URLhaus Database

You are currently viewing the URLhaus database entry for http://azeevatech.in/worthog/jOEqLh/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:287638
URL: http://azeevatech.in/worthog/jOEqLh/
URL Status:Offline
Host: azeevatech.in
Date added:2020-01-14 02:32:04 UTC
Last online:2020-03-09 17:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: spamhaus
Abuse complaint sent (?): Yes (2020-01-14 02:34:02 UTC to abuse{at}servercake[dot]in)
Takedown time:1 month, 25 days, 14 hours, 47 minutes Bad (down since 2020-03-09 17:21:57 UTC)
Tags:doc emotet link epoch3 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-01-16Invoice-BA75_47196.docdoc 37e98c8ff3288199a2a4ae056b48dde6ad9ed9cbaf76e837ded084ad42271771Virustotal results 44.64% 
2020-01-16invoice Q345_70.docdoc 9fda3248a57da63654d03722cdf9df6bbde2ffd4129ae7a8eabcd440c58868c9Virustotal results 41.94% Heodo
2020-01-15Invoice SHL19_04.docdoc d7673b1255184648e48b717b2f1041d7c0e86ba41d9657d1fa6b5e2079120467Virustotal results 42.62% 
2020-01-15invoice-G34_7713.docdoc a56c3ed265eea81662d995f74b97d4d70829797368d462b1a29b05c5edb329f6Virustotal results 33.87% Heodo
2020-01-15Inv_M09_64655.docdoc ad334781e5702c75261d00771890c3ee6f0880fc7223d24566e5bd3692e48922Virustotal results 38.60% Heodo
2020-01-15Invoice Z93_46.docdoc ced74a717f09aa4ee30f883e7140c28a91a1911384510acf14127ecd77ae577cVirustotal results 35.48% Heodo
2020-01-15INVOICE_ZK47_826.docdoc 1a86b0027ed894d1cdf56b5880263c545a5fced00774690756a6c3c0a86cb013Virustotal results 29.51% Heodo
2020-01-15Inv-IEL857_05377.docdoc abc61f312162f9df332438a4bbeec7b50ee4294b7ba314212f0b549bb14c08c8Virustotal results 27.87% Heodo
2020-01-15invoice HBS08_443.docdoc 010d4daa4dffe83b54b6d3f489493476cf3de236ff55914f90d2750df262e52dVirustotal results 24.19% Heodo
2020-01-15Invoice_YT552_5681.docdoc 1fabb58144c2f9c747f5b159597f4c79eac43f28d291ab2b3ca814c2cf11258bVirustotal results 21.31% Heodo
2020-01-15Invoice_KB388_123.docdoc b7d6a9d883ceb3098ae6e82cb15a930133fd838486587f4f1fee1145cfc87b3eVirustotal results 22.95% 
2020-01-15invoice_U323_21.docdoc d8c471af6cd71b2f8f787a8495e917b1840894d61b338e78b5acac899cadf519n/a Heodo
2020-01-15Inv-JP62_8933.docdoc 1c92f6d57d35ffced912a250f5ffbd56a68d192c7cd7f61f551bdaede3d1271aVirustotal results 18.03% Heodo
2020-01-15Invoice-LNP137_24.docdoc 5b756c518849d27a96d0e8bfdbcc853ff8f2d03089dc6c297c2a6282d2539413Virustotal results 18.03% Heodo
2020-01-14invoice XX535_416.docdoc c912fbd5e3979ce3299c6cab4db775c4d86fcd1c779d4c2b402931f558484d99Virustotal results 16.67% Heodo
2020-01-14Invoice_L63_09974.docdoc 801b373d37824fd2ad3deb032cc8ad648030947ea375eb994b2e15b23a0304ddn/a Heodo
2020-01-14Invoice-CP35_8993.docdoc c088977bf0174e3632493d2aef08b77a3aa0d3fe40c4ea66ee38f8bd96a6e6c6Virustotal results 16.67% Heodo
2020-01-14INVOICE-UFR39_962.docdoc e19211b7c079fa51a4c909460ad266587c4ac771648c802cb4af537d71e215bdVirustotal results 16.39% Heodo
2020-01-14Invoice MQ51_672.docdoc 75eb88048fa201b46d96cca9fa12f4b4917232c3d963596554a6970d007a639eVirustotal results 13.33% Heodo
2020-01-14invoice_LK800_86827.docdoc 516dd65e909384e3f3966aeb56253db71e221d6a1a6e48e323bb857217a8e467Virustotal results 13.11% 
2020-01-14invoice-RP69_02855.docdoc c9e03d9b15a357f412a9ea5302fa6183e4f06d8ace5d5b43dd1cb67d11e0146dVirustotal results 13.11% Heodo
2020-01-14invoice-JB087_42.docdoc 4ea787c535cc1b104a564ce9f2d486ab607566bc93f9eec342a6df99cceafe18Virustotal results 16.39% Heodo
2020-01-14invoice-K127_14832.docdoc c6060900e3b43701a22cfe16c2259647be6b08b8a90e145aa99e89c19d568ac0Virustotal results 15.00% Heodo
2020-01-14Invoice_CFC850_42599.docdoc 1d56a829a8b53c984eda84373182767912fbf9d5211e5c1cbd839b753410172bn/a Heodo
2020-01-14invoice TIK599_51667.docdoc 34808b889d159c685324dfa60012edfd13eba370971ce74e0e9242fe3c170ebfVirustotal results 17.74% Heodo
2020-01-14INVOICE-JE716_23186.docdoc 61ef44b898c732da0b07cc34493e971778b8835edd28386161473dd228025581Virustotal results 18.33% Heodo
2020-01-14Inv QZO32_10.docdoc 9f430cba9753330bd2dda6221bdcd057c6e188e12c984e211d0d1eee54636c51Virustotal results 16.39% Heodo
2020-01-14Inv KWW129_863.docdoc fae7e292b443e97b48949f711e94e1ee3c23e5e01cdcb3d890bb6c20d459d756Virustotal results 38.71% Heodo
2020-01-14Invoice OM279_14615.docdoc b39987017e022d0ba9deb280486992ee0ee0338e50e564915d25a97a777af0faVirustotal results 37.70% 
2020-01-14INVOICE-AGR309_326.docdoc 8ac07226c898a1f230ed551fd4403bfb8c9f1493bc84b8070486b89040aff63bVirustotal results 33.90%