URLhaus Database

You are currently viewing the URLhaus database entry for https://teta-co.com/en/LLC/10xi2l3w5w9/m9itm275200454323349817ogag2sha7gelm19g6/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:415455
URL: https://teta-co.com/en/LLC/10xi2l3w5w9/m9itm275200454323349817ogag2sha7gelm19g6/
URL Status:Offline
Host: teta-co.com
Date added:2020-07-20 18:18:05 UTC
Last online:2020-07-24 12:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: spamhaus
Abuse complaint sent (?): Yes (2020-07-20 18:20:02 UTC to abuse{at}hetzner[dot]de)
Takedown time:3 days, 18 hours, 26 minutes Bad (down since 2020-07-24 12:46:18 UTC)
Tags:doc emotet link epoch2 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-07-21REP_64381991910697992372695.docdoc d66daca09d1c1f681fe2a70f0c59169a289161ce207ed16feffe0b2b23a790afVirustotal results 22.95%Heodo
2020-07-21DOC_PO_07212020EX.docdoc 59e827ab690ebe0398ef2409db0e89fd63ebe9c9a198ed0cd9febc218813f6a1Virustotal results 22.95% Heodo
2020-07-21WOGJ_PO_07212020EX.docdoc db38d38b8c391434f4ddb964a8737400a96eff22fa39ecfb74eabdc785bbfe30Virustotal results 22.03% Heodo
2020-07-21INV_GEG_070120_EOL_072120.docdoc 252e3f0055225fdaaf98be11f4b12f61d98b7311d4aa43aaf9cca4de02b07a26n/a 
2020-07-21DIO18EN486XRA292.docdoc 660ff4d3124a99db58894556a3461eda17393ca94c27e075185e72536eb6735en/a Heodo
2020-07-21DOC_07138180.docdoc fc2bb7719f33ff249113e3c05c4b2b6fdbc99190e250b3073295e271c553f0d0Virustotal results 32.26%Heodo
2020-07-21DOC_CI3506036667WW.docdoc d604f20c04d25e448176ddfdf3e01865091590cdf5f2cd2c42eb9af7cf41c718Virustotal results 33.90% Heodo
2020-07-21INV_16894168.docdoc 53b9a409018adc25ac26a608d9fae417659211d8754dbf7f07c3e4710a026774Virustotal results 32.79% 
2020-07-21S_38877031.docdoc 6c9bab65f28ed13d572adc91a1af99d0862edc49891f2ffa643423c75a0cc4c7Virustotal results 30.00% 
2020-07-21482041727154269217641.docdoc 41239e9448583b6a09ec8574d34295b254dec60348e219d0a1355467c3ab37a4n/a Heodo
2020-07-21031198272939.docdoc 9e8362c34f689302d747bee833e604d4d7e10c7d519b401e9c9fe257bc241197Virustotal results 32.20% Heodo
2020-07-21BAL_E5WIK1NA4ADF8WF1.docdoc c9d9cfb4d6f95d66b6480f5dfb60edf7b0c4581895b68dbf25a830f9006b2d3bVirustotal results 31.67% 
2020-07-21INV_5758270041764660528663.docdoc 98f9e3f351ef4ad0fa44e42564bff893ca18599495d514658ebc5bcc78534dd6Virustotal results 30.65% Heodo
2020-07-21SD_RC3454567205YQ.docdoc 31753fd36a9782bc8df01e639556c0f7a72a7eecc326382a981a6c69edc8d318Virustotal results 31.67% 
2020-07-21DOC_EYFF1XJFYVI7KQ.docdoc 9953004cdba2aa71a7552b41ec9b4718f1fcf03abe1589629ce524746cece259Virustotal results 30.65% 
2020-07-21REP_V6DXOJBRCX.docdoc 296943dcba8c391e81d42bf4b7887bd2929bfa9cb511d3e1a9056ca64013f00fn/a 
2020-07-21REP_PO_07212020EX.docdoc 74fdca7126b9d049956422f500ca2a0257fb7956f385a45c6b5c36230fd3a2a5Virustotal results 28.33% 
2020-07-21LG3R72X.docdoc e341cca78e446c93ee00c387cee3517341c104ac0587512879a602ff58871c64Virustotal results 27.87% Heodo
2020-07-21CDF_13265512284.docdoc 46e68edbdc3dd2b5e70179a93d4f788074fa29e649c64063f636ee4e37c42fbfVirustotal results 28.33% 
2020-07-21UT250929W5.docdoc 229710df49bb17b78fae2414fe4ff138609fdbbe410dc297f49d8b7bf10ad109n/a 
2020-07-20BZU_NTY_070120_QEE_072120.docdoc 2244d87c2c6131e7df121cd684003eafdf3dfb9e5770c802d5d999569ab9b47bVirustotal results 28.33% 
2020-07-2080991929366021.docdoc 1d9333d44f7442890d84cbc3972b9d00c93bf1556042f7b58c1386365eae3c76n/a 
2020-07-20INV_4J2N768Q.docdoc f532fcd4387475d48960a5f0863e003f7eba0281354728bf832162a0ca5673fbn/a Heodo
2020-07-20KIL_LP1672198788GA.docdoc 2a7edcd4009ca88459bd2ec64af866f700abb7acb68cc5b13a40315c51976df7Virustotal results 28.33% 
2020-07-20BAL_9951130939190868112.docdoc 80b27b3a7242ea8cdfbcc0d266c4fe489cc0b035fb614b755e2546c80cdfbed5n/a Heodo
2020-07-20INV_CFD_070120_CGG_072120.docdoc 86dc2706e8cf0a78688e5a503d6e8db55275a7ec3de655ec33a9db2f6ffeef57Virustotal results 29.51% Heodo
2020-07-20D_MR5V2A7NL.docdoc fc5b7108a0eaca8bbecdbea0d3405756a6cdb3dc9911363730b275e1e29acc4fn/a Heodo
2020-07-20BAL_RMN_070120_VCQ_072120.docdoc a6ce3b9c522d36ac4e91cf8e2cf1581bc9d7e6548f1e66ff998e11662f6894cbVirustotal results 30.19%Heodo
2020-07-203RBBDAYL306EB2.docdoc 53dfc48b5b049b05895bc4e2e5fca037946e69d083cdac2e6c222b76c86f4763Virustotal results 29.51%Heodo
2020-07-20REP_70065335.docdoc 7f03bfe30209b66d5222b95c0bf69ee94565ad8b70353eb822b30468db57cc93Virustotal results 27.87% 
2020-07-20NN_443842664657385092.docdoc d076c294bf588b7c9f8db6b5f35a63758c5710feb5920c263ceb77a501bb9133Virustotal results 27.87% Heodo
2020-07-20KJXR_BTD_070120_YCD_072120.docdoc cfb6588d9181a97aa1f93b2b9f8af82134836e916938a80a217cd03fe4294811n/a Heodo
2020-07-20U_8011158605.docdoc eb0f6632e1ec41f11634db7c691a38cdae71cd06268568eebbd34ad96fd37618n/a 
2020-07-20MD_CR7361039044VJ.docdoc 8163146178e6d55057843fa5f0da1b851d049bf802aea69b44aaec7352be33d4n/a Heodo
2020-07-20987047764797598286.docdoc 33c897cc3c1d11687231644af13032e24358c594f4b484a7040a3eeecfae7145Virustotal results 27.87% 
2020-07-20REP_LXT_070120_YBD_072020.docdoc 0acf607beb7b1d944c892c27acd49b254a36f39059812903c9d8bcde71acc6e5Virustotal results 27.42% 
2020-07-20DOC_593681673.docdoc 265c8a20b2d97de3e6464bbc718b00cb55562ca2512c7ca4f8fd6034613fff53Virustotal results 24.19% 
2020-07-20AW6008979199FG.docdoc f479686dfc59c7e2cf8607ef958b067288d47d2de6a92db1b0c1268b9862f42bn/a 
2020-07-20REP_00416238.docdoc c3600f30980f5a111ed79fcdcd415e663332ea4eeff9c324b1c7374dc479ac7dVirustotal results 28.81% Heodo
2020-07-20FILE_MWTCTCFXXNXJ12.docdoc 1e146c18d65265b27e23f9ee84a8f1d20c046aa76c30ed386710a10cb0da2960Virustotal results 27.87% 
2020-07-20DOC_439937107845.docdoc 4d4dde2b4708fc336d7f1450e624c14cb25a836d5081855b17a1166a8b1b2521Virustotal results 26.67% Heodo
2020-07-20INV_QTL_070120_XGG_072020.docdoc d2357823bd33f106343cf781864392d133112d09386148aeec801d016dde2d47n/a 
2020-07-20INV_R7FF82PLAKTFHPBR.docdoc 1a328aa48b0ba77e6965043cc7dc2d97edd5ac325b193b1f102a50a492444948Virustotal results 26.23% 
2020-07-20INV_96115481.docdoc de77fe86034d9281adb201f8d4d906343d622467a133d5ef3d0e8cfe50dd4061n/a Heodo