URLhaus Database

You are currently viewing the URLhaus database entry for https://cyberoceans.ng/wp-admin/statement/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:287886
URL: https://cyberoceans.ng/wp-admin/statement/
URL Status:Offline
Host: cyberoceans.ng
Date added:2020-01-14 10:42:12 UTC
Last online:2020-01-27 20:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-01-14 10:44:03 UTC to abuse{at}hostwinds[dot]com)
Takedown time:13 days, 9 hours, 53 minutes Bad (down since 2020-01-27 20:37:37 UTC)
Tags:doc emotet link epoch2 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-01-16RP_MVI_010120_PKC_011620.docdoc c684b601aa27128778612edf29e72593e6a7bd9a565156ecebe77209f20bcdfaVirustotal results 26.23% Heodo
2020-01-1646887289.docdoc 21222de7dc129cc2ceb960d884aab5660f053b0186d85f48f302257ae6075bd5Virustotal results 25.00% Heodo
2020-01-16BAL_80263033.docdoc c4d823db0828250eedf8e763728c2532d8b4320b79f9060ceba481dc8af37891Virustotal results 25.00% 
2020-01-16M_PO_01162020EX.docdoc c04d1becf96c266100fbd36099a0917b5365d9d6c13cd6dd13d9cab539244845Virustotal results 22.95% Heodo
2020-01-16RP_8FPPVZ86OOW.docdoc 771ad3b2889d51eae42be0c3c53f7ab24667105d94fcd6e6dc93bca8ebbfcd85Virustotal results 44.26% Heodo
2020-01-16FILE_LW7741149106VS.docdoc bbc7c13dbd64502c59d3890785c0a821310d29c04a915a23e62c31ed0756aea9Virustotal results 42.62% Heodo
2020-01-16ST_LF8416908170PZ.docdoc e7d0fefc64f0b592432592e65cc0ac1100b788dd475993d389a7817382135dc9Virustotal results 41.94% Heodo
2020-01-16PAY_PO_01162020EX.docdoc 026422da953eb322a55eeb64ece300246b5afd8b4ef077f946880d0202522fdaVirustotal results 40.98% Heodo
2020-01-16DOC_JAG_010120_OPB_011620.docdoc 01d706d0a5e27c62abe9a72200925c5e23ed3c309ea88354dfcb55b36437c3eaVirustotal results 40.98% Heodo
2020-01-15REP_71268151.docdoc 8a8e9cf03bf716afc717c9f37e86050a9d95c576836b48423d8c1b495831a54aVirustotal results 40.00% 
2020-01-15PO_01162020EX.docdoc 3a79ffbbb6a9a339b55ef8b444e2d9bcad5d3ef6a0aa3126963d1de377cef38fVirustotal results 34.43% Heodo
2020-01-15SW_71279898.docdoc 7a06b573bf30a70a524d8cafbaddcd46d90593d6d7bde1d6339b533e3c01a1e9Virustotal results 33.87% 
2020-01-15FILE_BSZ_010120_UXU_011520.docdoc 60d2c8f3e62e237ab3c9d9f1e822485b7cb0751b9c389cb2230222adfd189a97Virustotal results 32.79% Heodo
2020-01-15SW_VDV_010120_ZDR_011520.docdoc 3bd995e4229e3d5adb81c3572c5278e730524b0774cc7a8c4ea710bc4be1ae33Virustotal results 32.20% Heodo
2020-01-15ST_25402847.docdoc 2004c6f1abd300fa135b56f65c133ebad43e42aafae2b9b9726e3dd274424ea0Virustotal results 32.79% Heodo
2020-01-15ST_WRT_010120_QXT_011520.docdoc 41d4ab7959bb5f129efc52538f7d799786a868cd42bad36c06d311a84727d1b6Virustotal results 25.81% Heodo
2020-01-15REP_PO_01152020EX.docdoc 23f9f4c3fa726a9b81dc0c06b81c8e3424d251dc412c8ccd81a89c7aa269e4d6Virustotal results 26.23% Heodo
2020-01-15BAL_A3BIIBRXW428.docdoc 4f0095c259ca3e1e3f0cbbf9295f33bbeefdf8271b1f3d8b97ee9ba5626eb8e6Virustotal results 21.67% 
2020-01-15FILE_DMJ_010120_SKI_011520.docdoc 2d5822aff83315cc778085dcd69fd73f82a4cfe94592529b93dacb256fb97713Virustotal results 21.67% 
2020-01-15TCSU_84338979.docdoc 0e0a399c81d33e87b7aab322fbf562d8c4aae27cc067a553ee092f13bc71221dVirustotal results 24.19% Heodo
2020-01-15INV_727227813757614754066.docdoc ae23c3284230d31527a8b2f8a4721cfa9d31535c93604fcd9be10894eeffc01bVirustotal results 18.33% Heodo
2020-01-1519323590.docdoc 9982b18660c6aa9b8419bd84843d2d578fd2afb2516782ac69f0e7f8eee4efb9Virustotal results 18.33% 
2020-01-15DZX_010120_EGN_011520.docdoc e4fa19c4736ffb554aacdb6de08c4ad081fd55105dddc85b31eac5c6082e601bVirustotal results 18.33% 
2020-01-15PO_01152020EX.docdoc d3edd09e8e4e9e89dbff176e69131f189175abf1a598c18593a3bb194fc45c2eVirustotal results 37.10% Heodo
2020-01-15ST_TYL_010120_EQI_011520.docdoc 632e28a523c920e3035782ad086e6d3f0e39445486e86e7ce6a05c0e4f337292Virustotal results 31.03% Heodo
2020-01-15M_88102252.docdoc 17cbb232fc64e8c775b7ed47a28ec7a2cfaf6cca790994fad3c41fb60a648062Virustotal results 33.90% Heodo
2020-01-1567498825.docdoc 958b22bd337775f2226fecdcadf9125b8bbcad2518c23d026fd87b0714af1b63Virustotal results 31.67% 
2020-01-15Z_ADA_010120_LIV_011520.docdoc 556f0f62580588094bb0d595bdbb880b58a48148af61569258c9a84653374cbbVirustotal results 30.65% Heodo
2020-01-14PO_01152020EX.docdoc bbf79cb4aa35f097ee65fbf27c2808626e53c4460eeec58c2a828aa669b50b74Virustotal results 26.23% Heodo
2020-01-14BAL_40359714.docdoc e8e877eb89bc1a478fee7e89597bcac889a3776e27aae4692b63920428f58e53Virustotal results 19.67% Heodo
2020-01-14REP_JD6918429844IX.docdoc 8cfbeba4189d63e24f257f8d06ae7e8d2f9a54c9fbbd30e385380d356c747c7dVirustotal results 19.67% Heodo
2020-01-14INV_AYA_010120_KOF_011420.docdoc e3cd5ab045097c55bcb00a1cdc84e11c8d7214e15f536baffd899dfb8e0a3149Virustotal results 17.74% Heodo
2020-01-1425238486.docdoc 11eff1ee3baa4018b746994350fdefc67169f53201d97bb7bd9076bed15d7765n/a Heodo
2020-01-14INV_BPF_010120_BTQ_011420.docdoc ace87f0ad1ea6c26dd979dc2120722b3fb1bc858afbcd771a4f8452e7f56658cVirustotal results 18.33% Heodo
2020-01-14DOC_BTT_010120_KCE_011420.docdoc f5f4d5f08a7cb7e623d0bbfae4b90f9cf9151135d1218fc30b351b23903cbea3Virustotal results 17.74% Heodo
2020-01-14DOC_0998091688.docdoc 5d9329d9984325cb262d7fda534e57520edbb464d3da16a442cb5d9fee3c4033Virustotal results 18.03% Heodo
2020-01-14XS_PO_01142020EX.docdoc 9f6fadf2f4def948ec447af92930f40918987338f8dc4e20a73446a1cde6cb20Virustotal results 16.13% Heodo
2020-01-14ST_94976890.docdoc 7f3aca20e39fa8efaf2cc4c07503c5ab5458d3d50a6f2135ce40d512a8d76bdeVirustotal results 20.00% Heodo
2020-01-14SW_CGG_010120_RSY_011420.docdoc 5b16a018d91f6cc000c6bb710abccddf54f581e3c008ac6b050b3717116e6639Virustotal results 16.39% Heodo
2020-01-14ST_DKC_010120_OWV_011420.docdoc 60a0820035fc73459954971bd18025a1736e0cfc26e63498f85f2845db12aa2eVirustotal results 18.33% Heodo