URLhaus Database

You are currently viewing the URLhaus database entry for http://designworx.co.nz/cli/Document/UCpCKXtNHVJMX/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:192605
URL: http://designworx.co.nz/cli/Document/UCpCKXtNHVJMX/
URL Status:Offline
Host: designworx.co.nz
Date added:2019-05-07 23:47:07 UTC
Last online:2019-05-09 17:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Blocked
AdGuard :Blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: spamhaus
Abuse complaint sent (?): Yes (2019-05-07 23:48:03 UTC to eig-abuse{at}endurance[dot]com)
Takedown time:1 day, 17 hours, 33 minutes Poor (down since 2019-05-09 17:21:28 UTC)
Tags:emotet link epoch2 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-05-09DOC_796326834214US_May_09_2019.zipzip e81d035a46e6f6ab25cbcc205b96fb52169fd17f44ec98e52543fb599835555an/a 
2019-05-09INC_389790472231US_May_09_2019.zipzip 74b9472a093fd74f5c0c14869dc1a9ed4247bbe435d48f55858c8847c7ebd13en/a 
2019-05-09INC_7520504067US_May_09_2019.zipzip 0d6f26bac13f996b9b305f6363b5b75919112be2921ea0d54253f5e04324e22fn/a 
2019-05-09LLC_47152489547US_May_09_2019.zipzip 2e07262c1018f91c29c56b05a3cc14188f85022df5f5a19bfb8c85ed8912e942n/a 
2019-05-09Document_591315271335US_May_09_2019.zipzip 23c4a478d8374a3657cc77e12523dc717ea3848be853db314d1cf19cd9f38a76n/a 
2019-05-09Document_773770454124US_May_09_2019.zipzip 477cea4a099227a1bd01f47b90fc41e91806717e28725e02a4ceb9b81216df5an/a 
2019-05-09INC_7240199171US_May_09_2019.zipzip df206da3067d983ed6865f151d2bce98102d4697f88739189f63194f36bad5e4n/a 
2019-05-09DOC_98551607186US_May_09_2019.zipzip 1a7b6761bc87f28222a4ef401a88a476a7bc0a9750636067432cfd3d77001ffcn/a 
2019-05-09SCAN_5434674276US_May_09_2019.zipzip e294150c953d8f4d8fb9077fb850332634e0283d12f2fd4a08f352de9bff8197n/a 
2019-05-09INC_174243453803US_May_09_2019.zipzip ce7caf3cd81b1b48a4fbdc67eb1665cd19a05049e1620b73e0a7de35b562046bn/a 
2019-05-09DOC_662967602047US_May_09_2019.zipzip 49780af5e30018d41dd41e234f77c1fe1b0fc43c463e1610ffaa74ce14fbccb5n/a 
2019-05-09FILE_37824175504US_May_09_2019.zipzip c4d19d9e3167309defbdcd083c5ac1e5ab7bee49752d4a8bc5dd77bc0d03954cn/a 
2019-05-09SCAN_2362974970US_May_09_2019.zipzip 7447a740b3385cd886727f8d92ed76acf35c88b0feb4108f8d089d25c382c3c3n/a 
2019-05-09LLC_265443029692US_May_09_2019.zipzip 18fa4e44b816aa70a26bb72db3c6385f69ec8319134c1fcb05a07ce985bc8319n/a 
2019-05-09LLC_3031305003US_May_09_2019.zipzip 18c6fd43c1f223b0583c4c7a1ae84f25c9ebf0748ecf8e84cc2bc1d491933370n/a 
2019-05-09FILE_361177110162US_May_09_2019.zipzip 48f73f8c43ebed0a9bd06b71cde5982fae81519c4403b984561b17e748f91b72n/a 
2019-05-09Document_0631950302US_May_09_2019.zipzip 7c12ea839e5a3ef4cef28246cd5554b52de4fc388e4fc901b8e0ee32d34e4e8dn/a 
2019-05-09Document_9587664472US_May_09_2019.zipzip 0b15b779be266ba6492f956166ee3be0510434bf1b6691256f3f25c2e0ffdbd2n/a 
2019-05-09Document_778832303733US_May_09_2019.zipzip 531b01edbd88b81cdf434bbae2befc4a51bb71b75f351d6527ed61415dab50f0n/a 
2019-05-09LLC_5521732191US_May_09_2019.zipzip 0a6d3a16802c160f13ab22870b82991f89c8b0622d252e05ed3729c7465affd0n/a 
2019-05-09LLC_174150051557US_May_09_2019.zipzip fe58106a8885080f6289ead11f1db529eca2a55642f6e8ec19b49411620b57bfn/a 
2019-05-09FILE_4865593404US_May_09_2019.zipzip 84293e8147455aefc5a3195f56911e8d9c12ba358eaa110259822c091bfa58a1n/a 
2019-05-09SCAN_5858761245US_May_09_2019.zipzip 1c14618fe9b2dc0c8f51869ec95a8e7a6a59224a3168ffbf17adf1c05bc0a2b7n/a 
2019-05-09LLC_071876086851US_May_09_2019.zipzip 0a92f7b1c0d8507b76b1aa1e76933f15473b0b2fb0d9d32f7d9260faec962540n/a 
2019-05-09LLC_01073187861US_May_09_2019.zipzip de627ba38e1e45019c577e52dfcc35bc0a711bb32cf0de21b2fe918348a7d818n/a 
2019-05-09Document_3267343555US_May_09_2019.zipzip 95751ce154ed199dc69de6f826c724e1a22a8fcafe3f97ba4475dc910cf20351n/a 
2019-05-09FILE_612161996866US_May_09_2019.zipzip bf4b90be5e1f7d4c2cf8269007ae9ab4c5d1ce1e4b35533cb1288a645bae4090n/a 
2019-05-09SCAN_232534510913US_May_09_2019.zipzip 637f18eaaf41cc49b884a6c72ab818bce7f2828735c310e43be24c0c6e799d9dn/a 
2019-05-09SCAN_073321989921US_May_09_2019.zipzip 43e3b31d1748ad701067fee89d94300cde179f7ae915093748bfb9ccbb583850n/a 
2019-05-09SCAN_336564463129US_May_09_2019.zipzip 0361e73d1f9ee0e217362bd0fe13e74217d1ecbbc6b92875704381d844204b9an/a 
2019-05-08SCAN_0490497849US_May_09_2019.zipzip fb28ae5f6de36e95817112b952230532707d82e1bdcaa66b5dfa49e9ad00b8abn/a 
2019-05-08FILE_90006034714US_May_09_2019.zipzip 9823b207f6f0902152259ba62a37f9914d6d7b3c9f1530a8ae3713aa07589b45n/a 
2019-05-08INC_8887417960US_May_09_2019.zipzip 9fea306e05174cf240de632a17ffd9f3e5c6259740f0113ad1d183db1f78a737n/a 
2019-05-08DOC_4740383708US_May_09_2019.zipzip c8ca8842a32f059ff7784baac90e752bf42ef149fd4c8b2d52ce8d2d8a36c2adn/a 
2019-05-08FILE_0755078104US_May_09_2019.zipzip f2b440c4adef0c6715ef21d1107537d4770ecf0a060cac40bf047a7d58795397n/a 
2019-05-08LLC_948314972279US_May_08_2019.zipzip 5fd88b8541b0233b6b8faf006d4eddc6f981c4722ca77e25b98cbdedf2aac58en/a 
2019-05-08FILE_521279825161US_May_08_2019.zipzip bf768fae424c1b6af6791ae34b4290d927eb9ce93152964864f547616a01e223n/a 
2019-05-08LLC_87798208711US_May_08_2019.zipzip 93f99c9037d6b2f7880d9fc3c1b1d333bd5459490361f00e610f2dad13b787f7n/a 
2019-05-08LLC_7162045538US_May_08_2019.docdoc 37390a65227c1c3d33a74d43898940cfd4690953cea047db95f39e191a20dfb2Virustotal results 32.79% Heodo
2019-05-08FILE_944148665100US_May_08_2019.docdoc 4ba386fc55054b552861920518ad12c69e8d9879a3e8b2e7ec433f06f7c28d1dn/a 
2019-05-08FILE_76039564727US_May_08_2019.docdoc 71185c9cc943c6cc503e108507f5cab7834203a833eb3597487f24a5cb3822c9Virustotal results 34.43% 
2019-05-08Document_569172618695US_May_08_2019.docdoc 4987eff30322e183f2564965c47cb409b92b466095d4c7ff3583b57419cc4cb3Virustotal results 32.26% Heodo
2019-05-08DOC_58430307054US_May_08_2019.docdoc adfb40518e76da88b465cac35e6c32bb025e1f0188d96470a06ef516aef5d5eaVirustotal results 31.48% 
2019-05-08INC_967280272906US_May_08_2019.docdoc ccf713f98bfa24d4b3aaa4ac68b4b990b777b99c20b6bb61aa6ad25538f50bb7Virustotal results 31.67% Heodo
2019-05-08LLC_665308218495US_May_08_2019.docdoc 55b414fdc1fd75ce344a26606b4f1a0260a4867c0a35a202a08de8f3d6c2bd1bVirustotal results 32.26% 
2019-05-08LLC_6138737599US_May_08_2019.docdoc 9fff48d7c0f4494bddbba99f1e95a2de9bcef7435ebc10c66d6b62aa57f62e95n/a Heodo
2019-05-08LLC_232294207956US_May_08_2019.docdoc 76078c12f217788bc8a017d80c6a7e207a86a0141792fe1e43009847c44dd365Virustotal results 32.20% 
2019-05-08SCAN_5311571362US_May_08_2019.docdoc a6654bf3a1dc1407b542532d1a9d11c30b84cdd9cc736abccfec742eb677b117Virustotal results 32.79% Heodo
2019-05-08Document_4187195160US_May_08_2019.docdoc 033473cc78cd2c60e3bb42a6e5d9fb35fb15c5dfd748b7f0b35eaa606fdf8652Virustotal results 36.07% Heodo
2019-05-08FILE_764919123315US_May_08_2019.docdoc 56a81f054ec9d600f1085245e2cb9e6e88794c3c91069b4f088a764fa03e9021Virustotal results 37.70% 
2019-05-08LLC_78279383008US_May_08_2019.docdoc 5610fb4f2521abbb5a78ce55ce5efaf6ea7d9c3125baeeb653e9248053417e8cn/a Heodo
2019-05-08SCAN_02926406259US_May_08_2019.docdoc 0f13e41640e9281bb775ba53333af8c80f0ac73b5436fb497910b3cdd397aca0Virustotal results 31.67% Heodo
2019-05-08DOC_294469208668US_May_08_2019.docdoc 154e8aaaf4a5e299f3f5db330ad353ba64c111c7ef8e1c52b75b9d356aede4efVirustotal results 30.65% Heodo
2019-05-08Document_3700069364US_May_08_2019.docdoc 713b34f0494e837eb6b50e34b67c944ca9b271f30fc81ae59ce8cecefb835f37Virustotal results 30.65% Heodo
2019-05-08DOC_30996430753US_May_08_2019.docdoc 70f4d11f59ab292faf7be98442a8075b1847f6201ae29f07525107fcf44637ebVirustotal results 29.82% 
2019-05-08SCAN_16768025689US_May_08_2019.docdoc ba914a678ad010cc2bbe98ad8eedf42154633867e2a9222186c7ea69f420826bVirustotal results 30.65% 
2019-05-08LLC_26400996900US_May_08_2019.docdoc d7fc74cd2d6f34bcc7e02522812778a91bbc6591f4805164208847add84ecf2eVirustotal results 33.33% Heodo
2019-05-08LLC_99179411359US_May_08_2019.docdoc ca3df80f2b645b8d3eca905f0640d605b9d70f79ae9424e883fa73c50ec1fe88Virustotal results 33.87% Heodo
2019-05-08LLC_33130539662US_May_08_2019.docdoc d97f2899ee64066ec4a0e641b598c9203a52800de6f3bebe11edad394043add7n/a Heodo
2019-05-08LLC_366943970761US_May_08_2019.docdoc 942c15d908cca46bf861a0f12afaa5564f358631ac5438f46dd8aec5320ec8caVirustotal results 25.81% Heodo
2019-05-08INC_6261378285US_May_08_2019.docdoc 4f55f58bff347fb85cc57d6ca1b3558cd0854ab94889455f7c9c297e0a53f296n/a Heodo
2019-05-08DOC_78642656337US_May_08_2019.docdoc 1667101838ea1804515221c8a6b6b55f2629605f5900e10f5ad9681d62659ab7n/a Heodo
2019-05-08SCAN_6437115667US_May_08_2019.docdoc f47066b0cc76015cc75de6b864de2d94048b07e5907d3aa8de1716050d655b22Virustotal results 28.33% 
2019-05-07DOC_640190257933US_May_08_2019.docdoc 0a8b639c5a7cea57c3b32100976afef1f1582399fe60ad44fa09edd0401a5cc1Virustotal results 28.33% Heodo