URLhaus Database

You are currently viewing the URLhaus database entry for http://tekbaz.com/assets/TLEgzl_04973/?i=1 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:1986723
URL: http://tekbaz.com/assets/TLEgzl_04973/?i=1
URL Status:Offline
Host: tekbaz.com
Date added:2022-01-18 15:24:05 UTC
Last online:2022-01-19 17:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2022-01-18 15:25:17 UTC to abuse{at}digitalocean[dot]com)
Takedown time:1 day, 2 hours, 14 minutes Poor (down since 2022-01-19 17:39:57 UTC)
Tags:doc emotet link epoch5 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2022-01-19416057008_8177.xlsmxlsm 6611e1be49fc1e4cc8c8e6795521596826e498930f902ddd997e90a7edd9ed99Virustotal results 31.67% Heodo
2022-01-19HINFG-3.xlsmxlsm 539bd5697617a77934404cfa22605577a8d2ee6aaf4f0d6b6ae03ba4b8022822Virustotal results 28.57% Heodo
2022-01-19CJ_1261.xlsmxlsm 04cbc0b177c15fce9d0ab4d483fae95e6eee3979d6ef931066c569b1748c3908Virustotal results 26.98% Heodo
2022-01-1954425274.xlsmxlsm 8e5705eed8e4f0f3c6cc77c791c76a7e4c2e68ef45e51439390053d2bed05dban/a Heodo
2022-01-198442SSK_47.xlsmxlsm 2b357a6854a4e084dca442a6b7434aead0bccd70a18a8c09c7c93d6373243dafVirustotal results 26.98% Heodo
2022-01-1943IHQVHTBXRB_8249804.xlsmxlsm 8ca7a419419e924a7675290d45554c539b42e00a87b9e7621a0bd702e8ae9783Virustotal results 27.87% Heodo
2022-01-19KCYX-98097.xlsmxlsm f402293949516548cf2d981894ff8b70d867c113c15c0c5cae972a0139ffde08n/a Heodo
2022-01-19pw22966425.xlsmxlsm 0a5ec61016cfddb3a1bdb08e5ace9b7a977bc5e48d4d67db303db0198476e0b1Virustotal results 23.81% Heodo
2022-01-1999225XVXHJA_696881.xlsmxlsm 7b0c31e2bebb43c3b611177b359cdc3c7ee1ec93e44b50eef4d22fcdbe208e99n/a Heodo
2022-01-19J_6869.xlsmxlsm 12096d0db788662f717f1757f957629e692fc998bb1f86844980fc0b313f17aen/aHeodo
2022-01-19YX15078.xlsmxlsm 0416c35114bb1ae97acd2eab3d5c08ffd4372ed62cc3290c0249a8d61b3e3320Virustotal results 31.15% Heodo
2022-01-190315304-6.xlsmxlsm 8e953428b53d192060fe6bf1e84b94e28f40f1f999411baaf7c80e256ad26513Virustotal results 26.98% Heodo
2022-01-1972974AXSDPETUG4483349.xlsmxlsm 5da43c136fb894a17d4c571672c59311f75e18e0dd188120f4b2e8b70683529fn/a Heodo
2022-01-19986019593-29.xlsmxlsm 55767f8ba96adb8e95051d3fb462e5530d56032f652d025cb3dce2ceec0702a4Virustotal results 26.98% Heodo
2022-01-19viimp-948802.xlsmxlsm c825272b631c355875fc48e3a914397611e5c9ba65f13ceaa4cf9fd7f6d92a17n/a Heodo
2022-01-19908-629.xlsmxlsm 7afa40748752731bca088a1f2c3aa7caf190c1a28f97be4c282dd0ae827313dbn/a Heodo
2022-01-1914NJPX-692808.xlsmxlsm aca67468ced86d88c980d851092607e06405b3109230404fb7c51c6c916f389bn/a Heodo
2022-01-19mbther-2681589.xlsmxlsm ad0de4164ae26ef5515f4fb320ad1316776b2eec28e447c51187cf5c58c1b8eaVirustotal results 26.23% Heodo
2022-01-195843_28039.xlsmxlsm b80bcf2ea57e2d87665f00cd07f6df0049170b65b541621ce3ed45a589d20980Virustotal results 20.63% Heodo
2022-01-19T_84472710.xlsmxlsm acc9c41ba96ed8a91406bebc1f1d41b88c26bf7e1446c8fc4301ee0b840e1759Virustotal results 25.40% Heodo
2022-01-19571-5671749.xlsmxlsm baacda28b1d3abb14f12dee320b6f11dad6a5c4eb967c8f4fc46ef954da8b1bcn/a Heodo
2022-01-1977251939407.xlsmxlsm 553590a6399b86eaf93a718a1c2aaa2be55e8fe6d5896a3b8c44579c5921db6cVirustotal results 20.63% Heodo
2022-01-19778148461.xlsmxlsm 607f4df6b7ab8a7d31bb402433e135024645cbc3df474b2d4d4144e093a654d3n/aHeodo
2022-01-19034798_36554972.xlsmxlsm d7bb3e935a6b066a86cf79ee17a9368b1d461a76a92f9478b694f2c0275beaf7n/a Heodo
2022-01-19898TIFHWT1768.xlsmxlsm ff21e0d799e7757351192a77594d12cce77faf6ebc669816ad4bc37ded38d952n/a Heodo
2022-01-19LDhd_7467055.xlsmxlsm d81bde62116ee9716708cf99c076a60bc670f4bc811ae34e09f61455f32d50f8n/a Heodo
2022-01-19O_967541.xlsmxlsm 749221496ba73c4871285740396ab6211d3b803b8a39b6c9b37b468ae82cdd6eVirustotal results 22.22% Heodo
2022-01-19VGOBfX-45909698.xlsmxlsm e48f46cd60cb0b369d14352daf83f4a07f78332ff849bf8acf3729fcfd19cd47n/a Heodo
2022-01-19cuo_17484.xlsmxlsm d145d8bd97ef82aed65a01e30b7523f9380bdef7e4af3cbb706c3fe571d2accbn/a Heodo
2022-01-195680470-58347.xlsmxlsm 370dfa56dc03a14617fc925da1015c5d79964388df05a888b13c5755ff4b7585n/a Heodo
2022-01-195903QUS-089010.xlsmxlsm bf358073ed5741312e901e0fac9cc9af2c7d3f4b3b9f6d1f89f0c02fcaae63f8n/a Heodo
2022-01-19N_92924.xlsmxlsm 6b326bd8775334752e05a398a534955fd2ae44993cd2d6c4f1f85e3ee38503ceVirustotal results 28.33% Heodo
2022-01-1967439269-8665.xlsmxlsm d6553545b1163cac98c8454f5751dfd16b73d1c9262916d86996b3fe3cfb632dn/a Heodo
2022-01-19321JFJTUKC58422676.xlsmxlsm 48c97edd7f122c3b86c922c49da7c372c030284af6010de38dd5191b7d1044c2Virustotal results 23.81% Heodo
2022-01-1958_680.xlsmxlsm fef7017d59c99fb7ef55f867d66297ace1a66b98f61817b5f42b0b9c4e22a3e0n/a Heodo
2022-01-196514BINEA_2254102.xlsmxlsm 17e58485ceea86f7c5a32f35a478b985b7a90573512c8cd051e090e4888e1f20Virustotal results 22.22% Heodo
2022-01-19CPVTH-53632.xlsmxlsm 9460b2bb8ba2fb292c897532ce1f2671a383bed1194dd3aef7c2027fd427c09fVirustotal results 20.63% Heodo
2022-01-193333_6772567.xlsmxlsm d269a36950ba2005038fd496158bbcc4ccfdbacdc9eb96a4e823d973ebca9c8bn/a Heodo
2022-01-194884_543786750.xlsmxlsm e9d92f683085b6c1e2fca6795a259dfcf39a6537cfd7b6c72ec45cf1889c7d80Virustotal results 22.95% Heodo
2022-01-1915333_9083.xlsmxlsm e3f5e0fe4b1a91a4511c3621a2d351a6132fe0bf448379a4953829cbc6579641n/a Heodo
2022-01-191557_45187600.xlsmxlsm 20e1b79f4121f583c67f16137601ae1bc4eaa69562da95c9ff987317b5ca496fVirustotal results 23.81% Heodo
2022-01-19gktv_655230974.xlsmxlsm 3f25b33a654731325f43de1d4580715d04256dbc9a5edadae6cdecf84897d962Virustotal results 22.22% Heodo
2022-01-194072-0381220.xlsmxlsm 70c3b06d79b22a8f1fb97fa743ac74835f80bf9dc17949f9940631cf20f1ea9eVirustotal results 20.97% Heodo
2022-01-192467130GAY_08468.xlsmxlsm b92a036ddd73d18ed97801d7a77457c7395bb64f94aa3272439748c1eb334021Virustotal results 20.97% Heodo
2022-01-19Jz_29954.xlsmxlsm 007b703040eca65bd22588faeaaf7316df014c55b1e2e4ff505468d1c9c7788cVirustotal results 22.22% Heodo
2022-01-1904FXGOVG_755.xlsmxlsm 18d6d143faa6a760ba0a476fa10612391cb6ea8c22ab604dc7c47fd3f1f04afan/a Heodo
2022-01-1920413_7693005.xlsmxlsm 237b2490c0e6d27ef3badff081fa7ba4b7e05a805a3664047eac211affbf612en/a Heodo
2022-01-19Q_9066.xlsmxlsm aa2a65229b69fd6ac54c602b320e13c8b883087f9f221cbb358cb563443bffe1Virustotal results 28.33% Heodo
2022-01-1978812_7695997.xlsmxlsm 8952c009d68e8b229b37ba6b51f3d7cd9ccbd91536ef4229eb400bf4ce0fd836n/a Heodo
2022-01-196832273_4453199.xlsmxlsm 7200e5724315590135f88283962627c70469223398ba6674b2bcfb070f0ebbd9Virustotal results 27.42% Heodo
2022-01-19CF_190779.xlsmxlsm df2769638bd691851f529a5320a54d92d23f6d702c88d31a37ebbce68491a635Virustotal results 24.19% Heodo
2022-01-19KZ_86240456.xlsmxlsm 7de2931164359aa2be398a6cf5ebf4f09884a1232b6f19314b68a5eb2a711a05Virustotal results 20.63% Heodo
2022-01-1938422883_74.xlsmxlsm c13305fdd9e7e4ce379937deb578ce2e788370bc2b547e027db59c59b722efd4Virustotal results 21.67% Heodo
2022-01-1989406233127.xlsmxlsm 1fa60639ea962861142d2efeb77fd77c280fb3442d31d2db07918d54e6b5336cVirustotal results 28.33% Heodo
2022-01-19pp_36.xlsmxlsm 79cfdb919315844deefdaa5f9ad364a026f3a795b473171647cd0176a4333f01n/a Heodo
2022-01-19MMS84713.xlsmxlsm 7aee2fec8e183b1903208d7a478278b68708d2a38f321a493f0493a27d46322en/a Heodo
2022-01-19Yns_4827.xlsmxlsm ceaa2e4a3e4521b680dbbb7645140a69929ac5ecb0d9342bd88ffe34e33bfcb6Virustotal results 25.81% Heodo
2022-01-18odn_1148.xlsmxlsm c367a9422665976310f8899e0ae55a7415babdc88f2377d6bdc4e62aa373368eVirustotal results 19.35% Heodo
2022-01-18577946524_90.xlsmxlsm 256a56de41a6a0e96dd9b8c581075fc900b450f2f872e4403f332c509c328ca6n/a Heodo
2022-01-18598153_9206964.xlsmxlsm 96cbfe690490f4cfdbfdf395626f5f393deb559f0c078aecfa9facc6fdac9d54Virustotal results 19.35% Heodo
2022-01-18699_740.xlsmxlsm 42fce6fdb4460cd9ed23a7e05582c8344c254ca42bf5a384ec854274e372b0ddVirustotal results 16.39% Heodo
2022-01-18nkh-09013.xlsmxlsm e866853bf48a43badc9eab45feb4d681cb79c02c7cc352ac594964d5f4b2798dVirustotal results 19.35% Heodo
2022-01-18H_427.xlsmxlsm c96f85662e9b91ef48116048a2b379783a961a851b6281497f1e93de0721ad15Virustotal results 25.42% Heodo
2022-01-18efyyX_67521.xlsmxlsm dd6506cbce109e1f52ae43de8925cc5764239d9ad40ea61287efdc83ddd88be0Virustotal results 20.97% Heodo
2022-01-18l08672.xlsmxlsm 4817f64471b3c62b26928214c0578e16de401305054c2cba8965c7171881d79cn/a Heodo
2022-01-18886279381_45644.xlsmxlsm 835db3973cdab6d1ba4bb09fdfee00ae18d67ae017701d72c6201448a770af01n/a Heodo
2022-01-18SZRX_4040.xlsmxlsm a7ef22eea242dc9a67cc5034c73575de2b7ae3e9e4faadcb6f6a515b6f44cfedVirustotal results 22.41% Heodo
2022-01-1819980709401.xlsmxlsm ee8478af1a736dcbfbe037bad1ce3955cb2a7078f6f761f19eeef9723d100ee1n/a Heodo
2022-01-1871-8.xlsmxlsm 232b0ace6a2a7e19d01426b6e41288d2b789d50da050eb26fbf1b5e076ad452an/a Heodo
2022-01-18NRDE_210.xlsmxlsm d5ac23fa3ee4b35d18e363bc3d502fcdd2270b68104d6bf2ac9218ce2a368bdbn/a Heodo
2022-01-18RNC269032777.xlsmxlsm c80a32c49ac7bde59c31966abd4db02186a8fa1cb19f389a95c909243a438e70Virustotal results 19.35% Heodo
2022-01-189447853MTYKCE-1814.xlsmxlsm fdbf8a4d28493e5f168a0acdd61ca7706c68009cfcc4d7b79705cc8ed5d2ec21n/a Heodo
2022-01-188498_7035.xlsmxlsm c97263afca99dc13145f5c973b8aa8bbaca835a3b950a0a1b84ee9663163a22en/a Heodo
2022-01-18LYPA_5169.xlsmxlsm d25f9d1536d1d55f147fd1f9543c48405919d7ac7f41afd0256ff264f64f1402n/a Heodo
2022-01-181086268750.xlsmxlsm a2e7dec6c0cc0625d5963594556f86d840970b0c732eb1b8f2003b1f63883a46n/a Heodo
2022-01-18013ZRXLUQJK_6540392.xlsmxlsm 6416de9fc007add8b239ca4905a85218c357b2ec6bb70e5ccc859a57509fa575n/a Heodo
2022-01-18JAT-91.xlsmxlsm 1c3d4d9e1c40e04e98360cba6f3ab51b28f9d0d53ac25e01876499fa1c579ac9n/a Heodo
2022-01-18znHq_5.xlsmxlsm d06dcdc68f9ffae4fa7b1cd5c05668c2ec07765b411b5c2c17f05788459d89adVirustotal results 34.92% Heodo
2022-01-182148.xlsmxlsm 06c1843bd1d6be39a1c9e366fb9f72fa9bb9c3f6c5e54a555c4e2fe0497cc14en/a Heodo
2022-01-181456_349.xlsmxlsm ed216fb6474d46c99331ef46a9acded46ba5bd9d0d74ff93b36cd9a7b82647a2n/a Heodo
2022-01-1843774DUKAO199.xlsmxlsm 309cb3f81bdea9f9b0de31530c7466aa28e4b709f09d4eca9fb755393b131e72n/a Heodo
2022-01-1857466947-61056.xlsmxlsm 84bad34c5bdcb90470bfd094dd7544663f454f3adc3d7ab0466ce45a66785a4bn/a Heodo
2022-01-18YSC1.xlsmxlsm 591ed566e34f5731099a40f076d575b5fe4542cfdf67ac9f76a42c55da7878bbn/a Heodo
2022-01-1803111997_45862973.xlsmxlsm cf8c7bfd976822d3d12501b2b7ab8eec0bbb30ce92f10cc83badee699dc667dcVirustotal results 33.87% Heodo
2022-01-183739_1996.xlsmxlsm c7edb8370e49c5a2b8948336dadee99d33abb07422b02ff35a1f30e66ac44fean/a Heodo
2022-01-18EMU_0.xlsmxlsm 4889efed9c85c43bb7fc44b41b4fb792cf258ef217d882f3f04dff7ad4e84a34n/a Heodo
2022-01-18LHX452.xlsmxlsm 05a171b8ce69b05655efb55d248a905a05a7cbf33847000e625b03677269e96en/a Heodo
2022-01-1898284-777.xlsmxlsm 8359f349841fcc2b88f6451564aa661c7da3dfe8ac4c98de260bff6f3a53568dn/a Heodo
2022-01-1852233_72580.xlsmxlsm cc2ac12e102ce1c5f67d1fe15098b543ea01b725955466072694b4cf5097531cn/a Heodo