URLhaus Database

You are currently viewing the URLhaus database entry for https://new.butcherbox.ca/wp-content/closed-zone/w23z2-rrvx23-portal/552h-0x70s38z8/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:301372
URL: https://new.butcherbox.ca/wp-content/closed-zone/w23z2-rrvx23-portal/552h-0x70s38z8/
URL Status:Offline
Host: new.butcherbox.ca
Date added:2020-01-29 13:30:04 UTC
Last online:2020-02-05 04:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-01-29 13:32:04 UTC to network-abuse{at}google[dot]com)
Takedown time:6 days, 15 hours, 10 minutes Bad (down since 2020-02-05 04:42:07 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-01-31DAT 2020_01_31.docdoc fdff204adb396442e96fcae7e6eb706100c2bc24302b6d28cb0e7c7017e6b752Virustotal results 20.63% Heodo
2020-01-31doc X57389.docdoc d5445cd45e4966135ff65a6af6341bf45c741ef1c6848ecb243ff018f6e82b49Virustotal results 20.31% Heodo
2020-01-31Arc 20200131 09259.docdoc 0e2122a41ca8f1c4da12fcfcc2e5b8b49ea2a37c3eaf73293868bc24ef064cadVirustotal results 20.31% Heodo
2020-01-31Rep 9550.docdoc f5de6a5841b14ac02d31b476bd367a5495077baac0b74d43c3fad406c435ef6cVirustotal results 20.31% Heodo
2020-01-31FILE-22770.docdoc 169782fa7efc07acb0422ef461b4a4a78061aad49c077b0b87a2767bfb17d1dbVirustotal results 20.63% Heodo
2020-01-31arc-20200131-94236.docdoc c48e2773b1c96e7daa9d3bc4fd1483accd205d1c2b96829ca45693b1c0070246Virustotal results 20.63% Heodo
2020-01-31Arc 840425.docdoc 5e6dd9e021a411428c5cf4568b64a54012b59f651aa6de7231907b906d0d75dfVirustotal results 20.31% Heodo
2020-01-31List_2020_01_31.docdoc bbbebb1cb4949ec8b5b6ecd92354f36e8fd0c1974786e7e0a280985da813ddacVirustotal results 39.68% Heodo
2020-01-31arc-F09912.docdoc a216a991a208d9df3215d21bebd8090c98e83deb9b5ffa17d12f8afb7254e9dfVirustotal results 36.51% Heodo
2020-01-31inf-2020_01_31.docdoc 1d5d7a4b8d20a162bdc4181e6eb30c2947bf9496a596f0b4253e4d0bf3a237f4Virustotal results 34.92% Heodo
2020-01-31mes-2020_01_31-DU56728.docdoc 3f06f76d7c0513a57f669310613bdf155f10f70e96f00c973688b844e7b35511Virustotal results 34.38% Heodo
2020-01-31list 2020_01_31 I1961.docdoc 0e7d367d774aeb13f515cb6aeb965d7620d21d459f6b081814e4fde9f1033537Virustotal results 33.87% Heodo
2020-01-30list-20200131-QJS32687.docdoc 8b8ac377b125159eb6e1072fdd5f5de37fee27255f9d74a002ea3733d1e26d96Virustotal results 33.33% Heodo
2020-01-30LIST H7512.docdoc 4a7b3def17806559bddd23f94b5925a3fc9f5c70eee18e5a9bfba37ccbfa0e79Virustotal results 33.33% Heodo
2020-01-30LIST_2020_01_30_D9782.docdoc 1c0859e5d8598a3a69b86b72040141cafcd9bfd65c1eb013c5b0ab6cae6a3ba6Virustotal results 34.38% Heodo
2020-01-30Rep_FXJ44659.docdoc 8d620996902ce4375a9a3deebbc5c0d42f557f27571ede93b3aef6d1d60851edVirustotal results 33.33% Heodo
2020-01-30dat-2020_01_30-PE195.docdoc ccc80152ffd943656f9b75b18514d30785d1b5193d9f34ce6ccef30486dcc771Virustotal results 38.10% Heodo
2020-01-30File-20200130.docdoc 8f4a6501b7d0a50fd6e8efa50f1eb0cf68d343cd44f5e4b28c47fd843d56fe6fVirustotal results 37.10% Heodo
2020-01-30inf_31838.docdoc 8c8f7298785538a05550f91ae8595438ec40d6ee1eeca5c8621637837844db13Virustotal results 34.92% 
2020-01-30MES_20200130_4333.docdoc a3e590acc9e6ce72247dc74f2f2f325c893a22a67454a0bb4fc6a9af933d003dVirustotal results 35.59% 
2020-01-30List-2020_01_30-MY1800.docdoc 5b3ecf9b163010774eeddf211a8a2b66ed7d0f88aa0923b625a98b286cd61b05Virustotal results 32.26% Heodo
2020-01-30dat_IWQ477.docdoc 054dc6f95ca2c5699c9ec12023da0a02fd368c873065cbaf0d61c0dd21bbcf08Virustotal results 23.81% Heodo
2020-01-30MES-20200130-DFE174914.docdoc 7f54a24f0a586b64d8ca11fbd094e81382366e6f15d2763a59b71865c9b7e3f8Virustotal results 30.16% Heodo
2020-01-30LIST-2020_01_30-7820076.docdoc 59debc121e07429e9781390b5706d7664a515cd7965e1f5f2bff76d40c5f9facVirustotal results 31.15% Heodo
2020-01-30Rep_20200130_GWT6702.docdoc 23b0933587b2ce021d44e764dcdfb9961d967b9e9490d154457df7e420cf9fa4Virustotal results 25.00% Heodo
2020-01-30doc-20200130-A6877.docdoc 5bc933b06feee88adfc394eb69c9d959f6991db49fd201383118001992715312Virustotal results 23.81% 
2020-01-29LIST-YC62165.docdoc 0c899fbd963450fdf0d3d487fd91c0ef00e8c4191115d99d58a6b75476b06254Virustotal results 22.58%Heodo
2020-01-29mes_2020_01_30_1554485.docdoc 85c258f8091b2a6da1461d4c2824bb525cf42d962f58316c3820dbb2dbdd7273Virustotal results 39.06% Heodo
2020-01-29arc-20200129-T761.docdoc ff03bf7f9376aeaf634321eda33cdb1c854770422c5c08b7997dcf6d93b8febaVirustotal results 32.79% Heodo
2020-01-29LIST-JP73634.docdoc 32deed56d02a022397ea7ad62636fb17cd2477bce75a4e641ffe7226889beaa3Virustotal results 31.75% Heodo
2020-01-29Arc-HGX9202.docdoc 8dc40d99f92dd1c2ff5556ae1ece5c86052c849ee3b1c2d6f92a088e0ecd17b3Virustotal results 30.00% Heodo
2020-01-29INF_20200129_YNW06134.docdoc 663720228dc88e78c5a0af17e50e28381e609c2a6699420b5cb713ea689b46e0Virustotal results 26.56% Heodo
2020-01-29MES-H12596.docdoc b63b33fd0e0216f8beac7d3e6a9941f125e09fb241fb5e38a12cc822b8ba53baVirustotal results 25.81% Heodo
2020-01-29List.docdoc a570252bf1c2fa10675c88c55f9ef2362c2c7d3ac6e6bc1400102a49f2aac861Virustotal results 27.87% Heodo