URLhaus Database

You are currently viewing the URLhaus database entry for http://firefightersanta.org/content/1BNtMyv/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:948921
URL: http://firefightersanta.org/content/1BNtMyv/
URL Status:Offline
Host: firefightersanta.org
Date added:2021-01-04 17:52:05 UTC
Last online:2021-01-14 20:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Blocked
AdGuard :Blocked
Cloudflare :Blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Blocked
DNS4EU :Not blocked
Reporter: waga_tw
Abuse complaint sent (?):mail Yes (Ticket DCU003220157 created on 2021-01-04 17:54:05 UTC)
Takedown time:10 days, 2 hours, 59 minutes Bad (down since 2021-01-14 20:53:19 UTC)
Tags:emotet link epoch1 exe heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-01-09IXWKA7Trp.dlldll 2041f6e342ce2350cc34011dc80b852d8d4f4aa93d02401023d539eccef26a13Virustotal results 48.53% Heodo
2021-01-060m4skALFRakTE2FaXeAGAMs.dlldll 26e2d401d36971a39fdb7a2c391f498041caad83ef116206555f888f77324e2cn/a Heodo
2021-01-06MLNmX.dlldll a829990f82734094c636112df3d33e5df69f31f1232b649167ddcf3f6e2b8728n/a Heodo
2021-01-06apKMc.dlldll 77a44f64df0f947daf1ac424828d124a501943ad7afdacfd625f525f647dc2ffn/a Heodo
2021-01-06WJ7xG.dlldll 62666711cf36df1918fa0f97240ba06dc0e0251a0ff2d627136b6b3673267e7eVirustotal results 45.59% Heodo
2021-01-06Q3eelrCGO.dlldll 4117d5e15665be74de8063303787fdaadff214fcbd4231d6c28650721621e138Virustotal results 46.38% Heodo
2021-01-06I7JQPMbNbZtbSg.dlldll e22c94296a096ea24e212c51ebfae00a62f456b484943511aa8cbb11106d4c23n/a Heodo
2021-01-05JSXxvO006Y2BvNQ56.dlldll 2261006b4f957d29db43d58bff5c3b7ae62501e08d0884aca53de11747551081n/a Heodo
2021-01-05qmWBQT.dlldll b7e93033974c4f5c94d0286791e478df6c306a193d16c7ac6c89c369f785d974n/a Heodo
2021-01-05PxWcVEFHZZkdhhAXwwLFu1n.dlldll 46a3da6cdaaed256d74a907c320471ae0a6457bb959a246ceed0da81b3d92ca5n/a Heodo
2021-01-05yVqvvXcQ8mxeDUKcE6nsR5.dlldll 36438067c592bf68446353cef550ab3fabbe2214136edb0c48e61d5834c357afVirustotal results 40.00% Heodo
2021-01-05zHf6hdrEfRJm2.dlldll b90784655bd8344b5c581b64897778faf593f69d22ee0f2ff99033dd3e597ea4Virustotal results 31.67% Heodo
2021-01-053FsPdfsO930sBX.dlldll 02fbd9eddce144249c352127ed156089c200e9f9e826bb0443215100ee622791n/a Heodo
2021-01-05IiWCDs.dlldll 9dc7bfa844c4b21a834190066f356385ffcdacea664112ba5f35dd86689ab411Virustotal results 40.00% Heodo
2021-01-05lZtbQ2wHyvdlN9lv34.dlldll c09a1ab967ce6e816fd54c0ae806463268b5bb2499bd20aa37f35365a648fd5cn/a Heodo
2021-01-05boW4L.dlldll 0377af174eb0094da1841b83b14b2ab9709b850a5d391229e9b0933d08a24f5fn/a Heodo
2021-01-05EaBSXmC.dlldll d67d2370f2a7c70f917aa4cc6d1c21292bd4a49a086e0db1398ce6d81d7f9242Virustotal results 27.14% Heodo
2021-01-05AtiMBEhMkPNnQXUsuq7.dlldll 79a7452c654be3c2d1778d8f628e975248600f97d2e181789ed475aa1f0e8253Virustotal results 27.14% Heodo
2021-01-05qGTcdsW8PYYFJ7vzw.dlldll 2064615057f5455a45b9055df3963ea21d3ff22392df65d47cc74d022ae040beVirustotal results 26.47% Heodo
2021-01-05VIJA.dlldll 7eed6d6aed643dafa9cd13d7e6a937245f7e9bb465af99ad4ed58173a8ef56faVirustotal results 27.14% Heodo
2021-01-057n7XYD9EgJn5j.dlldll 815a083a9baedfbf437b48cff759b3834c37b9240c389edb5a29162d0edd85dfVirustotal results 27.14% Heodo
2021-01-05sBrFJ4K.dlldll 36ef1f7c1e5e7b483b52f51a805c568bc0e477c1c7b76912ba750f8ce64fc5d2n/a Heodo
2021-01-05mZ0BAkevyilP5k1.dlldll eefa8388473c1e98048a8b3462d163536f38b15c20e85d17ea6fc513f9666a62Virustotal results 27.14% Heodo
2021-01-05LFfWXeXkZZ78kMBMjm.dlldll bb34147832f66348fe057103c6958eedd63123fa4b2d725d2c786abc18917d79Virustotal results 27.94% Heodo
2021-01-05LaET.dlldll c9b832a1bb1eaefe41aa9966ab5d1a038be86bbccbfad2eddcabdcfb8043aa05n/a Heodo
2021-01-051NhhUbHmKXQ.dlldll ffee196b168d1cffd43910092ac4a8cb5a3264cae6d8c984870f384e54f97bf9n/a Heodo
2021-01-05xLQiqER.dlldll 2bd474b63434504a8605c33cd3ad0232f4736735b3f0ab2a2ee2006cb33a8cbcVirustotal results 22.86% Heodo
2021-01-058hc9vn7X.dlldll ba5dc7f937b823bc1b84fd25930bbd82f090a6c5acb160879871cc6bf0105bfbVirustotal results 20.00% Heodo
2021-01-05wXBRk4C8Xz.dlldll 240b3070fe97864cac1d8677345bb7f8a65dddaa8fa8713c1c37132dffbbf71cn/a Heodo
2021-01-053wB5nJU7oy1JIDfR.dlldll 6f43353d1ed9d70ac50c582e64387284deda27bcb1e823b3ccafee3b9465f157n/a Heodo
2021-01-05AQD3gWH3evrXzteiqe.dlldll 8f297206ed980985f6c66cada8a775b20dadb30261ed01f8023d008f85192593n/a Heodo
2021-01-05E0vMvzgTAqDho.dlldll e129056a6798b0a7ee00973ee8875f65d9936b4bd00c79a4c8e53b6e858c769dn/a Heodo
2021-01-05N6T2fHcIyl8BeXdYgA1.dlldll 6cfbd90b62dc5bc3d848f3b55f020782e30326635d12151b38fd085bf1524ff9n/a Heodo
2021-01-05Y5z0d8L.dlldll 951b8f0c4b4e878d7e6705374581eaf51db2e5804712a8636868785d3c3d8909n/a Heodo
2021-01-05LmcU.dlldll 15481ccf93cfb42243841eabf8b9323c0472d55e3e81a65274ce5eb775b8ce90n/a Heodo
2021-01-05Qo.dlldll 1129a92edc1da5f4011e09d7298558dcb412b026ee9e164260fcda702466abf0Virustotal results 13.24% Heodo
2021-01-052VVlgcmEK74.dlldll a8f6359dc6b75c450595b26ab817de839dc05f687470a564437104ce90c43a3eVirustotal results 14.29% Heodo
2021-01-059khjWKtRAYnq3iafJCFFVMg.dlldll 64f35460b9d6dc1bb1797b7552a9f3da6e968f673599589547270e7e7d8dcebfn/a Heodo
2021-01-05rEqLSMbtf.dlldll f39bc48b3a2d6731efd40892ea05c712233fbb15a4d18b921f3843d00d0f8d44n/a Heodo
2021-01-05ddSDs.dlldll 3be9b0e780d95dab1d5f8c157313f18b87312a6bbca8b4520602dcffcfd9512bVirustotal results 12.86% Heodo
2021-01-05da4eeOxQZeq7Kym.dlldll 39d9bcf5c40ad3f690ae89c5380e4ccb611833524cf51c09633b9a0fc6e34030Virustotal results 11.59% Heodo
2021-01-05Nevu5u5vhjsyLVUzhi1H.dlldll 8f74101d3bde87284612d137cb07316457907cdbdf10c64e6babe63501e93256n/a Heodo
2021-01-05JHnyUx.dlldll b7fbf69ba3b0381af5589439fd4907e5e29b93011be295e8c7b5c8e545d23d9bn/a Heodo
2021-01-05mBjBXiBdQptYY.dlldll 5cd92944669d7bb99807b3ffbe080f3f4a0d2310de9523422f7dd140a68df399n/a Heodo
2021-01-05zr.dlldll fa0a67d576a1f2ff7da3faf6c8ee36afe1a46fa64ee026f94c3541b3452c26b1Virustotal results 11.43% Heodo
2021-01-05NabxejdyKalaRQM1z.dlldll 63c9c052e75d27438a62eaa16453f3d106750c09e97a2e9ed66bacbefdf9f88cn/a Heodo
2021-01-05vC7O7KWFl.dlldll efeac705a3a9aa13872c00cec9ee3c8cdea49d3e923dc4a07b9873d3ba7fd0b8n/a 
2021-01-05cZFShQDYzVz3Patb.dlldll 1180870ad031f4d0ae4d393c458731eebe6bd5376e4824cbccd5dd953a880c85n/a 
2021-01-05LnRNfVqO.dlldll b237338802e050bb6d4b19328daa1c736c5c560b5c12ac21a03014d566085169n/a 
2021-01-05KQZniCRV6QqNrydtz.dlldll b274ca7dd6e2f1f8bd1aa3fa45fbaef90c34e82788f1b195b956edd1349b569an/a 
2021-01-05wqoPFnXCOERSpm.dlldll b91dc1a29772bb912fdf09b54637f163f4934d900ee103d3b821c2e048cb1701n/a 
2021-01-05DxfRnZRRr2UmMgnPlSv.dlldll e092b88ad97a6e852cae0811abb36da5eb511155b7d5e3ec16830935f3ebd761n/a 
2021-01-05JlpFH67MuyEExcq.dlldll d9a7e90aeea69a4ab25fc65670808592bce89587ca7309b7457b2fcfc4553939n/a 
2021-01-056d5KS.dlldll 582f02cd02e9f50e91000261e81ba9d9c3dff1be496352c07b07eda64160e8a7n/a 
2021-01-05XyiWMmjjd64rJD5NZ2kmm.dlldll 92fe2871b41e6ce86616c80d048a9bd2cf6767c12a82e9eda4b1f614c346fdabn/a 
2021-01-05otYY6.dlldll 644c5cce41ee94930aaeb2421c7bf121f35d464f85f4c98707f32ef19706b72en/a 
2021-01-058xWSyiiQjCqZAqC4zCSK.dlldll 347ac5b43a5aa4140dfe7aea0c1c66ff23af60176da6933dad65128e1760b6fen/a 
2021-01-052kx5s.dlldll 6d8b67c95fd14451d84bdfb5833cdf43a11d1bba17bfeb03cbe2e744d4261460n/a 
2021-01-05wFr.dlldll f80ed1d8bd6223cf8e8edfa58bd82b4d15bc2da213d094bcc622d91bfb105b67n/a 
2021-01-054MQ2ZhIbTi.dlldll d81602878f54ae929affc22c8c4a9a043498587b8c1a7651a46dfc3e245537dfn/a 
2021-01-050a2sNipEslnT5.dlldll 9c00fe4f623f646eacb3a5d726eb4def08db67fafe757e1198006abc450ded5bn/a 
2021-01-05HOCMD.dlldll dd6fac0c4e08d89c6ac8ecc7b6d33413891a76b0b03067b04ab7b0d35581163bVirustotal results 15.94% 
2021-01-053U6jQZBugzuc3rYn.dlldll 1cb7126bdd88302d98f84be1add9841d8ab0807729d3eacff3617025b1fcbf4bVirustotal results 16.42% 
2021-01-0584q8cjvz9oz7XppB.dlldll 7deaaaf0cf800a774ad2c5f436783b5c3cdfa2bca86d2b0ba3a3bfc0bef32042n/a 
2021-01-05tagd3hPbea3bMvnWIUo4Lj5.dlldll a42a85bed0497ed2fdea879b9bbd1e58474999ba347ebc14d207cd97cb763df0n/a 
2021-01-05yYeH0PaRtKo.dlldll 92a7a68ee26b8b602b9e06f5961c8cf6580f80f4d8b05010263361a601b861f2n/a 
2021-01-05Uqt.dlldll f071ee223b43c56c760ae80ba8c08499d948d170e2297d7a25c30f28416a0df8n/a 
2021-01-05ZUh.dlldll 484ceaa1f4ba3ff5eb3f64c21d098d7586018f93dbf784832395f5bbf38cf90fVirustotal results 15.71% 
2021-01-05UNd.dlldll 9385ce3a3160587a25216f384a1aff2100c1060d2c28b6cc2de456ebfcd42213n/a 
2021-01-05Qb6e6LKfIIEuZS.dlldll 3ea7bcf7579f83126e391f75ae71b03826d6987a6ac9af08da8dfd02f07c9947n/a 
2021-01-05LGti74LAq9sSwOGKxZZKz.dlldll 71fc433a61f8235a1b514913e187f9ed919dd6e7d47385e95330be0224ad3ecdVirustotal results 15.71% 
2021-01-04H2n3j.dlldll 4eda67701a15f0262b019c0af921d33a74e1b37f7168842507d628fbdfd0247en/a 
2021-01-047gdViFk6Wbz7IHZvCFIcdzw.dlldll 60b624617adc322eaadb05aef219307bc15888ad6b7fd3aaf697623e95415c0aVirustotal results 15.94% 
2021-01-04hiuu9ooRdDt17EUdRmC.dlldll a050e31a2c9f01f511103fb7d48dc1e0a2967dd630e72cdde03e904d3f18b004n/a 
2021-01-04wHt18SrSmDbQywjMFETV.dlldll 70779bee73eb6b707b229dff3b5712f7dd4c97eae2de084824c1663531b8c852Virustotal results 8.57% Heodo
2021-01-04b02oV4NlQZ5P2xYnVz.dlldll f5b42b085b7b8402849bdaa31247b521e70e290a85151d9a4886033ba86ec77cn/a Heodo
2021-01-044tHdeSvOSCTodbfQx8y.dlldll 86227c1c69b5bc4b3888a98f385f8318fd78ed02f4329e2397e5d5dab0f3b136Virustotal results 8.57% Heodo
2021-01-045jai5YWecm.dlldll 771809df05a7767a4696c0613460b845c15a15fc2893baeafe1ff7980cc9efaen/a 
2021-01-041qU9q02qw.dlldll 0a2326601e960ee6c70ea10f8c23e9584b1afc92302e7b5de2bcab13b6b7e387Virustotal results 5.88% Heodo
2021-01-04tfN2uEEpouQdGdc.dlldll ae681187ad44839065c32425cdb8b8a62b331cdc73e72562fdd8bc75472ddb4dn/a Heodo
2021-01-04lrnKB.dlldll acb4993dc959008beb818d6bd19dd72fe788faa038b0a8cdb71d5e41bf787de1n/a Heodo
2021-01-04blmLMilgp.dlldll c18a9e76fc2d116f990de7ad0a8759b8374f0c246d3af8fc998d763191ea41a7n/a 
2021-01-04ykbbjpkS0PFX.dlldll 670900e5b9e74cd531cc1d80b37fb5fda5b17bbed13605b71d676ce75b4bfd74n/a 
2021-01-04zmD8eiMVF6BK2QHDw.dlldll 7f2a08664fd179087f6d02f4fb4deb85ab7dfb3263eaa1dd5cfa2bd5c50c669cVirustotal results 15.71% 
2021-01-04FhIPed7nk0st2BXR.dlldll 9764726bfc1b7c73d1a96d3d9c0973ec53e6bc089be40ca70fb4ff9f72b9a459n/a 
2021-01-044GJqUR7mEg5Hc2mix.dlldll d239e23fa39f476d27f7309b8a29bd3943c5480450f078347606223c4ee2389en/a 
2021-01-04hkfFGabyP.dlldll e010f409bd06c9a6c25417d29c2bb4272cc5b471bfac15602df556a85f7672c8Virustotal results 15.71% 
2021-01-04gFLz0XY1L.dlldll d12c4a709700f5056e2b93fcd26289e59738521d569c574762a0ac97142f2aa9Virustotal results 15.94% 
2021-01-04p77rl.dlldll 8383db81f8e4f476c3cff38b7bc1b0db18bd89d02650f26197218e4072b7d5den/a 
2021-01-04IJNFfWJAQb5KPM.dlldll bfbb325c48ff9c9273d99fd82acc04e719ab5e48775ae0b2d0ca3ba1f38a0168n/a 
2021-01-046NARWtMKnraPQzwUCgWrP.dlldll 5ddecc973fd556bf584a298b7c2767a4bc8dc91883a3c36ff038e14fb2f1d271Virustotal results 15.71% 
2021-01-043pwVwO9PLpN3JA66zfRX.dlldll f09878ff4a3208b6b66d52aa954d883ca2ea604678c145a2b479dfb3dc78fc13n/a 
2021-01-04TUT7ayxiDAu6IDngAbH2E.dlldll dddf1029b42d8e73fb1831d297e5933f7e230809674af0c180afaa34fcd5abe4n/a 
2021-01-04RdMYYluoRevgD.dlldll a5b0ea4eb5604f18864c71359860ba9fa15da132aa6827620b3135c3b4ca9f51n/a