URLhaus Database

You are currently viewing the URLhaus database entry for http://lgmi.org.uk/wp-admin/available_module/test_forum/8388318312524_lXWrrwqEGQEQ/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:271423
URL: http://lgmi.org.uk/wp-admin/available_module/test_forum/8388318312524_lXWrrwqEGQEQ/
URL Status:Offline
Host: lgmi.org.uk
Date added:2019-12-18 07:50:18 UTC
Last online:2019-12-19 23:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?):mail Yes (Ticket DCU002182832 created on 2019-12-18 07:52:06 UTC)
Takedown time:1 day, 15 hours, 8 minutes Poor (down since 2019-12-19 23:01:00 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-12-19Greeting-Card.docdoc c9830c742b6d63ed05a6a06724a96918b32f5bd2a3a7632ed6866508970b3510Virustotal results 33.90% Heodo
2019-12-19ChristmasCard.docdoc d394ed6a30ff8bd2c2812675561d9662c72ea9d8c987dd329046f0ecfdeb9177Virustotal results 32.76% Heodo
2019-12-19Christmas-wishes.docdoc 87561f05a6197737c413aa57e28b0b55b4bd0914a5e0fa8a7f58e979d6f984a8Virustotal results 30.00% Heodo
2019-12-19Christmas_eCard.docdoc f15b59d89302bdb7fa1501ea904342925b565fdb37e714b6d8b0640c251a2e6dVirustotal results 24.19% 
2019-12-19GreetingCard.docdoc 77d6e16bfe0c08553094c4d421b8fbe2e19da685a837ec432e153c31376fc803Virustotal results 24.14% Heodo
2019-12-1912_19_2019_B7C615789.docdoc 27820b2e783ff5a9817650a7f8a04b23a41db0d06c86748ef6a1c4a1fdf9f43eVirustotal results 22.95% Heodo
2019-12-19file-n85t2lpp7q1mr.docdoc e75e3aebe863fbe42808fecadb2cefe8ef18d23891d13b6b970f21ef8489a238Virustotal results 19.67% Heodo
2019-12-19part_53965284065.docdoc 9f8ebcb75801c7ae8d18f034893759901eccdd2e3e18c83b038edcd4df072f8bVirustotal results 21.31% Heodo
2019-12-19file_YI41615619544.docdoc 4b96abf7da27bf640a179aca09786968bcce28787e7551ab431bbe77d144a212Virustotal results 21.31% Heodo
2019-12-19DOC EZA555012687-9408389353.docdoc 6f4b1b5c9f647af4523633a77ba84036e95619e1114b0c5fdb179a62224db00cVirustotal results 25.00% 
2019-12-19list_EBO773989888030.docdoc 3cb1650cac5770870949aeb67823e4c9f1b8bebc56fdec50beff5eac826f98feVirustotal results 21.67% 
2019-12-19part 31616390.docdoc f4f8b44946546436bc0416b3020ed6dc278c7dd8a18db0a8a9b904de6e2f6640Virustotal results 23.21% Heodo
2019-12-19release-F272246887 03580.docdoc 78817494aac2439537a26b88b92a769bdcabca8e004e90c29a6f9a7d76dbc34aVirustotal results 22.03% Heodo
2019-12-19INFO_D40481.docdoc cf080cecf871d837c84b70ce57518579cc126c06cbcc720771ec723aaf44813aVirustotal results 20.97% Heodo
2019-12-19scan_2N84677952.docdoc 51e2372fa861af972c7f0b7735c82cf27679b45c951a5e59242c550b95be3b1bVirustotal results 21.31% Heodo
2019-12-1912192019.docdoc efa5656199e7633e1cf7656adb85cad8e309a8c45bf8f8f1e01f4759224c798fVirustotal results 30.65% Heodo
2019-12-19release_12_19_2019-G3267.docdoc 46e6df81e9899f2d35c7f62fb707f6ef9e909ea682b7e62d4afd3e0ff0b9076aVirustotal results 30.65% 
2019-12-19REP_SP74312703523.docdoc 0c45e14f368d59e03d4881e280642933dd8287a088108931f5c4f1425c442300Virustotal results 24.59% Heodo
2019-12-19doc-54464.docdoc 29b09a38dd8a80d4166fa0bd02fc00380f70cc097cffc0eeb9d33e8af35e8b62Virustotal results 24.19% Heodo
2019-12-18release_m4kw61310nqmrv.docdoc 07ab35a0d78f11f8ea58be35156645e2e83acb0a13e1500f6928143220857c26Virustotal results 24.19% Heodo
2019-12-181E503201_6464.docdoc ea94f3a10992fd81fb798921e2c9207f21f134cb7784f1f201d750587f25eebaVirustotal results 25.81% Heodo
2019-12-18PART 12182019.docdoc 3be9f66ef6e3feb291bca66c44fd8651d392ab19807b9bce1a7fad00d4a518a6Virustotal results 25.00% 
2019-12-18Doc_12_18_2019_D6A60711.docdoc 6998c2f955541d5a517fd68d96604f2ea2efa83d0d1c0a04fa3d09c629bf3e18Virustotal results 24.59% Heodo
2019-12-18file_47491299788.docdoc 540a539653c7a75ee7d4574be240c9619d114d91e73a16c0eb7ff8044b46ca5dVirustotal results 20.97% Heodo
2019-12-18file_0mwn3wl2qopso.docdoc e1914937bfabeddcbe3cd0d047195049bfdabd4cf22d5734aeaa70f909ae22e6Virustotal results 24.19% 
2019-12-18G255232.docdoc 8115f30b207a37122a4aaa313c89bcf1ca7893211c7491ab43b400fb417562c4Virustotal results 25.81% 
2019-12-18Untitled_file_4nwo2ln.docdoc 11b0ed5fd91147500dc80ea454121eb3a38bc73a789ff7ab2517eaeaa98adec1Virustotal results 22.58% Heodo
2019-12-18part XC85434.docdoc a5c388ebbee623f26938d67427170bb063976b1dd0524f6ea18b402809afed4cVirustotal results 21.67% Heodo
2019-12-18info 12_18_2019-4B21654327414.docdoc 438bd7e0c1a2112525ce750cda357b571958c739448d3da46dda55f0ca8e375dVirustotal results 20.34% Heodo
2019-12-18DOC-5to27722t68nun6.docdoc 4b374d00508fa0a57fcc0ccd6b0246b913a9815d1123826e6ade818535e775f0n/a Heodo