URLhaus Database

You are currently viewing the URLhaus database entry for http://oojo.ru/wordpress/available_zone/close_9OebNEzs8m_z9g3Jg8ABn/uydsbwaptsroph32_6s5w51v808xz26/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:415387
URL: http://oojo.ru/wordpress/available_zone/close_9OebNEzs8m_z9g3Jg8ABn/uydsbwaptsroph32_6s5w51v808xz26/
URL Status:Offline
Host: oojo.ru
Date added:2020-07-20 17:13:04 UTC
Last online:2020-07-21 22:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: spamhaus
Abuse complaint sent (?): Yes (2020-07-20 17:14:02 UTC to abuse-c{at}hostland[dot]ru)
Takedown time:1 day, 5 hours, 32 minutes Poor (down since 2020-07-21 22:46:41 UTC)
Tags:doc emotet link epoch1 heodo link ZLoader link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-07-21inf 2686041.docmdoc 205a04626bdf6f3da605d8f8ba60126d02451085528330524d899a38520be8c3Virustotal results 26.67% 
2020-07-21arc_882.docdoc 6852b34db0c7a6150c1095a704236a1938b4ed46cd9d7bdfd412555ebf61890aVirustotal results 26.67% Heodo
2020-07-21inf-20200722-OI88435.docmdoc ca4ae10db92df8cf44bacee70e7560ae411a37d1559687ad47687282ca447526Virustotal results 25.81% 
2020-07-21arc-2020_07_22-GLF4659.docdoc 99b15b640124bbe2d317af00e7c30fd65e9b97abdb6e07947205d5bdd73c5737Virustotal results 25.81% 
2020-07-21Doc 20200722 8336.docmdoc 5f0b99c314488fa69352a7d73b64203da43208db1b90b18aa4032a84a0c57374Virustotal results 26.23% 
2020-07-21INF-YEZ52635.rtfdoc 1a3131840aa881ca39803d20f5224e9339a2cc959ac92ab756f6ded8d81a1a90Virustotal results 26.23% 
2020-07-21inf-2020_07_22-RB228516.docdoc bcc1834e956cf9ee218e2956ae6511170e810ad54d6738ed11f98620609a3e30Virustotal results 26.67% 
2020-07-21mes_JSD617.docdoc 253d4ce06935b6b78211d3f7b0ef787b74e019761199199ab5720333db23577aVirustotal results 25.81% 
2020-07-21rep 2020_07_21.docmdoc 238dcc628d07c6b0935926310ffab263be40646c23d2b4e4d7b89a7a6eb52dadVirustotal results 33.90% Heodo
2020-07-21inf_20200721_1083.docdoc 9e5640f95155193ba256e171fa3c82d7ee336931c3b88e12f1678197ba4d3081Virustotal results 31.15% 
2020-07-21Mes-20200721-UHV203.docdoc 954e8a3b2f224ae59b0cbc54c3f0585184cc2e26aed9315eefae4f05fe73a708Virustotal results 33.33% Heodo
2020-07-21INF-20200721-5644527.docmdoc 50d5051a82f97571415ca2550517c6872eca80692c7d6db605082a0b9876d34dVirustotal results 31.67% 
2020-07-21list 2020_07_21 033.docmdoc e79bfe79de1a90309dfce80db1cec1e5546d40c16c83e9bd96f19cb888a61f19Virustotal results 29.51% 
2020-07-21Dat_YNG75599.docmdoc f76760e19ef8c715a396435ac9a3fc931699e03a431a25ba0f9d0f20c104495cVirustotal results 28.33% 
2020-07-21FILE-20200721-67279.docdoc 193921b13cb10f97c4211e6694ee26cf2ebb7d6eff920ca64cc0d96252fc3487Virustotal results 29.51% 
2020-07-21doc 2020_07_21 3315.docmdoc 1b3a66fa218971358919a1dc0cbfcd9fdaac7ec3278bed6109f0df2550dfe3b7Virustotal results 31.67% Heodo
2020-07-21dat-2020_07_21-6183899.docdoc 7203fa5731e4f60d782eb7248af9620384981a39282d70094f40946b1b7a60c8Virustotal results 30.65% 
2020-07-21INF_20200721_5750.docmdoc 3d808e9e116ecad94d0839d1a951f8aa24c96f6dfaaa774a889edbb38c857b56Virustotal results 31.67% 
2020-07-21FILE-20200721-YV08766.docmdoc 87d3dee382ec0e4a5a3c0c6979d2e460be44819c475c2cebe34bc5a83bb26b98Virustotal results 31.15% 
2020-07-21DAT-2020_07_21-398.rtfdoc b245eea1d0569a4ba8e24c96f41af5fa75efa79b0308c9fc56adb52d053ea467Virustotal results 31.67% 
2020-07-21rep_20200721_3643.docmdoc 4702bfa3cce588e00e72da6918a41ca19da01547f668f0d07950765028a333adVirustotal results 30.00% 
2020-07-21Inf_2020_07_21_R1111.docdoc 84208f7aeaf31442b3b84394ec70e6c7d6d03b854990a567dffe1702c392bf9bVirustotal results 30.00% 
2020-07-21list_20200721_52264.docmdoc 620ec5ba9b3488d2f0df3f27c7efbd786e501f76dc0cd1e11e70e9783968374eVirustotal results 30.00% 
2020-07-21REP 190.docdoc 608a39d31a2ab34bf79ebd042bf10028b9bc7ed087dbb810306956dd1ba45567Virustotal results 28.81% 
2020-07-21File-20200721-BVT62693.docdoc 76b3bec66b692ad45b4c647003c0e5e5b5a3d416c87a613b7094960050adad61Virustotal results 29.51% 
2020-07-21dat-2020_07_21-403.docdoc 37aed6f66e26d67c404f293d6eede26254f40b2470ec3bf486f9e7fdffec0ba1n/a 
2020-07-21inf 2020_07_21 V761.rtfdoc 268a97dd90a672f712cdec3a39986e6ea760af1f34b3bb9924eb08a270e0c576Virustotal results 28.33% Heodo
2020-07-21rep 20200721 6884198.docdoc 15617b37ed587c9af7ec3de8d4aabd3de95ded6604f652abea14822da2c94ce0Virustotal results 28.33% 
2020-07-21Dat-2020_07_21-743200.rtfdoc 186a6ee6322d2e6656e0125cba0536eef43d3a66e4ce73e129332dbb236cab60Virustotal results 25.86% Heodo
2020-07-21inf-20200721-1460769.docdoc 75cb0d33fbd33b08aede2930d9ac79f7086ef7db06803c493d9214d84a4391e3Virustotal results 24.59% 
2020-07-21ARC-EYG0003.docmdoc a82dd2141315d36a0f9ba74bb443a40e0495cd089323254c35d0c4686249de7aVirustotal results 24.59% Heodo
2020-07-21LIST_2020_07_21.docdoc 55a103c16b3c4d8958091e55cfb62091fd2d209e07ffba0a5c88252946b8ae39Virustotal results 25.42% 
2020-07-21mes-785.rtfdoc bde282cb96f5986ecffac2e217f661fa0f00c92f1e4b2a788aad9cbd53a2eb51Virustotal results 25.00%Heodo
2020-07-21list-2020_07_21-331.rtfdoc ad614712ee0ad71a7408a527a3a2051489b0ff4f08038b7a676ad967ea160fb7Virustotal results 25.42% 
2020-07-21Dat-2020_07_21-91912.docmdoc 64eee4aab6935f2d3d11646b1c38bdd7519aef0367f417afc89d07c5b15b8eaaVirustotal results 25.00% Heodo
2020-07-21ARC_20200721_3793604.docmdoc 38a052e49569227f531849f52c6e801e5abb2c68a7dd2c5a9fca8e92ec6b0211Virustotal results 24.19% 
2020-07-21doc-2020_07_21-QSU887.docmdoc 48c64e836cbb9aaab5e723471651e7826d9bc032cf7aaba59ce8006ab14626edVirustotal results 24.59% 
2020-07-21Arc_2020_07_21_WSW2972.docmdoc ecdaf78dab236699d9244160f6b4865a5cdc8481ff2e8d798df9a342d10f1654Virustotal results 25.00% 
2020-07-21file 20200721 I151550.docmdoc 44d93b12f57a0d476e774d58da761e56ddd20f6d299acc2390a9111082e448deVirustotal results 23.33% 
2020-07-21arc 20200721.docmdoc 477bc137f269ae86b7049d592f7588c5f063e569db20bd09ff2bea3a04aeba06n/a 
2020-07-21ARC.rtfdoc 77381e8fde74067c151274bc344395ef59df227e209ec80c0d7879aacbd5d654n/a 
2020-07-21mes_2020_07_21_MUT462983.docmdoc eec0262941bfb2dcb8d29f6ef1ccc699726ac66beb04d7d34e8da3281cf19c38Virustotal results 25.00% Heodo
2020-07-21file 20200721 913.docmdoc 2e716647297132c94bca63747c48379889273658b12366fbe0e689a2b9966470Virustotal results 24.59% Heodo
2020-07-21mes_212532.docmdoc 14f298945ba541ac7f6cf64b12d67423fffd432bbf2e598d25cd50f0e8cfd86fn/a Heodo
2020-07-21Inf-20200721.docmdoc 7b19a0f8eec4e97830795e9551e2f09ceb4fe93fab484152127439f952f2b404Virustotal results 23.33% 
2020-07-21Doc 2020_07_21 M65600.docmdoc a8d9eceee2cd3735b96abf3528e7ec3e8e2d8ceb8991c00c7ff479e9034655f5Virustotal results 34.43% Heodo
2020-07-21dat EJN7369.docdoc aa4a6dae1e4ea4aaa6e4539fa9a3fbb129544c7d56807321757f41321b723abbVirustotal results 33.87% Heodo
2020-07-21DAT-VQX322098.docdoc f78e874b4d5c5dedede72b85b571f2b04d8edba617b6634d95c2af181e6e4dd7Virustotal results 34.43% Heodo
2020-07-21List_20200721_9709628.rtfdoc 793132996a7b6875055c2bdbde2173f37e68ce5f04ab651acad13f84ab89cb82Virustotal results 34.43% 
2020-07-21Dat 2020_07_21 LL48226.docdoc bac082845ee6dfbda9489e3c6f1c90611ad4ba2546da7e855578225a51197ebaVirustotal results 34.43% Heodo
2020-07-21file 2020_07_21 TTT586.docdoc 9e7349a986f7139a74245edcc8f0028bd6a10f81e79a7ac8bf7134e6d4932c2dVirustotal results 32.26% Heodo
2020-07-21file-2020_07_21-7237979.rtfdoc 5816bc271d88617e627d64210b8ac9df417f8072b362af861ade766137eb1564Virustotal results 34.43% Heodo
2020-07-21Rep.docdoc d5a87ccc4bd01f38606d27a60a266aa20d88acc095b6a637e037c20ddb0d51bfVirustotal results 33.33% Heodo
2020-07-21Dat 4589.rtfdoc 3bc869822322f3e700ec706660323daeca6ea90553d0bff45ce1fdc1ad6dfcfbVirustotal results 32.26% Heodo
2020-07-21MES-20200721-987706.rtfdoc 122b0d68ee819b2ceb91c0b2cdcc0327860dadbb29f884a776968a58c9480ec4Virustotal results 32.79% 
2020-07-21LIST_2020_07_21_H108.rtfdoc e2a49ec64650e56e967e8b0c31b7e21ad3f1ab14516c6dc02605aaeb90f7b87cVirustotal results 32.79% Heodo
2020-07-21inf-Z94997.docmdoc 570d0bfaa6b14c83103c29fcbceba4f66df0c68406b8e2c61929ca743241b372Virustotal results 33.33% 
2020-07-21MES-20200721-M408064.docdoc 276dfa20b9cffd3ac104aeafed599b2f70a9fd0e8d4faf1d86ffd46e8354a416Virustotal results 32.79% Heodo
2020-07-21DAT.docdoc cd605825d74d60677fec41c84dc39462658ebbd5edd8e29cfe9610a29291b3e9Virustotal results 32.79% Heodo
2020-07-21REP_2020_07_21_92330.docmdoc 6c7da386cdaa6398c065aafedeb01b31ec959ecf615e9601a81a2c86488c4c86Virustotal results 32.26% 
2020-07-21List-2020_07_21.docmdoc 1236dd4116a2c4ba4427175d0a3e88c848f70dc6219f6b22f1997ae3ba80ba14Virustotal results 31.67% 
2020-07-21dat_2020_07_21_ZSS273.docmdoc 4e34674eaa422795c92ef9cb66994e18a57553e217b4bb4de69c1369608e36e6Virustotal results 31.67% 
2020-07-21File_WC874.docmdoc 49b857e2068f710d1facd444264c6d8804ecc9e2ba9660953b24bbf213cc66baVirustotal results 29.03% Heodo
2020-07-21mes 20200721.rtfdoc 33e64096db5340fb26c5b5d6f9b1dd89674d3a77a96a25fafcb878d9929fc9daVirustotal results 31.15% Heodo
2020-07-21LIST_XUZ17678.rtfdoc 99c6c8f02c2fef792bc8a5a6406b0baa294156cb38b8df191f98cfb5a90547f5Virustotal results 30.51% 
2020-07-20doc_20200721_BAY97205.rtfdoc cce8e5e706869261ede523822b673dd52e48d4351de8600f5ac209a7f0189629Virustotal results 29.03%Heodo
2020-07-20List_20200721_5879.docdoc f83e32a15080c0f31451809377046083d52daef3354edecea6db6ccf4158a43aVirustotal results 30.00% Heodo
2020-07-20inf 2020_07_21 SY69170.docdoc 68f85e639cf07fc84c8204cec1bd82fd8985d854aa17d02c89b58b255b98ed48Virustotal results 29.51% 
2020-07-20Arc 20200721 I439883.docdoc a6ca24bb5b1de30cd63ecceac1727ca4102ed289d65fa05c550c4485e6ca372bVirustotal results 29.03% 
2020-07-20LIST 20200721 RMR590041.docmdoc 41d61ed5ec94c9f81d804487ad8f6132520d6ac7009a8c9a7b0c074ed0748e4eVirustotal results 29.03% Heodo
2020-07-20list-20200721-JW6866.rtfdoc 1269bdbbc40be92cc1f13918a692b34fdfeec466bd7d872863ecc405ff38f77fVirustotal results 27.42% ZLoader
2020-07-20rep_BN2827.docmdoc c6050ddd07c6d8c4aee73c52d0e50d6056ebd5f3e82550d8c771fc4353d489feVirustotal results 28.81% 
2020-07-20REP 20200721 8133.docdoc eccf2d10cb44fb11136e2edaf7af5de351637d1479888142221354abf8986760Virustotal results 27.42% 
2020-07-20dat-20200721.docdoc ec87e9999c894cdef59c964d06c6de6c7a7134d373b4e754180d90dd5fb23f64Virustotal results 27.87% 
2020-07-20INF P31769.docmdoc 8d861becdf66c056d51b6b585d1d2c98ec75e77bc3af28d354edb72f3ebb65adVirustotal results 27.87% ZLoader
2020-07-20LIST_2020_07_21_KAF86397.rtfdoc 10e15c8850925b8f03210b06fdc2e0e87bd7339bf6a185992346e2063cbe1e99Virustotal results 27.87% 
2020-07-20Arc 2020_07_21 SD709.docmdoc eb1f1cf5bb142fb70ac9421ceb472dad3f583fcc852ae768c1ae347506cbcc04Virustotal results 27.42% 
2020-07-20inf-RFK61132.docmdoc dc9d3da24212096b6029163166558cefcd8b37aae588dd461d9b5c02700700afVirustotal results 27.42% 
2020-07-20REP-2020_07_20-GO1237.docmdoc ba9dea8d19d91af5e263e8bb98b6ef25c7f8d994944b6d6a0ecae3fae653199aVirustotal results 27.42% 
2020-07-20mes 2020_07_20 AF625.rtfdoc 97e66ad16955f21f83dae53917dbdefba08fc07108392a96327eeef55698a04cVirustotal results 27.42% 
2020-07-20DAT_2020_07_20_DUY709412.docmdoc 6b5e8002c323071f83df953f977caf3a477d1a0c7178e0795674d263bc2dab15Virustotal results 27.87% 
2020-07-20Dat_20200720.docdoc ed29b479d20901bb285c8146d9a69a73a34eadaa4f6c86aca69aeefe96f4fe0fVirustotal results 27.42% 
2020-07-20ARC_20200720.docmdoc 3bcf67ec54f94ea28c8c35560ef2f6b2ef8090951c1ce2d0a94aebfd04a4786eVirustotal results 27.42% 
2020-07-20Mes_66817.rtfdoc d2592f81840c6459ba7e0d05e58f48c703e29b3a97134a5bec16e60e85e72098Virustotal results 25.81% 
2020-07-20Rep 2020_07_20 ZBU05628.docmdoc c8b4b7e686954bc7ebd4115f98ec29527b1b0d47d1a817adebc3c6b44c26d787Virustotal results 25.81% 
2020-07-20dat_XD645046.rtfdoc 0cd73a229418caf24e599b0db39e5ff3ae2903ffb83340c026c0ffa0f7e9f86bVirustotal results 25.81% Heodo
2020-07-20rep_2020_07_20.docmdoc c80914cd78207fba0edb12b286a7d21c3d616e6d3ff2951298af4b2ed23d9e9fn/a 
2020-07-20List_2020_07_20_X59679.docdoc 4fe945b83567f1855dbc8ea4f8e0e0e2258117238ca2184dd10ba6cf797377a7Virustotal results 25.81% 
2020-07-20INF-2020_07_20-B842.rtfdoc 31adf970450cb8a76809bff658f19a6e62c31894dee3957e3374752544f042d3Virustotal results 25.81% ZLoader
2020-07-20inf 2020_07_20 387.docmdoc ced320fc1306a4a243f620ee674dcf68044ff65ee78550b2c81b082de90478d4n/a Heodo
2020-07-20mes-2020_07_20-FY33568.rtfdoc 2f2f3276bfebb391e62d48da6409cf08b82aa4247a1ebb51815c36d5df448b1cVirustotal results 26.23%