URLhaus Database

You are currently viewing the URLhaus database entry for http://cddvd.kz/cgi-bin/INC/CLF5xelD2/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:188272
URL: http://cddvd.kz/cgi-bin/INC/CLF5xelD2/
URL Status:Offline
Host: cddvd.kz
Date added:2019-04-30 20:49:05 UTC
Last online:2019-05-31 05:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: spamhaus
Abuse complaint sent (?): Yes (2019-04-30 20:50:06 UTC to abuse{at}telecom[dot]kz)
Takedown time:1 month, 0 days, 8 hours, 41 minutes Bad (down since 2019-05-31 05:31:53 UTC)
Tags:emotet link heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-05-02SCAN_861972154479US_May_02_2019.docdoc 6c1d9bbd9dcad8b950dcada8139a8b21e31036ae9d319050f7513d240ef31995Virustotal results 36.07% Heodo
2019-05-02SCAN_4775562152US_May_02_2019.docdoc abc589d5ec63138ee0c588f744cb6c8ba59baed47e9316419c174ef6e6a7e393Virustotal results 37.70% Heodo
2019-05-02DOC_875294320740US_May_02_2019.docdoc 77eb40705926158b5dc43657acd06acbd152a96b25ffa0c7570deb2d30f30a55Virustotal results 36.67%
2019-05-02DOC_42017622601US_May_02_2019.docdoc 77097aa9879009420abd97243ad99b01d6f37aeb4a0f10db935af76d24071f60Virustotal results 33.33%
2019-05-02INC_78896128327US_May_02_2019.docdoc 0a0052896d023efd6db21fdb504e996474df83abcfe4ffb55b55bfd894125505Virustotal results 34.43% Heodo
2019-05-02LLC_308955283096US_May_02_2019.docdoc 0aba359f77ac576510a26b160b60e4b0bc470db5ec0341e64234681ec8c607c1Virustotal results 34.43% 
2019-05-02INC_70033234994US_May_02_2019.docdoc 11f45c2f0d6d243306cbd6c70c01f1efb2050836b14f4d669b7a471511ade739Virustotal results 26.67% Heodo
2019-05-02SCAN_3757649733US_May_02_2019.docdoc 29d5a0eb1f8b938839724b100c9d78b140e82567e8addd0d15bf06f98e61de90Virustotal results 27.42% Heodo
2019-05-02INC_11603346741US_May_02_2019.docdoc 692814008db3acff680edd583633e98789c8458f795753f459410f89869d59cfVirustotal results 27.12% Heodo
2019-05-02INC_6863473597US_May_02_2019.docdoc 3c37cb5bc7d34a299c3442b5d9877e8f4932af1dd6ca5a8b139a668fed5f9786Virustotal results 26.67% Heodo
2019-05-02INC_29824827724US_May_02_2019.docdoc 456c3edf43e0677174dad7da916faec9c2534520655a62ad5be950b123060daeVirustotal results 27.87% 
2019-05-02DOC_7303804686US_May_02_2019.docdoc d208f3eff68d5739131aeb2b16c66c1b6afb8fae27517f1b7b9029d4ef8b1ce2Virustotal results 32.26% 
2019-05-02INC_60644111901US_May_02_2019.docdoc a64dafa37b662494a38730bcc5e028b2531be116573db369d5afc8d881e33f8dn/a Heodo
2019-05-02INC_10083726624US_May_02_2019.docdoc 8715b1a0fca07aa174dff8f761755d3879f305b1c5201960fda42ed8840822aen/a Heodo
2019-05-02DOC_40732975086US_May_02_2019.docdoc fea2192a0625af323042fe1f31e647d6a4be939d0ad615b8eae445e1d29bfd8cVirustotal results 31.67% Heodo
2019-05-02LLC_517355787725US_May_02_2019.docdoc 195a1fb436c1c7497259f18d4332423f886a38242d824dfc498ee40625ab82c5Virustotal results 30.00% 
2019-05-02DOC_01161883081US_May_02_2019.docdoc 8e4a311d2368b3ef3374691d891e860542fbcd33a8c5df81d9264762449a41a5Virustotal results 28.07% Heodo
2019-05-02Document_35512805058US_May_02_2019.docdoc 17f4ae8fba484e7fb87c16216ece4622556d70db4d807d8b0a4ac207eba7d015Virustotal results 35.00% Heodo
2019-05-02INC_7414395482US_May_02_2019.docdoc 8849cbdb89ef44865f23e8745eee176d529ca564c20c66da99aa5c04db555ec3Virustotal results 35.00% Heodo
2019-05-02Document_949173698131US_May_02_2019.docdoc e39ace0837155e85d59f5059bfe202ba3de02a88c848a6067c9965cadb79c5aeVirustotal results 36.67% Heodo
2019-05-02FILE_502066436564US_May_02_2019.docdoc a2fcae9f16ba8a88c03ba2fa986fa6f148dbaeac41f94546467a81b9846ae9dfVirustotal results 34.43% Heodo
2019-05-01FILE_86663120991US_May_02_2019.docdoc 6a817c04b3ec3fb6f85801ecf4999db95505445ecbc8f741cf2985972f2d6f75n/a Heodo
2019-05-01FILE_2949740952US_May_02_2019.docdoc b4acd9d62915cecb1ba384e9ef86b7b9b26f38f0c0ee405ba3b4a396b44b56a9Virustotal results 33.33% 
2019-05-01SCAN_26118148101US_May_02_2019.docdoc c0d56c06f445e3284464894bb9855dac7036a7f5e0da7183ad31c6d0c2477db2Virustotal results 32.79% 
2019-05-01LLC_59166022505US_May_02_2019.docdoc e12f25d5aacd3c073171d6f5613fcca942c7cf9cec4cedbed74acb9dbee513den/aHeodo
2019-05-01DOC_52419903249US_May_01_2019.docdoc 811f6ec9cc7105d1b81e5352a0b9f90df420a293afc43ba91507952e7cb49f72n/a Heodo
2019-05-01Document_75992016936US_May_01_2019.docdoc 72f28f83d17f71068693f8f34ea40d09dc75d111635427f1b58fa9d4cad29558Virustotal results 32.79% Heodo
2019-05-01LLC_156907655605US_May_01_2019.docdoc fa4963b59046a924250a2c0d7599ae98fec4d4d0ba1cdf8de575a7438c570563Virustotal results 32.79% Heodo
2019-05-01FILE_7069683128US_May_01_2019.docdoc 9c51bcdb82373007744c0dd18a11c06decaa000f48880f23f1bf9a335e5af053Virustotal results 29.51% Heodo
2019-05-01SCAN_16219955525US_May_01_2019.docdoc dc49d2d7421719050d62368d665c84629bb08d6874ade0bb8940f133b619d9aeVirustotal results 31.67% Heodo
2019-05-01DOC_52265967778US_May_01_2019.docdoc 2ade167cc02b318750feb789c0476581e4f2e0864c3a51fd65bd74c25534a74eVirustotal results 33.33% Heodo
2019-05-01INC_2703088216US_May_01_2019.docdoc 1a6641086b78035d6c9ba38c7199aac02d37dafbadf96059a81b6f4c35e49f84Virustotal results 26.67% Heodo
2019-05-01FILE_363150326369US_May_01_2019.docdoc 68e686c3f2b87d3169766ffe4bba021a8acd7648ca38c6c75be829a864558ecbVirustotal results 26.23% 
2019-05-01DOC_59652945272US_May_01_2019.docdoc 49b5e70a242f984eadee49435aac4371ca3cb65b02b2f6fbcbfcbfbd9d985782Virustotal results 26.67% 
2019-05-01DOC_14472744639US_May_01_2019.docdoc db1c99298b5e34e6f10a5e054febbbbb8ebf940b4cacdcd1b1f4bf542d7da41dn/a Heodo
2019-05-01SCAN_049137948527US_May_01_2019.zipzip 67eed14b3b4b1bc8ed10b92db8c62f895b0d2c2913913458efb23a19f2b6c932n/a 
2019-05-01FILE_23069355161US_May_01_2019.zipzip e4ea750fd804ce94049d12857bac7a76d4b5e4a78d4e02d430810d45c69c366dn/a 
2019-05-01FILE_512415767654US_May_01_2019.zipzip 9126e036810261a4b9ecdd731cabb0a10677f28e3dcb9269109e53060fc4090an/a 
2019-05-01FILE_00972948354US_May_01_2019.zipzip ec3d60ee921763c81525dafc347bf1d7bb74d85f6b83110bbb1b4e81affc91b3n/a 
2019-05-01FILE_914410089654US_May_01_2019.zipzip d7f2a667d289112e20a5abbe1f7cca6ece2d1541f18b0281ae69a5414c2f59f1n/a 
2019-05-01FILE_2931942678US_May_01_2019.zipzip 2a63c4948a4f0e61376a927876a2837c0d56447618d886908eb115687c012132n/a 
2019-05-01Document_376755749370US_May_01_2019.zipzip bce18d8294a461e8ba9bf0955ae77675de0b09bbded335ce6d703902638c0cf5n/a 
2019-05-01Document_318840388308US_May_01_2019.zipzip 0a01e2bf2697aff27a95b02f83257a6fd778eeb17623fa291b3700009269c5cdn/a 
2019-05-01FILE_641405411974US_May_01_2019.zipzip f151ef8ddd08b734c518f218b72b1515327e6122de3c305cbc86bc7ad2438c59n/a 
2019-04-30SCAN_5139237001US_May_01_2019.zipzip f0652f5036ebaa4d182805f2e2a4947999fa67ac0e2249f92889de5c73a1d7c9Virustotal results 20.00% 
2019-04-30FILE_05707774633US_May_01_2019.zipzip a05ba9457c4ba8fd387e3364cc51db2604b9254d07081ee3b44b799de5c453e8n/a 
2019-04-30DOC_6806688606US_May_01_2019.zipzip a7ca8da776603b659ed57dc862750ba34219e45aaf65eabd864794aad86c9b98n/a 
2019-04-30INC_785462171701US_May_01_2019.zipzip 47b36db6594d7146301a088ffbfc9c56f996af8e5b5383100042b5e0d87aaf81Virustotal results 12.90% 
2019-04-30LLC_7645056015US_May_01_2019.zipzip d4d5c4953a0c8a4ca7d1d00f7a5ed9e70405134e549ee89d844f191ccf453b25Virustotal results 13.11% 
2019-04-30LLC_27924948802US_Apr_30_2019.zipzip 802cc7ca290086fad90247d5326fbb31550cb293b6e31afa59c7e6ebc790f063n/a