URLhaus Database

You are currently viewing the URLhaus database entry for http://ask6.awt.com.pk/wordpress/wp-content/oRgU3wKWqq1xNWO1RYo6k9H/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1850614
URL: http://ask6.awt.com.pk/wordpress/wp-content/oRgU3wKWqq1xNWO1RYo6k9H/
URL Status:Offline
Host: ask6.awt.com.pk
Date added:2021-12-04 04:06:08 UTC
Last online:2021-12-04 22:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2021-12-04 04:07:23 UTC to abuse{at}nayatel[dot]com)
Takedown time:18 hours, 32 minutes Good (down since 2021-12-04 22:39:53 UTC)
Tags:doc emotet link epoch4 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-12-04ZT2GXNXL.xlsmxlsm 41814ffebd396b740dca06e8e91c36a2119829be2bb97bf9afade3432aaec7b2n/a Heodo
2021-12-044UCI5MMPSWCGJ7D.xlsmxlsm 3c785175e1471f4af4e5d4bd4312c7faf4032aa29bb7eb7875d17a5cf5d608d0n/a Heodo
2021-12-04O5EYW86NSR8Z5.xlsmxlsm 317bd44b3905ce97c648c728f06c8d8b57bd265c39bc97a5ca61aecc12952b92n/a Heodo
2021-12-04H2FZKKP.xlsmxlsm 586dc51819282ea550de13d6c8334a6f5c88685a6a4ec97f396686512dc2d92dn/a Heodo
2021-12-04XS2MFB1CILNI.xlsmxlsm 52c5eb425b749b970ca3a8ed72ad859791dd1ef48d02128682d3a7d94728bf20n/a Heodo
2021-12-040AINN1C.xlsmxlsm 459f9e401d040a233f805db5ae53f477b23e8a2e1875bd43294baadb72837e49n/a Heodo
2021-12-04HSQORSTV6E8.xlsmxlsm ef779a646e1ef3fa6a4b1ecb645656a42cafbc4c449d6b38f5a759ef926c925en/a Heodo
2021-12-04YXP7LL9JMYKZJND3.xlsmxlsm 03a92dedf411f09dde7fa1558b455fb1c8c19b32e221a6c06a8b26a81670e2bbn/a Heodo
2021-12-04WP5RH0USSIY8H7.xlsmxlsm 6f7305b8bb4dcc7bc16c2ddb743d507a26f81a41e090fc5e4e365a70a27412c4n/a Heodo
2021-12-0436UOOIT3IJDV.xlsmxlsm 3f0809e7f328e5c63cf5261a262da71ae1fbaf3d282bd3290e7a7df12589806en/a Heodo
2021-12-044PFY3WE880E.xlsmxlsm caff998cb1c01034f139c2b57f6e69c7b0c8338d2b25d2722a85ec807e20b248n/a Heodo
2021-12-04UKBGFZHSLW.xlsmxlsm 493946cbdd63564ec16595af96ccad696123c5cd08d23dc5da3721b28feafd3en/a Heodo
2021-12-041D02LCCPX4KMLKL.xlsmxlsm c6adfdbdf2da03f15ee5418ab51eaf3ad735adcd04bb6b214c14de07d5a9820an/a Heodo
2021-12-04P5BBBHKT56.xlsmxlsm 13b03f9e729128abaff6da9f539fcbd19eea45e20b8781f69e88f5fc8de032e9n/a Heodo
2021-12-04HNAPO27K437DW6JD.xlsmxlsm 57e7b9e9e0649b39613558375db1ea28c08319461d2ec830a4f2797101a34dcdn/a Heodo
2021-12-048INFK7VEOFA.xlsmxlsm 41d1177a2369aee3c07a3ffa0001dc60b4f69219f94970e4b4ab09c6c05572efVirustotal results 26.23% Heodo
2021-12-04P7SVSPUUIAHS3.xlsmxlsm f623d3abffc341c87700595fbea396420f28ff0ca78607fbedb7ce6ae73e0144n/a Heodo
2021-12-04POQVM0XQ12.xlsmxlsm 5026a36a909e0d52e93756a205479014bdbc3542288af6a1a67b82c3bab87e65Virustotal results 27.59% Heodo
2021-12-049FG0GG9GICXMRY.xlsmxlsm 1182685d4a0c9713ed4135c1f5064d2cd63a7b02f42b822c9ad6208a198be3e9n/a Heodo
2021-12-041MIN2A89DVE.xlsmxlsm 51ade39bcde138bbf62c3ac3628beab24ee98cf99a240c4f4681d182fcd7503cn/a Heodo
2021-12-04VZ83E0KFHG39.xlsmxlsm a7a6063f4fee35bf4b45683013032a1e8b9e2289612ec914d497a3ac0592652en/a Heodo
2021-12-041EVJPMMA2.xlsmxlsm 4d97080c59d554255f5f5ef49ce08d7648fb484c72b27ce22c4fc89291d5e393n/a Heodo
2021-12-04GJ37RF95TA.xlsmxlsm 8c7528c317ca1109f224f1022a3f0fa4be93150ec3545083128b7e513a60ff5en/a Heodo
2021-12-04WL3PITVVIMC61H.xlsmxlsm 9375aa8f89ae69e8fd679c6d267da7177ddb6ce2c43c00ccd2a0b059937b5b99n/a Heodo
2021-12-048W3GCUAT.xlsmxlsm 4c433b048bd8c8f7caa63296d294bce674eafc917d54cf58e7901f00d39506e7n/a Heodo
2021-12-04PG3K9F7MQWB8VUN.xlsmxlsm 20e5d5a3b838ac6fd0a8c0b96ce252aa5e9ee94c7a17f8114974caa792a66e53n/a Heodo
2021-12-04JOXH5P8NSPWY.xlsmxlsm 4e954f2f70144153b842eb7cc68ec16e61d9a047c87c0580803a859a074440f2n/a Heodo
2021-12-04FF6VTD2L3CQ3TD.xlsmxlsm 2d3fc2a151c8cf3230ebbf202fcc5210e14bebd19b918cc44012ac4c5c9c1ec7Virustotal results 26.67% Heodo
2021-12-04ZXQL1YC2TJ3R.xlsmxlsm a9e904283e1c3280a9c94df7de9526d45406f043bab61cfa89955ab26c9002e7n/a Heodo
2021-12-048QEHXSS0J3OODIAS.xlsmxlsm ee70a9dfbea6bcd62a89831b51e91d1efc82e55cfb87216945f4260053c691b2n/a Heodo
2021-12-04EXTF11EP6.xlsmxlsm 4655b38eabeb0cf3dbfb6f333381ec452cbd5f8d8b6fc1309a5facfcec60e458n/a Heodo
2021-12-046E4JSH25D5IGR1C4.xlsmxlsm 172e8a78726d8b62b7f8ca77e024e55f3df1fafeb21ddb22a804df109e477f84n/a Heodo
2021-12-04FQXT4R8JM.xlsmxlsm 39575879cef671f75b0dff64ff1b7637153006aec9b5d8b474d8156ec7136cecVirustotal results 31.67% Heodo
2021-12-04D08ECOZVF6K8BXUI.xlsmxlsm 1a42644608f98d5d74478e0021460a016a3a0162071d6c6a15bcb3cea0bcda85n/a Heodo
2021-12-0483DVXQQU458U3.xlsmxlsm 4bfe5d7fbebe3855b2c12f5ebd95284ac3718b7bb3186a6c175443b1a8172c2cn/a Heodo
2021-12-04C3LMKLD5BKA.xlsmxlsm 836ecd93e4aeb5ecb8980e715a69a798cb4797e81ea9782e4f3963a39a081c88Virustotal results 27.42% Heodo
2021-12-04V42XTW7T1.xlsmxlsm 0b326199fcfff5c386678dacc4a527c7c84b80727886d983225152ae395b9d53n/a Heodo
2021-12-04YCDIMDV24H.xlsmxlsm ac56b054b71a4e28040c32a0d2726120aed5754c6d4f09910b2120a0c1249fa8n/a Heodo
2021-12-04CWGCWM2QN1FKERJN.xlsmxlsm 2c2e95a77a86b511c38448c53b4bf034d2b4dad5b112e7519adc44ebca05ee98n/a Heodo
2021-12-04VJMT580.xlsmxlsm b937b455457a962bc41c56f413580010f41dea635b7cda9269e7871c9eb5ffe2n/a Heodo
2021-12-04RL7093701QJ5.xlsmxlsm fc5a8a70db42e217d97c51399bf0c0091118097860ba599a5b6f2aa22978e52eVirustotal results 25.81% Heodo
2021-12-041RB3GJU8FT81ERE.xlsmxlsm e6a05dbc614aa16b8f8a09de2414a8179485d09914672393e74ca1af21229243n/a Heodo
2021-12-04E2WTIH34.xlsmxlsm 578ece55282eb8f61aa9d634c5aa7fee1c72d820c7d5fb097421a2e4c2d571bfVirustotal results 26.23% Heodo
2021-12-04LD9OHWFRO.xlsmxlsm 9dc8af2d8c4b3ac3236bf6854526079d258f981fd720152a6a71de7158aca5f9Virustotal results 26.23% Heodo
2021-12-045V19EXPBMJGHLGOW.xlsmxlsm 1229b20e14b3be50b3afa03740a4b12918e1a61fa0ffbd57b6e265a7a13e2a04n/a Heodo
2021-12-04J6K1CFCHH4TNBQSA.xlsmxlsm 6f3d916042f12df984ddfa7652fc98e1238959c72b6f1c128834a39cbc2920d4n/a Heodo
2021-12-04GCSPM6MH.xlsmxlsm 72cafc4ea1b98930461ff6a0ace0557ef6c1ef62eb7753105d5d76154cf39084Virustotal results 22.95% Heodo
2021-12-0455KGQKRNEO6U.xlsmxlsm 58d24310e03ca087b71f52861b4e8bd89790b2b0d8ec2722176dfeccba7d8f4bn/a Heodo
2021-12-04TV558HN.xlsmxlsm 73bc79dc01e3733c7a9214932ad508926f25731200ddac23fc278525afa4b471n/a Heodo
2021-12-0492TNASOEUTXIZLB4.xlsmxlsm 45aa726b2ca6a38d0419f3d4995b9d49511378a95a1be683595faa492bf75dedn/a Heodo
2021-12-045A8C4TS0Z82.xlsmxlsm 105b85239b53170fd9b3f6acc444344a468a319cb90c5c9293ce59f00076c4a3n/a Heodo
2021-12-04N8H2HPKI50.xlsmxlsm fe6edb9fd62baef115f8bfa653e6e8d94aa4f2f6aa31da89708f064fd3c88d96n/a Heodo
2021-12-043FAMZX4D.xlsmxlsm ee4365337fbc7dff140f457e8ce2d9c1674f2cf6e67b75d8447437f02389f032n/a Heodo
2021-12-0476PCSE655O63.xlsmxlsm c1464a90a58f17c06f2ccd02243da8d6457dd01d5cc39136b34ea33eb458a64bn/a Heodo
2021-12-04I8QEB0YUMEH.xlsmxlsm 27398a3f2736fae1f040f051ab7ea4b36bf4a0949565531d64370f70558f1edan/a Heodo
2021-12-04QB3QTD6FI1BLZT1.xlsmxlsm 9482e25f0e15d370493d1b0dbccef274bb8eef769bd89460559c7e58a7be2991n/a Heodo
2021-12-04M6APLDS8.xlsmxlsm d44144766e97708e55400a782c2573b24f70ab32240c1e706ab31e762c17bb02n/a 
2021-12-04H2NUGCOXM3SF.xlsmxlsm df548ffbe364bfcab388240bb79b0e022793e69993359ad2814bf4dcdd8e8c43n/a Heodo
2021-12-04LX8R6SX11WM1.xlsmxlsm 7ff5d1d7db27ec611d2c20d2e49cda085a7e5befbabad0b7fa1735f863e9343eVirustotal results 22.95% 
2021-12-04NNGEHCP899NQ.xlsmxlsm d6f9c9727dd0438fd15ffe3b61f7fea64b2799dcf291b82cb91c4e615b876f77n/a Heodo
2021-12-04QAD3ZCUO.xlsmxlsm 17d727d3125d7af2cba3c4d82143be90f7b141c36c01c92ad5abce88a2aca016n/a Heodo
2021-12-04UQWODT0Y.xlsmxlsm af0ac9988fa124d9634af8a7108da032d14244d47ff43445b01da171a2fe99e6n/a Heodo
2021-12-04SWCX0BZ.xlsmxlsm 214e5a751957c1249a783a595cbf2c843f8ce1b0d19e4dd3e4cc71f1c364f765n/a Heodo
2021-12-041L9O37BQLZK.xlsmxlsm 3464970840cdd805c83761547e3f985c1b392f10ee00d467b225ffd49285b7d0n/a Heodo
2021-12-04LAQ4RV2W.xlsmxlsm 7266eebb30eaccc6220328cbee7e643b0b0cc3f026e7a58e7cf6db771c305efeVirustotal results 18.33% Heodo
2021-12-04XEQDFRZ6SJPHWN9G.xlsmxlsm 3cd034945552b0db20496f64fe019b6100c496de25e609d070c799243a373837Virustotal results 21.31% Heodo
2021-12-04VLWE1KF.xlsmxlsm d3d9ed91a645318b0016f956b5a72525de2ffd5cb12ce4d29ff84d071304a6c0n/a Heodo
2021-12-04V269OJ9N6KMWII.xlsmxlsm 7897658c10cf7ff61466fcfd07780fedb8cae3a5dad201681041c2b5cda1e0d3Virustotal results 18.33% Heodo
2021-12-042G4AZ06.xlsmxlsm 83fb6377e3deb8155d8d1ea2470c1ce9565bef5746a698b9f769d5f7852de049n/a Heodo
2021-12-04RU9AX0PR36ZAE.xlsmxlsm 314e3d1e7346c183ea8fc1d5e99dac95786c5e7fc9bf415af7ac35882715ca69n/a Heodo
2021-12-04XLHM8CF4XPYM1.xlsmxlsm 9cfe07eec025fccecf7dd8d2ea076b95f82f9a467f37ccc43fc6194358e67204n/a Heodo
2021-12-04U687MRH5HEM.xlsmxlsm 8adc6751f1b1a317ccccb210e02fbc5d1436c5e4d73005d4c95fbe0e13686286n/a Heodo
2021-12-04NEEGE3D10RJZV1.xlsmxlsm 2c7d3257879a2e69e5c869ea9ce1dcabac9e27d92225b6ed4c6a9c214d2b4871n/a Heodo
2021-12-04GBZ0HWY9KPCQD6.xlsmxlsm 129abfe1daac979f2a6ac53e587087920fff466cf94900127c69289ab787777cVirustotal results 18.97% Heodo
2021-12-04LEHHAO2FJA7M.xlsmxlsm c58040daa1306ba678529c75a0e43ea0f80d7072a49bfb7e935a489cd9aa630aVirustotal results 18.03% Heodo
2021-12-049M5MFZGCTYU7TP.xlsmxlsm 05764872764266ba76328699e110519eea6d317df30aa9f42337cabdfc0518c7n/a Heodo
2021-12-04WABQ5F59EK.xlsmxlsm 19940a1e1820b4aa1e0bc8ae018bd31dc2d870fd9970ffbb3a25a25676c60936n/a Heodo
2021-12-04OQWOYR7E4.xlsmxlsm 9e4011d4239e49cf4815b6c9e9e00dff0ae353ba4c2eb30a9e6a31ba4c2a1f68Virustotal results 18.33% Heodo
2021-12-04LD2GHA9TJMO6ARM.xlsmxlsm 40c783f354619be528e40820a0a7f98888ce228aaf88551732c6a2b66e60bf7dVirustotal results 23.73% Heodo
2021-12-04M1FRYWTPJO5K0M2.xlsmxlsm 4cd06ae56d216f369c0fc1956d794e869e403b789872ac8ddee9cac00e9a653bn/a Heodo
2021-12-04CDD2P1NTVKM3FB.xlsmxlsm d48cf0af7d3709b68afd7493329e2f1161803b5ca3e4be6651dbce001491e014Virustotal results 17.24% Heodo