URLhaus Database

You are currently viewing the URLhaus database entry for http://nzndiamonds.com/confort/open_ufskd1j19dnq_1p3cm/open_area/a4t_4vvutsv5y32u22/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:288709
URL: http://nzndiamonds.com/confort/open_ufskd1j19dnq_1p3cm/open_area/a4t_4vvutsv5y32u22/
URL Status:Offline
Host: nzndiamonds.com
Date added:2020-01-15 02:33:07 UTC
Last online:2020-01-25 09:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-01-15 02:34:04 UTC to abuse{at}odeaweb[dot]com)
Takedown time:10 days, 6 hours, 39 minutes Bad (down since 2020-01-25 09:13:58 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-01-17Untitled 85403610_297679.docdoc ffbf87c9d0ad31f2c8e9c87e457a6480557d911a8b9ba9807b0617afbcb96f01Virustotal results 38.71% Heodo
2020-01-177421488791_7206.docdoc ba01bbf705fc8e9d86dcbab3147ad2d84438b545b180194d1a227bf25e16ac5cVirustotal results 35.48% Heodo
2020-01-177212-7139924907.docdoc 6d32e86fcbbae85b744c8882e200b3e0bc4c568c6c485cf579e77a912d5b2bb1Virustotal results 37.29% Heodo
2020-01-16UNTITLED 7006373010_581.docdoc 0bb667859f35e9606b929fc129f045343481b1b7c72662a2b4e1d2a2dc778ec6Virustotal results 36.07% 
2020-01-160998702.docdoc 5b5fc12126eed77880537114373507d05bd137495a2a431d504b63de952c5851Virustotal results 36.07% Heodo
2020-01-168664053.docdoc 50c9656e9d815d21581aacde4941e794527b6764c8f0cbc5db0cffc94366b340Virustotal results 34.43% Heodo
2020-01-166127.docdoc 7acf0416530d3d66ae6cde15921faf920b2143c3fe981f1f3823af0f3112310dVirustotal results 33.90% Heodo
2020-01-162048393.docdoc bfca91d7d20bca7cc74ca24032dd667a3b58d1b08195279aed4d02d96cc80d7dVirustotal results 30.65% Heodo
2020-01-163809.docdoc 96ad0ee66685dee743dc21aeecd11c01153ce2c4184c54e2a112f872f0166372Virustotal results 27.87% Heodo
2020-01-16587356.docdoc 42be745d0b6670f2d82ff6f9b230498f1d496b22be3d669d3b03429693631298Virustotal results 27.59% Heodo
2020-01-16530665-89843620.docdoc d01121be7f7eb193a85d9ba14596730d3d33089f5c368501a15b89dd095b803bVirustotal results 24.59% Heodo
2020-01-162693815_1549.docdoc 5336e06637246298e68fe542f172f3b859b61f913d7b1b1f402dd43b9eab0aeaVirustotal results 26.67% Heodo
2020-01-166075514.docdoc 41a33df5428a9b69eb9ca7bbed3dd8d8776d2243cf92c3ca20d20ff0745831c2Virustotal results 24.59% Heodo
2020-01-16Untitled 267352648_1792.docdoc e8477ffb0984169428e4cb39722848db22056a7709e2f92ca5116364dbab5d07Virustotal results 26.42% Heodo
2020-01-16079.docdoc 1ea26ae156e50ac1ddc42b7759789c5aa40697112afc006a4eec2131a9057186Virustotal results 22.95% Heodo
2020-01-16156431924_5645.docdoc 8a74acae6e18e058cb6298684509848286c3dc19189bb9f64e01f582cc31b919Virustotal results 20.97% Heodo
2020-01-16Attachment 70240.docdoc 52b8ee16a9fdd2028a27ec9ba13c06aba711b407b8e6f9310d1598cf4117bbdcVirustotal results 45.16% Heodo
2020-01-16Attachments 521256-5254430073.docdoc bb762b951c4723e24ae821882880e1654f5d20f98aa29a286dbecef0c2ec3af9Virustotal results 46.67% Heodo
2020-01-16Untitled 378.docdoc 7204a25ba4b77bff66469e40fa49147a9678f02340c621c739a96f7553e0d70cVirustotal results 45.90% Heodo
2020-01-16Attachment 1570916.docdoc a37fa54831fec3fbad89949009700bc427feffbfb745baf310cad7cd5196381dVirustotal results 43.55% Heodo
2020-01-16Attachments 600483780_923372.docdoc e2a9d9016c8575cc113654642aa970a6f3e13381a5d2f57aa4974f5009d51ba0Virustotal results 44.07% Heodo
2020-01-15Untitled 7859.docdoc 0be4320540734a39e0818810123c7202ea89e28cd8bf0a28c984bf0e58ab9689Virustotal results 40.00% 
2020-01-15Untitled_543-87816485.docdoc 78616833085cfea2eb679516f1d7f7a22c930463f5d32622b2b5f3af4474021bVirustotal results 35.00% Heodo
2020-01-15Untitled-61128858 32175.docdoc 2a72d798a8c83d6eacf6b07c27ff4774da7d2b2a8b5e469cffaf22ac22a061a9Virustotal results 33.87% Heodo
2020-01-15attachments-6277-2167440.docdoc 2853b45864dd97b3be97f9acfcc6be83c6024d9b4e5b48d6b56a8c622e106b5eVirustotal results 32.26% Heodo
2020-01-15FILE 3461962550 04296.docdoc 7f65f1308b3b95febdbf94d1a72b3d6d4f155c391aac69222ebf649a48b0fda4Virustotal results 39.34% Heodo
2020-01-15Untitled_file_4528.docdoc 498ba73b01d20bf622b233b774f02d1f612e4ac63f2a7147e50219cd2ca14a12Virustotal results 35.48% Heodo
2020-01-15Attachments.docdoc 0c7825c80066650f70b7c1f56d287aae552fc2da9e2312e59df2543dbe55637an/a 
2020-01-15Untitled_file 7809908790.docdoc 39bfeeabcf77b494d068ef3ac49576ebf99b16723fa1facf76e5b0b1752d99b4Virustotal results 30.65% Heodo
2020-01-15Attachments_2355808941-31138.docdoc 1fcc43e47851593a2a11a6cb7ba15cc2b2839b21a6341e983256d740bd944b15n/a Heodo
2020-01-15Untitled.docdoc 09aaf59e8836f2b712c0394624b450ec5c3034c050c3c1aede62c93d43d4839en/a 
2020-01-15attachments_238038389.docdoc 789f9210cab6cd5d82f2eb8839d8f8681a18cd0e7cc05d4871ee30adf22833eaVirustotal results 22.95% Heodo
2020-01-15Untitled.docdoc afa32e4cd609d7d131834df22d6cbe35b681f8e56c1cd25349904c2228e42739n/a Heodo
2020-01-15Attachment 0373675.docdoc 2643b7c39e5ee1c738ff00da841b165c9db63557280f78bdcec21ae5443ca352Virustotal results 18.33% Heodo
2020-01-15Untitled 932834464.docdoc c758eda50e69cf30766e229c8a0e31a6ffd61ce8c06ccce6be7448668b19b002n/a Heodo
2020-01-15Attachments_9432.docdoc 1fa6b7a7605dc661da0153aeb358bb43dece920fd742c3dd961919856a5fa69aVirustotal results 33.33% Heodo
2020-01-15FILE 684048 3768.docdoc 7295c628c5a8c7d747f2a1108316b2c182034558ccdabc495e8a4f5beaf5771cVirustotal results 31.15% Heodo
2020-01-15Untitled-6264336-1287794228.docdoc d8d5b2b633ee63d37479e20677b732a78e17bc33409d6a9ef49a7f7a45cce08eVirustotal results 31.15% Heodo
2020-01-15Untitled_file 06650993 06595.docdoc 300e55f9a287b7166c7c0d949862460a2c74e70c5dc4067413ce478de2d617f4Virustotal results 30.65% Heodo
2020-01-15attachments.docdoc 2488e751178a194ea6dda9997f7406bd0ecf72184d0c3e5926aefc4246efa1e7Virustotal results 31.15% Heodo