URLhaus Database

You are currently viewing the URLhaus database entry for http://uztea.uz/wp-admin/INC/exDvXpp6G/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:188142
URL: http://uztea.uz/wp-admin/INC/exDvXpp6G/
URL Status:Offline
Host: uztea.uz
Date added:2019-04-30 17:29:05 UTC
Last online:2019-05-22 16:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2019-04-30 17:30:08 UTC to greg{at}uzsci[dot]net)
Takedown time:21 days, 23 hours, 18 minutes Bad (down since 2019-05-22 16:49:04 UTC)
Tags:doc emotet link epoch2 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-05-02FILE_531959488839US_May_02_2019.docdoc 0b7bd2da70c954088c58dbc28b9470dbb262ba21c13648eafd0a15b4814cf9d2Virustotal results 34.43% Heodo
2019-05-02INC_71959934665US_May_02_2019.docdoc 592706d46283eeff5a73e3bc816333334ae78f9d1f8162cc5517f402646e8f71Virustotal results 28.81% Heodo
2019-05-02DOC_9979962858US_May_02_2019.docdoc 11f45c2f0d6d243306cbd6c70c01f1efb2050836b14f4d669b7a471511ade739Virustotal results 26.67% Heodo
2019-05-02SCAN_29626310030US_May_02_2019.docdoc b35b244a1b523f3cf796b6c6dbfe4a4d0fe1b3f733b6410dae9c86fb60128318Virustotal results 30.00% Heodo
2019-05-02INC_08539276420US_May_02_2019.docdoc 692814008db3acff680edd583633e98789c8458f795753f459410f89869d59cfVirustotal results 27.12% Heodo
2019-05-02DOC_33807580986US_May_02_2019.docdoc 676593b3137422bae95a34c1bc6e6c4966e8a1895feb948faa1c8edddef80e2cVirustotal results 27.12% Heodo
2019-05-02FILE_735936522613US_May_02_2019.docdoc 456c3edf43e0677174dad7da916faec9c2534520655a62ad5be950b123060daeVirustotal results 27.87% 
2019-05-02INC_8401361821US_May_02_2019.docdoc b1dced28edb0f204dfeddacb104281bf43b041d6dfb17f063aed46e5b5437998Virustotal results 33.33% Heodo
2019-05-02DOC_8801902272US_May_02_2019.docdoc c00f51900f0ea1f2b2f180fce863a775f22285c5e714f71db05511ebbff40bffVirustotal results 31.15% Heodo
2019-05-02FILE_029584534581US_May_02_2019.docdoc 8715b1a0fca07aa174dff8f761755d3879f305b1c5201960fda42ed8840822aen/a Heodo
2019-05-02LLC_79906896633US_May_02_2019.docdoc fea2192a0625af323042fe1f31e647d6a4be939d0ad615b8eae445e1d29bfd8cVirustotal results 31.67% Heodo
2019-05-02Document_2079447552US_May_02_2019.docdoc 195a1fb436c1c7497259f18d4332423f886a38242d824dfc498ee40625ab82c5Virustotal results 30.00% 
2019-05-02SCAN_1927928737US_May_02_2019.docdoc 8e4a311d2368b3ef3374691d891e860542fbcd33a8c5df81d9264762449a41a5Virustotal results 28.07% Heodo
2019-05-02LLC_37185473834US_May_02_2019.docdoc 17f4ae8fba484e7fb87c16216ece4622556d70db4d807d8b0a4ac207eba7d015Virustotal results 35.00% Heodo
2019-05-02LLC_7539753989US_May_02_2019.docdoc d450310c315301ebd8307408f8a534d6fd108c8649bdf0557d2c375fd7feeac5n/a 
2019-05-02SCAN_0971818429US_May_02_2019.docdoc d0cfa6322bfd78d66cbe8513075fb57b181eb60560ed6558c707d38110fc9c95Virustotal results 35.59% 
2019-05-02FILE_2253936431US_May_02_2019.docdoc a2fcae9f16ba8a88c03ba2fa986fa6f148dbaeac41f94546467a81b9846ae9dfVirustotal results 34.43% Heodo
2019-05-01SCAN_5493513471US_May_02_2019.docdoc 6a817c04b3ec3fb6f85801ecf4999db95505445ecbc8f741cf2985972f2d6f75n/a Heodo
2019-05-01FILE_52238696429US_May_02_2019.docdoc b4acd9d62915cecb1ba384e9ef86b7b9b26f38f0c0ee405ba3b4a396b44b56a9Virustotal results 33.33% 
2019-05-01DOC_9355288044US_May_02_2019.docdoc 1f4a46bf19d090bee1282d5920e1ce502620c0a50cb4d5165d735d5b52e4a79eVirustotal results 33.33% Heodo
2019-05-01SCAN_3815022802US_May_02_2019.docdoc f28f62f33ff6ea0d8d9708e54142e83603afe0bcdcf1206bca2f2dfa00e05b0cn/aHeodo
2019-05-01Document_9184930262US_May_01_2019.docdoc 811f6ec9cc7105d1b81e5352a0b9f90df420a293afc43ba91507952e7cb49f72Virustotal results 33.33% Heodo
2019-05-01DOC_97121587380US_May_01_2019.docdoc 72f28f83d17f71068693f8f34ea40d09dc75d111635427f1b58fa9d4cad29558Virustotal results 32.79% Heodo
2019-05-01DOC_58146847901US_May_01_2019.docdoc fa4963b59046a924250a2c0d7599ae98fec4d4d0ba1cdf8de575a7438c570563Virustotal results 32.79% Heodo
2019-05-01FILE_14282155490US_May_01_2019.docdoc 9c51bcdb82373007744c0dd18a11c06decaa000f48880f23f1bf9a335e5af053Virustotal results 29.51% Heodo
2019-05-01Document_75548158013US_May_01_2019.docdoc 854cdddb19feff91dc4b4fba1ec91452c996a460cd5bd9ea2ff6e88f8c20f66cVirustotal results 31.15% Heodo
2019-05-01Document_3715142934US_May_01_2019.docdoc 930cace84e8704d5385df2db7557c7d3b2a183de3ffad0d3a51291745b4f9f39n/a Heodo
2019-05-01SCAN_3245075599US_May_01_2019.docdoc 7416ebc5373fd8a3ec9ece1dff46c15699738491d703b47f20ae4de8c59bcef0Virustotal results 24.59% Heodo
2019-05-01SCAN_412929976134US_May_01_2019.docdoc ed12cccf232d6e24b35f114e6c8c3e2fa856a5bcc7ea2c64cd17774aedb83f7bn/a Heodo
2019-05-01SCAN_92339226558US_May_01_2019.docdoc 42981d37b50801d5cdc23d5d9f0a1e0e20f3787e24c4d20f606d2250ce5bf804Virustotal results 26.67% Heodo
2019-05-01FILE_51012038214US_May_01_2019.docdoc 6f926261cf70832a6f3332c727eb674da29212109a968a25cab4cb92fced7694Virustotal results 25.86% Heodo
2019-05-01DOC_84928866243US_May_01_2019.zipzip 725269dbe18e7a241247c6aa4a4ff85d9a1aef884dc02fd675c8091a48602730n/a 
2019-05-01DOC_6386817471US_May_01_2019.zipzip 6da9a2a703c60acf8b84106383b1a97091379e7077e93ccc5b94e6e8cb067b11n/a 
2019-05-01INC_880165775202US_May_01_2019.zipzip f5f80b2dbe4e33459954e28f69c299070beb06b8e85678b53a6774aceb5b4518n/a 
2019-05-01INC_1458753788US_May_01_2019.zipzip 47ebca418dd5c4797ed0a14e6a8588b80d4c66b1854351f46152fd951f00782bn/a 
2019-05-01Document_828387225639US_May_01_2019.zipzip ddb7eaef0eacb39c6d849d6601642c5acc76deb66d85dbc1e1bd76919eed499en/a 
2019-05-01DOC_563848057766US_May_01_2019.zipzip b04034b4a9617ce29c421a3422f772a1a48e2fee6e2b813fb09d4648c00a5efan/a 
2019-05-01FILE_275609854236US_May_01_2019.zipzip d42ad6c333a5dec5e8cf1aa8f71759744df65efa158ba1bc5bf22364c7727273n/a 
2019-05-01SCAN_9030677308US_May_01_2019.zipzip 37af6a0b12cb4453bb2f50bddf4194dae866ccacede99963c4346bd09a5363cdn/a 
2019-05-01INC_052148782416US_May_01_2019.zipzip 385e391c9b5af482be411845a59d0cd6359ac3cb825388eecc3c507103d4692cn/a 
2019-05-01Document_2265181523US_May_01_2019.zipzip 5a350f35a8dc135629f65b1bfb65e9b882ea9659550c4154f10e5d9085963b4cn/a 
2019-05-01SCAN_1063151983US_May_01_2019.zipzip 593b26fcfa71afdc94d31e3205d7059bde77ca644b4fdae8aff4cba55c8617e1n/a 
2019-05-01Document_21137414749US_May_01_2019.zipzip 12c8253ca09e7b6391691e33517cbb60fa35fb6d0b409e3240e490bec2d7086bn/a 
2019-05-01Document_42584833669US_May_01_2019.zipzip 61a0c9af59b6924f05c8b7a513d5062843a1172e26801e1e86e75255d209c5ffn/a 
2019-05-01FILE_1261427075US_May_01_2019.zipzip 4a3a45186e4e7b740bdb3220ba98ea286e71d8c318e3901a111a8d2c7e49168an/a 
2019-05-01INC_587856358295US_May_01_2019.zipzip 46adf56ee86bdf87b56dfbd45c26ac96a49616d925505f91aaee85bf88ae1fd4n/a 
2019-05-01LLC_90288114482US_May_01_2019.zipzip 49ebc9459aca1a7671fc9afb595e04668df0b57e23d2401d5c97e7dd1ea33cden/a 
2019-05-01INC_99562040624US_May_01_2019.zipzip 874e41b131973b203c0fe5cd2111091767744355b3fe79fc9bd04c4354868a0dn/a 
2019-05-01DOC_388544609827US_May_01_2019.zipzip 338cde82f17dbd552d7178790fc327a2292d8909ac8fc4acafb677c56a082a29n/a 
2019-05-01LLC_09071041462US_May_01_2019.zipzip 52a3625dbe377cea3f0805c48f7d79ec9dd58138e2849fffb99c02c7291fc38an/a 
2019-05-01LLC_41578760015US_May_01_2019.zipzip 45da17a130ecb396cfd64a4b39d588e668b5af5ab41340facbe0d9db4645b386n/a 
2019-04-30INC_88070557080US_May_01_2019.zipzip f225e1bb9ace5af458d9c78e12b08e745b09776f995cb3be31b375ddfcac0b13n/a 
2019-04-30FILE_097537388837US_May_01_2019.zipzip be402f582fbd56b6175d52988b451475c52831e8702498079a117cd78cdc5c6dn/a 
2019-04-30FILE_3419247512US_May_01_2019.zipzip cafdce7fe260056e356137198d761ac509b4c0038ad4cdf03e74113ff00f808dn/a 
2019-04-30SCAN_6846470821US_May_01_2019.zipzip 14eb703fe6259c3528f195147cfc2f4511a30476b1087352e882c183366cb802n/a 
2019-04-30LLC_165618035302US_Apr_30_2019.zipzip bde2ab643aaa55e087984201a32cb17619a3d5c89705e2166e05d4bc3bc79590n/a 
2019-04-30LLC_773015779531US_Apr_30_2019.zipzip d3675f0f9f39590e5ac3a0a4c94cc88cc8dee05be644fdbe9d1ee0651e44e25en/a 
2019-04-30INC_579936061285US_Apr_30_2019.zipzip 5130e98f0d84b20e0885194326ff2ae1c97088b72aa0ec899c28b29c39aad89an/a 
2019-04-30SCAN_16343630344US_Apr_30_2019.docdoc 8430c4680ac5779d052836f9fbdbdb6a9809d1eb8c62246036e89c5c919312dbVirustotal results 48.33% Heodo
2019-04-30INC_946496254371US_Apr_30_2019.docdoc 026a3e3fa8543fcd8e57a4c32a90a87e41938dd8a27b2ef685b7d89303667f3dVirustotal results 48.33% 
2019-04-30INC_821883254289US_Apr_30_2019.docdoc b1cdd9d5deee35391445ab89e7432f560d42d2ff54a7e463ba09be2cce87ad01Virustotal results 48.33% Heodo
2019-04-30LLC_6510764670US_Apr_30_2019.docdoc 42a04a35e214a16dcf1a928a99faa2648c7a34562eead18fa516512fcfa784baVirustotal results 47.54% Heodo