URLhaus Database

You are currently viewing the URLhaus database entry for http://zingadata.com/wp-content/protected-680154094967-NkP2aIaG/guarded-TDUl5Ai-CW9oksOL8Jh/1705605-2vBjnW/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:414048
URL: http://zingadata.com/wp-content/protected-680154094967-NkP2aIaG/guarded-TDUl5Ai-CW9oksOL8Jh/1705605-2vBjnW/
URL Status:Offline
Host: zingadata.com
Date added:2020-07-17 15:42:04 UTC
Last online:2020-07-18 12:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: spamhaus
Abuse complaint sent (?): Yes (2020-07-17 15:44:04 UTC to abuse{at}ovh[dot]net)
Takedown time:20 hours, 52 minutes Good (down since 2020-07-18 12:36:07 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-07-18Mes.rtfdoc 8a20c5d41b0ea80165d9d900936696ea0d6e1aff5e22ec84913d2a8663f4c063Virustotal results 43.55%Heodo
2020-07-18rep 2020_07_18.docdoc 40ff69629d016b471e8d629757c3cd4ab76c1958b851d9484fe5b9f12bd05b20Virustotal results 44.26% Heodo
2020-07-18MES-WH5497.docdoc fdb43ef55c448c1ddfb8f3f4285691274726e0ebea7bb77329da28e47d9e9eb1Virustotal results 43.55% Heodo
2020-07-18FILE-20200718.rtfdoc 140826ff8504695349da93d44b8cc8bc99720a9c4155b14653f7924beaba8e52Virustotal results 44.26% 
2020-07-18Inf_20200718_N31157.docdoc d83dda004c1f5cc3b6af587c3ceace1bb5f2e76e8cdb013a30c0078e100b2e07Virustotal results 43.55% Heodo
2020-07-18Rep_20200718.docmdoc 49b1db3ab05041bbb1b9a2cd6c9b4e33f1c3dc4771d4e5b35ca7e19135c5006fVirustotal results 45.00% Heodo
2020-07-18DAT_IEM2512.docdoc 54daaf4068cebea8b89ef3f816d0b551095429f8fdd6a5b579753c27b23be06bVirustotal results 44.26% Heodo
2020-07-18Inf 20200718 SA83288.docmdoc 5a9e81f7254aa92662706fba57e78e6743c5506cefc521c3a7a3f7338202ef03n/a 
2020-07-18Rep-20200718-194.rtfdoc 0c3d714fca3f5deadd848d030e8a87bb073c39ffef3f849eed2d405f34b84408Virustotal results 43.55% 
2020-07-18INF 20200718.docdoc 0f62fa0eda89b4c7e9907ff92c9cbfcc2639c16eb162c40311c4bf40396c47e4Virustotal results 42.62% 
2020-07-18arc 386.docdoc e4f83f5b3d38b5bbe3b2372980bdb5303c74b1938b66e40288e0ad6c2c79d9b7Virustotal results 41.94% 
2020-07-18inf 2020_07_18 FWI253633.docmdoc 3b1ddd73153ba5daf34cb2df5a5bf96b2868d8dbb014d9e9e09ff8c50d07ef99Virustotal results 41.94% Heodo
2020-07-18inf 2020_07_18 475.rtfdoc 1fe6bff652bd2ae7803b24a5de11039367bea29f7f8cfd00bf212cbc841cd784n/a Heodo
2020-07-18rep 2020_07_18.rtfdoc 5239c9a098468e61c38a839792ada20222fe9fc976df4b9605c5232033be081dVirustotal results 41.94% Heodo
2020-07-18inf-BK10693.rtfdoc 9cf2aa15ea104df20d27b431f823737c30c3472d1e678d799ccfdebe2dddac62Virustotal results 42.62% Heodo
2020-07-18Rep 20200718 XU73329.docmdoc 49163b028d55db6bb748928f543fc005282f09f209002ef17f6995f237498d4fVirustotal results 43.33% 
2020-07-18arc-77295.rtfdoc 1b571fc563b1cb2aad093ccdb4f872510cb7f649942195fa2fb627eaf1bfe8e2n/a Heodo
2020-07-18Dat 20200718.docdoc 970834bb4b0a1475a24293740d8149280249bf3b2b905605a54960a1ecf8945eVirustotal results 41.94% Heodo
2020-07-18Rep-2020_07_18-22073.docmdoc 96b7758b00c5b27afcfd1a5b7dc362e67103d42475e2b6eb4e4f7327943e312fn/a 
2020-07-18LIST-ASP96302.docmdoc 0aa68db997d98b8133ee52c453e2c7b83a3eadbda9425b9ff2fc6e3ff283c48dVirustotal results 38.71% Heodo
2020-07-18inf 20200718.rtfdoc e63e2812c446c40fb32224d04930d6d1c9b673cf580e93c6475fb2bebb50b7b6Virustotal results 39.34% Heodo
2020-07-18REP-2020_07_18-X990448.docdoc 91c02fe37317be17fd879fd63a10cd9da611ae6098948f77ccdcdc94f83b5ccaVirustotal results 38.71% 
2020-07-17list 20200718 SVQ32726.rtfdoc b89bd8bfdf7fd5c0068f3ce823eb1b563cbd691a3bc70b9080b36b611af5e27fVirustotal results 37.10% Heodo
2020-07-17doc_QA8812.docmdoc 2fb80003eee9d2ded738ae5260c96a5b0b71ab7620f7b2e2d74344de868027d4Virustotal results 38.33% 
2020-07-17doc-20200718-29007.docmdoc 2fdb794642d195e0cf37d232ed02d37ed74b1b5ffa324fc9251b5cca3de8ed2fVirustotal results 37.10% 
2020-07-17File 20200718 0480.docmdoc 6264e94597601ac38cf03e59970036714ef4047d46a6c16f2de4716a4aee449cVirustotal results 35.48% 
2020-07-17Arc_IO56716.docdoc 3f4547463b7ed3f83a9fe1f4aa956bf8e5302f0181fab9c1357d98f80ca8017cVirustotal results 32.26% 
2020-07-17dat_20200718_292191.docmdoc 4f650fae13b2f497c92dd327ff98b5126875ea6741d5e9db7f7f74bb2e471f83Virustotal results 30.65% 
2020-07-17dat.rtfdoc 53bf679028cc33a63e89aca4e94e08af3e5193436dfade18feacb14756907ebcVirustotal results 31.67% Heodo
2020-07-17Arc 2020_07_18 6085691.docmdoc 15823fbaaec62d56050309844e01b51c68e70ea470896e571eb673938c147a81Virustotal results 29.03% Heodo
2020-07-17rep_Z4641.docmdoc d0640e7359f66f9c86770b4974d8d9b8f7a03f83ace42e21d03229059766b1abVirustotal results 27.42% Heodo
2020-07-17Dat-2020_07_18-71665.docmdoc ff77cfe15c2e60aea98f24924c68d7663556ed84f83a86b75fb9b7819d3780d5Virustotal results 27.42% Heodo
2020-07-17Rep MXH9839.docmdoc e0dbd16c77a20262e645efb54ad25b76ebfd52caa1e6eebe10cd7e52a81119deVirustotal results 27.42% Heodo
2020-07-17arc-243836.docmdoc 0fcd9e5cdbfd7704545e03dd7c7a3deef28f11ae26911b0f86b20687fd46d2ddVirustotal results 27.42% Heodo
2020-07-17List-LQE881061.docmdoc 7314748358ee31f8fdfdc7972cb282d8675c0e843b07383c52e124ae3b937a7fVirustotal results 27.42% 
2020-07-17Rep 410.docmdoc 2f2bf71ff720e834455f232dad3c4c5a0b4e7a0160fe14230fd7d73e3b394883n/a Heodo
2020-07-17ARC-20200718-AA06026.rtfdoc 4cb454edded5fb4393844fee5acd13a0e5b1ff881c2c184d01fd42f38fe99ec9Virustotal results 27.42% 
2020-07-17mes-2020_07_17-0232005.docdoc a64f2f02a7bb03fb55ca2a301f702c810582b38347ba2d3aff39c93e40df5d3fVirustotal results 27.42% Heodo
2020-07-17ARC.docmdoc 273b63046e85b9089957375db46fa53bdf6544588f42c68ac859af27aa61688cn/a Heodo
2020-07-17Rep_2020_07_17_0248097.docmdoc fc5976ea9262dda7f7fe8f62ede24a9fdfbed454fe8b0679e2e15a64243afd17Virustotal results 27.87% Heodo
2020-07-17dat-20200717-83624.docmdoc 9ce48179a4b378637be89a11806cc5163d83aad8d14834b2fd6c645aa4ab9517Virustotal results 27.87% Heodo
2020-07-17Mes 2020_07_17 AJC8557.docmdoc 5e20f76a136e863a01416716795a90ee97d009b2ce86b33ad78019ee5ea647b5Virustotal results 27.42% Heodo
2020-07-17Dat 2020_07_17.rtfdoc f46e59311a5633ab62ea4f5b3784e1952ac3aa9134798e323e105dc6c8f67d22Virustotal results 27.42% Heodo
2020-07-17dat 20200717 316013.docdoc 1567abdd65d465fc75f4c0532a0be49b97455d0b3bdcac9f9a6e33a5538747f3Virustotal results 27.59% 
2020-07-17file_20200717_Z213451.docdoc ef1f1a7527cab97e8d41b6308210121f218d42c9c052f000d0eee0e79924ab7fn/a Heodo
2020-07-17List_20200717.docdoc 7472c7e89fb0f2d1c2c6b136bc5f151624ac96b92297bc63baad78b84d7d4e07n/a Heodo
2020-07-17LIST_20200717_NCK22809.docdoc a7b2be0fac8d748ff2bd542469bdbb0392bc9fb1beeb0a655f199ba90de780c9Virustotal results 24.19% Heodo
2020-07-17Mes 20200717.docdoc 3f6cd2d9f5824d163dffe683601aee25638d36df49ba202cf1d10eb655c59b26n/a 
2020-07-17Rep 20200717 SE445.rtfdoc 01d4ea7bf9431d892301a49392d076c42cd4ff54af14d7530696afb56517a94bVirustotal results 24.19% Heodo
2020-07-17list 681.docmdoc 98eebc8d2406afdf081538dbd2173224e7acf295b42545adbbaeb097399a9656Virustotal results 25.42% Heodo
2020-07-17Arc_M73240.docdoc 61f184050c876f25f8c486f3efbdb25230876854fa9dd371610d212f7c738850Virustotal results 24.59% Heodo
2020-07-17doc 2020_07_17 944.rtfdoc 517476e80a66768db74eae2de0226011892f476ba4fd6fc971a1066a66d6149an/a 
2020-07-17File-2020_07_17-648360.rtfdoc 23bf8940f56854e022bd7db861e8571a6ca4215a13981adbde437fc90955da12n/a Heodo
2020-07-17arc_20200717_64823.rtfdoc c316e2a5d47552fb13ea2adc241236126eb6180da1516d453c823026dee8675fn/a Heodo
2020-07-17MES 2020_07_17 PBM83689.docdoc 27a83b12572b1a8e36fefb5359f26b51c4da21f1ede18268f3cf499c6a960e05Virustotal results 24.19% 
2020-07-17Dat_20200717_LRD563970.docdoc 1985371ca1a398a61ee10dcee334fe74b742d501902b3f8ec8a0a2d848f8e3c0Virustotal results 24.19% Heodo
2020-07-17Inf_20200717_979.docmdoc 4145531e84d3d023ff4195dbb01c6d334b30d7aaa677e9242bb53fcf0c4c8d25Virustotal results 24.19% 
2020-07-17MES_20200717_368185.docdoc ef29dec0f39326e3c89db4dab74360466ab479c53a2c911bf09b91439102d494Virustotal results 24.19% Heodo
2020-07-17DAT 2020_07_17.docdoc 28342db33e3d9cb2b5f93bcb68546a0a3d5856f0ddb1cfe22b540238eb65ac09Virustotal results 24.19% Heodo
2020-07-17inf_2020_07_17_VFI053233.docmdoc c950c43e61a3d4c9a32409c18c2b7b327a2a1fc13ed4a63fba42a467c7868ef9n/a Heodo
2020-07-17mes_20200717_8889.docmdoc 73c32b923a18c2ff2f2fc799e9be27227aac94148eaf5de8f9107dedf77781c6Virustotal results 25.00% Heodo