URLhaus Database

You are currently viewing the URLhaus database entry for http://hostzaa.com/song/oEWG-13tBc_FK-aB/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:166264
URL: http://hostzaa.com/song/oEWG-13tBc_FK-aB/
URL Status:Offline
Host: hostzaa.com
Date added:2019-03-26 12:39:08 UTC
Last online:2021-10-08 08:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: spamhaus
Abuse complaint sent (?): Yes (2019-03-26 12:40:05 UTC to ip_admin{at}csloxinfo[dot]net)
Takedown time:2 years, 6 months, 26 days, 20 hours, 15 minutes Bad (down since 2021-10-08 08:55:57 UTC)
Tags:emotet link heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-09-272019_03___US___ACC7096561639277642___3412304370172258438.docdoc c1683c0796d2f3d28a87169df4e057e8e1fe923c67030d4622dbc55884eeae0cn/a 
2019-03-282019_03___US___ACC7096561639277642___3412304370172258438.docdoc 608c8116b1793b51d17786707efee242c6690456515005eb42a7b0cf56da386cn/a 
2019-03-282019_03___US___INSTR60235862306___31027926186323767810.docdoc 9a86d9a82a87e2510fe2814eb2afa2c3af8c73077ebbaa6b785f23148e4901a4n/a Heodo
2019-03-282019_03___US___INSTR1917205878723___76518794390052.docdoc c73b153ac9cf42cc3fada057a60486d5d9c55934621f5808ae659702c8f179c0n/a Heodo
2019-03-282019_03___US___INSTR332577341330560819___82918235014879883.docdoc 2b9604bae3248d8a134c549e86ca36649cb5e558a08e9e2a60d476a31b0294e2n/a Heodo
2019-03-282019_03___US___PAY27902431352757352___0184104694.docdoc 939fd6d752669eeeb3bf135cf1a64fc38fb3ae650b85f1fe3fa471100bb28981n/a Heodo
2019-03-282019_03___US___ACC71532021438360300___44498639449199.docdoc d73ab573a6281e5c1cd6b4ecb2e7ee89e29686ceac30906c480d948a7ad1109cn/a Heodo
2019-03-282019_03___US___ACC128551251491___121683292670680947.docdoc c0e334e36a81f68f1c858422edeb2452483b808e2f72e2de289b14f90b6d4269Virustotal results 19.67% Heodo
2019-03-282019_03___US___US47885885333213056459___976254485209.docdoc 18553615f6a2067c0286de4003621934804eef8b983dfaf4a35768221f0878c5n/a Heodo
2019-03-282019_03___US___INSTR82894983046581111___644264431182564989.docdoc 734d527ffa979b6019c9ac4a16bf3834739816d2ed3efd8154fbedd66be450a4Virustotal results 18.33% Heodo
2019-03-282019_03___US___ACC7614948687319468312___25369488008623608.docdoc 5aa86074410aa1b1c35bf87c5546c883a4da6b2bec413e06e42dc56a133cf298Virustotal results 18.64% Heodo
2019-03-282019_03___US___JPMRX8864139608599936321___016751318757.docdoc 3f4af62e65ef4eed255a1cfdd1a2bcd54ce49e3f7b80997ccf1184e0191b697bVirustotal results 16.07% Heodo
2019-03-282019_03___US___INSTR6897002483324361078___3122004408617.zipzip c14ccb34f8cb2cf27e6911b8066c740d54079c9d56cf03c325649cb3f1a0a0a9n/a 
2019-03-282019_03___US___US65439204427___78090245880.zipzip b6c7ca5ecd14e42afc32bc65c80b89bebb2720f47509a5b85cf2ceff587cf75fn/a 
2019-03-282019_03___US___JUGOT0127768976043349___6776822381323056698.zipzip c40b5e6cbc0e503b142ee2e3ef237bf3a1024b757974497aa277c3954affaa80n/a 
2019-03-282019_03___US___US901249653___22111251967490.zipzip 39a9f64af1f5131cd02d6a9a88bc31ff5c2494b108b4dd42beac4f3af09ba57en/a 
2019-03-282019_03___US___ACC08759872318008280085___426756662797.zipzip aee68c1d4c1f6e72fc0cfdf69670ba4799398f84b798f93954675851b1f8ecb9n/a 
2019-03-282019_03___US___76624114888884633516___1295313539.zipzip 1a66473e7f7d5e63ffa057c39e4311da0d3b788c3b0b113481612cd3be8634ecn/a 
2019-03-282019_03___US___INSTR8048075923805560812___907850366327.zipzip 39c4e8d3dde444f6798776a9f880a88cd05df40dd8a9ca085b204c0ff20a94f1n/a 
2019-03-282019_03___US___46339939466444750509___85680878413030950796.zipzip 0ef19e2a48b6318dd0020b9eeb386b82b24fa0c866727ca8a4a75216edcd20f6n/a 
2019-03-282019_03___US___US0310420442___84083870587485.zipzip 37be65e320b7b09a8f9571525e6889cc84a96531a2479af40edc870f7a19b328n/a 
2019-03-282019_03___US___PAY503853036___47365487533138.zipzip 037a12cdfe298f5f66e16fa1390118f412b0681c86f258a773f46f014a3d0363n/a 
2019-03-282019_03___US___PAY30100484265___486028937606793.zipzip 94dc3ea71ead41047e87d5dcf0a1e43c76b824e419dea9349d52d8a1d93feabcn/a 
2019-03-282019_03___US___PAY7230772020134___100908321055939187.zipzip 45f6d9645140d3d3c31e29eca9a4cc99fdef21f5c1e9dcf1aa9ffaeef04b7ea6n/a 
2019-03-282019_03___US___US766383741966132623___8332031980081840148.zipzip 25154032f41410c4dcae7b8362cdf9c7c22bf68d17d06831c9c02493c6b048dan/a 
2019-03-282019_03___US___927758859401226111___7709490558.zipzip ef5d9c62ef1bddfd9887f86e77e454a8ee9e912f815cdf90edec6fa7431cb076n/a 
2019-03-282019_03___US___ACC67953243707515850___102728617929.zipzip 4504911ae3970bb4d651a799ba1dece7c203c6bbc342f416da133aa21d838d06n/a 
2019-03-282019_03___US___US84282448056410529420___11515191158.zipzip b70438e5da656a2698034b5779d91bdbe1e2f84e3415a882771a2c8a7423b390n/a 
2019-03-272019_03___US___VMIC31199271766___1775904781.zipzip 1ece730c7d06c6747fe61e86e0a3ca9df03aeb0ef4ef4b61807ba21b8e20ad02n/a 
2019-03-272019_03___US___US76451611229___713516104407676.zipzip 6c3c1f8626b3f3555ef8467d3ae070fd2c29975614b41d7f6f09430712d85df5n/a 
2019-03-272019_03___US___IY81803214474321___297565594895697.zipzip c4090f294c184f64f1f246ef9ac3803805f199542d85e7a69953f7e306fe6fcfn/a 
2019-03-272019_03___US___ZC250825260765___927315651.zipzip 0bee25b6fe6c023710730ec929514a2d7e8b1d1c36e7d8fb00085d96993467d5n/a 
2019-03-272019_03___US___PAY8534122849181529899___702715684.zipzip 24484be9c15b6d3ce8413ade944fd455d81495df5679e5a3f9a798fc856fa437n/a 
2019-03-272019_03___US___ACC27864809609678081512___38210408112829688.zipzip 1d5c928442002ccf8187f58cfe816c153ad33bc23f98a9143127189f6dea700dn/a 
2019-03-272019_03___US___06368126661___79310105629677433628.zipzip 6911c42164f18f142fbcc6d916a8591f0db5a9dc4c506222566c69ef70027ee9n/a 
2019-03-272019_03___US___5988305464466___9496049233150843.zipzip 2f6db06b25e54ac2a8cc4576b4cbda428a8f5faac43b3212c3124911c734c01dn/a 
2019-03-272019_03___US___ACC9063172305674605___1659088304763.zipzip 01aded15205ddc9ff6e4c037dc5c2717913e171fbdd7980b4c55db42bb197ebcn/a 
2019-03-272019_03___US___ACC6350185983064___11152492942919.zipzip 2ec91b0b5161d41905ce6dc29c28d1de5dda8558ea05336cc5383dcc0703d1bcn/a 
2019-03-272019_03___US___163128007___7003919192546581475.zipzip b6f92e89dc2aba28d3b0eb970ca71275aaeded1f0b41663305ac1371c8f129a3n/a 
2019-03-272019_03___US___INSTR231675992___8870883678913.zipzip 35d1af52fc4080305776a9958a5f6607a5103bfc96c6b488da37f6fe2883897an/a 
2019-03-272019_03___US___PHU8156182160061371___974334502982992735.zipzip ec93cc6d6adac970e90559a11849e7ddcd4d95baa1607b597334a9e78553c96dn/a 
2019-03-272019_03___US___INSTR083582121___92685760287096550.zipzip 90ad2be68642d8c5764d1f42c4936c3a441a5ff3697bd9c8ef276b36b889cfb7n/a 
2019-03-272019_03___US___OFG89154594757801410202___6507414339260227.zipzip f99d29369d957e23b5f2df3163a96a36ca277f96f570630172ff6f9ad5447424n/a 
2019-03-272019_03___US___PAY74948984737846___482152316.docdoc 409afa3d0959c8ae11f48ea63d04dd3b93bfe6fefecaa7e1f6c375b005b4392fVirustotal results 20.69% Heodo
2019-03-272019_03___US___PAY2390462593876___49342314848.docdoc 3ac20c785773ee12498bf3d4a26f4595b16b5d3eb825a033cc6397123c92a78eVirustotal results 22.41% Heodo
2019-03-272019_03___US___RDTDE5465877481___14625173085133.docdoc 8622ad306bdb71845e69086858cb7bee044585ccf0a478d0610b1b04a192459dVirustotal results 22.81% Heodo
2019-03-272019_03___US___I92149496551200___53973951037324943994.docdoc f71f4702f82ceca1dc68b304d4bbf1ec25bab5fea2ef53f05584f3a76c0e040eVirustotal results 22.03% Heodo
2019-03-272019_03___US___PSCYR0778447879992586365___484302001.docdoc 7f2a7d646ea0af0ccd3fcab0b2edd046f77a618433b0ae292e2d795c1a7a20c4Virustotal results 22.58% Heodo
2019-03-272019_03___US___7775563961249106___89860466891038740.docdoc 8b4b82805c62319792ed6439e7f7405e56a5f5250c4cb61ee9bdded267435911Virustotal results 23.73% Heodo
2019-03-272019_03___US___11194813391046666989___758537942450.docdoc 932d57231e1771cb31bfd6a8d9356c7475bcaa972a0f5931c309e89a1151ddd8Virustotal results 21.31% Heodo
2019-03-272019_03___US___BZYQT670769254___59725336687.zipzip b6372c7e274ef890855f79972064e4fc70530f0b8d1d7a1c7842b5eb3c26b2a4n/a 
2019-03-272019_03___US___PAY915582692293___6331527293.zipzip 5921c51917daf812276348795584346822b5598b33b3d33593a0f12fc7559e82n/a 
2019-03-272019_03___US___INSTR6860792154750613733___782207639935.zipzip 91d8552d739d9c4bd41110160fff91b10e45bda2620819e244e294564b4fa800n/a 
2019-03-272019_03___US___6391896131194575___8034669409.zipzip 036b08a0c41bd6740be49e3eb198bde557c46781c43ba86fbbd9378ee74dd981n/a 
2019-03-272019_03___US___TD20621292528964___9637078161899.zipzip 1f4f9ba51c15e85c3dfad5dd2faeda062633dc1943eb231c31e4f02b420ad41dn/a 
2019-03-272019_03___US___ACC01536252992___412607884284867526.zipzip 7e359fa653921ad1ec6aa7c64f9638ca22a3a4ad2b1f710c3b9ed2aefbfcd881n/a 
2019-03-272019_03___US___ACC707181963925611___9009009301482451.docdoc 015924d5bf2fd94b806aad406ff4dec89ecc17da5d0247231e2ae1ded25aff5eVirustotal results 21.05% Heodo
2019-03-272019_03___US___ACC619888100___8243556305860049.docdoc 5930802567671384b717edf74e414b4c7813e7e953b09f8581beb9f8c6e0c268Virustotal results 22.81% Heodo
2019-03-272019_03___US___6093761404___5930154452949.docdoc 8a108f519d4707a46d61cad7c1c65495ed26c2ba01f2efd75150f462cc596447Virustotal results 22.03% Heodo
2019-03-272019_03___US___PAY5488821069728553___8422496357311091.docdoc 7af35b23f969bb0a8053eb2faf5862b5e746ff8a15a3f4342600453a361d1ee3Virustotal results 22.41% Heodo
2019-03-272019_03___US___US8736226682928517729___7436750824.docdoc 1c6870532e5b6e13eaf11871daaa703fe93c206e7902bebe6ce58d270065b4b1Virustotal results 22.03% Heodo
2019-03-272019_03___US___US2100878916224041307___098935168203.docdoc 7bf68152579d01ba99862b61a91689e3507d8ee94024c729dda3e40635e3d671Virustotal results 22.03% Heodo
2019-03-272019_03___US___ACC286408685919697354___380220720912993.docdoc 46946372c81802503f01b6d9739fd4dd9fe39225973c8b9c22ef625666d48debVirustotal results 37.70% Heodo
2019-03-272019_03___US___DQYGY438433354___839801066.docdoc 6026ab30130b1065ac3d1bbd68b0d3eb29e79390ebd55e4d5c8e55313abfafc0Virustotal results 39.34% Heodo
2019-03-272019_03___US___4789801160987923___452250808.docdoc 7718b1b4a6fcb490c5e5912dd0155a450de8a86586209b56695a1d77ca21425eVirustotal results 37.93% Heodo
2019-03-272019_03___US___ACC420528581604173___575403959354.docdoc 7694d9fb1e7fe87f76527ae391e7b01fa017b7f27b42c9b92b889e03743917a9Virustotal results 35.59% Heodo
2019-03-272019_03___US___US630510059383___857867540035.docdoc 11c8c7925688057b16afdf4748708010c0825117287695438c08891ebaf3e188Virustotal results 39.29% Heodo
2019-03-272019_03___US___425502349126849___9070409560676956.docdoc 8ca56f45320ae34538a0bef0318e6c28b758017ba91e157369363b7dfa3f2598n/a Heodo
2019-03-262019_03___US___PAY686474915610593___34141172112.docdoc 6dc961267d310273be9c3755f9ddb21914619fa0b78a47f5a22594284a0e39cfVirustotal results 37.93% Heodo
2019-03-262019_03___US___US7182489807431305364___3936932462512713.docdoc 3ce066794ab4c20945fec02a742d62964f0439eb067abb7144df55770e2b3fe3Virustotal results 37.29% Heodo
2019-03-262019_03___US___GZ7807303834424___11763131907233640.docdoc 39359bd1fd059e7d75989074ca6356844a13145f2075dc6e2cafb20d101b12abVirustotal results 38.46% Heodo
2019-03-262019_03___US___ACC44818351481793615034___71758816455920755.docdoc 78ad7fface477d0c80f8e451aaed8f325ea725dceb195d522daccfe1b8a5ec98Virustotal results 35.09% Heodo
2019-03-262019_03___US___ACC1871223734599586___86049727267.docdoc 12801117100fff39edbbc870c6a21e4f180a7dabb92168a0ebfc0abdb2617f72Virustotal results 36.84% Heodo
2019-03-262019_03___US___WHAX953580097___78612090709932290.docdoc 48d5c64139acde1dc8c38574f629fde4d28d4ce056062897672e0b7fb825712aVirustotal results 32.79% Heodo
2019-03-262019_03___US___PP794213382___17018042071022.docdoc b722d6b36059fec99ce7a4b6ccf982819f03f1118257117ea104ab9246b11018Virustotal results 35.71% Heodo
2019-03-26PAY33143202520.zipzip efaeaf10cb3cb9d702847f5defbb6f8dca8de20d1bf4fd1264fa7fc3dc7723f3n/a 
2019-03-26UR9472408954773814.zipzip 5e658d54136484e062ce3ce458128a9844c44df43d447a2cc2eaae5ed2ca70b3n/a 
2019-03-26US265509449680.zipzip 74ef722980a3a73767294f058dd07320700afbb7c06cffb6d5340bf6854ce5b1n/a 
2019-03-26PAY67340379689188366.zipzip 3e9a1eabefa1ae87a468849c46e857323e4e4a28b15b7a93cffdf21ed3f6103cn/a 
2019-03-26US289689818.zipzip e55b8a5c5c0f1e48abd54931685acab74e8d0b1afacded0908339ad08116bd43n/a 
2019-03-26INSTR55361726447738207417.zipzip 7c3d527934c5b24f25c2ffadf1702a122778c1ed4a1372c27f9e20d3fc78c624n/a 
2019-03-26US5383244756851.zipzip 1e3390dc3dbcdf4fc319f2074ce3b5509fa03ab5caa08213340974e3780ce55fn/a 
2019-03-26ACC0440506755.zipzip cfd2415373357867ecbe900e17ba11f35eddd1f9eec569bfa2e032cc1d3d0f0cn/a 
2019-03-26IFYVW8119008085976.zipzip b3d9ae1ce0ac5ed71830aadaac6c42f91cbc635687fb2936f38dbde54d354c7fn/a 
2019-03-26ECPW1644843944659255184.zipzip 537b0ab3a9a842cdba2f2a4ba73f668e27c69819ebadde0deb337aec8cccbde6n/a 
2019-03-26US19440980238721898.zipzip 38cc783e2376e948cdabc347d1fdd8909b0c482ad0df04fb64916cbd5a937c53n/a 
2019-03-26FJ87707301683087.zipzip ba2c5c36c5ce27b0ed2852d2fc295f9c1b1e2e5b2ca842e86f25fccf41920ecfn/a 
2019-03-26QWP4545173225166732.zipzip 50daa2853fccc69ca62e673950232132fbd6743bb857676031af0aedd344af4an/a 
2019-03-26INSTR815324467280.zipzip 1c9b45c5fd5723ee9e32693ae3541e11006af6c38b9c09a5dc7ec093a9127a65n/a 
2019-03-26INSTR98034150301681.zipzip a0085ef41c2e22b93dbf25b90e6c435ff5bf4244a33bf0e5718d35c3de8568adn/a 
2019-03-26PAY36494147153017562648.zipzip 64d5a281aebc39c5437139b3d707534193897293d584bb38116fb0a9ee01fe04n/a 
2019-03-26US7270804514957.zipzip 034b0be378e1feb7213e9fa22c1a18369419bacd165a59b8a50d0a0b0939ed53n/a 
2019-03-26INSTR90616621197615803.zipzip 0aa4ea151634e3adba4eb33ac20b037e3e8a91c49525de0ec1b6e93e59de6ab0n/a 
2019-03-26G300900510.zipzip b8c0fb7dc297bb28c42f891670dcea11d53ba07631f9923f41c7c5d3590b2eb4n/a 
2019-03-26ACC74543687825249.zipzip 7c01e1677237d192163e17eb5682f8ca664f568fd804f8d6fe544403b665095bn/a