URLhaus Database

You are currently viewing the URLhaus database entry for http://www.glasspro.kz/wp-admin/INC/bwKy2DHbnGR/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:187961
URL: http://www.glasspro.kz/wp-admin/INC/bwKy2DHbnGR/
URL Status:Offline
Host: www.glasspro.kz
Date added:2019-04-30 13:10:16 UTC
Last online:2019-05-08 07:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2019-04-30 13:12:12 UTC to abuse{at}ps[dot]kz)
Takedown time:7 days, 17 hours, 55 minutes Bad (down since 2019-05-08 07:08:01 UTC)
Tags:emotet link epoch2 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-05-01SCAN_6088137545US_May_01_2019.docdoc 8622f027a26a79a5d3b23c82121b573150d9e10d2b2c7a0a0270df1e2e807cb4Virustotal results 26.67% Heodo
2019-05-01Document_66710816593US_May_01_2019.docdoc 6f926261cf70832a6f3332c727eb674da29212109a968a25cab4cb92fced7694Virustotal results 25.86% Heodo
2019-05-01FILE_59361557038US_May_01_2019.zipzip 65b19f4596c8067e3f1fd2b8605a5822dc125729d99bf874950f1fb43d99445an/a 
2019-05-01LLC_2522899552US_May_01_2019.zipzip 500a6f9c5aea4b9515951e1ab8c08a477c6ff2840f52e92b51742d8dc9ac8eafn/a 
2019-05-01FILE_732034976134US_May_01_2019.zipzip ec47364767ef99404c18ad9294d454c794eacf9a10615b941d61aac8daf3790en/a 
2019-05-01FILE_082866916682US_May_01_2019.zipzip 274c04bf8c0b88f4f5be8ec9bf15f7f8fb0b99de6585227ebc9fb4707af28015n/a 
2019-05-01Document_84446205441US_May_01_2019.zipzip b601ee380c01c8dd132d54b7faa41032eed37d431a2190dd805d163c92bbef16n/a 
2019-05-01SCAN_2324881044US_May_01_2019.zipzip bcc83d8fa2611d1ba6bb8a9017ba223b1a5eb7ecff144093fc65ab4cf1f1c97bn/a 
2019-05-01DOC_7398914406US_May_01_2019.zipzip 4ae626bb31a83ee70177cb53926f7c8e6038589e9b60e6893bcfd5228fd4c6abn/a 
2019-05-01INC_7664218402US_May_01_2019.zipzip 10d1a54ce8462626b1b0c020df22dbccd41726ee9e26aa7b2fde8d6ef7a579dbn/a 
2019-05-01SCAN_115401027043US_May_01_2019.zipzip 845fe5a4d2f9f62b3fe40065874a94f03aef19d845d1931ab254bced4f9b9cb0n/a 
2019-05-01Document_387706364132US_May_01_2019.zipzip 18038581d248f017fab3c53868d59c99bb9b1f4263c185ae9c3fa70b8e35cd7bn/a 
2019-05-01Document_4719699691US_May_01_2019.zipzip db133c937fb290869cefa7734d7e90cde4c590a1e71ebdbd73afdf56d1b8531bn/a 
2019-05-01INC_87459042540US_May_01_2019.zipzip c74b36384ccaaa5fe7968f7e707b24d63a9a92397031919498db08bfbaf2c6bcn/a 
2019-05-01SCAN_773907636576US_May_01_2019.zipzip 982f7831fa4d192563558e0ecc8648a10a054cac1eea413a43677c45ec4e8bdan/a 
2019-05-01Document_2537376614US_May_01_2019.zipzip 35dde8786560456b9b9a7490b1109b987090559639480016056b4cd87032b3a6n/a 
2019-05-01FILE_723409323875US_May_01_2019.zipzip 1879ccdebe3395e63961b15832f9f40ce2500d20cc882de142a64fff558f98d0n/a 
2019-05-01LLC_64757350848US_May_01_2019.zipzip efc040d41ea02a9bd7bdd98bad97f8fce1ae80aaae7f413044dca57ba1b94ddbn/a 
2019-05-01INC_86708355587US_May_01_2019.zipzip 9285fede50b7df378c8d2e9ed2b5e320f9b3678784343846c0dd9fa543ad7ab4n/a 
2019-05-01FILE_95525334790US_May_01_2019.zipzip b1255bd1b6fec9d2c774866858134665f2dcb6610a083735a5f86f213e6ff421n/a 
2019-05-01SCAN_330907390669US_May_01_2019.zipzip 84321aa157721c1f00b096e4268012da7ea0c764cab2855916eb6f8923f8ecb9n/a 
2019-05-01LLC_02123187262US_May_01_2019.zipzip 1282b8bfb59a4334c49867334fb48aaff467e8d2c1e0c51cdfb10ad1bb0dbe6bn/a 
2019-04-30DOC_776997356999US_May_01_2019.zipzip 83f975f1be902dc8c291d90732609a3738758b72bb10b6162ce9be33fd7c66fan/a 
2019-04-30FILE_48932068980US_May_01_2019.zipzip 248aaa01dab981b6fd830e44e81ce351c9c8c760d853ccb5194264ab905b79ffn/a 
2019-04-30LLC_80799571444US_May_01_2019.zipzip 8b7dfc7a9091b8db7ddd3858a5a2ecf4c424a4f0df628e2b6ae83918ed7d5859n/a 
2019-04-30LLC_39518215756US_May_01_2019.zipzip b65e97f26dabf03f7b11e34a051e34b71f57327b9418ce7d42caebbcaf372bd1n/a 
2019-04-30INC_4993032482US_Apr_30_2019.zipzip 383ef68a860d9474b5ba6a81d3fb56f6b8471aa90d3594285016e964a28d2665n/a 
2019-04-30DOC_596341004063US_Apr_30_2019.zipzip f1c8b2ba1dd1ff3f79632ed55f3736549a95f5ea46f1d844427c6e135a9572een/a 
2019-04-30Document_5220865613US_Apr_30_2019.zipzip 7a1f2e6c78fb7026ac030d1d965f44e738a6b0c7771d07a0078167f11e9628d9n/a 
2019-04-30INC_411036198466US_Apr_30_2019.docdoc b6132613a2251a5b77d726355585dbd8d1e0f7f2e7d915b2718ba9dced1761bdVirustotal results 48.33% Heodo
2019-04-30Document_279786391113US_Apr_30_2019.docdoc 034d793e2d7928a31f3a2d405552c9288aa51d9fb212759573cb300f5538e92eVirustotal results 48.33% 
2019-04-30SCAN_4107259903US_Apr_30_2019.docdoc d6b27400c5f0886cc2c21da11cacf302aa85e1b457a6f49ed8119b573fcb5558Virustotal results 47.54% Heodo
2019-04-30DOC_49574088526US_Apr_30_2019.docdoc 42a04a35e214a16dcf1a928a99faa2648c7a34562eead18fa516512fcfa784baVirustotal results 47.54% Heodo
2019-04-30DOC_115229910375US_Apr_30_2019.zipzip c171e5ffd94cdee3ab30429347a54050fe22a8c71b2452581957328b39b98e0cn/a 
2019-04-30Document_2424412533US_Apr_30_2019.zipzip c87dcd94c800c9576cfa0cfed69cb4a4354b2bf21e6465a7182a0926a4fe8c96n/a 
2019-04-30SCAN_61133980795US_Apr_30_2019.docdoc 73b99eff123644a39dff492f32d56732e9e091e57474f4e6ff9389b002c1c695Virustotal results 45.76% Heodo
2019-04-30SCAN_68936962020US_Apr_30_2019.docdoc 4ea21ebe4deb18442e48c50e5df59871fe759b0bc7d77d9e642fb4c2d8d075c3Virustotal results 40.98% Heodo
2019-04-30SCAN_00128001824US_Apr_30_2019.docdoc da796c5520890b04964c30a0b56730e0069dd1682b69a3fc52a4cf0b8ee40412Virustotal results 38.98% Heodo
2019-04-30INC_5792722009US_Apr_30_2019.docdoc 29d2b928d7b39015bc482d2ed74d4816b58fc5486988d94949f142a9adb75942Virustotal results 38.33% Heodo