URLhaus Database

You are currently viewing the URLhaus database entry for https://www.shengxi.co/wp-content/languages/plugins/sites/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:300841
URL: https://www.shengxi.co/wp-content/languages/plugins/sites/
URL Status:Offline
Host: www.shengxi.co
Date added:2020-01-29 05:44:08 UTC
Last online:2020-01-30 02:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: spamhaus
Abuse complaint sent (?): Yes (2020-01-29 05:46:02 UTC to abuse{at}alibaba-inc[dot]com,intl-abuse{at}list[dot]alibaba-inc[dot]com)
Takedown time:20 hours, 38 minutes Good (down since 2020-01-30 02:24:53 UTC)
Tags:doc emotet link epoch2 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-01-29PAY_5ZR2J0V.docdoc 1fdfbf7f30a7e8b1dcea188b87f98b95a33b4d708bb434ceb97f14fb0d870275Virustotal results 33.33% 
2020-01-29BAL_501583076725439151.docdoc caeb63c281928fabb08a3fd9e2dc5ce013153975c7c123520486b8659e018454Virustotal results 27.87% 
2020-01-29BAL_HN1704151194HK.docdoc c39aa63290c4b66475a91f31655d381cb05d871f118ec9c5128f64d19dadd59fVirustotal results 26.98% Heodo
2020-01-29RP_N5DO17J1OIH.docdoc 9bdef37e7bb472e96094bda10305a1ddf86f819c9b420a0f3ebf9aa624aa0fd4Virustotal results 26.67% Heodo
2020-01-29SW_PO_01292020EX.docdoc c4e98ede56a0efb2e0953087b459ba70b7bbfedb7262693870cff7eabf85c4a1Virustotal results 44.44% Heodo
2020-01-29PAY_SU5923310426VV.docdoc fb7d2e4906191ac7b86a0e8077b8de278746f5742a6588395d3b25761e9514b9Virustotal results 44.44% Heodo