URLhaus Database

You are currently viewing the URLhaus database entry for http://majan.neomeric.us/wp-includes/closed-aj2bfq3m8-kcscrhf/test-d14o7u2-apmtssuvoygfw/snblvucC-cb75n3pdvfgp9a/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:287230
URL: http://majan.neomeric.us/wp-includes/closed-aj2bfq3m8-kcscrhf/test-d14o7u2-apmtssuvoygfw/snblvucC-cb75n3pdvfgp9a/
URL Status:Offline
Host: majan.neomeric.us
Date added:2020-01-13 17:57:11 UTC
Last online:2020-01-15 12:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-01-13 17:58:08 UTC to abuse{at}a2hosting[dot]com)
Takedown time:1 day, 18 hours, 10 minutes Poor (down since 2020-01-15 12:08:30 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-01-15Untitled 7856279.docdoc 0eb76f21db0d1939fe9528d6c0d0a8de95b13c73af9f8f460279f8979347def9Virustotal results 17.74% Heodo
2020-01-15attachments 78460009.docdoc 77fc4dd48638de4c3413afaf199e417df820695062538e23e3e78f060643081aVirustotal results 18.64% Heodo
2020-01-15Attachments_284079419 04451.docdoc e7a57dcfd6677c594a09ab751b73790122e60e04ad8d00a2007eb39050569a9dVirustotal results 17.54% Heodo
2020-01-14attachments 564002686789.docdoc 2b516b9dfbc9515ce03bb72a7c5f1bc08bb71cfb3cbfb1bc0d88071ddda14994Virustotal results 25.81% Heodo
2020-01-13attachment 35493135.docdoc fbba6d7b02014a36d01d1448503eadf42499bd8e8fd01cb42b571fbd4f00eeecVirustotal results 24.59% Heodo
2020-01-13Untitled_file_99271844.docdoc 0a331e5ac2f65204c088dc370344a0e4aaea3566000973be069eda6085afee36Virustotal results 25.00% Heodo
2020-01-13file-01142020.docdoc ecc2b1d04f70a3bf94380f38783c619593694772b0b5f47768f1b64fc32dbe18Virustotal results 22.95% Heodo
2020-01-13last-duplicate-62898190.docdoc aa42702c0324253436218f3aad72916738b91970f74e8e1e07a2c57d8d400f62Virustotal results 22.95% Heodo
2020-01-13reference 7S5290468033.docdoc b9ff835bfa3fbdd86f6f4a60f522e0b37ca34c0452b6a26b11681d8c464ddc58Virustotal results 23.33% Heodo
2020-01-13approved-release-IE692134060 80260740.docdoc 984a9ca7f53217e07023969dd169f9d0da57916290438e67b8d6744a1a7911e2Virustotal results 20.97% Heodo