URLhaus Database

You are currently viewing the URLhaus database entry for https://ezselika.com/test/k3d0-zl-8781/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:415651
URL: https://ezselika.com/test/k3d0-zl-8781/
URL Status:Offline
Host: ezselika.com
Date added:2020-07-20 23:02:20 UTC
Last online:2020-12-30 12:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: malware_traffic
Abuse complaint sent (?): Yes (2020-07-20 23:04:04 UTC to abuse{at}ihs[dot]com[dot]tr)
Takedown time:5 months, 12 days, 13 hours, 26 minutes Bad (down since 2020-12-30 12:31:03 UTC)
Tags:doc emotet link epoch3 heodo link ZLoader link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-07-22Invoice-EG113_54049576.docdoc cccf983a34f7c09c86fb0271b7682b72d552ac4bd502e3ad2e66d791224f6e30Virustotal results 27.87%Heodo
2020-07-22invoice-52_37787976.docdoc f7668e2f4e40c50b6fa62b37e39899c5f7c5f742f9cd72840d3c9c1730928509Virustotal results 29.51%Heodo
2020-07-22invoice-KED30_431931.docdoc 02c7fd8ed2ff395eb8c7eb3caca1e0cec299f4db7480e6d19829069ce541bc7dVirustotal results 27.42%ZLoader
2020-07-22INVOICE FOLI9041_00975520.docdoc 0f2039a528f454dc85d45347c05e3deeed35f371d829ed160143b2cda326accbVirustotal results 26.67% ZLoader
2020-07-22invoice-090_55581236.docdoc 962dfcf9dbe2a5f4e39e1ad1100caa0da7d50a87928be0985eb4014a51f3ebc5Virustotal results 26.67% ZLoader
2020-07-22INVOICE-AIRN0333_87207512.docdoc 982b974a8a615a1e12c407d581f14151a8e9ba50cff41bd400e8be525e66b506Virustotal results 26.67% 
2020-07-22INVOICE 849_571052.docdoc 4a77f876b6d9a044b69944ac284abd8838dfac4208cdefc8de51907727421d46Virustotal results 25.81% ZLoader
2020-07-22Inv F7_694813.docdoc e7af4a6f667a4edbd224f0b3c1358fcc307b4f67688529201e0c1c9a91560f64n/a ZLoader
2020-07-22INVOICE-H602_638766.docdoc 455dfe523b388db738afa8d1f08933f7ff42ba148a286ef3b05c0d12d3424d5fVirustotal results 26.23% 
2020-07-22Invoice-5771_4963707.docdoc 4b0e52b567cd400c2c99e8d0862590bb832ae10b79277b8985318a3c05e5176bVirustotal results 25.00% ZLoader
2020-07-22invoice-VP069_5356074.docdoc 0e544f6935b9f889755f2920a690cfa00909e4ac8c9732ad5735151f2490b407Virustotal results 26.23% 
2020-07-22INVOICE-UMPQ2492_8015112.docdoc 41a0f5eacd46efb4fbcb759125506684df90da34071ae4ea585b5d15ccd3b25aVirustotal results 26.23% 
2020-07-22Inv_4521_423076902.docdoc 28a1e738931c60a90b2ea0b05c82c3a675b08700aad5fde4ac91ba96b78970ebVirustotal results 26.23% ZLoader
2020-07-22Inv-J5_98640816.docdoc ee7974d011582b83c0464f15d86e55b3306961023b16ed3c195c6c1953ea5835Virustotal results 26.23%ZLoader
2020-07-21Invoice K52_659759.docdoc 062c45cd22faf032486fa920e68f639cfd2a7b640c0d36d297e6490118729c69Virustotal results 26.23% 
2020-07-21invoice-BM20_741775.docdoc 43025670822df6a6ae1ba1f56baae65c0d563c0c12410244aeb8fb166be9f737Virustotal results 26.23% ZLoader
2020-07-21Invoice_38_359363.docdoc 3652eb3092729d00e19aef9cc79250a566fd59c1bbce7a173c742dc9c75f920cVirustotal results 26.23% 
2020-07-21INVOICE_GCHP425_50476087.docdoc 3d8d9972ea35adeb0f1d1014490dd3f3595a14b01aa429e48fe21cdfca7daa31Virustotal results 26.67% 
2020-07-21INVOICE-H2_170341067.docdoc feed500d26ff9cfe7df7ce168b01198a6f1fa9d53080d6fae513381dc632844cVirustotal results 26.67% ZLoader
2020-07-21Inv_B711_721453.docdoc 9c3f1dbdddf1aea861852243a66b3795d0cbf86a1ee36fb372505a839db31540Virustotal results 26.23% ZLoader
2020-07-21Inv FSLG406_0712401.docdoc b4e3c557317004de4b83d941a7dbd81648b8383245a1b95806b736eda61b53baVirustotal results 25.81% ZLoader
2020-07-21Inv-HHX437_342249.docdoc 9f9d6e57c9e3398ca955952e4fcf58321a7f235e18eaafe6aab3b3ddd4e88c7cVirustotal results 26.23% ZLoader
2020-07-21Inv_YCW767_6826136.docdoc 72a76d3c5a30ccf7584528d7bd29ac47062d468d56a417063c19573496089d56Virustotal results 25.86% ZLoader
2020-07-21invoice-GYNX4_164435239.docdoc 97af910f93ee8e736e135660fd84b888bdcc82c809ef30af7cac06da62907994Virustotal results 26.23% ZLoader
2020-07-21INVOICE-5182_988276271.docdoc 3363f1375d1705778c34f83818742724c75fa3c3b13bc2fc131fd95b2d03c8c8Virustotal results 25.81% 
2020-07-21Invoice-MOT4_703841.docdoc 69f98944d3760e294ea601defa72bf8b0ac0c8105267a560426f3c2f3888aff3Virustotal results 24.59%ZLoader
2020-07-21INVOICE-PO473_039866812.docdoc d00a595a3e71c743fc04ec4a2ba0eaab9fe1d76d7b018423fc5cece4e4a62a29Virustotal results 31.15% Heodo
2020-07-21INVOICE-PO473_039866812.docdoc d00a595a3e71c743fc04ec4a2ba0eaab9fe1d76d7b018423fc5cece4e4a62a29Virustotal results 31.15% Heodo
2020-07-21INVOICE_PPG8283_443959836.docdoc ae3410797611b4709d86d449bed8b8ff6b7c4b1db45f0de8cd9874e160616e52Virustotal results 31.15% 
2020-07-21Inv_U4635_875555805.docdoc a96e572969f83e205956bc1076df5193a717705c9123bd19bae210f34502c309Virustotal results 31.15% 
2020-07-21Invoice_T137_77101154.docdoc 33c53ca7807a817b61ed5b3a0a7e0ffe44059f5aac7475b14df784384aba5308Virustotal results 29.03% Heodo
2020-07-21Invoice_ZX4_28940455.docdoc 5aa42a51f985e6af1419f2043fb37f51a7a1189fda28293d47fed2abb130c86bVirustotal results 30.00% 
2020-07-21Invoice_ZWEZ092_161892366.docdoc fbe574d0ec900ab75186ccf3c428c88e23c8fbcab1f479239fc690e327a127c5Virustotal results 29.03% Heodo
2020-07-21Inv KOO035_507327.docdoc bdf6b8a3ab43c2e8091f591a913040c789e38a80e2f57d9dde2c5f0cdd9d7fe6n/a Heodo
2020-07-21invoice-T8119_95171969.docdoc a61871e76461292b6923cf001c886dc23104ef7295f6fd608c7b444e577398e6Virustotal results 27.87% 
2020-07-21Inv_MHYS5176_771098.docdoc be14def968a7a7ba9caaac07b0784bf90fcc93c6917657fa2aae18ebc3813563Virustotal results 28.33%Heodo
2020-07-21INVOICE DZBI6_102057479.docdoc 3f617acb83c5475031abcaa50669a8312b95c9bef22bcaf8f25b92f2611bb657Virustotal results 28.33% 
2020-07-21Inv 484_76537474.docdoc 43b378fd5752ed3af0656ba0189641526f78a1e2cd4481aa60e9ccef683ddb2cn/a Heodo
2020-07-21Invoice_IDW0356_138483.docdoc 3ba737578996b6326ed253c85d5aba062c569831787375ca62c49393d12fff99Virustotal results 26.23% Heodo
2020-07-21Invoice LEH0_949332.docdoc 75c9115e924a7b2ea6b2565e7d48407cbcdf06ffd452bcb6834bb821185b2272n/a Heodo
2020-07-21invoice-H26_731707308.docdoc bcc004820abd0f210285b3aa58c625f0a00187f4f545313a553b4a40ec68b6ban/a 
2020-07-21invoice-WXP41_586778.docdoc 6cb24de3cb231233f9a3fd81c726f49ff835992f50c34efc9419c8f2c7fa1d82Virustotal results 27.87% 
2020-07-21Invoice-WDX61_305578275.docdoc c809bea4eab861ed271e8d1688b261c33747782ac6756d644edf6889ba745c88Virustotal results 28.33% 
2020-07-21Invoice Y9507_14727768.docdoc 9c397f65525f4e2cd5230ca2562a27b668f9827097c9f9c407e1a6de7cb94aa6Virustotal results 26.67% 
2020-07-21INVOICE WNTG1_0840583.docdoc 969b9fcc13e520a48a60d7e65714c495c99ac1a90075aef31a7486070b8bb171Virustotal results 26.23% Heodo
2020-07-21INVOICE_79_786412071.docdoc 85eb4f995c6972a6e9cf041dda832b20a4b6125403e01e978390d32863a4967dVirustotal results 24.59% Heodo
2020-07-21invoice PXOP2378_152820.docdoc ec15490f0fe558b1c2db47afeb9bd903a82cc44b48ba66e6c66a5570e0be87b8Virustotal results 22.95% Heodo
2020-07-21Invoice ELB48_70955219.docdoc f37d602c2d14ef7dade7cd13740d744939c846704065c8d20367a677ce0ad095Virustotal results 22.95% 
2020-07-21Invoice_ELM1_0948832.docdoc b7c0c24f3f9f552c499937cca5dcb7a8fbb7bbf600dc1ad43256647401ca3d04Virustotal results 22.95% Heodo
2020-07-21Invoice-BC084_083883.docdoc 17a7bb69a541b23daa54fcde7934276a72b3e00cadadd56a1968c3d8174a51bfn/a Heodo
2020-07-21Inv 419_0470475.docdoc 3f7a1b33f7dcc1b83d5f92638f49684c3669a37cb4aadc5ca4aca17036fbe4b1Virustotal results 22.95% Heodo
2020-07-21Inv-Y95_3309084.docdoc bf8bb162498a1b769691daad0ae9d8efae07943941749a5c2bf607aab85e59e8n/a 
2020-07-21Inv IP677_0323147.docdoc f0fecf9d52e4dda54f5bbc27ff57ec831654d0b9e3a12f4c46a497ab7f653a3dn/a Heodo
2020-07-21Invoice-149_005942.docdoc e41c70d31b0de9b543804face14735e0e40236bd3f45dd6561f2ab2f37bf44f5Virustotal results 22.95% Heodo
2020-07-21Inv-W39_8800408.docdoc 391cf59d4b78c8ae4b705489a8806b14bd1e0e78a977ff7be86e69b6d7b76fbdVirustotal results 23.33% Heodo
2020-07-21Invoice-XZ48_058206.docdoc 2b44339164b5e8b860c12c8e8b4ad6dc2e1bc587463ec797b04401d948978140n/a Heodo
2020-07-21Invoice_NAN8_23063473.docdoc badf4060ed3d5a8f760803d237a17ca4f7d135d25661f96314c2ff92bca1e58dn/a Heodo
2020-07-21Invoice_R042_00407649.docdoc 7c96c1803f8860f0ecafb733376ee2fd8fffdb3313a7b4dfeab712ff27242d1bVirustotal results 22.95% Heodo
2020-07-21Inv 894_699415349.docdoc 9b139e8d9d4ee3eed55ec22fd477e7114550b8efa884f1f2e8c0fca6d3df53f7n/aHeodo
2020-07-21invoice-IF4472_491413398.docdoc d279829ce22ee6a6b6a7c259b4c7be73b7cad4a3ba3771caf3255dc6c4024f3eVirustotal results 32.79% 
2020-07-21invoice-CQ5425_0509798.docdoc 42dfaf38d76b820e0fc08cd9f255e0753717bbc652535ac71420633a72236529n/a 
2020-07-21Invoice-DD1_302688.docdoc 4c0125f72c43063a474cd06d510baf4675597b0dc15dbc75808ba19e47c3b508Virustotal results 33.90% 
2020-07-21Invoice_JF735_1422014.docdoc b2e6d17b72bbc1198dddd5144883936a9682e7393f1e55df7c55ad6bc65e0232Virustotal results 33.33% Heodo
2020-07-21invoice-76_4766781.docdoc cd7f0b8df382f4980d6dd6cec776c1e3a149069f14d0169e961f551a277f45c0Virustotal results 32.79% 
2020-07-21invoice-QC508_81815441.docdoc cb6d91c40b20a21c8b01d9eaca102127e621fb640c8e6e737c115a3838936687Virustotal results 33.33% Heodo
2020-07-21Inv_56_26567728.docdoc 9ac4e472b511c0b96a51fbe283a6c3866653e85769c59e6361242e240efcace8Virustotal results 32.26% Heodo
2020-07-21Inv-875_207137380.docdoc 33a93dab74ebd140d4d77872dc8c32cc0a9f876e750bfe15994bc2884d42a458Virustotal results 31.67% Heodo
2020-07-21Inv PH2965_821628369.docdoc 3976dbe202a8253ae23836b11eed71f9a85888684ab3a3a46f2f3841be22a5f6Virustotal results 33.33% 
2020-07-21Invoice-DZSP9973_3908504.docdoc 49a9cae346abb5e63a23f827e0b6385853b114cc143308d1df8fd50b9e90b80en/a 
2020-07-21Invoice-DXP6_76626567.docdoc 0d5a0d05a166e3741c404315a2a0204ccbde21c0c7651a68b727a261973e5905n/a Heodo
2020-07-21Invoice-SX2_332773295.docdoc bcbd3e8aab56417bcded9dbddfa8631d609998e5cdbe1e9dad903c4b5c96c156n/a Heodo
2020-07-21Inv-C007_2695893.docdoc d8c5f529c0cf82794d77beba3b49c00c66f725b4da0bd5f7811a277afada113bn/a Heodo
2020-07-21INVOICE_UGBD63_579978489.docdoc 9c2c7521e3396e71dc5881e83792ef7a57f81ddc505d6447277d5005fdd9f4d1n/a Heodo
2020-07-21INVOICE-WCQ3_022198970.docdoc c2b7ce868cb7abb3c1adecb23d86d5d693477b90b2bcd59245545d29566d5e73n/a 
2020-07-21Inv-958_986090.docdoc 95521126899057b8f8f629b236e7c4a56130094ebfa8491bfaa84b99928b2fd1Virustotal results 31.15% Heodo
2020-07-21invoice_PLC11_28492749.docdoc fbbc68006312482fe86858f0e436bf863dc02c9fba333d31bb62dcc0c2a343a3Virustotal results 30.65% Heodo
2020-07-21INVOICE-YZ538_367925.docdoc dd9bae32fde6363708378ec794fb75ef81499ddcd68be7c479d84a28dccf2a30n/a Heodo
2020-07-21Inv-WDC68_274799729.docdoc 849c28a7bcd6f4c3908e76febcd7212014640727d7c88a7a2a053e2424e36842n/a Heodo
2020-07-21INVOICE QQ656_5601437.docdoc f916021cbe73bfd8627d562ee93c19154bbbe443d8ca69be9c17b36d726c2e6bVirustotal results 29.51% Heodo
2020-07-21invoice YHK49_742381467.docdoc 744400e8635a32fb24f676ee340a20773e68142cfb176b193e6cb597e1c7a6c4Virustotal results 27.87% Heodo
2020-07-21INVOICE RK0168_818619.docdoc 46c571e4a3c0650164805d6adbe4935af2ca63f1775330650ea21acbece001b4n/a 
2020-07-21Inv-SZO1111_075987.docdoc b6ab4cb51d572229f51b7c82691ffa81d8893171a956a4bd18730072e57e9a41Virustotal results 27.42% Heodo
2020-07-20invoice_XCSX40_313376.docdoc ec606276caf63a26affcd820462757c442f3bc12093d105e4c635cfe6eb4da70Virustotal results 27.42% Heodo
2020-07-20invoice E269_1024491.docdoc 0ccc9fd33485568a01fceb6bc4e8732cd88550e973a57a38717057493286968fVirustotal results 26.23% 
2020-07-20INVOICE_QN58_9655321.docdoc d7b77575dc085ecd7c3c5afe2429e440bd01846d67a014b55f3d5e6cc210dfa5Virustotal results 27.87% 
2020-07-20Invoice GS17_333499.docdoc ff1a5fb9b5e1d4314879765e971575d7c54b8fcdc1740c201d9bbf2955e3df8bVirustotal results 27.42% Heodo
2020-07-20Invoice_EACR3_90245565.docdoc 1f438b948fbb1e65337f2cf522d485e8502fe165581ff27869b9ef565155cfebVirustotal results 27.42% Heodo