URLhaus Database

You are currently viewing the URLhaus database entry for http://ournarayanganj.com/wp-includes/protected-resource/guarded-warehouse/evfgqay9811j-8923z8t/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:299300
URL: http://ournarayanganj.com/wp-includes/protected-resource/guarded-warehouse/evfgqay9811j-8923z8t/
URL Status:Offline
Host: ournarayanganj.com
Date added:2020-01-28 00:17:13 UTC
Last online:2020-01-31 03:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-01-28 00:18:02 UTC to abuse{at}ovh[dot]net)
Takedown time:3 days, 2 hours, 58 minutes Bad (down since 2020-01-31 03:16:08 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-01-29Rep 20200130 EH342810.docdoc 0c899fbd963450fdf0d3d487fd91c0ef00e8c4191115d99d58a6b75476b06254Virustotal results 22.58%Heodo
2020-01-29Doc.docdoc 4e2697404537ce6a8ec19caeb51f6ab87704a57dde37bc9814ed69ace7328995Virustotal results 41.27% 
2020-01-29Dat_20200129.docdoc ff03bf7f9376aeaf634321eda33cdb1c854770422c5c08b7997dcf6d93b8febaVirustotal results 32.79% Heodo
2020-01-29file_2020_01_29_MVW184.docdoc 7e8c0e91d30b485bed7963d9d3169c243edb3f5f2ce5e8049df4731007ea4d61Virustotal results 32.26% Heodo
2020-01-29doc-20200129-0689.docdoc d9e6778d130d18c51ae971d9b67674e2efc88e36d86b1d08e74ff54214d601d8Virustotal results 30.51% Heodo
2020-01-29MES-20200129.docdoc c0ebbfa695c1e2d054d32b340956dfffb4c155a4e420caaf593b0f1bbccbbd18Virustotal results 27.87% 
2020-01-29List.docdoc 7caba02f08e117aabc3a0f109c1e5d565c3fdf3aec3ae0c90d0d78a16b6c2a8eVirustotal results 26.98% Heodo
2020-01-29dat_2020_01_29_QU088.docdoc 39a7498cdd0e0e7d2647254250c527ca46b6c7638794d1c1f524f5f5aaafaed4Virustotal results 26.23% Heodo
2020-01-29FILE-20200129-W9657.docdoc 0b0243567f8017cba7be007b4d797731af10a9c7e9971cb09881d0a646bf88a2Virustotal results 30.00% Heodo
2020-01-29arc 74068.docdoc aad9025b37d955a0929dc76185e7b87d374e735e3a30a258bd549dcfc7a1bf27Virustotal results 26.98% Heodo
2020-01-29Doc-60491.docdoc 4ce6a896a0567a69e25ea3254fe92c371b623f1c8b224dd077da760274fd4a95Virustotal results 25.81% Heodo
2020-01-29MES_2020_01_29_3912.docdoc 9e66ad03e7885710b534addc2f0c5637987970b3c6185b27cb42a4fcfa06dfc9Virustotal results 24.19% 
2020-01-29rep 20200129 24590.docdoc ab46f8f9b1905e64a35d9db9e9ff84df5eb21679b53d1291553d1b6a936554a5Virustotal results 23.81% Heodo
2020-01-29file GAK869.docdoc c2b2cd3b90f72db2fc325fdac1161626765153b7cb874ee42bea9fe3caf0eb6cVirustotal results 25.81% Heodo
2020-01-29file-RS3353.docdoc f58728aa5f5dcea800d3602a7ca76d8890d5d931c79d094bda9e1c1e04a1798aVirustotal results 45.16% Heodo
2020-01-29File 20200129 5629013.docdoc b40831be7daa247208f2f37c223101e825eca3eaedbae7a72de040e21852ae00Virustotal results 42.86% Heodo
2020-01-29Inf_20200129_MD57165.docdoc d7bcb9c0a8ff27400a3e2a846976dd062129a404c432e34e4fd885f734300144Virustotal results 44.26% 
2020-01-29Rep_P85901.docdoc d0587297f7b5699b364592f59c0d93057b42defb42c714d6381d54a6142953edVirustotal results 44.44% Heodo
2020-01-29inf_2020_01_29_3243140.docdoc 623303d6b597c92e43276ac21c6338a64cb078760e9a74bd08050666a3aeca13Virustotal results 43.55% Heodo
2020-01-29dat-S798.docdoc 24feb6df1e8f6c53bd9feedc048edbaa84e854f4accbd7fd64e8c4c74b2de5b9Virustotal results 43.55% Heodo
2020-01-29File 2020_01_29 4279359.docdoc e26c4466ac96339cf441036fb05d86cba2f624e2c7481c1ca86209c19122cbc6Virustotal results 40.32%Heodo
2020-01-28Doc-20200129-921599.docdoc 3184cbfa34c1ffcc3a308983dbff824aa454bb50b733e4cfd2cbb343030b9d6bVirustotal results 41.27% Heodo
2020-01-28mes 20200129 DOY760.docdoc f2a6a0283ff20ad3d0855ce7825d84920a0a27c55825a5a5b9ba91408388a402Virustotal results 41.94% Heodo
2020-01-28Rep_1676.docdoc 9a1962dfceb1a62ff349d932160c03ec9304954e3a0fb69e25b672fbef7b90b4Virustotal results 36.51% Heodo
2020-01-28INF 20200128.docdoc 4f0657b4834de2757799949da41f3ed5391b919f6539122e9dd06523c75df20bVirustotal results 36.51% Heodo
2020-01-28FILE-20200128-G3305.docdoc 2063f0749cb5832ffe25435cb2bdb2060ee2aca45409e0990772283bf9d37d72Virustotal results 31.25% Heodo
2020-01-28Doc 20200128 RXE2481.docdoc e973fec4c3e5b5f599c5defe0c00df33eae0e9b00f1f8a1d8f9479d4e343e446Virustotal results 25.00% 
2020-01-28file_848307.docdoc 7d66af4b1a956e0ddf0d0eb592a01b7506541b769b54272d7882c872b2019922Virustotal results 25.40% 
2020-01-28rep-2020_01_28-FHA659.docdoc 17de704a282307408b556e2328dec5c5715d0cd7136dcdc1d6fe54f841dc2bc4Virustotal results 23.81% Heodo
2020-01-28DAT 2020_01_28 640.docdoc 64c30e8ba595e7f8c199ac4f03b81d2e6c2f944c4c4f8a4bcdc8521f915771d9Virustotal results 21.88% Heodo
2020-01-28dat 2020_01_28.docdoc 267aa23c9031b06e6dc7fac45daca30a65d4f08843fe0976c2ad7201d9646dafVirustotal results 28.57% Heodo
2020-01-28Dat_2020_01_28_383.docdoc 1ac8d894b4e2be7cb2d7fc3dee2346677c5fdc5871be74589848518155c5ff8cVirustotal results 25.40% Heodo
2020-01-28Inf_20200128_OUD3403.docdoc 68938178a947046088472c9c687caf7843271233fbba2b888ada13c2bb5a5e5cVirustotal results 22.58% Heodo
2020-01-28List_2020_01_28_N46622.docdoc c5666d80df3d2361122568d511e336c58a58b27576a1cd78b434c425d8b2e809Virustotal results 22.58% Heodo
2020-01-28Inf 2020_01_28 58631.docdoc 256954bf735b73749d5fd67afbf6e789abb356f02cec192954e129996801d642Virustotal results 22.22% Heodo
2020-01-28File 20200128 419.docdoc 9cb664f1e4189925744979c21e305e2af11f98b2fedd6d32c4e3d5745b51ce07Virustotal results 22.95% 
2020-01-28DAT GR894.docdoc ae1c2a1ebc838f4092123a0fed626a10f1325e7796629f6d370111fd50d8154dVirustotal results 22.22% Heodo
2020-01-28arc_2020_01_28_866.docdoc 61d0d2aa3f2b0af2db0d2e4037ac0753965f1d03e0231b17a3695337b66ddd79Virustotal results 40.32% Heodo
2020-01-28REP-20200128-063.docdoc e5f579ac649c7d63c79885d849d0631d7a0fdddabb60cc9fe78f0583a9d00396Virustotal results 41.67% Heodo
2020-01-28doc 20200128 TU167.docdoc 20cdcb97c92b8c58397ab1170823f96ce0db2c3e93d4859bd06fb23302687d30Virustotal results 41.27% Heodo
2020-01-28ARC-2020_01_28-327606.docdoc f79992105131cff7dd4570db1648129b246323085d2843087e402a966d52503aVirustotal results 41.27% 
2020-01-28arc_2020_01_28_YEN49865.docdoc a021057a2d983bc13e1f6b1516cac0041546aa046e6822c87e09c6c8ba870b1an/a Heodo
2020-01-28rep 2020_01_28 67595.docdoc 15e7acb25aa2624c378b3a89937810c058af5ebec4e48fd733ccb400b783b1a9Virustotal results 36.07% Heodo
2020-01-28list_R8187.docdoc 3927da4014a56e521774e33625a1ac60e65e39edee26dca5fc703fc240bc0c99Virustotal results 37.10% Heodo