URLhaus Database

You are currently viewing the URLhaus database entry for http://zvarga.com/wp-admin/public.en.signed.office.net/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:191701
URL: http://zvarga.com/wp-admin/public.en.signed.office.net/
URL Status:Offline
Host: zvarga.com
Date added:2019-05-06 19:59:02 UTC
Last online:2019-08-12 15:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: spamhaus
Abuse complaint sent (?): Yes (2019-05-06 20:00:04 UTC to abuse{at}ezit[dot]hu)
Takedown time:3 months, 7 days, 19 hours, 12 minutes Bad (down since 2019-08-12 15:12:30 UTC)
Tags:emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-05-086-JBO-2019-16107.zipzip ff50484cd1409d3473c88c89e52bf3c73e7da9e62f116ff42359d9cdf58a1604n/a 
2019-05-0886-XPJ-2019-T184.zipzip 62249231ae0699e26cdbd95843ac24af10571655cdb4bd529b279c36aa4d4783n/a 
2019-05-0805-WQF-2019-J45893.zipzip f182a5c5ed81f084e03ccac9e51c634059229c3d13fe5ff240ae58f0808a4d9bn/a 
2019-05-0868-VKD-2019-V451301.zipzip efc7b4b1a449ad8993fb9bf6c53e866f557f2d67f233040b8f20eaec6d947457n/a 
2019-05-0864-JFD-2019-Z75928.docdoc 190b11df7732d70d534d5f9efc969298fdc931c8beaff3a3b9592494a919fb05Virustotal results 36.07% Heodo
2019-05-082-BH-2019-D32246.docdoc 98c46f0bb26e4e59538488565084fce2edce3ed4bdaf1548e64cdc5e61ff95daVirustotal results 35.48% 
2019-05-085-ZLG-2019-049.docdoc 58b0c3490de0d0f8ba240f9f695e80b652d48e1ebf6107ac46905553ea37c04bVirustotal results 34.43% Heodo
2019-05-0816-PTY-2019-C2393.docdoc f5959bc6b3e669fbf9daa1826db0246dc4c05af7428b78675316623a41a288b7Virustotal results 34.43% Heodo
2019-05-0857-AT-2019-93050.docdoc d448eb94b5e8751acbf1985ee01d4e74cf5e8c057788b925d7317b7b425d8d73Virustotal results 32.79% Heodo
2019-05-087-UF-2019-7207.docdoc 5691e8df84dece6ce7b50e4c289acdb5a7c17d2d0c773635bd56faee9dfcd8e3n/a 
2019-05-0835-XB-2019-G783131.docdoc baf9b54f6efd1a6b5d9619c9a8adb66c56304883959e13506727841aef26e28aVirustotal results 35.00% Heodo
2019-05-085-KP-2019-7899.docdoc 2f4a8482178f88a6a82aab7aa00505ccd1692da3234d17957f6e95ec7ae12f4aVirustotal results 36.67% 
2019-05-0864-FOH-2019-1733.docdoc 5da184f6d3b18a2323e7bd3f14dcca6c2cec98eb2fd7aa11a4d5a6dd14bd9ab0Virustotal results 34.43% Heodo
2019-05-0891-QK-2019-Z755.docdoc c96aff88540493676e47a11d3dc2e966a1dbf536ff7bfe9f566a62b19ab0851bn/a 
2019-05-0877-WOL-2019-68767.docdoc 64449fb77436bb96215b647f24e1f572c7da6f73238cbc390b011039f94e434fn/a 
2019-05-0820-DRD-2019-Y8635.docdoc 66d31faaa38c9bf8a46114974ba396590b0022c29007fa95b271e431f4a7b5a6Virustotal results 35.00% Heodo
2019-05-087-TLE-2019-576.docdoc faa93a52464667dc92e4bbcdb1ff53705153cac70e629c31c8d536ec604bfaf9Virustotal results 32.79% Heodo
2019-05-0880-CCP-2019-B945.docdoc 9b1ee33ad69ae1b8c13bef2d7df35bd903703fa8c30744e2cfd9f7130c728ff6Virustotal results 32.79% Heodo
2019-05-0832-QKR-2019-201148.docdoc 34598c1d258661e7d512b46602d5f1260a52a1a0a039c1687af0dd11e404a449n/a Heodo
2019-05-0895-WS-2019-Q78506.docdoc a11b7de80e066d3c06ecd25f055575ea500d8df54e97c707e6ed354cc7fe844cVirustotal results 30.51% Heodo
2019-05-0876-WF-2019-848165.docdoc 735d79ebe44a283b4c97f2678b0879451f8f44c210b212aa749d9d47196041e0Virustotal results 31.15% 
2019-05-0840-NDY-2019-11127.docdoc 99abc56ebba7819a27bfef97998622a7082c44eb00aa6f4e225a77af0e257ba9Virustotal results 32.26% Heodo
2019-05-087-GYJ-2019-N848.docdoc 1445c07e94df1aab9b8d29c8bdc0d2dacaf61c5af509c9fd4e77b252a4259f71n/a Heodo
2019-05-0860-EEY-2019-78693.docdoc f13b12b90d3f13577fb85c79d91b639adcfb07d1ac2216c74158f64a6e4659caVirustotal results 45.90% 
2019-05-0897-OW-2019-2011.docdoc ea5d4c535f425371ab118f223fa14e9f54201700f1302e4b30fbe68f9c445b3fVirustotal results 46.67% Heodo
2019-05-0810-RAK-2019-36218.docdoc a4c4dcf79d6b070599d3a813d8b542c8688a393b69f816012924b9f4d7f04059n/a Heodo
2019-05-088-SDM-2019-426281.docdoc 41289082e20c3e62e9f052b546c976a55040189acbb92e08c27bf88ad815807bVirustotal results 43.33% Heodo
2019-05-0858-KA-2019-358723.docdoc 945d2d135ae3508e486be34ea2bea9305c48a699ae6447462ee1f251e4fd3b15Virustotal results 26.23% Heodo
2019-05-0824-BWN-2019-W83763.docdoc bef91b7b69c2e4ef09f2b8b703a6bdb42a2d55e2a31fcc201f02c8f755ab7ab8Virustotal results 37.70% Heodo
2019-05-0752-QR-2019-Z4716.docdoc ebb1ef08bf0dacbff6724a7d5852c5c3553d30ea64399c5f8e5b9bc40b3e5207Virustotal results 35.48% 
2019-05-0746-DT-2019-D104.docdoc 6359cfca4c3a4f6c657c285c6840af0bc66e00fcede8f7e2d3aa8e5bb96a24c4Virustotal results 34.43% Heodo
2019-05-079-HA-2019-M497772.docdoc 07a44560da37fb475f59d60fcb3da3094ef2754f807a5cf136cc3fa2cc8ebc00Virustotal results 32.26% Heodo
2019-05-0761-FH-2019-F9162.docdoc fdabc899b0c2bc25cb3b6ec69d5fa312aa2522202c2db571919fd227df45b278Virustotal results 31.15% 
2019-05-0776-CBW-2019-M73553.docdoc 2a220f10836a32e58bdd6096fd417f0f03d17916e9979769752e0b8b9b2a6805n/a Heodo
2019-05-0761-IFE-2019-098330.docdoc 209f2ee22799264f2cbb508ff8900a5d57ea781337ac201e0bfb369fa9c2a3edn/a Heodo
2019-05-0753-CVX-2019-76533.docdoc 60bb2ce43e570332c0be1d94bfa8515064915d9ae18ddad233b1388cc77e2e8cVirustotal results 25.42% Heodo
2019-05-0730-XIJ-2019-95616.docdoc dea431a8c3fe4a3f34f537e08d4beecb5caa79d55fe2356950a38dec23a70b6cVirustotal results 36.67% Heodo
2019-05-079-LBO-2019-Y037.docdoc f764a55a4024b3a8d23f0b5a61a726fd59aedf548830738afb588341c1ea0036Virustotal results 27.87% Heodo
2019-05-0715-GL-2019-D10356.docdoc 0601a07c6c366ba5bb64c7c9eb7b699fbed121e8fb46ba45f27fbbd0626ad9d4Virustotal results 26.67% Heodo
2019-05-0720-HH-2019-361.docdoc 8f28975abe7d2c58ace078246cb76977f1205cbfaff1a7129138c34fb47ea8c9Virustotal results 23.73% Heodo
2019-05-078-ID-2019-X955785.docdoc d63aaf83931b2a29d6f8c81cd8e887fa7039eb367eac18fb97c0ba0c03a088b6Virustotal results 23.33% 
2019-05-0710-WX-2019-094159.docdoc c938e12aa898228c05c7f6257ebea9c6b22b9d842573043edef70cc5e2ef21acVirustotal results 18.97% Heodo
2019-05-0729-AY-2019-310706.docdoc c525b8029ec1130157b451cc56795671c6df9d657e14af2762ecd0cea1fae08an/a Heodo
2019-05-077-BP-2019-2458.docdoc d8197be241c31cbdc24b2d8ce9be49af92b9a3e6c8b7e2836e86ce8bc2fd4450Virustotal results 21.31% Heodo
2019-05-071-RW-2019-T915.docdoc ac61638f88d3794d98217ca3901106fefd3fe2f4130814fa128a5aa8f0de6f42Virustotal results 20.34% 
2019-05-077-XT-2019-254445.docdoc 20aeaeebf833ae4f6a59832c968a91e2456c036c9ff03194183b346b5a9f4e31Virustotal results 22.58% Heodo
2019-05-0773-FNO-2019-499242.docdoc 6256b73b3911720f9a87de3a868dc2a556e7f55498d2f5d1a7bcb5f67faf25can/a Heodo
2019-05-078-BYK-2019-4386.docdoc 79a041b550ffa918f27405f205525df208b7e220fe37c7e1993fe297405b5b05Virustotal results 26.67% Heodo
2019-05-0739-QPO-2019-982.docdoc 02a77e9ad7ac8f2cd6db175d49ecb94442138764932e506d785614f0062dc5c0Virustotal results 28.33% Heodo
2019-05-072-UT-2019-B02941.docdoc e3ccde3d835a7ff85966f662b42ae1448d8d04f5981d42a6de14dcedb5c50750n/a Heodo
2019-05-0739-PBW-2019-I4881.docdoc f35175d9815fc73f70f152d87e4b1f7f1429e1876ae82839d4bfcfbddb156496Virustotal results 26.67% Heodo
2019-05-077-GN-2019-95230.docdoc 8ace4c9ca2d0848d592a4ec9faaa4ccc58818ba5c000ff44ab0e28ea7ad3d529Virustotal results 26.23% Heodo
2019-05-075-ZRC-2019-E61201.zipzip ca016bf18860b9004cf58dfd2341d3ea05378f93ca26c86442f76919df863672n/a 
2019-05-0752-PS-2019-F114.zipzip eb252a82cfe1fb53e5268f1f6113ce75ede9c71b8390b4a371bbe11a9e972fd9n/a 
2019-05-075-OZG-2019-01885.zipzip ff4098986f23384c44ce4a0a1bb0336ceede4f685c7a26244a65e437b382f604n/a 
2019-05-079-WOR-2019-P2051.zipzip 123bd2656caae646dd3606fbbeff51b38732b58dee9a84d6d95b7eccde985005n/a 
2019-05-078-LP-2019-J690.zipzip 79395715dd75e3d3d78d5f45b9ec50347e64c808b032656a69629b5c76f28afbn/a 
2019-05-0793-VQM-2019-4824.zipzip 32ff5ef60248765a888ce12cad62b2013254ee24d08f1f098345e4dcc180684cn/a 
2019-05-0774-AW-2019-300995.zipzip b97c0de673e39a40bec666d22a9185381d4529a34df2879928ad3967d3c6d0e0n/a 
2019-05-0720-RK-2019-44161.zipzip a7c8ab7eaffdd6ddbb20b815245bfd860c1878ab712a2d6cbdaf14894f6f9723n/a 
2019-05-0758-KZ-2019-73705.zipzip b6014273405a857f4c9dfb100c00b73fb79bea4fa2ce9a9246067eb00dc40e0bn/a 
2019-05-075-THC-2019-3916.zipzip 05fa3b61a689b401d4c9255e2877ae180083c451f1d43767cf93f3235f9e3668n/a 
2019-05-067-YE-2019-041443.zipzip c44bb722634d77c966926d765bc80ae849374bacde3c672d83295ac94916611en/a 
2019-05-060-BLI-2019-49443.zipzip c71c2adaecc1944a7c0704f75509a2621da96e591c1fbd313acae6b4629c57d6n/a 
2019-05-0688-SM-2019-G11006.zipzip 34326a4d4867163e9d9acd2c17344d33e43482ac9b4d7850c699b4e02d3c40b1n/a 
2019-05-061-SE-2019-99016.zipzip 7ada5582e3f20b4a6ed8aca5dfdb7966a7654ca8e5830a006f162967cde33ae0n/a 
2019-05-069-VFH-2019-1730.zipzip 675b6a956b86f0d46f8b88beaf62aa4043ba781d5122a81820cab222d9a6cf6bn/a 
2019-05-064-SNW-2019-O708.zipzip 1cd96c57db803f6cdbf00d8940fbb29a5385bedd3310eed6232396b5277af726n/a 
2019-05-0699-JC-2019-312157.zipzip 56b4c329c0277647e7a779fccdfd9fe3942310879933ce5bb020aebd7ff01816n/a