URLhaus Database

You are currently viewing the URLhaus database entry for http://wtc-chandigarh.org/ahs/private_ly8nlfymus7_cz2z0tbj9/additional_XKQZdpa7x_3nqQz9GB/oyxz_yt25z/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:289776
URL: http://wtc-chandigarh.org/ahs/private_ly8nlfymus7_cz2z0tbj9/additional_XKQZdpa7x_3nqQz9GB/oyxz_yt25z/
URL Status:Offline
Host: wtc-chandigarh.org
Date added:2020-01-16 06:45:22 UTC
Last online:2020-01-27 08:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-01-16 06:46:06 UTC to abuse{at}microsoft[dot]com)
Takedown time:11 days, 1 hours, 47 minutes Bad (down since 2020-01-27 08:33:30 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-01-17182.docdoc fe222393e56c4cd659ea423e7c3af346617b7697816e0b0a4a48bddc7ae0d641Virustotal results 20.97% Heodo
2020-01-17Attachment 748.docdoc 14bb34f9809c158815060a077bfd7fd2c0f71ba0feb346eb5b9c65604354f35cVirustotal results 21.31% Heodo
2020-01-17Untitled 3169.docdoc 6e6f3a8a41c935b71774bf8e2626d22f8a9e945be48d32174dd7dc8d4479df4dVirustotal results 18.03% Heodo
2020-01-178885312_00986.docdoc 4926c006521338ee85d1c82e53db2c39908c6e427d7570cfda91eebfd40b04ebVirustotal results 22.95% Heodo
2020-01-170890-339399.docdoc 2aa190aa43a9b64ec5c9829d4b00ebe3a0ff10d0c0604e8701023ba9277094b7Virustotal results 24.59% Heodo
2020-01-17UNTITLED 7563.docdoc b8e16d758071852851214e4f51e80159a6eb0747f4ac155f990d972c153d3fd0Virustotal results 21.67% Heodo
2020-01-17390-9559618.docdoc 98bb1f6bfa92328a9d358c7dcc5a9bd5c1698ee03743cd39f803d6c519ab746dVirustotal results 18.64% Heodo
2020-01-17Untitled 86629180_6852.docdoc d0827a4da6fe4a25a8445a1a69284f824d5b80b28ed4943a70c4dd7c9b2b10c3Virustotal results 19.67% 
2020-01-1719213026.docdoc a792e4587dd96394395bc194ba91b9b1ea7e6df65f3191ee4d5d3f9dad0954a6Virustotal results 20.00% Heodo
2020-01-17795-0671583.docdoc 5f95af6b200b61f199f217906b1f7cad5d158c25ab90a82db7ee18a4dcae1688Virustotal results 19.35% Heodo
2020-01-17054601_489.docdoc e0ad47140e2313f3bfef8babb2fc62ac841aba00c47b310bdbbb53a1e6de73b0Virustotal results 42.62% Heodo
2020-01-17Untitled 2531-351521.docdoc a0f17f80ce80691a533fe067a73e277790233ca5364620f6aa819e0f4e59b5d9Virustotal results 42.62% Heodo
2020-01-17UNTITLED 460350_6488.docdoc 6869e0e17bfecfa73511915e8a93d1a0d31a2cc85fd41c15879dba1825fd0d0fVirustotal results 37.70% Heodo
2020-01-174772042_60069.docdoc 2ac0bb40219e750c921624eb8a594fd1e3da82daef680f193111378f46cd2d73Virustotal results 37.70% Heodo
2020-01-1794091549_45826.docdoc 6d32e86fcbbae85b744c8882e200b3e0bc4c568c6c485cf579e77a912d5b2bb1Virustotal results 37.29% Heodo
2020-01-16UNTITLED 27844-6350874682.docdoc d745ac31ffb2ab613d0ff90f9aae6bee492e6d2457e4460ede41711b9de6ab83Virustotal results 37.10% Heodo
2020-01-162082.docdoc eaae7b7b5698c3222b2e1732f334dcf7b81a41dc9418fb078e83f5764ad9a8caVirustotal results 37.10% Heodo
2020-01-16670855.docdoc 50c9656e9d815d21581aacde4941e794527b6764c8f0cbc5db0cffc94366b340Virustotal results 34.43% Heodo
2020-01-1655239-441395141.docdoc b92b45e9fbf925d3b824f34e0103e1acde36e461b07a297cb06fa182a6cdf146Virustotal results 32.79% Heodo
2020-01-16969407_274869.docdoc 889cf94d7f391e3a01900604efbf7e91709771a38594159de1dadc94553a5b26Virustotal results 32.26% Heodo
2020-01-1681775-2355484798.docdoc 78ea94758e918e4115144dad9c8eab354f1e228174b8a00d49596e0afb2796c7Virustotal results 27.87% Heodo
2020-01-1668588794.docdoc 5b2a0117af3d95245f6c43ef539fbd170c31ccea1fe3a02d55e87e7fc761e2e0Virustotal results 28.81% 
2020-01-165879.docdoc d01121be7f7eb193a85d9ba14596730d3d33089f5c368501a15b89dd095b803bVirustotal results 24.59% Heodo
2020-01-16Attachment 435-72154008.docdoc 0971cc8674e5f9b1f2a3dc2647c42381380dae6cd097b96625012c379cf400b5Virustotal results 27.87% Heodo
2020-01-16Untitled 833675-6052695672.docdoc ddb70716433e271472b6ee19617842753432542bca3c2ce616662f4bbd037f90Virustotal results 25.00% Heodo
2020-01-16Attachments 0588-932726.docdoc 058abfe0e47582efbe8082a02acb54eec587373096ba71b4f00150553e29a7faVirustotal results 24.59% Heodo
2020-01-1653338.docdoc fd10ac0355308d4f45fa5a35b0f6c729c5a507258de0a74653c9cfa3d6cec96bVirustotal results 21.67% Heodo
2020-01-167947471-7156114277.docdoc 08258403e9f6dedf233554f21865bd22b4aa6941973c9268e933bb39a335d1f3Virustotal results 45.16% Heodo
2020-01-165796726-3125721473.docdoc 52b8ee16a9fdd2028a27ec9ba13c06aba711b407b8e6f9310d1598cf4117bbdcVirustotal results 45.16% Heodo