URLhaus Database

You are currently viewing the URLhaus database entry for http://mayamerrit.com/wp-includes/Document/zWsyzvxyzDmuVFYzUsSkz/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:202749
URL: http://mayamerrit.com/wp-includes/Document/zWsyzvxyzDmuVFYzUsSkz/
URL Status:Offline
Host: mayamerrit.com
Date added:2019-05-28 00:05:03 UTC
Last online:2019-06-17 14:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: spamhaus
Abuse complaint sent (?): Yes (2019-05-28 00:06:02 UTC to abuse{at}ovh[dot]net)
Takedown time:20 days, 14 hours, 7 minutes Bad (down since 2019-06-17 14:13:42 UTC)
Tags:doc emotet link epoch2 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-05-30LLC_26107061795US_May_30_2019.docdoc 558df1b709298a8c3c7b42fa15620ee50583629b923efd8574c142d29d406baaVirustotal results 44.26% Heodo
2019-05-29SCAN_030075683592US_May_30_2019.docdoc 4e4fc97261a1040772783653956f7974be6e71666561221b9e1a47e5c5e51548Virustotal results 40.98% Heodo
2019-05-29Document_77090770496US_May_30_2019.docdoc 84753320037e22d04646ef90c46c0f399428dff31701877e48bd8862254196c2Virustotal results 45.00% Heodo
2019-05-29Document_80965062362US_May_30_2019.docdoc cfb3a7c10a70111211f31ea4e4263a0d3396ce011e6a2a7035efc7c96c3a9656Virustotal results 44.26% Heodo
2019-05-29Document_6911485977US_May_30_2019.docdoc ed2af54721340f58236a7520f3b2e46bf354072aa072b4334182bef006ed487cVirustotal results 43.33% Heodo
2019-05-29DOC_850978237269US_May_29_2019.docdoc fc2800ea95b3ea98d494a50794e6e89684e3707f20fa18e75dad94c8851f9c7bVirustotal results 40.00% Heodo
2019-05-29SCAN_8090750814US_May_29_2019.docdoc fb5133d4022266ba87e2fa79c07b881a634e95e213f9888c269c20943f8ae97eVirustotal results 35.59% Heodo
2019-05-29LLC_141630322959US_May_29_2019.docdoc 0b8668d6728b7de9d9f490dfbf41977740f44be0ba9190c79f008458bd5f4366Virustotal results 29.31% Heodo
2019-05-29FILE_26651031520US_May_29_2019.docdoc 82e4b14dd3b87ea43c6765588ebe9db8f1e84ba5fec5d180cc33794b4bc6ee04Virustotal results 29.31% Heodo
2019-05-29DOC_67703665587US_May_29_2019.docdoc a89409717f8e1d896611584ab160731490ad5d3a14b39f0e560d27e5ca29fed6Virustotal results 28.33% Heodo
2019-05-29INC_0623064955US_May_29_2019.docdoc 3c4679d4fa092d3c70c924a18346479213546a711af2716369a3a46c522d1778Virustotal results 28.81% Heodo
2019-05-29Document_5634168232US_May_29_2019.docdoc 9b97c990e9940f1d9355c35e51de16f16428dec117b2a031be1671a6f49055d9Virustotal results 27.12% Heodo
2019-05-29LLC_6349341084US_May_29_2019.docdoc 8fd31d67441cbc2b982eec156a0e1702f53894fe03572f532ef5152d4413c353Virustotal results 26.23% 
2019-05-29Document_3695513786US_May_29_2019.docdoc 2277d0d190e6b3d4a473c5130f1177053ced87b4c5b39b905ae028792b861c22Virustotal results 23.73% Heodo
2019-05-29LLC_7530208059US_May_29_2019.docdoc 041b13b4fae4e6109fc9b7bff12549fb3c4e8b80d5a3d2144c8f98a1b14550cfVirustotal results 27.12% Heodo
2019-05-29Document_3985751391US_May_29_2019.docdoc a7ac1ff43ae6da216511b59202f86988efe5b9f2c072760a7a2c5c8711d7f7acVirustotal results 26.67% 
2019-05-29FILE_024684010032US_May_29_2019.docdoc 341e41bb1fb85f791bfe70f7ba00325ff25a5c09ef7b8dcb444a53e6f1222b81Virustotal results 26.53% Heodo
2019-05-29LLC_0430865088US_May_29_2019.docdoc e8947b8de2d55db79709c3179b0fda8cc9e17c98ce05f5491cb88f98b28cde78Virustotal results 28.81% Heodo
2019-05-29DOC_717933395007US_May_29_2019.docdoc da5fbad5aceea73e738a4996ba7d2993d42d32f84d4dfcdd9ea667004d647511Virustotal results 28.81% 
2019-05-29INC_94199531436US_May_29_2019.docdoc 29aae200483bfa1887620808f79c045ada295f9bb1015cc55805fa273cb99a32n/a Heodo
2019-05-29FILE_074076896685US_May_29_2019.docdoc fb7e08a2a48516ea543b7183e40ac0ed3f2e2fc566768f6cde218a56b0bbd60cVirustotal results 27.87% Heodo
2019-05-29INC_9419047797US_May_29_2019.docdoc 7e2ca3a16515af650c57438d881c5bbbb5206bcf118eccd70df65941776b641bVirustotal results 27.59% Heodo
2019-05-29LLC_610148069126US_May_29_2019.docdoc 4a077ea0d0a0f6a40f2cd8139ae8aa9e7056bf9e4ce50e20975a6d453b19febdVirustotal results 28.81% Heodo
2019-05-29DOC_91256502976US_May_29_2019.docdoc 8e8d942ee2283a2529b4d273cc6c8db779a74130a585b2536cd214e7d8ae9789Virustotal results 41.38% 
2019-05-29DOC_07749428060US_May_29_2019.docdoc 5562dcb788a2c33d19f327cef9ca79bf51c08ecbea0ba637ffa8af54bac3d463Virustotal results 40.68% 
2019-05-29FILE_660028061875US_May_29_2019.docdoc 913d5a77b54de2bf16bb2e0e8b39af0b83750ade322a5e38b98aea925b491570Virustotal results 39.34% 
2019-05-29SCAN_7855760714US_May_29_2019.docdoc c0285a05f35e5c7ac9b7436dcc0fdefb62400b8d869e55141a7ea84268ae970an/a 
2019-05-29DOC_6222793802US_May_29_2019.docdoc a239776607f11c9a2b4480e23336e5281244cef6f673ca16f1d0466db9de3465Virustotal results 39.34% 
2019-05-29INC_78800716555US_May_29_2019.docdoc f4698dc0c5630110e51ddfed69b2364659b103308034c69c1d7a02c70e978f46n/a 
2019-05-29Document_93623571280US_May_29_2019.docdoc 71ffc0572d33719508587b6fb096c1fcf4f95eed91a4859d8f0e37911bcd7531n/a 
2019-05-29DOC_21906569706US_May_29_2019.docdoc 2259e2aebc1913304c78125e6c12e0924b34ab11d3e848078579598f1c21ed53Virustotal results 35.00% 
2019-05-29Document_0774582688US_May_29_2019.docdoc e151c10ca1bd2c8ec3dfa403595402778c44287819362151ae647c11febaa91en/a 
2019-05-29LLC_92991019633US_May_29_2019.docdoc 15dafe76124cb0239e7593932864fe5defc12cfe2243f3ca51c968c597bb62c5Virustotal results 29.51% 
2019-05-29LLC_855223620878US_May_29_2019.docdoc fe7b7ee9e2a23a0ec09a5eee876eaca33e3ff136b92e8d81cb646c1a25f41ae7Virustotal results 30.00% 
2019-05-29Document_19072690737US_May_29_2019.docdoc 1f5afc69dcc29ec79faeb702c7180358145ecac5c2af81442cb74b2e80c13327Virustotal results 29.51% 
2019-05-28INC_30809565267US_May_29_2019.docdoc d65c5c8fb0a50a05c67bf7be8d5355a84c0f4b33dcd11d4e84d7545eed292865Virustotal results 33.90% 
2019-05-28FILE_672129984437US_May_29_2019.docdoc 5cd2567af0ff3769b687ad9feacf8c52eb7f614e2b74ad3b0cb43730c1ed0fbfn/a 
2019-05-28FILE_2143651773US_May_29_2019.docdoc bb1264ec29fa17509aa71975bf840c9aa64e31de67d26a90dae07ee5b2ba2eaeVirustotal results 33.33% 
2019-05-28LLC_578978445846US_May_29_2019.docdoc 08d8e32f6ae79be70025d2924de1cc3a2caa0a6c96c5c70cccace41088e0830eVirustotal results 33.90% 
2019-05-28Document_17686221162US_May_28_2019.docdoc b58bdc49cd8fe00bf02baa782cc44ad8c5f7f3a7e4583564bc0d06cf03daea5en/a 
2019-05-28DOC_744444441979US_May_28_2019.docdoc afb54c196aa32dd41269e0a8601e2c5765c94b840a76ebeb2ee009ae4e573be7Virustotal results 33.33% 
2019-05-28Document_7750812480US_May_28_2019.docdoc 811f12366a5f880f8c88fd588feaa94ef9ad9417709ec305bccf53bf573190e4n/a 
2019-05-28LLC_64766238571US_May_28_2019.docdoc 46bb1336401dd36f9b9ef6f59b72cb93e7b2aaf1bb7d0e1daee390d885023ecbVirustotal results 27.12% 
2019-05-28FILE_761314344417US_May_28_2019.docdoc 0161700d7cd49fa1a589ef17de21fc7da242b5f95aaddde56ed096379f2e3819Virustotal results 23.33% 
2019-05-28LLC_1131371323US_May_28_2019.docdoc 6793dd76530fa14c9fa8186d3044972eddea097c146411c38cacb4ab20c02b3en/a 
2019-05-28Document_15843884715US_May_28_2019.docdoc 0cbb3d6ffa54388489ed32b54178fab8b9cc52ea99a2ef8cba305f6be6e928d7Virustotal results 23.73% 
2019-05-28SCAN_58774531237US_May_28_2019.docdoc ef947c05ed3e7212ae741ba9be781396d23b90000a9c497b8f81c69b4b6ee83aVirustotal results 23.33% 
2019-05-28Document_53918505622US_May_28_2019.docdoc f50ee0b99dbb0b4ad4b5afaef4b106c336ce3c96366901415e2f288c88385e65n/a 
2019-05-28LLC_215364970376US_May_28_2019.docdoc 9c178a5b70e648cd0b2dd296eccff37be991f913f5fc5f7c1fe83760f96eb925Virustotal results 23.73% 
2019-05-28DOC_98606718720US_May_28_2019.docdoc 6ff4a43e51954e29495cab386dbfebb0f209ff5b780b5d3f3a9810eea7fb3c29n/a 
2019-05-28INC_832852662555US_May_28_2019.docdoc 573c3b7cd7459844111005f1fd35f35863dc3dd41ef3aa21535a780791b7ae68n/a 
2019-05-28LLC_54055859144US_May_28_2019.docdoc 33490e0e9fc09dd755805091830dafa3dca62f189e893c04b4b01b0b5ed121aaVirustotal results 25.00% 
2019-05-28LLC_70869418088US_May_28_2019.docdoc 0b4491e537581f9f60f35ec20a5351c83ceb55ba357cebf491c8894de9ce2c9an/a 
2019-05-28LLC_412461151804US_May_28_2019.docdoc c7e5c0b961301ff035b868dab176d8da8757537cd8d5d0e3b69850ae4caae0ebVirustotal results 25.42% 
2019-05-28FILE_70860912802US_May_28_2019.docdoc b04277f048a8d45d8784f8aabb2e159ec3683c07ff29f4f0f668f9dfb4dd5390Virustotal results 24.59% 
2019-05-28Document_4626151462US_May_28_2019.docdoc 23f8568859914bba628d1df0b02c50715af36285d140870ba26f422cc279e566Virustotal results 24.14% 
2019-05-28INC_028363953323US_May_28_2019.docdoc cc3e705f0f53574145bb65aeaa92918c78d9a11e8001f345a3cc23bd031712d8Virustotal results 25.42% 
2019-05-28LLC_378238755205US_May_28_2019.docdoc fdbdca7802615a563841ac543a08640dc19993d5acf62e7844d2c95a1b736737Virustotal results 25.42% 
2019-05-28SCAN_5856744424US_May_28_2019.docdoc 6e04de46ba8e4499e14203c9bdbdc0e487369e025922da9e60f005711dad9001Virustotal results 25.86% 
2019-05-28FILE_63483142686US_May_28_2019.docdoc 05a4eae26647acb3a3b7a6035e3d5e0f75206ea331606e305740be95fd4c61e1Virustotal results 25.00% 
2019-05-28SCAN_75584428347US_May_28_2019.docdoc b5ea41ba52f89cbc4614eafc913add3be6767d6b31fcea0b6148a1fac2566171Virustotal results 23.73% 
2019-05-28Document_5499690262US_May_28_2019.docdoc 03b79cbeaaa2e5a103dec9410f336103185f57088e26512d9b6c9b87276519b7Virustotal results 23.73% 
2019-05-28Document_109124762494US_May_28_2019.docdoc 7dd2f7c54e83fcc1f1b53dbf4b48d9f12fed1a289da936667bbc31f24887f56dVirustotal results 32.20% 
2019-05-28SCAN_390237304848US_May_28_2019.docdoc a69f7e86f0cae849478be942558c0960804b0afa661702215ac19329165ad84aVirustotal results 32.20%