URLhaus Database

You are currently viewing the URLhaus database entry for http://decpak.com/cgi-bin/gU/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:945783
URL: http://decpak.com/cgi-bin/gU/
URL Status:Offline
Host: decpak.com
Date added:2020-12-30 18:57:05 UTC
Last online:2020-12-31 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Status unknown
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: waga_tw
Abuse complaint sent (?): Yes (2020-12-30 18:58:07 UTC to abuse{at}hivelocity[dot]net)
Takedown time:1 day, 3 hours, 0 minutes Poor (down since 2020-12-31 21:58:46 UTC)
Tags:emotet link epoch1 exe heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-12-31H2ZAEhiJtgS5J7v.dlldll c144b993080890c9164284518fce882342899dfd3bb39377360a2a922178daa6Virustotal results 50.72% Heodo
2020-12-31EKHmk0.dlldll c88a6d601c3c1b373e6b071b5ffb51b6a57c260f134adfe734ff3f3ff54aeafan/a Heodo
2020-12-31wfH1aZBhogwK.dlldll a3a92a551a840b7410bafe57cff1212bf027d880b6ad08c32d321d5940525705n/a Heodo
2020-12-31MTEmr22H.dlldll 39d615e5cfbd475e300ec7759538cc65cae81c80c64192bcfb40d3db11b3b229n/a Heodo
2020-12-311ZswhqR4bO9x7oTfKaD.dlldll 740eb999f2f3c009d03198fb5a26c203586b161e4b584421bf44bf19070dd157n/a Heodo
2020-12-31e2vZ8AgCchIattqIiK7x0.dlldll 38a95272d210434b5b36225b43284fe42c3ab0ec0b59869c66e4b16241cee4f3n/a Heodo
2020-12-31IIpmTVdPbn.dlldll c81002356bc316be6b1175655e5fee7cefbde8024174f645ccfcf56b7cefa765Virustotal results 48.57% Heodo
2020-12-31oovUE56ufl0ojQ.dlldll 2f6eb33a03aaac9d067654b45524bd81aead228891fa8004f409d76446856cbdn/a Heodo
2020-12-31ciHvhYTp0.dlldll c5b8a2bc75b6db1734b08baee765a4eedd0290e3d11df0cb74b6a38524f2e187Virustotal results 47.14% Heodo
2020-12-31MBNkG4bj3dFE.dlldll e5965ebd8f0e053a97634cdc246934d78f02e530dcc01d7765f6111622d5a626n/a Heodo
2020-12-31irP.dlldll 841f7ddd0cf7068c46d9312ee46b9fdd9a3f59a01ee4cf13dda531270911701cn/a Heodo
2020-12-31wfeKqokYChL685sXkhOJX2j.dlldll 88ee57c3fe1a645c104139e9877df4dd662b66c8f4c53b755d005d47b1ba78caVirustotal results 49.28% Heodo
2020-12-31Aw4Oy5M8dlp8wPz8gT.dlldll 3f14038e6c0dc255b2bd76933842950ac49e07aa3b53cc0f2aeb2e050cf14d23n/a Heodo
2020-12-31n62PWFHlcMrKVbduKVAv.dlldll d9e32534db6baefb7e5ef906afcbed2d243ec1d84d4c15e4ebde281646fc22b3Virustotal results 48.57% Heodo
2020-12-31lzHeYVu1.dlldll cec22a70c9bfd61f48c3d8deb0bb236660184d2b86801f85e49f34714aa86ac6n/a Heodo
2020-12-31CIFUgF6KnjeYZLHUlD1b.dlldll 3826a0af71fd110b959e65c2c36f85b941da372e4136ff1e88ce08357ab8ef68n/a Heodo
2020-12-31kC2FrBJmY.dlldll 8493bcfadd7ad67dd223f72c0faabf0a528194b521ef46ac20c225affe7837e6n/a Heodo
2020-12-31If2RSpeGur0SkI9984SK.dlldll 4c4e2ac9fd210b05cbd283071d9b118d6cd9367a4141c11c112255bb60fb3dbfn/a Heodo
2020-12-31mqhFV7fRahBTcGJCA.dlldll e9f68a213cc6d0825dacccc770ad47644a72e1fd94aefc2205de8011d869ab73Virustotal results 49.28% Heodo
2020-12-31rAoipD7jSJ.dlldll df14641e296ee677e43f2ec895182aa89a5151da1142514e6dc37b3ae2c25ff7n/a Heodo
2020-12-31jH1XE67rCGUPjIYVWUT.dlldll ff06de6f7cc35c5afb624b34825e2884c54de774ce5ecdc824541d7f53e8d61cVirustotal results 48.57% Heodo
2020-12-31dwCRRN.dlldll 00d5096fe1f42c7f79abae025330aa0bf2d77d16461c88223aaa51b759bea048n/a Heodo
2020-12-31rTtQzXM.dlldll f16ae4540040311e21cf3783d97b52de9dc9eb2dbdfbfe79aa5d5bf36bf3cafan/a Heodo
2020-12-3146ahitC3X0QHri.dlldll c45d741ffd71d58d3fb16354b5a28a672672208f0f2be8f3bbdfb34ad5eb01d4Virustotal results 48.57% Heodo
2020-12-319TSj19Qo3x896FyliO.dlldll ec967bf94a7212b3c7c150fef58ccb34f784b2a9266a7e2b3f3c4689d9d9cde7n/a Heodo
2020-12-31Du4Hmt.dlldll ed777b5e8231fb5df71c035399a68d09197e9b80c02e6f45d1ba0df765811ae6n/a Heodo
2020-12-31dXtsTf6.dlldll 3ae495158d7cb5af1e24d0a45dec9369a9c8d7a5a5117449dfcd27b2b2a511bbn/a Heodo
2020-12-31vfL0xQbMoAjbllS5Pv.dlldll a9b0d5329f865b36e59bca3754d32569f2391e624ac5bdb481fecd5e3e7dcb25Virustotal results 44.29% Heodo
2020-12-312rSy4fKiNXnqPH4yyryvb8.dlldll 667872c39ec139d1923ae009e177d0e0b0bb68dbf275a81607d3e04c33cc353fn/a Heodo
2020-12-31UUTglaWmb.dlldll c98167090a9eec1f6464ed7d938aa8826dac1a817d43bb79d71a933ce45ea986Virustotal results 41.43% Heodo
2020-12-315ONSAWMG9Q6isna1Cyi.dlldll 818ca36b0f6557ae8f48819a7480bc617d81a18ea57d2692bfe791f57ba7d275Virustotal results 38.57% Heodo
2020-12-31gOLD9aPylaR.dlldll 762f31bf32e362e1d02c77da4888c70add869367dbe147c8286ba44cda576435n/a Heodo
2020-12-31xETjVfEpBZ1o5SqC3CCJ.dlldll 3b37ce7657cb4d5475cf79eb94ea11216e6494dd7d3fb1beb30d4c09e5bd5820Virustotal results 37.68% Heodo
2020-12-31QL7NFl0eqWwQ2TQqX.dlldll c6a86c429256ee46e177c17c5eedeae117f18ba572f2426550b379fe24649917Virustotal results 34.78% Heodo
2020-12-31JzxehA9n.dlldll 48960ca3477f331b62a6b1a1126808051aa7ee0ad024262d6354316792220443Virustotal results 38.57% Heodo
2020-12-31NJmsFbkTo.dlldll 92070c0e84ac0ce1a0765c196d5ae7454049d6fb9cec7e6f721fce3212324978Virustotal results 38.57% Heodo
2020-12-31pZC.dlldll 0649af1cb0b15370d3b37903a931d5cc64bc9c4b0ba4cf465aa2c71b7bba8326n/a Heodo
2020-12-31PGc2RgJ.dlldll bc93390090fbfaaf9223606c0085c31f8bc417e0b1e0660fef25a2dd9be7b9b9Virustotal results 24.29% Heodo
2020-12-31RgLDDiDXfJ.dlldll 23b0b4e5f2db93dbf03f433ce32f959998b7275b598cf672ed579ad6214d78cdn/a Heodo
2020-12-31qEE0PwBuhc.dlldll 5700191d6a83d5376400b9db44756a249fbcfc0e015be33ddefcaaad51f05337Virustotal results 16.18% Heodo
2020-12-319PPTXjmbbvUgnp.dlldll b37508a8ea235504d623dce538a4d091d67d8d1a9bc255ffab4a48d51fe7b66cn/a Heodo
2020-12-31LXjipFHODsSnRvGIy.dlldll 67599200f1319be0fd6c710127aef3de0d544808c881cd54c5c930140e1f8dc4Virustotal results 15.94% Heodo
2020-12-31wy4MT7UVxKbu94YTd.dlldll 88505c14a1b8d3cca1a9ce1b31ba36b673be1cfe26b85fe72bf550f66b3c6560Virustotal results 14.49% Heodo
2020-12-31hF7lIKrdL4e.dlldll 71f33ca7945cb666226d0663fb791c6000e457ea3317005a88703065be032f8an/a Heodo
2020-12-31ntvyH8Y.dlldll 0dd2517946599f6868ce07e217354986e3bbd65cbd1864eb455f097c2ad115fcn/a Heodo
2020-12-31N2wrE4YlEyOnOgquZ6jKmOJ.dlldll 1ce6edd1f441e3415224b526b896bc79f3e693417ff36034e85450527862b32en/a Heodo
2020-12-31t6O5HYcpdV92.dlldll e334d59ee5710f95b2a512c10a077e9f4ee2246c7f26bc21b6660b799c96c376n/a Heodo
2020-12-31UnnqF6L.dlldll 14f1c1e3f8d8e229ed5e33bf2596e7bc11c7e89eb8b9382056ae2203b929c98eVirustotal results 14.93% Heodo
2020-12-31glVloYd2yp4i49XVB.dlldll d8dbd023ac2a701a4e7802181febff6978fa34ad9b19eb881aef14d0795782e3Virustotal results 14.29% Heodo
2020-12-31FZbyqID9O9Bp.dlldll e2531eb13d1e677e27d29b0c2aa5750c4d7d756d675ed2e26239faedb08a7e78n/a Heodo
2020-12-31FFrUnd9.dlldll 8483097f399a042078f3715293ff45729ec6e51e5d4e5768b5d358a36db174dfVirustotal results 14.29% Heodo
2020-12-31Qen.dlldll d026d5386697577826c7edb89ccc33418702b9297f8ba48f298cccaa28bc6d1fVirustotal results 13.04% Heodo
2020-12-31BXp7.dlldll cf8b8ff4b965e153f8702818c0798ff6c398f2bdf960f5402bc883ad6b6a4b8dn/a Heodo
2020-12-31grOjIDWsbO1xOL2o3WYd.dlldll 95ae5b4d94955591820192e2a9c07171906991250232766a17d1b14afa8928acVirustotal results 12.12% Heodo
2020-12-311yEk.dlldll 5fe38477d43e5c8b3ca0872e8adb38297190ade5367c6bddea9986fca5a97792Virustotal results 11.94% Heodo
2020-12-315pO2.dlldll 6075f422b68a279008ab3952e17cfdbcf67da315063b56e08138a926d945d1e2n/a Heodo
2020-12-31GYj18Vt9Qx.dlldll da6f07e9b837029a592921f5a391cac0f3dd7a76b3bd81e7496aa4d8010f5aa4Virustotal results 8.82% Heodo
2020-12-31AjBCRRBqzMElx6yGgqo.dlldll 2dcbfc0254147f84058640561ecd3267dec2c11e8c5cdb89e356605d8edd989bn/a Heodo
2020-12-31CwgpEfoZh8nU6sIzRuY0VV.dlldll 2dd4bcd8b6c8e205203216e440bdd8633e214a627b643891c785bae2c1bd6319Virustotal results 10.14% Heodo
2020-12-31hfxzoS5JMl6wtiSY0v3ns.dlldll c61d65e23e4560dd4846e108a9a49ba0d197ff4d330019e2adcb6bf1d6f1e2e0Virustotal results 8.70% Heodo
2020-12-31K2bODlA6Gh2nS.dlldll 5f17bdccd9c2013260050351e9015d2209e6e8c39228e06ba6e902cbb67312dbVirustotal results 8.82% Heodo
2020-12-31XpoM.dlldll b2abe36342847615f1c22c686abceb72b5fbe2aabbde236e4b1b02e0854b2b06n/a Heodo
2020-12-31ZgK8X3BvogqxVS.dlldll 7172fbb98fec63550e0cd5308f288dbc9c333413eff7ecf3939f6ea02437367an/a Heodo
2020-12-31r8iQzMxxOtiB.dlldll 95e9275ea58eb4b521ff3dc96e59e7562b856e28a0dc7b7b974dc67aed14adf0n/a Heodo
2020-12-31gMaHitOu.dlldll 23be442ab21ef9f5f2901b5d74400162864bba5576b6a4c757e29a173841a5e8n/a Heodo
2020-12-31vsFpMSl3KiVfU7VuTBVvGnZ.dlldll 4c832faf602364b0f11c6d71b1f2ecc7165f0988a1a89fac7c856d8e8000a2b7n/a Heodo
2020-12-31th.dlldll 64ee18983313b89b8a29b43ddf78dbaf8609bbdd8feb65d07ea7185777df104en/a Heodo
2020-12-31Zn1rCvgIuM7.dlldll 180ecb4ab11feb06d8169e6d75195dc0044d542e3bf421078fac8b8e8fc71ebaVirustotal results 8.70% Heodo
2020-12-31i2Vx5yg5QCMTAxVL.dlldll 83586f2d0bb8b8f133334190ffad602c13017e780dbcd56e6f63c7ac481154c6n/a Heodo
2020-12-31ppOmK4i5yBInb.dlldll 2427b2073e594e20240cfb8f3060cf1d605ca34535183a068685ca5aa14dedd7n/aHeodo
2020-12-3082A.dlldll ffff88855cf6e16597aaab52a6d8e806183b381c535164ef5ba5a71155a9eaa9Virustotal results 10.00% Heodo
2020-12-30cnLhOq5b0ULgk0VV9HpMM.dlldll bba2ac941ebc7b7cea42057f0812007c1a07e7b5d9b73b5388a9c116078baeecVirustotal results 10.00% Heodo
2020-12-30ECn.dlldll eb5b7a055f1b9750a221d41fe3f089032c693882799ba1f3cb421a6d433b6b58Virustotal results 24.29% Heodo
2020-12-308mn9g.dlldll 405f42e2f28cd37b516427a962390fd6c3baca7aa99d3ab015839873fdbe75b6Virustotal results 24.29% Heodo
2020-12-30wVkRoOdEEJYM7Ml6.dlldll faa090032a60501674cf0882a1475afe8c177405dc6315f12dd6dc7840714246Virustotal results 25.00% Heodo
2020-12-30YLBkMkhukHGdhiscE914Pia.dlldll f98bf5469c85441fbdcc4bbc6b25b5b8c61f8b6f26be729ad5759443ae88a78aVirustotal results 22.86% Heodo
2020-12-30rsvwcbX2C4b.dlldll d8e3d9fb6881f3896d77cef2ca2f4d88e2ffaf1daa9bd72e77fd328380af3536Virustotal results 23.19% Heodo
2020-12-30P8BWBP.dlldll f2abefd5f9021edffe448340a5783382dd1693c96fa4f58137c199fe25217742n/a Heodo
2020-12-3063ktbD34oN.dlldll 32e47e658c24e12ef9e09c2919ecbc4b829548b0181936dc82491276ce6af365n/a Heodo
2020-12-30TByeTQnKrGmPXKi.dlldll 41d9db22caddd8230266144e006f6109d39670429cc4f3a94e37706313c91968n/a Heodo
2020-12-30lXXiCN9lnnAK5gDlK.dlldll c62cedd6a57207ee8fa6b19afb63441df8732d5d8c7eb8c99b2862c1c996183cVirustotal results 24.64% Heodo
2020-12-30YYbwDd3wX.dlldll 67dffcef79582b180b8e92e7cf8140174a4bdfd4e79b80cc288fd2654faca615Virustotal results 25.37% Heodo
2020-12-30F0GbdiznQkS.dlldll 6af47d1f7ef66c6fac6384b372212a0d90ac34b0874738b7ed36441b9bf61ed4Virustotal results 24.64% Heodo
2020-12-30xto.dlldll 2c7311865272bd38c849915b06d94f30cab8b3e4e048d0363122124ff7248cccVirustotal results 23.19% Heodo
2020-12-30v9uigir5SOqmLd0vjT1.dlldll cef5d310355306cb90386840ff20c219dcd51a53453e110572a1245b6fb50268Virustotal results 22.39% Heodo
2020-12-30020XKC8nq15aQ.dlldll f6a344e0947bcc23a609c312949e7cd8120e5a85ffb5333eb65345be4cc0be3cn/a Heodo
2020-12-30Thsnut.dlldll 64594e5f987615cab5a7ed42cdd96a203618a785fd13da48134b64ccc4c72671Virustotal results 22.86% Heodo
2020-12-30hsPh38p.dlldll 23edf595852efe742c16aa8ced3f55c84f70fe2e3d2c85a2515ec38290aab5a2n/a Heodo
2020-12-30g5ztGWM90IEyPSUxevsSu.dlldll 8cf8036fca54049be3f78777f5a8fe5728dda9277cc2f5216f6a95344aa89b1an/a Heodo
2020-12-30nAeAfYZbLK2Zrmmu0ZpoZUG.dlldll 10c1e6da73f4980a7522b096a39b2848263fb5b1239826d0904f99b76771b722n/a Heodo
2020-12-30ZOUfB0Y5hUKg.dlldll b9cca9603544a7d2f60b3146d8209cf9f18e9c7ef4361370c8853dfa4030a302n/a Heodo
2020-12-305iZsQ.dlldll 058bbe4f08b78592f56b27587bb3e8f104460932c5a0ac3f1d94aa84d5f9cbcbn/a Heodo
2020-12-30KqkYq5sm4ldiBbC.dlldll 6ec0c382328162f81897ffc7257ea869b1623a999a8f6b6181d55de105df8d90n/a Heodo
2020-12-30SQ.dlldll 1d70b49113d2dd03a3f6eadbcf47f047ed7b3ca6096b2aadc7ece7c206fbdb83n/a Heodo