URLhaus Database

You are currently viewing the URLhaus database entry for https://www.xuperweb.com/og6pj/ctvn4fzzpht8r6zgj3dnpq8eefab_1llkzbapl1-01650495/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:242590
URL: https://www.xuperweb.com/og6pj/ctvn4fzzpht8r6zgj3dnpq8eefab_1llkzbapl1-01650495/
URL Status:Offline
Host: www.xuperweb.com
Date added:2019-10-10 08:22:13 UTC
Last online:2019-10-14 18:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: zbetcheckin
Abuse complaint sent (?):mail Yes (Ticket DCU001999619 created on 2019-10-10 08:24:04 UTC)
Takedown time:4 days, 10 hours, 10 minutes Bad (down since 2019-10-14 18:34:28 UTC)
Tags:doc emotet link epoch2 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-10-12ODD_H21DJY4NWLH_10122019.docdoc a85cc2088eaf316b8fcf3c7f33996b1acf93f99f820eaa9dfac83d0637adc9ceVirustotal results 29.31% Heodo
2019-10-124192387588196737.docdoc e2d82d020fd7232a66a9a6f7a2fb934b1a2d4a037f1dd4126babf91176510f22Virustotal results 30.19% Heodo
2019-10-12UW9N9OR6DQG_10122019.docdoc 0c01946813b8753e6cf65804400eba28db24416f4dec1226f33f7221614b286aVirustotal results 29.82% Heodo
2019-10-11IGKHSPLBGE.docdoc c76ad8c515050ede4398828c8786efe76e25f972cb5d1ed96290786001f5cfa7n/a Heodo
2019-10-11MUT_223B1S5VH7N7MY1_W.docdoc 8fc91396de84667cf2570c5dca848ef3cb311577ab76b0203f5c1d5fba6e052dVirustotal results 27.78% Heodo
2019-10-11XP_073381063072265.docdoc 188e28825e463d83fd44df8b9754cfa135697bfb75a4463fe2d70f8cf0de2edcn/a Heodo
2019-10-11KIS_2817005888_KZH_10122019.docdoc 0debb52d3e04d91f9a72785af3a83b5683b059659289418736ee9ffc4aa23b08n/a 
2019-10-11TBX_O1IMCDS4IAKV_KQ.docdoc b8dfab7e6a4b6f5c477655cead4b0ab425429e073e1645da49f80242e21e0165n/a Heodo
2019-10-11NDY_9128236936_10122019.docdoc ea6bc5ebef37957c7b126709b815f29dc69fb9c93da40df01f014ddd1cfa13d6n/a 
2019-10-112960694073797_C.docdoc 6125489453c1824da3e28a54708e7c77875e500dd82a59c96c1d1e5ee88dcad7Virustotal results 25.42% Heodo
2019-10-11973772539553050_Y.docdoc 1b21cf35d5bf666e300a8b9e47ecf065e5e2cac0eb4ef6b3057a82bf7719bbbeVirustotal results 23.33% Heodo
2019-10-11PGAYHVBNP63_UA.docdoc f4a09b29ddc5d848f3953849f26e8e7877c116b3771c13ed753c2c53b2574b06n/a 
2019-10-11NTZ_8654404789_IMN.docdoc 5ada1f249afb0dab78e36e9ef60a134dd593275d1f25d51ce200eb0073a168a9Virustotal results 21.82% 
2019-10-11WD_33979596321_KZ.docdoc e18cacb96140723e9e564a2c6be2ddc1c25e77f97cbb4bf28db7e7f9b988872fVirustotal results 22.03% Heodo
2019-10-11IY_08966500633237_X.docdoc c33af49e0ea81a8c764891fc8939d5b153201bb795013b4b3fb132757bdab59fn/a Heodo
2019-10-11LH_6019246902163081.docdoc 3b4ba104cb5524f8bd642eac04504caed87302844837ee54fb3ef15c5067effeVirustotal results 21.67% Heodo
2019-10-11XVF_XWDUOMH55M.docdoc 3857046a0c192e72845855c9ee3ccea8dc78488485bb00660c97d799344a5382n/a 
2019-10-11DZ_MC0HJPMH9MGOM_O_10112019.docdoc f1722c469f9fcbe2fbd652fbdf0a2adaddde8221b03ad2446490a0caae541039n/a 
2019-10-11JQ_IMQUOQDDWUJB.docdoc f8adf07bd42c188f72d7d6ed8a848752fa4ad7552f92b41b1065204d1134a48dVirustotal results 22.22% Heodo
2019-10-11HH86XX919NGC.docdoc 019b7ef704a635b4853b98e67f10c7e6b607fb5b91c24d4d2b4e2c5459b61bd3n/a Heodo
2019-10-11544446256176_10112019.docdoc de9752e65eef8e813a25cd7daf3e54bec2c0ea8bc4dae4052991b87971034e9fn/a Heodo
2019-10-11PUY7HBNLBTBUL0_T_10112019.docdoc 9e1d7cd63b0edcb4b3c4b1c86ecf477245ba82b4291bf26484fe2dd6cd9d12a1Virustotal results 22.03% 
2019-10-11JPI_8VBB45QPWTHGA.docdoc bc10ba94b334d1b1c5fd9bd0978cfc807024518a35c71e25421a6c5877d9ef13Virustotal results 21.05% Heodo
2019-10-11TJE9OQX0K3VOM5K.docdoc efbf4355ea2b430cdd94e8320aeb3f84e2c3ffdfe053d292b1ac3d6a463ec2f1n/a 
2019-10-11TJ7ZXY8BVTTN5BZ_P.docdoc 2c00d66e32eee99c44fef2ee8dab6ad8253433b48dc1dcd6fa63f1b688baa63fn/a Heodo
2019-10-11EGW_498211347018.docdoc 0c8bbc97828005bee9e7a2cf4887665e56a4a6755983424cc087a3a3ff58c672n/a 
2019-10-11BT_389295879548029.docdoc 2c132d139e6dfbce52f8cbba855f72603dc5cd7eae1cc6ccd5c78faa09e6a237Virustotal results 20.34% 
2019-10-11JMHWF4R1IXXBKUT.docdoc f0f7d091da00472f4f35e70fc23317cab77d70076e94a9239c6d4d476f197ed8Virustotal results 20.00% Heodo
2019-10-11CG_UIZYDSZ4IJG8I8.docdoc 1f08e5bd06d1bde318055f626dff14677005ec9200c533c74a98cc68ff1b648bVirustotal results 25.86% Heodo
2019-10-11HX_AB19WOL8F4CNAD.docdoc c31b70650cc06b19bfae4a03e06ada088830ceff83a153d22eb69433abeb8c5bVirustotal results 22.41% Heodo
2019-10-11LLQMW52FBX7S7_NA.docdoc 4e91a37ebd2c6b0aad3b1aaf1d2d09c0d4187e7c3d0fff94327c30f72572825dn/a Heodo
2019-10-11CQ_9R5XAY3BGDT.docdoc 9caeb7939d720620791e0977ce3b7331d59e39672b647a479c12f50c23001ca7Virustotal results 22.81% Heodo
2019-10-11GHM_F4D3TCAVXKGOKU_WY.docdoc 4cd857174a8a6c70fff346cbf7aa9c596cee0c81bea927d8d23446a00eeacca3n/a Heodo
2019-10-11DOC_2ACQ4ZKIJ34W.docdoc c92ed8fad0f453c7460aadfd8bf687d5cf99560115dddacaad75833aa40e0b6eVirustotal results 17.50% Heodo
2019-10-11SCAN_F8ZT7Q3MYWJ0_10112019.docdoc 2aa3bc1c73221e8cb02ba6793487e0b7e88caf38dd40da5d1a42d3f36147b5f3n/a Heodo
2019-10-11LLC_36729624628.docdoc 7bb9b68f8f2c198f14e3d91780d43c593393fe8034f433553c9f06af24c015c7Virustotal results 34.62% 
2019-10-11SCAN_0253932788334515.docdoc 1805c5e9bf3e64f88da5011beb039fecdfedb527c2626c7e4177d0da307b720aVirustotal results 35.59% Heodo
2019-10-11FILE_7P4LUTNW4C58V4_10112019.docdoc bc6d39faad64e70a270ea4eb06fbcf05c459349b21ea6420f3a04ca23e3cfa3fVirustotal results 32.20% Heodo
2019-10-111I5CHF4B8HU4D_10112019.docdoc c8fc8eedc4b906accb507c39a0908bcf54bf11faadbbfe538d843f3638ef893dVirustotal results 33.90% Heodo
2019-10-11RE_39785939074_10112019.docdoc f6611b46795d1ef7c3a0cd4b8825f83d53208e149717b71f974ac677ca60b15dVirustotal results 32.20% Heodo
2019-10-112191305451266_KA_10112019.docdoc 803eb60e4df6ced789199f41674ab0e5521dbb469d32ad3a2adfff2a7a2da2d7Virustotal results 30.61% 
2019-10-10RE_897928724494832_C.docdoc 51de13d18a23740342f1c681de4cb6c2baf116f2a4df4730c5338439d05823e4Virustotal results 35.59% Heodo
2019-10-10RE_RYGPVQO8ZHLVV.docdoc 3703388fa4515756bfa53d35d2647585d591d9d139280626688be604f01c03f0Virustotal results 34.00% Heodo
2019-10-107D1KE3IFSBHW_FEC.docdoc 7a8a800c29c6e9dbf732d98fd5eccb9e78078101fee30d287dc534e83e58a22dn/a Heodo
2019-10-10534545188968.docdoc edd0ab17a61f95c20b02d9c7b58ef29911fc287846fdd80d6804d7e325e6b4e5n/a Heodo
2019-10-10BL_8833937266491293_RYH_10102019.docdoc 2edaea083ea39aab08670d19867627d5516f1f78efff05973e3524c3f897a4c9Virustotal results 27.78%Heodo
2019-10-10INC_AHQNL28N3W0A4_10102019.docdoc cc4e1646b1d94db4dae3f14ca2a85a2c46fc3ed193833e0913959b4a07904e64Virustotal results 30.51% Heodo
2019-10-10LLC_0FIU022WNCUUM_10102019.docdoc 8a55de0566e608798651dff59eaf776fc3a270c09091862fe1e0a089a9a68122Virustotal results 30.51% Heodo
2019-10-10032821952917.docdoc 705e55a252475b5ae7fa7258eb04be795347a8eeaa929dabe7660e33ed392264Virustotal results 30.51% Heodo
2019-10-10DOC_1435867126.docdoc cc82bc7177f26107263871628ac0c38e385d8f26010182f0f7fd6352221fca33Virustotal results 26.32% 
2019-10-10DX_2814442518102.docdoc 3942b4de811dca7c8051b90a697b2ab6b02c5343a8371d624e18f7a52d139ebfn/a Heodo
2019-10-10FILE_KXJUT8FDGNO2QX.docdoc 7e5c45cc547d770601dd7dcc29186fcc8ad1e00dd7d36ac9d58b9dd279998dedVirustotal results 26.42% 
2019-10-10FILE_V0MNWL612EQ82_10102019.docdoc 6fdaa046ff8def5c39cb32e45cb3755f9997d46fe8db480f1659f6b48f9f9bacVirustotal results 25.00% 
2019-10-10BL_3MDFTO2MVF75D.docdoc f75488fdecc020cb293614a8864c2108c3406975002d525853e3e1906cda5125Virustotal results 26.42% 
2019-10-10FA_XZHANDPWKHT0_10102019.docdoc b95fe809d7d628b0f222e07defab508432feaf10b7793dbf665671987ddda6e6Virustotal results 25.53% 
2019-10-10RE_GAR7O4BLPE2L.docdoc 361b9eb186d6b5b0cb035335a8b2ed19979af4d7f407455891188860f1b82fdeVirustotal results 25.42% 
2019-10-1074468194132188_10102019.docdoc d6ba47dba7a4b5d3edbc954990704573281e71239ffd59490f13290d2f19694bVirustotal results 25.42% Heodo
2019-10-10DOC_12819667199064.docdoc 5124cd27665210e6f3f8609cd77cc4f7dd875bda403f9bf76d09abd83691d4adn/a Heodo
2019-10-10INC_58634923559959282_10102019.docdoc 559caa2233ddc0f6cddc50ba23ed9556cda00af17c9154d7222f839f04022bf3Virustotal results 25.42% Heodo
2019-10-10BL_75898184444_RX.docdoc 6d12ec981fc193f0f70e1396c9b5d1c687a0f922e8d3abef29aea87a92c97603Virustotal results 35.59% 
2019-10-10RE_YQ16RSRJ1LWKS9_10102019.docdoc 58eded6711ac307b2b48e309d869ed1c4d88c6a23815973779b6d610704a3f12n/a 
2019-10-10INC_MY8IJCBUO2L793_T.docdoc 3f90a20aa7c21e5d785814d6521649e9b99c8dffe61a910e5ed63f8a70bac08eVirustotal results 37.29% 
2019-10-10FA_60457989078796_10102019.docdoc 7344c6d38f46a38419082b72d7ee3d622be05dc86c93e87f55600942b8da470en/a Heodo
2019-10-10FT_51Y2CKLRZV.docdoc 0c421092cfe868bfc29d2e6f007bf424f8d02edf05fda335f832f5d67fa57d27Virustotal results 33.93% 
2019-10-10DOC_I6XW701NLCS_10102019.docdoc f9cdaed775eb3635df2b10e792da181de1c0fd3e9a5f01f5b7ead25ebfc9bb9eVirustotal results 36.21% Heodo
2019-10-10BL_5662984069603245_10102019.docdoc 13deb16765cfd9f4316397848bb834def766955e5c37a1056732e6df278ee646Virustotal results 30.51% 
2019-10-10DOC_17QJEL7L9GZH5F_X_10102019.docdoc f0229f9d03be90dd3424637d9832125d43a75e6f65a4aa5ce92fcc192b303111n/a Heodo
2019-10-10RE_018706050230.docdoc 6da107e20a4bde15076e46114cd08f53e2a082c6afd30a36b05de9b97fa66474Virustotal results 34.48% Heodo
2019-10-10INC_GZF6TVRQMYNZM.docdoc b4dd04c27697f3b87422d720c09d3a81af3823ba993e20e05de8a285932f047cVirustotal results 34.48% Heodo