URLhaus Database

You are currently viewing the URLhaus database entry for http://adagiocafe.ru/wp-content/open-zone/security-cloud/3yq8npqkawdyz9pz-t706swxt/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:301053
URL: http://adagiocafe.ru/wp-content/open-zone/security-cloud/3yq8npqkawdyz9pz-t706swxt/
URL Status:Offline
Host: adagiocafe.ru
Date added:2020-01-29 09:19:03 UTC
Last online:2020-02-10 07:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-01-29 09:20:03 UTC to abuse{at}digitalocean[dot]com)
Takedown time:11 days, 21 hours, 42 minutes Bad (down since 2020-02-10 07:02:59 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-01-31mes 20200131.docdoc 0e7d367d774aeb13f515cb6aeb965d7620d21d459f6b081814e4fde9f1033537Virustotal results 33.87% Heodo
2020-01-30ARC_37789.docdoc 1d75ee01f877ad2ad951d51e2396cd0c0c6be72e1b2fc190b59b64b733ddfd5dVirustotal results 34.43% Heodo
2020-01-30rep-20200131-594487.docdoc 4a7b3def17806559bddd23f94b5925a3fc9f5c70eee18e5a9bfba37ccbfa0e79Virustotal results 33.33% Heodo
2020-01-30Mes 064.docdoc 7d98659e0a35f0d9f00686f26d6c9dd1eaafa06f816ff21f0682741e7276bf38Virustotal results 31.75% 
2020-01-30inf_090.docdoc 8fccb53dc5d9058d11d344f7fbd34609642b1b1d2a9e4699134d165ce6ab21a0Virustotal results 25.40% 
2020-01-30Rep-20200130-5148622.docdoc ddf014e6d9e70bc1709c2ccde24524fc72092f929ea37df901ee88f152ae4c43Virustotal results 28.57% Heodo
2020-01-30DAT-72897.docdoc 6686a87ce4ec03815de4f384705a2a876aee4195ecaabf95d727a6d63030d4e8Virustotal results 29.03% 
2020-01-30Dat 2020_01_30 0096245.docdoc 1db0c100dfea192f88767bedda9beef583fcfb5c7797f32d7f93dcf045d3239cVirustotal results 25.40% Heodo
2020-01-29file 20200129.docdoc 41f2df35fe03375e39b939c95142a9c04e1613e60bcdeb4f50ea339349d04243Virustotal results 26.98% Heodo
2020-01-29file-249.docdoc a570252bf1c2fa10675c88c55f9ef2362c2c7d3ac6e6bc1400102a49f2aac861n/a Heodo
2020-01-29Inf-2020_01_29-4006271.docdoc 02e02e6f3d5f2447a5269982bfa0714b129e54897d7616443ca03430d0a3188bVirustotal results 25.81% Heodo
2020-01-29File G469215.docdoc f8a5336b371ee216fc6fb0d0b23eca343a30c1d0ff719e61a847bffaaaf64a21Virustotal results 25.40% Heodo
2020-01-29Inf 20200129.docdoc 8564e76ecaddb58e031207c908d3f7aa52a53d184067cb2c90949ed9ec7cfa8eVirustotal results 23.81% Heodo