12-22h7NjWkd092LC.dlldll 467d74887bd56507f2a08ebac26eb7af4bf0fee98d5c2da40a5d42f25082f8adVirustotal results 20.29% Heodo
2020-12-225jtrVUyl6cvbjXvhjh.dlldll 1dae9c08f7a553bd59c96e0f0a91ddad3d99d38585d4ac39b6a6577725ef349cn/a Heodo
2020-12-22BvCybfsBCsEvdEPWARslIV.dlldll a8bf8c69f8158769ead6a8b38ae3912535fc21d33c9febde9b892136fb1e1ae1n/a Heodo
2020-12-22HsAJfFRupV.dlldll 3994f2e99b54fa570f87cc2054fe0fb373191b9ce0a36c402aafd617e454dbf5n/a Heodo
2020-12-22njo84tUzbJbPNBRs1eR3dO.dlldll c1d693d64670a01246713ea691fea0b467de231a43c6cfbcef24325851ea0926n/a Heodo
2020-12-22TfehBznpsDYNhTbo6.dlldll 8c28271b742a2f828f853df0b2a63b8d0ce88aacdf426fc4e869d0484efc6fc7Virustotal results 20.00% Heodo
2020-12-223L.dlldll 8740d70c0d5369c588528bd0063f152d0b4d1e473f175306a95c0f22d26cf2f2n/a Heodo
2020-12-22Be9R48lVdNPR8530XU.dlldll 3b95b89cbd2b4fbd9ce3afb7d928022c62b26ae621aa3b4d0b872f512fe69b64Virustotal results 18.84% Heodo
2020-12-22SCG1IR5Q.dlldll e543f828e6a64135b52f4f65b39fd745f8a886bca6f9c336b464b3f8a589419an/a Heodo
2020-12-225EuHczJfZ2EeRbvfrP30oHv.dlldll 7923537e16b2e97b85b21614dbe13f79bf8563560eb06a2c54272f3720eae641Virustotal results 21.43% Heodo
2020-12-22Siwi.dlldll 5bd5232dec4c0b785479ed8a4f789620c8244afc4966f10d1893c83275cae4bcn/a Heodo
2020-12-22ajX30ZwVwhGBdav.dlldll 9bfc8248ca9b87dc18766c55e0cb0eec9be69227a695ad3dd1f0c308303c3f37Virustotal results 21.43% Heodo
2020-12-22vACrvgzFbh.dlldll b2fddd91646f4af2c35b11b21bed7107c6c0d4f5282913be0cfd06198d284ca7n/a Heodo
2020-12-22cMHh295YrOSI9zj6.dlldll 64b9a2fcc301ae0f04b523a114e53a9d3efde9ec42987330a0de800cdc762d7aVirustotal results 18.84% Heodo
2020-12-22AGaJKqnwDoOoZoCy.dlldll 945f1745447e2fbdd7f5fb89a9d624d3f458125e3e8c58ac7e3c7964752779d8n/a Heodo
2020-12-22jFI4w.dlldll 5e3fce837367f31043ad3ec5ecf6b7536bb0a0dc997c0ea2a44d617cb1ab058fn/a Heodo
2020-12-22El.dlldll 5d8b1461190fbea207811175fa4919bf20b36da14fa42bbc8691886a306dc516Virustotal results 20.29% Heodo
2020-12-22O6t2I3KCA9NBHFZ6.dlldll c7daf370a3f74f3dc18d46a3cdeb9eb0494ceb779a575b5239c1a89d8bd70541n/a Heodo
2020-12-22GaHGSCINpYH50ER.dlldll eb92abf4b0c9ab10821f886ef5d59c8c8bbfcdcde74c4a71e5919f716f932f6cn/a Heodo
2020-12-22PK.dlldll 7559e63d49e025d6d7072b1061c530f7295d2531dfecbe15921347c022999bb5Virustotal results 14.29% Heodo
2020-12-22tFqxo2PGH3nnE.dlldll 27e702d468b9a15e3bf4e98888f00df024c6730f4646c37d95a2e8b84d7387e3n/a Heodo
2020-12-22pEolulqOdq.dlldll 612fa1a3f20db0623731766fa33e256007fb6abd21f5507919c52d496c4ad31dVirustotal results 14.49% Heodo
2020-12-228s.dlldll 842ce7b67644c8a775d6e5f5ce5b18239495c721164bf790faf663abbe7397a6n/aHeodo
2020-12-22RFyovHMm8fqaQZYZ.dlldll 6297b49679b038eedee8ec50ccf0c79cd13df921a434f781126c8a343fd158ben/a Heodo
2020-12-22G7S5pOpL4.dlldll 1af095dbccda693399fa01452b6f5f93c5f40f46fa6810617cfe6520624e8111n/a Heodo
2020-12-22Z7MRJwDTey3iVwLxs5.dlldll 9e541a31756aa0d141a8b333d31d52315caf65a628148259947fb18af9fce501Virustotal results 14.71% Heodo
2020-12-22AHnZLrFCTEgcWloozyl.dlldll ba939774d0622e2bac6d0691ef37fa1af16ae9beb1d3aa9134e31e82ec7f959bn/a Heodo
2020-12-22gO6rOeJlMKUDp8.dlldll aef1678b979d8476fc87ea3935c1d68933cb02cdbdadd848bee2cd6f833b73e2n/a Heodo
2020-12-22Zp.dlldll a5afc678cbec9d2520d3447c7cc7cee3f07fa3c7f5561fdeca4542825cace504n/a Heodo
2020-12-22vspOFO5lLMfsYRRyiYd6t.dlldll ec30bfe352e065eac9b6db59668d1fddfa68ec0d24acce5e29522e362b1a31f3n/a Heodo
2020-12-228Xiaeb7u2sXBMAL7JwQNbd.dlldll 0546a11d3d7053dd8dc70202afc4b25a572b92c269f3e57a74586b198030d64an/a Heodo
2020-12-22EhiTmImaZVfGVWxK.dlldll 643b103df8758353eefb60b8736a851771a3ce4571dc5df9fb028ad1d0aca345n/a Heodo
2020-12-22WfdYRsbcmYbyliU1cYfn9.dlldll fe621883d0f892ff6344acbfe7e55afbd999240964b88a432327c83302cb49dbVirustotal results 32.86% Heodo
2020-12-223Cqf0uutqFKFX.dlldll c80fe5cc700de9ad9555c536dbbe573bd9d2ed13ca980f2d9cb8beaf58ea4d74n/a Heodo
2020-12-2251WG6FWMVWmUd4.dlldll 4ad670c6f8ec93bf40720c71a00e618e0f8eb895f0831837bed20926000ec9cdVirustotal results 33.33% Heodo
2020-12-22sk4UpNSSGCmF78repX.dlldll a80bf8fea4a7210bcf78486c83e1bff560ad328d9a59aaefabb1feab60d2b978n/a Heodo