URLhaus Database

You are currently viewing the URLhaus database entry for http://wellnessredifined.com/wp-admin/available_disk/guarded_space/1685897_HW1bxJWn/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:415496
URL: http://wellnessredifined.com/wp-admin/available_disk/guarded_space/1685897_HW1bxJWn/
URL Status:Offline
Host: wellnessredifined.com
Date added:2020-07-20 19:57:40 UTC
Last online:2020-07-22 16:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-07-20 19:58:02 UTC to abuse{at}a2hosting[dot]com)
Takedown time:1 day, 20 hours, 2 minutes Poor (down since 2020-07-22 16:00:50 UTC)
Tags:doc emotet link epoch1 heodo link ZLoader link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-07-22Mes_2020_07_22_NK17264.rtfdoc a4730c2913b245ccb77ed0c4a10031a10360828ea6681eb4f9831c502bf0c2dcVirustotal results 42.37%Heodo
2020-07-22dat 2020_07_22 5939.docmdoc b6d61e35726e8b3a7b927301d0577dc610610104d94432cced3a6d063920b865Virustotal results 45.00% 
2020-07-22ARC_2020_07_22_739328.docdoc 1e4b9f3bd8e3a2dfbb9324372219221763f9b3d91a94d416f43fed86f778ed88Virustotal results 43.33% 
2020-07-22arc 2020_07_22 S90936.rtfdoc 6a8b03f385b500a82ae03dbc5c4462e236b1ece3279d4ff4918eda37ab38271cVirustotal results 45.00% Heodo
2020-07-22file-2020_07_22-LU096.rtfdoc 86e2ed9273d315410e681e02ca8b3f70eb822ba45a792ef240e1036779de525fVirustotal results 42.37% 
2020-07-22inf LP256681.docmdoc bce88cb5c4bb7331cb4cdb37a1d9d122bf444785670578109715ea8a54c74dccVirustotal results 44.26% Heodo
2020-07-22dat 2020_07_22 5236.docdoc d594cc9f8ef872a0e9b3e12042504748ec68c52f4453d35eebfadc54a82d6a94Virustotal results 45.00% Heodo
2020-07-22Mes-20200722.rtfdoc a2bca2dbf8410837475af5b8e83246f69c279f4b502019816a62568d1ea4fa46Virustotal results 45.00% 
2020-07-22DAT_2020_07_22_651450.rtfdoc 7bbeebb4e14ec2e7561ce66b3462c414cb1009c7951a6566ff11275944c17964Virustotal results 41.67% 
2020-07-22File RD5618.docdoc 22ac435d22c7b71db3bfa296ea41d2bcd35c819895e51ed3f8994de46854b30eVirustotal results 38.33% Heodo
2020-07-22list-BT47778.rtfdoc 476f47a1fbb75de056f6a02ab3dbb2087dc5c6c2519a029219f344fc90e16280Virustotal results 36.67%Heodo
2020-07-22MES.docdoc 2bf6770c0abd36c1d4bf26b47dbe953c8f1f7968fac457a4a370a1b198945d4bVirustotal results 35.00% 
2020-07-22rep-2020_07_22-057.rtfdoc 623c4ed3bff71e9b92646983452b40e40499ac21f3a3aa0647bbf37d3581b909Virustotal results 32.79% 
2020-07-22Rep_20200722.docdoc fb1530a751799859585501c02c6cce39addd2e4572d8df0149ae14735eb2f113Virustotal results 32.76% Heodo
2020-07-22ARC-2020_07_22-053.docdoc ad0b84b38f613391231e63d53e800947407c72b0e2b87c9a79cb58d7d3520146Virustotal results 28.81% 
2020-07-22REP-2020_07_22-V022785.rtfdoc 6babaa931bc26a787edf3d1d3118c0a45416f2e9deb01bc741decf522a2bda49Virustotal results 26.67% 
2020-07-22inf 3737.rtfdoc 9d678fbeffe8eb971ce79fed03f575d8712e98b080969dd2aac8e4ede327b43cVirustotal results 27.59% 
2020-07-22File 2020_07_22 065.rtfdoc f0c9f76f342ea1c5905bd4b18f1988ecfdfeca17ad3d89bf82e9ad372ffab247Virustotal results 26.67% 
2020-07-22INF-2020_07_22-487275.docmdoc 6f567c0477f01c7cb169abe9c9bbd5a18c39d7a68160438508adc626a2835d2dVirustotal results 27.59% 
2020-07-22arc_20200722_4242374.rtfdoc b68476e293e35d7cbbf80b3561d23bad553eddd9b04a07ea072ab1ea17f1d78eVirustotal results 26.67% 
2020-07-22Inf-38059.rtfdoc 4ef2c8006cf9685f61441f329dbce4b1cfab1f70eb6709bf48168b31c42eba0dVirustotal results 26.23% Heodo
2020-07-22arc 2020_07_22 F44475.rtfdoc bf08d9f7924956f144f0211f6ea48722fea5cbcd8dff6c661dddc5a221e13742Virustotal results 26.67% 
2020-07-22LIST 20200722 MQQ21428.docdoc 656f9f7c087bc9a3d272d1aea2c369dcfa89d33e5fe59b61e4a57d7b181904d2Virustotal results 25.00% Heodo
2020-07-22inf_20200722_10226.docmdoc 4db416be55570ba71279738d715adc20cb5c44d1d0725b6ddd828b5daa6cf345Virustotal results 25.00% 
2020-07-22arc-P581358.docmdoc 586155893603026b83f2f51289bcb32825a2cbcf7f5b0bd9dad28b470d8453c0Virustotal results 25.42% 
2020-07-22FILE-20200722-M71445.docmdoc 3550a00d6cf8efb047a97d984cc26719d87014434ff444e3b70427e1b1670342Virustotal results 25.00% Heodo
2020-07-22Doc 20200722 HSV447748.docmdoc a73ea0967cbcfbf0070a32f075b9b8e4f448d2d60f08f78ef9439b64394fc035Virustotal results 35.00% 
2020-07-22Rep 20200722 076155.docdoc 8aec85cd8e1f0f312d2a3442272e4634ea845690457c6a516b51378c868a1c34Virustotal results 34.43% Heodo
2020-07-22List_20200722_GWJ429370.rtfdoc eed180c709224d892fa8a82e0c51bf623d7057a65ca483d45e3d005984dc6588Virustotal results 32.79%Heodo
2020-07-22List-2020_07_22-SR611.docdoc 7eb51f8c4719f0171a98650b63385c15908628fc4ef7838c410fc53c46a0b8a6Virustotal results 33.33% Heodo
2020-07-22Inf 2020_07_22 J368.docdoc 84ee9ec33d16ade130e8842b327ab3d4b8480fada3bb6fb25ad854dea738e9beVirustotal results 31.15% 
2020-07-22INF-20200722.docmdoc 365f2b2480d704ba0fa82cf5c25d92895a3518ed02ec36ff5f150cfe091b3574Virustotal results 29.31% Heodo
2020-07-22Arc-2020_07_22-0665.docmdoc b58dbe82f7a65596a2277d1c5ef1e42945e45cd0ad84c35872e1ed404607b9b6Virustotal results 29.03% Heodo
2020-07-22dat-2020_07_22-BYX0609.docdoc 5a4cd1c4d6c751cfd8495cae1b6503f4c1e1d98bd6c82cb7a56ebeb25d1b55abVirustotal results 27.42% Heodo
2020-07-22INF_2020_07_22_9882.docmdoc 1c8b781620a02fb02b753fe6324d8e0745326e1f4ddcab65f27e5b73892ad286Virustotal results 25.81% Heodo
2020-07-22FILE-2020_07_22-PRK48575.docdoc 0c24abb426e9a3dac8679d113235fe206c6cf1010035c97791dd11b9132a567aVirustotal results 26.23% 
2020-07-22LIST_392023.docdoc 80cb12a6bbe9b2c3065f9007e9740b9f7d75dcf2bc68651848cb08f4ce619b39Virustotal results 26.23% Heodo
2020-07-22DAT_2020_07_22_4211.rtfdoc ebdc8f40febf78564180a0f4a84f3ec60622fdb13e5a18b627ecd8f86f4e1b85Virustotal results 26.23% Heodo
2020-07-22Rep 764256.docmdoc 8d70f6580cf02bcae5c4c14396951b6e6c1ea10bcbcbb89f835c29dc7d2c8cebn/a Heodo
2020-07-22List_20200722_VR994.docdoc 3e65642f10d2b821a0c08b74d0ddfd34717dca5f9918551779815db934ae7963Virustotal results 26.67% 
2020-07-22Doc 2020_07_22 N334.docdoc d7b8fec9f533a9c31e7fe587b89552973d00bff30e4c7d8f7d4f2d93bc0eda1fVirustotal results 26.67% 
2020-07-22Arc-20200722-43460.rtfdoc ea444cde5a8ef5b6165a348732af41e4c634669259036caae42e242c5a7c9b1cVirustotal results 25.81% Heodo
2020-07-22File_165.docdoc 7fb831a6988b9e816af85e485721d4e44b500b6a9d30af5b82cf9ec4d28eb584Virustotal results 25.81% Heodo
2020-07-22LIST 2020_07_22 5661244.docmdoc d3bfea33a12c522ea8faa7840613e14c78035362c064c858c1467513a68ac9a7Virustotal results 25.81% 
2020-07-22LIST-82411.rtfdoc 812ed74f92912f98accd025c7c64b9c943032b3379fe1c9654a9deeac6d8b981Virustotal results 27.12% 
2020-07-21Inf 2020_07_22 L75074.rtfdoc 3ef294ca4013371b69d6af647114806b71bb3dc07fd56f12c078703411d61b3dVirustotal results 25.81% 
2020-07-21mes.docmdoc c1cc356eaf49711b7673b9c27f015163363a60417ad3b9b7e6883015b65d80d8Virustotal results 26.23% 
2020-07-21REP 2020_07_22 LYG004578.docdoc 3e24c4373b1e2ba1e3d16925cd0d4a1752452402ae4aaa8ad8ce498bbff5335cVirustotal results 26.23% Heodo
2020-07-21ARC_5387570.docdoc 4ed6d7c9f2e9292974253fd9e5b4063a391c156768d50cf6a8deff4425a099b2Virustotal results 27.42% Heodo
2020-07-21Arc-20200722-EOK398.docdoc 2027e8348e8d2f364d55b2bf47f9a4b37fd2ff7aabdda5ed056e3f6cd42cf777Virustotal results 26.67% 
2020-07-21doc 2020_07_22 62415.docmdoc 139f5bcf4c7fcbe0a8a5d940c5d38dd847e2c979df74dcf680208e73b8ac668dVirustotal results 26.23% 
2020-07-21file_20200722_RSV914.docdoc 205a04626bdf6f3da605d8f8ba60126d02451085528330524d899a38520be8c3Virustotal results 26.67% 
2020-07-21Arc J165.docmdoc 6852b34db0c7a6150c1095a704236a1938b4ed46cd9d7bdfd412555ebf61890aVirustotal results 26.67% Heodo
2020-07-21ARC 20200722 613680.docmdoc db88b385b97b7038cd233960f7f99ce350a72a3eecf6bbbcb227645f111d4e7cVirustotal results 26.23% Heodo
2020-07-21REP 2020_07_22 DPN549.docdoc 99b15b640124bbe2d317af00e7c30fd65e9b97abdb6e07947205d5bdd73c5737n/a 
2020-07-21Dat_20200722_H589888.docdoc 8aa3e958943656f026b02437d4c84ed9268018560390b8ab0d9807c7b23c8b41Virustotal results 26.23% 
2020-07-21Dat_FV3187.docdoc 1a3131840aa881ca39803d20f5224e9339a2cc959ac92ab756f6ded8d81a1a90Virustotal results 26.23% 
2020-07-21Arc_2020_07_22.docdoc a9dd576067b09e3fd64c7f184d22655ef1559e2270354ee005a3001d0d3d1bc0Virustotal results 26.23% Heodo
2020-07-21arc 20200722 HS084861.docdoc bcc1834e956cf9ee218e2956ae6511170e810ad54d6738ed11f98620609a3e30Virustotal results 26.67% 
2020-07-21Mes-20200721-DC013.docmdoc 253d4ce06935b6b78211d3f7b0ef787b74e019761199199ab5720333db23577aVirustotal results 25.81% 
2020-07-21REP-2020_07_21-12382.rtfdoc 6c9063989cd23941fcc8533284a0e2ccd26555ec3b40e4f292ede0bf59605f1fVirustotal results 31.67% Heodo
2020-07-21inf-20200721.docdoc a498a07bd860a86bd937ea230aea64bdbc55c3040d90c13e57a2670608c1af3fVirustotal results 31.15% 
2020-07-21dat_20200721_83339.docdoc 0974a3c01f3b2bdfefa2c3f955522a50e05bea86eac7c7da493d7548b1b5c758Virustotal results 32.79% 
2020-07-21List_2020_07_21_27117.rtfdoc 94afe20839c1b4794b268af701170510a03aca8ba4c42d4f37056f048b4f4312Virustotal results 31.15% Heodo
2020-07-21inf_2020_07_21_735916.rtfdoc 8d842d76f958c70be828a217a80c8398107c158a2320c0d36f3b75512b8deca9Virustotal results 29.51% 
2020-07-21list_S85390.docdoc 23c6039e4db511bc4f78a07eab4780a9f8a41e215b277e15bbefb19faa85171dVirustotal results 29.51% Heodo
2020-07-21rep-A9338.docmdoc f76760e19ef8c715a396435ac9a3fc931699e03a431a25ba0f9d0f20c104495cn/a 
2020-07-21Rep-20200721-5287.docmdoc 0dbbb6599f01fe8f1817f54193e2969d69f49e504430db1e659cbc26706cfa2aVirustotal results 31.67% Heodo
2020-07-21file_2020_07_21.rtfdoc 7203fa5731e4f60d782eb7248af9620384981a39282d70094f40946b1b7a60c8Virustotal results 30.65% 
2020-07-21Inf NAY42911.docmdoc 3d808e9e116ecad94d0839d1a951f8aa24c96f6dfaaa774a889edbb38c857b56Virustotal results 31.67% 
2020-07-21List 2020_07_21 AT206.rtfdoc 8771e257fc13efea0c60ee072b8fd918f12f287632341fe5f20756d5675112d9n/a Heodo
2020-07-21Mes-20200721-5111.docmdoc c969a0b83fe39c15dd74759e9c07b8d753908346f3d8dcb940fccee01f146e92n/a 
2020-07-21rep_2020_07_21_YCZ6236.docmdoc ade92c771f3d31b85f839181d2c222569b9271fef181b82414798016840e0b37Virustotal results 29.51%Heodo
2020-07-21Inf-QTB087576.rtfdoc 519ac8bbe23cc0506580ac08c5bc589d9d5382e00ea81898846715cef7502d8dVirustotal results 29.03% 
2020-07-21mes EKG454045.docdoc 620ec5ba9b3488d2f0df3f27c7efbd786e501f76dc0cd1e11e70e9783968374eVirustotal results 30.00% 
2020-07-21list 2020_07_21 ALA900018.rtfdoc 95d8b345f72bf52ee554c32232d32359be4cb131298f45e717641f6dd3e2bcadVirustotal results 30.00% 
2020-07-21list_2020_07_21_3637.docdoc 76b3bec66b692ad45b4c647003c0e5e5b5a3d416c87a613b7094960050adad61Virustotal results 29.51% 
2020-07-21MES_20200721_UA1455.rtfdoc c90c7844e46d777d31a1c9a7155a04315b31a96367bed2d076ab0d23cc7149abn/a Heodo
2020-07-21arc-20200721-00031.rtfdoc 268a97dd90a672f712cdec3a39986e6ea760af1f34b3bb9924eb08a270e0c576Virustotal results 28.33% Heodo
2020-07-21file 2020_07_21 Y928.docdoc 15617b37ed587c9af7ec3de8d4aabd3de95ded6604f652abea14822da2c94ce0Virustotal results 28.33% 
2020-07-21Arc_20200721_Y54451.docdoc 6166ebbd7b66dd9173a4731d1d34051e54c6826ee275be43d34ecfad4a0d5e7an/a 
2020-07-21Doc-20200721.docmdoc c7822a15dfb48ca078ebc0a41816b3bb1925bba9198831892a7e77fe64e84f42n/a Heodo
2020-07-21Doc-20200721-017523.rtfdoc f0bbaafc7f8e8677ac74fe5c76625f29793a0ca04c8177ce41d4b4aabbd2cde2Virustotal results 24.19% 
2020-07-21File 20200721 330.rtfdoc 64eee4aab6935f2d3d11646b1c38bdd7519aef0367f417afc89d07c5b15b8eaaVirustotal results 25.00% Heodo
2020-07-21REP 20200721 JBS176588.docdoc bde282cb96f5986ecffac2e217f661fa0f00c92f1e4b2a788aad9cbd53a2eb51Virustotal results 25.00%Heodo
2020-07-21ARC 20200721 C7843.docdoc ad614712ee0ad71a7408a527a3a2051489b0ff4f08038b7a676ad967ea160fb7Virustotal results 25.42% 
2020-07-21FILE-512.docdoc 23bf0066e26b5b6e2403af2810c57d5ee5c0e04cfb175df6c134826cdb68bce9Virustotal results 25.00% 
2020-07-20list 2020_07_21 KBD6406.docdoc c0696d196c346305861f4e358f48f216dcdde4251309abed3547504007cb858cVirustotal results 29.51% 
2020-07-20doc_2020_07_21_Z904473.docmdoc 41d61ed5ec94c9f81d804487ad8f6132520d6ac7009a8c9a7b0c074ed0748e4eVirustotal results 29.03% Heodo
2020-07-20List-UXK1868.docmdoc 616dde6dc6e22e28f4149e26996578dde114b40f896cee3cb36165d52ff70857Virustotal results 27.42% 
2020-07-20Mes 20200721.docmdoc 1269bdbbc40be92cc1f13918a692b34fdfeec466bd7d872863ecc405ff38f77fVirustotal results 27.42% ZLoader
2020-07-20dat-20200721-53782.docmdoc 4d5d4a16ec11a850141a0a77026153d2a409bb4602e624623ee007e79dfd9639Virustotal results 27.42% 
2020-07-20dat 2020_07_21 599163.docdoc 3b93eda94becc07130cb0b7b3bd4f351444c2a0810a9bd983913a4a5d833b3a5Virustotal results 27.87% Heodo
2020-07-20LIST 2020_07_21.docmdoc 00593b1d3ba64e5ca39e6c503ab0f33dcade0d3afb65c2a73f2d4696cf8a7bb0Virustotal results 27.42% ZLoader
2020-07-20MES_20200721.docdoc d28f9dea8c5837be7474d3735799da462ae74c0a0f3e7279a3eb8a50ba6183eeVirustotal results 27.42% 
2020-07-20Doc_0906166.docmdoc 10e15c8850925b8f03210b06fdc2e0e87bd7339bf6a185992346e2063cbe1e99Virustotal results 27.87% 
2020-07-20rep_20200721_1359078.docdoc f4295c97af0389a32cb42495d1b102a8e8698e5f107c50034cee1d0ef8735a1aVirustotal results 26.98% 
2020-07-20Inf-2020_07_21.docdoc 3aedca3992d77371154f015834399c14aab576050a53efa01fb5714e01beb841Virustotal results 27.42% Heodo
2020-07-20List_XVJ010.docmdoc dc9d3da24212096b6029163166558cefcd8b37aae588dd461d9b5c02700700afVirustotal results 27.42% 
2020-07-20REP 2020_07_20 U160401.docdoc ba9dea8d19d91af5e263e8bb98b6ef25c7f8d994944b6d6a0ecae3fae653199aVirustotal results 27.42% 
2020-07-20INF 33398.docmdoc a1064f658ecf514ba982b19196bb1ea0b7f1e85661c20777b3e93093510db141n/a ZLoader
2020-07-20LIST 0928849.rtfdoc 6b5e8002c323071f83df953f977caf3a477d1a0c7178e0795674d263bc2dab15Virustotal results 27.87% 
2020-07-20doc 20200720 WOZ2531.rtfdoc ed29b479d20901bb285c8146d9a69a73a34eadaa4f6c86aca69aeefe96f4fe0fVirustotal results 27.42% 
2020-07-20doc_NDQ368611.rtfdoc b1b7474023c9888e1283849b5bda6d35570bff187a8189a06b390f5db5e64683Virustotal results 28.33%