URLhaus Database

You are currently viewing the URLhaus database entry for http://buzzpaymentz.com/fonts/iwTxu-mNMWVxSdKGFyXX_tnKSirtkh-dWE/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:178039
URL: http://buzzpaymentz.com/fonts/iwTxu-mNMWVxSdKGFyXX_tnKSirtkh-dWE/
URL Status:Offline
Host: buzzpaymentz.com
Date added:2019-04-15 19:29:16 UTC
Threat:Malware download Malware download
Google Safe Browsing:Clean
Spamhaus DBL :Not listed
SURBL :Not listed
Quad9 :Not blocked
AdGuard :Not blocked
Reporter:@spamhaus
Abuse complaint sent (?):mail Yes (Ticket DCU001240731 created on 2019-04-15 19:30:13)
Takedown time:8 months, 6 days, 19 hours, 4 minutes Bad (down since 2019-12-18 14:34:30 UTC)
Tags:emotet link heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTSignature
2019-11-30n/ahtml d1b64f7be9b86fbe5789275d324f93fbb53befc8e7b68f4267c8824172d91c59Virustotal results 0.00%
2019-04-17LLC_808761940030US_Apr_17_2019.zipzip d17eb96670e872ccb8f2e1382bdf990160f19731db562041c34514b58edbf5fen/a
2019-04-17DOC_75705596621US_Apr_17_2019.zipzip 72fac9e6e252030a6ab3c8286f100b6f180b88b7cc21b49941d604840ac6facbn/a
2019-04-17Document_051525432326US_Apr_17_2019.zipzip c96690c7e57acbe37ca9ab76d31bbc410e328a8977e83b1768cc8fe95b32ddb3n/a
2019-04-17INC_1185869274US_Apr_17_2019.zipzip 1ac8aab1d7b9c37f9ad5496006c238a9e8c7253076cd3627d8ca89e07fab02d9n/a
2019-04-17Scan_020686168352US_Apr_17_2019.jsjs ea0414489b28abb5471549bc70317e46218a639b721aa49345c4dcdff946b76fVirustotal results 10.00%
2019-04-1764057544537_Apr_17_2019.docdoc dfd14cdee37ce2e553ccccff81916d88857b9fef88abe657911e59c39d9bce4dVirustotal results 22.41%Heodo
2019-04-179355020508_Apr_17_2019.docdoc 22b6830432e47e54619e0448c93f699b096e0e73165e051598a82836ab8e38abVirustotal results 22.03%Heodo
2019-04-1783019088007_Apr_17_2019.docdoc af507b0d98ed536a00361562696bcf00caa81b642eee407fdafcf89811f85ff1Virustotal results 22.03%Heodo
2019-04-17158678571985_Apr_17_2019.docdoc 642fe50465ced7e3d59a39e5776dc37e4c500a5cb9363d0c1ca2a7fdd72fa359Virustotal results 22.41%Heodo
2019-04-1752252915529_Apr_17_2019.docdoc 566c79acc5b6aca21ec8ad0859b2f53a1f0d4a00e793b4e6cba5fdb53cb2bafaVirustotal results 22.41%
2019-04-177613288350_Apr_17_2019.docdoc dc80c7b6ddd24d941654891dfc10cfac301241ee4fc1fa452edba96cd3729045n/aHeodo
2019-04-17713821740639_Apr_17_2019.zipzip 20f3c0598c7b95e9c37a4c8db07059633c9c8e0c909dd5d8098979b22239c2f6n/a
2019-04-1754884823217_Apr_17_2019.zipzip f24b17af2c6df0c4d1badf396cdf6c1919865a6e9583d4ff416b4915653a612dn/a
2019-04-1710647675699_Apr_17_2019.zipzip 2bf2d66f9fe1a2bf5c47a2e8d59af763a3208541e1bd7c3f1337ade98b2c59f3n/a
2019-04-1752736844968_Apr_17_2019.zipzip a5a0836f4d8c71dcb293577c039fd2b29c5c2600a6944c98aab77ac50182debdn/a
2019-04-178051010363_Apr_17_2019.zipzip 436f006d05740a441b84d4a4fab5114be1f63e90996ab58c9ca7057d5201b7e1n/a
2019-04-1615098850320_Apr_17_2019.zipzip cd1368510bbf885f7cb0e839caa1e174dd76c4bf9e424b12ddd344279dff3811n/a
2019-04-1606173035015_Apr_17_2019.docdoc d335a1d0c38e751f9376bbe88c7b18ab19c9459773a6951740a6782676e3834cVirustotal results 26.32%Heodo
2019-04-16912425380187_Apr_17_2019.docdoc c13a1a14d4d6242dc109cb12a22fbe8c7ae413124a4565680914442991654418Virustotal results 26.67%Heodo
2019-04-168557588125_Apr_17_2019.docdoc da113158c502b1128ea80c1a110708a22c510dc5dcc88939b20d87c2994f5c5dVirustotal results 25.86%Heodo
2019-04-1626156878621_Apr_16_2019.docdoc 4ced4812b1f40486c72355b6a48ae537e3c84e2d6f5554650b37a868f0de3dcaVirustotal results 33.33%Heodo
2019-04-1669452908353_Apr_16_2019.docdoc 8eba23049d725aabd84b63f8cd4b079c78f26cde6f7bb8be1d2477df0c0d5127Virustotal results 32.76%Heodo
2019-04-160713977214_Apr_16_2019.docdoc 141e277b2165595334f404edd83397057b2a4ef8a52eb8edba79203f0aba44d9Virustotal results 30.51%Heodo
2019-04-1684778749314_Apr_16_2019.docdoc 33eb8eed7c8660a54e9b99e8b8719fa1a83484d5ba41805f1767cd8605d28fa4Virustotal results 31.03%Heodo
2019-04-1666564067826_Apr_16_2019.docdoc 033fa72fe48a853b99e41ed7467c1ccc488d5abe69dff887b8a6b7b2c5a5452fVirustotal results 31.03%Heodo
2019-04-16471035054088_Apr_16_2019.docdoc 7fae139edf9512b5788f271e05878e6d556721b4eddd8f556096824c3b9bec69Virustotal results 31.03%Heodo
2019-04-16259558836693_Apr_16_2019.docdoc 7147bcbc0854554068d051c589da76772d019dd8f1d56ee17b6ef90ba54c2706Virustotal results 31.58%Heodo
2019-04-1601384231172_Apr_16_2019.docdoc 304a8542a85af048259d4d87cf12c686d4af0c4ecdbd85b2ec7ccd6ba4284db4Virustotal results 30.51%Heodo
2019-04-16501438050823_Apr_16_2019.docdoc 7a8ac4c603faaee3e2d94f3faed810be8000ac4d4abee4475766ab9111fe67e0Virustotal results 31.15%Heodo
2019-04-1646026805884_Apr_16_2019.docdoc cd9387ca69fa3aa30380f5e513313980b26805181f235dea5596a7d9b6c21c41n/aHeodo
2019-04-161136524123_Apr_16_2019.docdoc f77752556433adc821036db89f24c19cc0178c68fbce62b8840b415f3916c4bdVirustotal results 26.32%Heodo
2019-04-16230353895973_Apr_16_2019.docdoc 05e9d6de0d75faf602a7666ff6287e1e9ee367d57d2abaeac780e14325833dcaVirustotal results 28.33%Heodo
2019-04-166154114805_Apr_16_2019.docdoc 714cb052a43db82cd36d3b516b30ce2ed91bb5a3041c2721a8cc04d4060429bfVirustotal results 28.33%Heodo
2019-04-1647887136318_Apr_16_2019.docdoc 90c260b2469174d1c60fca12bc1a31728a1219a71c5f27a5b1cf21db2271f123Virustotal results 28.81%Heodo
2019-04-161843055489_Apr_16_2019.docdoc c40f3f595365f71600c24ebe5c2fd245bb7584364c4b2f3f294e1dfe675891bcVirustotal results 27.59%Heodo
2019-04-1665730250696_Apr_16_2019.docdoc e0bf4c6aeb567130478fd998b9bb45ca8ce6d76520107e2088d4c6cdcbff90c8Virustotal results 28.33%Heodo
2019-04-1666228047711_Apr_16_2019.docdoc eb68fdf25e93c5d896e8b7f3d1216c20545cf2f3b3ecac3c850d4d48dcc853deVirustotal results 27.59%Heodo
2019-04-16201233780193_Apr_16_2019.docdoc cf34076fe15384682ff04d5a15a94d36af4ff3dee94d651c33c4b4c60731ed88Virustotal results 26.79%Heodo
2019-04-16727906211618_Apr_16_2019.jsjs e328f1a48cce3e9220c38d847ccea9f81b6135d120bd76b224c4be21405f700eVirustotal results 7.27%Heodo
2019-04-150767944517_Apr_16_2019.docdoc 8cd4e36661364ce87f1ab5d766e5dc204b3087c58acb95765dbfeafcf5f43534Virustotal results 47.37%Heodo
2019-04-1500392330689_Apr_16_2019.docdoc 20d7d49169b444120397f4fdcec5d5c94ba9a6f0dc8e0a3485566dcaeb73fc6bVirustotal results 42.37%Heodo
2019-04-152573091573_Apr_16_2019.docdoc da956cc8f7e31477de3ad6df05f775b0ed58912dcf2f4c427d629e39d4f77394Virustotal results 32.76%Heodo
2019-04-1553377268782_Apr_16_2019.docdoc 7a90e8befaf91ce86dc82bf17531ac6f5ea555d3038a4d1df0618977ec6e1b47Virustotal results 31.67%Heodo
2019-04-1556757980661_Apr_15_2019.docdoc f8def05c21bfefe7089645b558a8275aac14deab1359003dcf4abdad48613efaVirustotal results 29.82%Heodo
2019-04-159353590531_Apr_15_2019.docdoc d21e54044bead3a0db93cac41fd446fb19d90d1d0baf604d5f6134c710a8b2fbVirustotal results 30.00%Heodo
2019-04-1507852969435_Apr_15_2019.docdoc 3bb7d4f4f6f53b750781940dc8f6adf33b45648cb1259764eadd56000bb19f43Virustotal results 30.00%Heodo
2019-04-152678384914_Apr_15_2019.docdoc 4b7970e45907a22f497f214789316c9301df1e0d575b1f466c65b2f7f7af2d2cVirustotal results 30.00%Heodo