URLhaus Database

You are currently viewing the URLhaus database entry for http://tomaszzgiet.com/wp-content/lm/z8b8wdhwk3_zcncv8-21142307690/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:202631
URL: http://tomaszzgiet.com/wp-content/lm/z8b8wdhwk3_zcncv8-21142307690/
URL Status:Offline
Host: tomaszzgiet.com
Date added:2019-05-27 19:30:06 UTC
Last online:2019-06-05 08:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: spamhaus
Abuse complaint sent (?): Yes (2019-05-27 19:32:01 UTC to abuse{at}liquidweb[dot]com)
Takedown time:8 days, 12 hours, 33 minutes Bad (down since 2019-06-05 08:05:32 UTC)
Tags:doc emotet link epoch2 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-05-29INC_45051725080US_May_29_2019.docdoc 077b38fb0bb24d665071e35ea4d6105c78fc95072e0de50a58e747a5de84f2cfVirustotal results 31.67% Heodo
2019-05-28DOC_8053212659US_May_28_2019.docdoc 7dd2f7c54e83fcc1f1b53dbf4b48d9f12fed1a289da936667bbc31f24887f56dVirustotal results 32.20% 
2019-05-27INC_826493540737US_May_28_2019.docdoc b1b1b740c51d7f714a6534611b2e59d5671b5b2bf73bf521f375b5e7df704a2cVirustotal results 32.20% 
2019-05-27DOC_9169143586US_May_28_2019.docdoc c925200e40719b836afa8c119d94d6bd959e6bd1ddf7837584b99b8121b49040Virustotal results 32.20% 
2019-05-27Document_73903339193US_May_28_2019.docdoc 859485efdd16118053fdb7c13a1381f30f7342a784e4eb2cfb1f66e1b6aae334n/a 
2019-05-27SCAN_8592669069US_May_28_2019.docdoc 0554578d280256208cc44331f9aecaea0ab7713e68492553977410b08695df39Virustotal results 32.20% 
2019-05-27LLC_57569290669US_May_28_2019.docdoc a1388eeacb0b44488677c6adab024d3f96e2e41b3b8a325b7f98848dd33e9c58n/a 
2019-05-27LLC_933569700466US_May_28_2019.docdoc 39c4fbeb234f5bd113344696d4ddbfd0cd3007a9266640d021e4ff9adabcee3bVirustotal results 28.81% 
2019-05-27LLC_290694203241US_May_28_2019.docdoc 7ac01a2513900f2f6b1fc682298da80c4beaa3f6ccd8a222a609c9ec89d695ddn/a 
2019-05-27INC_9088610260US_May_27_2019.docdoc 935ddcbd92ec61f8b1dd1c3b853fa51ed9c7c1e7b1a04174ab25b86f2dc50e01Virustotal results 26.67% 
2019-05-27LLC_89727828913US_May_27_2019.docdoc fc4a4f69de0b12dbd4de3d761feb484fdfdfdfd24dbece53f82cdc792927f570Virustotal results 23.33% 
2019-05-27DOC_816590276846US_May_27_2019.docdoc b9e80841c620edb2686e9c6acfe5cef329789beed9c326292a44fd92d9ce28c7Virustotal results 23.73%