URLhaus Database

You are currently viewing the URLhaus database entry for https://ouryen.com/wp-admin/available-resource/external-space/y5rkjFAe9B0L-48KfMK6Kqe/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:415529
URL: https://ouryen.com/wp-admin/available-resource/external-space/y5rkjFAe9B0L-48KfMK6Kqe/
URL Status:Offline
Host: ouryen.com
Date added:2020-07-20 20:56:05 UTC
Last online:2020-07-21 22:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-07-20 20:58:03 UTC to abuse{at}digitalocean[dot]com)
Takedown time:1 day, 1 hours, 48 minutes Poor (down since 2020-07-21 22:46:25 UTC)
Tags:doc emotet link epoch1 heodo link ZLoader link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-07-21arc.docmdoc 205a04626bdf6f3da605d8f8ba60126d02451085528330524d899a38520be8c3Virustotal results 26.67% 
2020-07-21File 872.docdoc 6852b34db0c7a6150c1095a704236a1938b4ed46cd9d7bdfd412555ebf61890aVirustotal results 26.67% Heodo
2020-07-21MES-20200722-L8357.docmdoc db88b385b97b7038cd233960f7f99ce350a72a3eecf6bbbcb227645f111d4e7cVirustotal results 26.23% Heodo
2020-07-21Mes-2020_07_22-U2072.docmdoc 99b15b640124bbe2d317af00e7c30fd65e9b97abdb6e07947205d5bdd73c5737Virustotal results 25.81% 
2020-07-21ARC LQH15136.docmdoc 8aa3e958943656f026b02437d4c84ed9268018560390b8ab0d9807c7b23c8b41Virustotal results 26.23% 
2020-07-21Doc-48894.docmdoc 7262452af523481d22f70888f7619a9a6da291bacfefdbc45ed95492326d2274Virustotal results 26.23% 
2020-07-21Dat 20200722 5223.docdoc d5af3b606fe2dd9a542f85aed4bab475b5d2f91b9dc5e3e5091cc385e4624869Virustotal results 25.81% 
2020-07-21dat 20200722 W23461.docmdoc bcc1834e956cf9ee218e2956ae6511170e810ad54d6738ed11f98620609a3e30Virustotal results 26.67% 
2020-07-21INF_H559.docdoc 253d4ce06935b6b78211d3f7b0ef787b74e019761199199ab5720333db23577aVirustotal results 25.81% 
2020-07-21REP-2020_07_21-61976.rtfdoc a498a07bd860a86bd937ea230aea64bdbc55c3040d90c13e57a2670608c1af3fVirustotal results 31.15% 
2020-07-21REP 2020_07_21 QUJ456.rtfdoc 31f2efffc02e6ee0f8a7339acbb1eb5aa9faa94b66709417b22f4c2fbc77e7d2n/a Heodo
2020-07-21Inf-20200721-787.rtfdoc 050da6467ba07b4ad283cb19242ba04f2ad1abf3220c2eae335a348c061b49afVirustotal results 31.67% Heodo
2020-07-21INF-638.docdoc 5676204dc114c9f08d3e8b9d365abd67056893923c3fb15afed9d3ffe357507aVirustotal results 29.51% 
2020-07-21list_2020_07_21_I778.rtfdoc d678baaadbc56de5d5136a2bae9b233710d4016b9d09094c907e6a1442f7fca7Virustotal results 31.15% 
2020-07-21Dat-2020_07_21-BYH51514.docmdoc 193921b13cb10f97c4211e6694ee26cf2ebb7d6eff920ca64cc0d96252fc3487Virustotal results 29.51% 
2020-07-21List_20200721_7623.docmdoc 3e9d864db108ff21b3dbc6aee0596264668e95aa02677c5e98cb40bc9bf40998n/a 
2020-07-21Mes_20200721_14360.docmdoc 7203fa5731e4f60d782eb7248af9620384981a39282d70094f40946b1b7a60c8Virustotal results 30.65% 
2020-07-21Dat 2020_07_21 WG9482.docdoc 3d808e9e116ecad94d0839d1a951f8aa24c96f6dfaaa774a889edbb38c857b56Virustotal results 31.67% 
2020-07-21File-2020_07_21-GJH11798.rtfdoc 87d3dee382ec0e4a5a3c0c6979d2e460be44819c475c2cebe34bc5a83bb26b98n/a 
2020-07-21file_2020_07_21_EM939.rtfdoc 2da4a10c384d2bf3468b73d621de109cab5a29179b9d6cf4102c7b46dd937261Virustotal results 31.15% Heodo
2020-07-21Arc_20200721_PUC02004.rtfdoc 4de321a8533808438637e1c145e5ddfef9f24da81cb5129fed75c13218abecbfVirustotal results 32.20% 
2020-07-21inf-ZCV0144.rtfdoc 519ac8bbe23cc0506580ac08c5bc589d9d5382e00ea81898846715cef7502d8dVirustotal results 29.03% 
2020-07-21LIST 20200721 88333.docmdoc fb03ffd1375a8f6c374ae010a9531c83c9383799710c0fbe06499d46a9eccf26n/a 
2020-07-21MES 2020_07_21.docmdoc e6294d7fbee243e8b73deee0a892f92f51e5c1ea412f64e55a109c42c9922018n/a 
2020-07-21Arc 20200721 V575.docdoc 76b3bec66b692ad45b4c647003c0e5e5b5a3d416c87a613b7094960050adad61Virustotal results 29.51% 
2020-07-21ARC IDL8393.docmdoc 37aed6f66e26d67c404f293d6eede26254f40b2470ec3bf486f9e7fdffec0ba1n/a 
2020-07-21ARC-20200721.docmdoc abc5d61e460dd7012dd5db11834813772ba453b4bbc00771a5256848e7baea44Virustotal results 28.81% 
2020-07-21INF_2020_07_21_54245.docdoc 15617b37ed587c9af7ec3de8d4aabd3de95ded6604f652abea14822da2c94ce0Virustotal results 28.33% 
2020-07-21doc-XA07111.docmdoc 6166ebbd7b66dd9173a4731d1d34051e54c6826ee275be43d34ecfad4a0d5e7an/a 
2020-07-21LIST 2020_07_21 2241528.docmdoc c7822a15dfb48ca078ebc0a41816b3bb1925bba9198831892a7e77fe64e84f42Virustotal results 24.59% Heodo
2020-07-21ARC-2020_07_21-15437.docmdoc a82dd2141315d36a0f9ba74bb443a40e0495cd089323254c35d0c4686249de7aVirustotal results 24.59% Heodo
2020-07-21MES-20200721.docmdoc 4a245c3424b436cc23d07727f5181cf185c57b77fe1a1a95286fc12c91c36403n/a 
2020-07-21Arc BR93447.docmdoc bde282cb96f5986ecffac2e217f661fa0f00c92f1e4b2a788aad9cbd53a2eb51Virustotal results 25.00%Heodo
2020-07-21Inf-20200721-EC964.rtfdoc ad614712ee0ad71a7408a527a3a2051489b0ff4f08038b7a676ad967ea160fb7Virustotal results 25.42% 
2020-07-21DAT_BU09750.docmdoc 23bf0066e26b5b6e2403af2810c57d5ee5c0e04cfb175df6c134826cdb68bce9Virustotal results 25.00% 
2020-07-21file 20200721.docmdoc 38a052e49569227f531849f52c6e801e5abb2c68a7dd2c5a9fca8e92ec6b0211Virustotal results 24.19% 
2020-07-21doc.docmdoc deb29a892e444cde34fe7642bacbee1bf74d35fcff478966636eec77c5e28646Virustotal results 25.00% 
2020-07-21File_20200721_9670788.docmdoc ecdaf78dab236699d9244160f6b4865a5cdc8481ff2e8d798df9a342d10f1654Virustotal results 25.00% 
2020-07-21Arc-UFD81403.docdoc 9e501526cd1120438e501f104b58148cdcc62bfd5bdf617d87542dafe9240303n/a Heodo
2020-07-21Dat 20200721.rtfdoc 477bc137f269ae86b7049d592f7588c5f063e569db20bd09ff2bea3a04aeba06n/a 
2020-07-21doc_2020_07_21_27833.rtfdoc 77381e8fde74067c151274bc344395ef59df227e209ec80c0d7879aacbd5d654n/a 
2020-07-21Doc-8582.docmdoc eec0262941bfb2dcb8d29f6ef1ccc699726ac66beb04d7d34e8da3281cf19c38Virustotal results 25.00% Heodo
2020-07-21inf USA248.docdoc 2e716647297132c94bca63747c48379889273658b12366fbe0e689a2b9966470Virustotal results 24.59% Heodo
2020-07-21arc.docdoc c915922a81a8064f3c80285e3615bd5aaeb6452a92f4588fe03bdc81caa840a9Virustotal results 24.59% Heodo
2020-07-21list-139.rtfdoc 09d5cad4c8b70edf0e4e47c1abcbbdec9872ca65c129f100c3eaa76ff6197497n/a 
2020-07-21INF 2020_07_21.rtfdoc a8d9eceee2cd3735b96abf3528e7ec3e8e2d8ceb8991c00c7ff479e9034655f5Virustotal results 34.43% Heodo
2020-07-21Rep_2020_07_21_898585.rtfdoc aa4a6dae1e4ea4aaa6e4539fa9a3fbb129544c7d56807321757f41321b723abbVirustotal results 33.87% Heodo
2020-07-21Doc-816.rtfdoc f78e874b4d5c5dedede72b85b571f2b04d8edba617b6634d95c2af181e6e4dd7Virustotal results 34.43% Heodo
2020-07-21File.rtfdoc 793132996a7b6875055c2bdbde2173f37e68ce5f04ab651acad13f84ab89cb82Virustotal results 34.43% 
2020-07-21Dat-20200721-0284.rtfdoc 276568f9c3bb230aabe183dbfd02ad1c36b7aa141d382d34a839a611a422c07fVirustotal results 33.87% Heodo
2020-07-21Dat.rtfdoc 9e7349a986f7139a74245edcc8f0028bd6a10f81e79a7ac8bf7134e6d4932c2dVirustotal results 32.26% Heodo
2020-07-21INF-2020_07_21-126.docmdoc 754a0bebe018b079d9d9260256ea2106b4b5ad9a654c8b8a1989bf6e3f4568f7Virustotal results 34.43% 
2020-07-21List 20200721 JQI464.rtfdoc 3b8d069085588b448b85cab8b5d59f09dd147c35ebeeaee9e85b2c957011ca87n/a 
2020-07-21Mes 0138516.docmdoc ace014e43d78870f28d2a732d72b60fe0c602b71dcc8771989e5cfc0bb1e0befVirustotal results 33.87% 
2020-07-21LIST_20200721_ST1860.docmdoc 3bc869822322f3e700ec706660323daeca6ea90553d0bff45ce1fdc1ad6dfcfbVirustotal results 32.26% Heodo
2020-07-21list_20200721_42793.rtfdoc 122b0d68ee819b2ceb91c0b2cdcc0327860dadbb29f884a776968a58c9480ec4Virustotal results 32.79% 
2020-07-21mes 2020_07_21.rtfdoc e2a49ec64650e56e967e8b0c31b7e21ad3f1ab14516c6dc02605aaeb90f7b87cVirustotal results 32.79% Heodo
2020-07-21FILE_0877552.docmdoc 41718a7885dc57496b953e118a0e425ba2af1e37a2a3a868cf05ac83e3db792fVirustotal results 32.79% Heodo
2020-07-21Mes_844.rtfdoc 276dfa20b9cffd3ac104aeafed599b2f70a9fd0e8d4faf1d86ffd46e8354a416Virustotal results 32.79% Heodo
2020-07-21doc 20200721.docdoc 176237b901fd642cfb1c3a9fd8c50cdbf0d5ec30df6c98142d3a0e48839f9d51n/a Heodo
2020-07-21Rep-20200721.docdoc 1ac71bc3a613397302fc4eefbe3d81f107740541b6a87e051b452eaa6e74f3b8Virustotal results 32.26% 
2020-07-21Rep_20200721_ZTF103761.docmdoc 52806dd9a9f08f00c7fd38512ceeb4204d74ec64041dfee5fcc16f1ead3765ebVirustotal results 29.51% 
2020-07-21arc N574.rtfdoc 4e34674eaa422795c92ef9cb66994e18a57553e217b4bb4de69c1369608e36e6Virustotal results 31.67% 
2020-07-21Mes_2020_07_21_BS01048.docdoc 49b857e2068f710d1facd444264c6d8804ecc9e2ba9660953b24bbf213cc66baVirustotal results 29.03% Heodo
2020-07-21arc-PNC226430.docmdoc 33e64096db5340fb26c5b5d6f9b1dd89674d3a77a96a25fafcb878d9929fc9daVirustotal results 31.15% Heodo
2020-07-21DAT 44824.docmdoc 1e585df85081a824f1ec5c3f6a51599addb89b03a63bc0a5883c5f9c2d877187Virustotal results 29.03% Heodo
2020-07-20Rep 20200721 ZM700.docdoc cce8e5e706869261ede523822b673dd52e48d4351de8600f5ac209a7f0189629Virustotal results 29.03%Heodo
2020-07-20REP-20200721-663803.rtfdoc 0d657d365282571dcf58adbb3a758c81fa3df50bc081a60d01f14c5431b9492eVirustotal results 29.03% 
2020-07-20dat.docmdoc f83e32a15080c0f31451809377046083d52daef3354edecea6db6ccf4158a43aVirustotal results 30.00% Heodo
2020-07-20doc.rtfdoc 107cf68ace70917126432b415c7a9b4a18e3f87c304c1ea780b1fe0950167c29Virustotal results 29.51% 
2020-07-20LIST 760.docdoc a6ca24bb5b1de30cd63ecceac1727ca4102ed289d65fa05c550c4485e6ca372bVirustotal results 29.03% 
2020-07-20dat 20200721 FO785.docdoc c0696d196c346305861f4e358f48f216dcdde4251309abed3547504007cb858cVirustotal results 27.42% 
2020-07-20REP-20200721.docmdoc 1269bdbbc40be92cc1f13918a692b34fdfeec466bd7d872863ecc405ff38f77fVirustotal results 27.42% ZLoader
2020-07-20DAT.rtfdoc 4d5d4a16ec11a850141a0a77026153d2a409bb4602e624623ee007e79dfd9639Virustotal results 27.42% 
2020-07-20Arc_2612430.docmdoc c5dc7db865c477ba217342107932a67cab54659a8a870fa16a9d2f21ec3aade2Virustotal results 27.87% 
2020-07-20arc_2020_07_21_5550.docmdoc 959e1b792a528fab48fa32c87234357760ef40d9b01426cfa04ba657a41a326fn/a 
2020-07-20dat-54399.docdoc 8d861becdf66c056d51b6b585d1d2c98ec75e77bc3af28d354edb72f3ebb65adVirustotal results 27.87% ZLoader
2020-07-20doc BQG205451.docmdoc d6da6435e94d2fbb2a3847c934bf0b6d41c613337ac951b10fd5851eb98a9bf3Virustotal results 27.87% 
2020-07-20ARC A5465.docmdoc 3a26f638eddb01e30b8a712291a03088645dd9d2986cbe415bc1b87cd8eb70acVirustotal results 27.42% Heodo
2020-07-20Rep-76925.docdoc 3aedca3992d77371154f015834399c14aab576050a53efa01fb5714e01beb841Virustotal results 27.42% Heodo
2020-07-20LIST-20200720-OSC33971.docdoc d06b767d98bec7fa338114b2e77b1db8b1a8962819fda91258575e6cc7910b31Virustotal results 27.42%