URLhaus Database

You are currently viewing the URLhaus database entry for http://jthlzphth.ga/wp-content/pgfnR-7a_VcyW-dfi/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:167888
URL: http://jthlzphth.ga/wp-content/pgfnR-7a_VcyW-dfi/
URL Status:Offline
Host: jthlzphth.ga
Date added:2019-03-28 18:52:05 UTC
Last online:2019-04-02 12:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Blocked
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2019-03-28 18:54:02 UTC to abuse{at}cloudflare[dot]com)
Takedown time:4 days, 17 hours, 35 minutes Bad (down since 2019-04-02 12:29:23 UTC)
Tags:doc emotet link epoch2 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-03-302019_03_US_US5635167254941935536___87247357912024577.zipzip 05ea6eb1789f15d1efcc5861d80f3f76f9bddcfac72c8d0a80a518b30855c7e4n/a 
2019-03-302019_03_US_PAY07096062564744216044___6006739832863.zipzip f2c4a336f7868f2d412342776adbe6a254a3d768e97205065d70d5ec5079fb17n/a 
2019-03-302019_03_US_090164046619605___694034372996.zipzip 24c48cb30b32134cc80d64e91519b30efbe0e5c6716911122fdbb09daafa92b2n/a 
2019-03-302019_03_US_PAY39457537193338415888___6588336615649402271.zipzip 634bde31be0949d3a12e9e56786dfc50a1af5d147dc1fbe055f4172973d9e3b6n/a 
2019-03-302019_03_US_INSTR5122304295___9422540203335174805.zipzip 6e0813ca70a4979610418e4b4bed340794d010fcd0c9447f6a456f1440ebf0a9n/a 
2019-03-302019_03_US_US452101604329177___1274566820870.zipzip 0b6c0fe1d480671026ea4b0dea94f7c840dbcd8f3e971a725be47bf69a2cf6cen/a 
2019-03-302019_03_US_KK94820830998___1996514526391860205.zipzip ca2146459ba55eae08b36c4c755d47a36f68db6b80902f021dba30cc4e746940n/a 
2019-03-302019_03_US_ACC57564420116760273___9774114932.zipzip 85c3a7952d78afe8b3a09d48fdcee97480a27dc0da348b48a0fc77dbdd945c39n/a 
2019-03-302019_03_US_TPD66877919035___9009527719.zipzip 87e44b6e1e3bdc72f51f264470f618bf0bb062f79617c4d5b9c902d00146febfn/a 
2019-03-302019_03_US_INSTR6877351823922___09808607323.zipzip 54d11e322555ab9fc0291c07d868b9c8fa0efe6136518285a64e65996ebe2bffn/a 
2019-03-302019_03_US_PAY52207064416545___13473179043.zipzip 029ffc6bc87cb02b504f0026f768143e94f0335e529400cea156850163c73872n/a 
2019-03-302019_03_US_ACC6860058757329577___00782883457937340236.zipzip 6b0552ee1b696c49b721b6dcd160791edae5dabe77db88e2140abe259d0db21an/a 
2019-03-302019_03_US_INSTR46368085134906031155___676536831177.zipzip 62a3c7d0489f22dd57bbe1db58d90306986889b5192acdfbe762b5f81c3f236fn/a 
2019-03-302019_03_US_FPHV00011884064331___167335351392621.zipzip e56bd541d8cc63b7f5464f6ada8aa186eaa57edd4572af5bfe422468a1ca5b69n/a 
2019-03-302019_03_US_INSTR88021816172340147___13827820688614218.zipzip 7df76304ee77ed123a1d56bc2422b48bad49dc2faf2a364178b85edcd94c4d46n/a 
2019-03-302019_03_US_INSTR3299169683824493___40148564139033016719.zipzip 74da8557bcb1dd9581850e63c9544b89ae47c527e06560eb331933df122a38a2n/a 
2019-03-302019_03_US_PAY52264577140093___561150329619781361.zipzip 60cea757b455cca271632e26ed5b1250e6e5b4236f0f6040c0b82cd565a18070n/a 
2019-03-302019_03_US_PAY6721860053541300___09653128562015511131.zipzip 28883a3cee411f63590b73a36b12aca2f5a7379d2a57e800c5683a7710954fc1n/a 
2019-03-302019_03_US_INSTR2544705856___915339628701913370.zipzip 1b8ad0dde00fb7d075594eb9f58de011cf1d6b11880d4288773f9ad8d7e7331fn/a 
2019-03-302019_03_US_NLT538721463921061___43643093361482.zipzip f1a3bae0c6378fdfaadf0b6ee7d8539043ae5792cb7c2679ad444ae821ec914en/a 
2019-03-302019_03_US_US13650199102831670___5556533359143984699.zipzip d5eb185f2a3e2fb66f2f534936cd1b67b31fd61607a0592703640bb39b34e723n/a 
2019-03-302019_03_US_81691081919373638530___8600535208429095768.zipzip da2d1a285f7ccb299f476380c3b308bc92b883a6331a8e16c084638153da65dbn/a 
2019-03-302019_03_US_PAY3764152314383___450888965728493.zipzip 3cabffc9d688385aefa9c3a5a709ef39cc793410de2ce4d272c0da7eee5062f6n/a 
2019-03-302019_03_US_ACC285775962119732934___14424115724705631.zipzip e161609b80de9506a49c19b7bcdbfab1de15e639ee5d92e9f5cf31e238c07051n/a 
2019-03-302019_03_US_XVGSS021753507___9535469573573.zipzip 7a721adf43ec2dc59dfc41fe019e02adb731c7d6361aca4de35a974c45973b32n/a 
2019-03-302019_03_US_ZKT6370299850211824951___695100500.zipzip 1ee6662d2c44e617fb1afa455c3043c05684e3732736919504f4ce3bad757ac6n/a 
2019-03-302019_03_US_0893369998340___004061425493.zipzip e8b6399a2ae94cacb8b02605222def82aade9956ebffe25d16c5d001307b6f84n/a 
2019-03-302019_03_US_AQ37070953357___1626595114979394082.zipzip da7a05d9752281fa2de065a0417ce12ec51430c98a7cab5e11333de185692424n/a 
2019-03-302019_03_US_ACC1887894936___185312961920330.zipzip 100c2ff38061afc038d3414843d96705036b073f4d74818f55c35cead6d705fen/a 
2019-03-302019_03_US_ACC3309525210900___259971378024360.zipzip 745100936c3829478ff9939c2a9223e032c8a146d2d85faf0134361abbd21177n/a 
2019-03-302019_03_US_INSTR81781217867946___3064194337440635.zipzip 3f155cc4a220c61c20e2256ad776c6c77515c9810264728e17c7fb98942fa01an/a 
2019-03-302019_03_US_US2826965384538319931___72567497385.zipzip 914849e16ac9a30d1bda6b37a328c69e9c06db67ce46a98543a2287f467dea0dn/a 
2019-03-302019_03_US_US9458679841891___5083177728776878124.zipzip 7c4028c72f0a5477fe2bf4ea4d5f27e24676dcca5ff35eebe91ca539ca7369f0n/a 
2019-03-302019_03_US_MMK22843973470415___7039260629.zipzip ddefe107ff796331349fb16e048daf987077e0ac7556fd994ac33abe7f4e8492n/a 
2019-03-302019_03_US_PAY755249371___3712829903134309.zipzip d7e23423a5a9d3e90c20a78dbbede4954f1c915a1d7055082c8262b963123b27n/a 
2019-03-302019_03_US_PAY279309298___093334750900.zipzip 61faa17c0c47b662e50d3b7a6595992dc1394f692168f90053f7240d6efc54fen/a 
2019-03-302019_03_US_INSTR0869477689251199563___6777482646.zipzip 23857034010dd67a330b07e194c2c5e4947a6b745cdccc5c0ed163b13a1831ddn/a 
2019-03-292019_03_US_ACC54844167924209592903___7836472644371603968.zipzip 206371f3e0c87c709282907996fc05f40e6d3de32070385f3100866d1a9611bfn/a 
2019-03-292019_03_US_031371807___132948788012915433.zipzip 979e0ce9cea7845a5e771407cb8e3066713fc1bdc6a435501208a34b85dfd005n/a 
2019-03-292019_03_US_ACC1495335994840937546___24907856547936.zipzip 6fef076efce7138b5d425287a72df0fe28ec2fd75ed2f60bcccc333e2646fc25n/a 
2019-03-292019_03_GQJIZ131864815___31605610263315318878.docdoc ee10b94e7631a5a45e15d0070102cdeea1189d1185d08fedc1a141768af14855n/a Heodo
2019-03-292019_03_PAY39451426790712460___39024845852110921.docdoc ddfc91d16ce7e3fbfdc18729cca5a8c1807e7f68ca539c954dbe642a8b1d1628n/a Heodo
2019-03-292019_03_US783600362864380___47475427848.docdoc 6677c67824937db081f2760f9982c59c74f4addb2feeb6b43f984ce1333c5400Virustotal results 21.05% Heodo
2019-03-292019_03_INSTR0313520727___184481727.docdoc 53c90d993545d80aa3817ed875889d903c4be7144883e079904b1793c0a46d18Virustotal results 21.67% Heodo
2019-03-292019_03_ACC19842429359609613___2273623056704639.docdoc 5e7bac49a57402d55155219a40378d2844f752d61287a19550bacaab853ba9d3Virustotal results 20.34% Heodo
2019-03-292019_03_US8084940855965529___0378350821541982888.docdoc 558cfe4cfff4823414f02afe85768443f30ba17da372e342a3c3f8e70ac2e4d0Virustotal results 23.73% Heodo
2019-03-292019_03_PAY6975263239085709885___5977711235173.docdoc 40f4d477a74da9edf48cef87612d23856c4ab132feab7f71974bab30d3ad8f01Virustotal results 21.31% Heodo
2019-03-292019_03_86101022841___301684193165516806.docdoc b4e073bc9a9ecd61cd8b8e5d5e492b84c7336a93eb002f06051f4f7d5ccdba43Virustotal results 21.31% Heodo
2019-03-292019_03_INSTR74836444293033___0526525581284245530.docdoc 2e2743db382455dec3bc1edccb4b4d520de310a8d0252ecafb024b3896226872Virustotal results 22.03% Heodo
2019-03-292019_03_PAY21047335286772798___5554065269.docdoc c76605838dcf51882c817190fb690280fa6a777d100f60e55d67047250cb516cVirustotal results 21.67% Heodo
2019-03-292019_03_25749956168836___151858660.docdoc 7fdd6d3f01b22f9877710c4a8d2af9396b12b1e7164cfca4027e0c4a9e309f71Virustotal results 21.05% Heodo
2019-03-292019_03_INSTR994603509___3715636633677226006.docdoc 7dd65e9505db522b5bf00f779b47d5dc7fcd751c989dfd6b8c5c55c684b37d03Virustotal results 21.05% Heodo
2019-03-292019_03_ACC285986837085893933___7953926184193510.docdoc 5c33e4cc4e661f50fe389db26b0e743170b70e09d788a18f5a4cdb1f7612e458Virustotal results 21.05% Heodo
2019-03-292019_03_PAY85974116627041___4167985929642359054.docdoc 899a3ea6f97efc9329fe0d39a0f633baba2982d5cb95e7a77334710fc9962df9Virustotal results 19.64% Heodo
2019-03-292019_03___US___85520223331___78300754403680805.zipzip 5aaa3795a06d08779a9d5ec790e1fb5805868d707fcdad114ceb66e9068bc109n/a 
2019-03-292019_03___US___INSTR1170645605___4354511602369491.zipzip a2506d143922193f18081cf8197c0925e4271d5fc4174331f508222dc8ff2a1bn/a 
2019-03-292019_03___US___E51693713251204615___89594873738043264001.zipzip c86099ef2007f2ed20bd4a827c29f2206b949ca9414cbcfaf608c710bece6761n/a 
2019-03-292019_03___US___INSTR337637755667___397708481767512.zipzip 88a8830d739ae3bca23e5837ae4051dd68181df8470b4fa3d47192742a3c8d99n/a 
2019-03-292019_03___US___L367905124___505779881961.zipzip fa0ed984ff8ff9b34e08d4b278c5d0acce8c3ddeb49165726a174f7859ef90d1n/a 
2019-03-292019_03___US___US67129057988462113348___51139033221395701.zipzip 851554d10ed062dbcf6af79f3cff3520fc271072c26c746d903b9ccbdd3efff4n/a 
2019-03-292019_03___US___ACC067920141013244___44224361562006333401.zipzip d7d470351d23b72fa645fe5c1a8c4103df4009808c2b24f777814dd4f791522cn/a 
2019-03-292019_03___US___JG14462101627378544___961770338.zipzip ffbe7734801585ffb408c2addd8a43f695364cb0124b3bfa997d57a154f95328n/a 
2019-03-292019_03___US___INSTR00239956598399___7951693036.zipzip eb9925ddb813c3f5410b3a8b08390361b0252d2a52e4221f008e3b115d767a14n/a 
2019-03-292019_03___US___US780276591471978___44197610753928519.zipzip 6bb6ba9a1e1cf7df47a2a242635234adda272aefd698dd592b2feeba6f8c0a40n/a 
2019-03-282019_03___US___PAY3009350625254173___197598395105730031.zipzip 3a5f27274fec886df26c49575515d0cf780198a3b1a0415b535e0217bf41f1bdn/a 
2019-03-282019_03___US___53429923354789731___559892368.zipzip 3f4503260c768533e7d2f1bdc75275f4c09d3deaf647dae1414fd4e4c79b5eban/a 
2019-03-282019_03___US___1447903172___30840663276714016.zipzip fa8c7b5d20fb8a1ada25d4e4d7eae00c3158a879b474851dd32ace12a5bc7130n/a 
2019-03-282019_03___US___INSTR365078117695622418___299216954478072.zipzip e4b873714520568ce8e3cc75342d21be91910b25ad5a64826dfa166bfcf942cfn/a 
2019-03-282019_03___US___B0419691144685283700___80286082352155.docdoc cf1801e508a99e6b41cd0b76f737104180889b4d330e58deb9d3df6eb08573d2Virustotal results 17.54% Heodo
2019-03-282019_03___US___3029664261721101786___1680332081007.docdoc 1da44ccc2eb250ca1283e6b12e92d326169112ae88c9b1b9800fa1868257628eVirustotal results 29.31% Heodo
2019-03-282019_03___US___QZZ2037425924011___118252824.docdoc 6c15840ece51c9fef3afe93b089baaeb15b75128797ebd2bed4e8bd1f8c091a6Virustotal results 19.30% Heodo
2019-03-282019_03___US___INSTR3000815057509___1548337486938.docdoc 235617c4c46b0eb57a53bab6974f0e81512bf2be9c487156640919032afcf477Virustotal results 24.14% Heodo
2019-03-282019_03___US___297424796086785254___05337730259.docdoc c6483d11cbc8b37ebdb393c4c01b38ca9354a09e9214a713e2354cfbc7728672Virustotal results 20.00% Heodo
2019-03-282019_03___US___70145473104368___891523388769291.docdoc efb1a538542b611b7775e9d926d74080f8e961862f7266f2f0b67fa868061e9bVirustotal results 18.18% Heodo
2019-03-282019_03___US___INSTR472415471486222___10994586770058.docdoc 215a4869560e9ff07234db3736daa9028b240d8569e1a6d6a71205cc10b3249fVirustotal results 20.00% Heodo
2019-03-282019_03___US___USA9752301666503___3029129941565674.docdoc 24ecfe71f85e9c8d734e8438171c62e5982fa9962e28600f2dea828b91d510b8Virustotal results 19.64% Heodo