URLhaus Database

You are currently viewing the URLhaus database entry for https://theeruditionofsoftandtech.com/wp-content/pzz-9tl4q-3415/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:415652
URL: https://theeruditionofsoftandtech.com/wp-content/pzz-9tl4q-3415/
URL Status:Offline
Host: theeruditionofsoftandtech.com
Date added:2020-07-20 23:02:27 UTC
Last online:2020-07-22 15:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Status unknown
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: malware_traffic
Abuse complaint sent (?): Yes (2020-07-20 23:04:06 UTC to google-cloud-compliance{at}google[dot]com)
Takedown time:1 day, 16 hours, 43 minutes Poor (down since 2020-07-22 15:47:39 UTC)
Tags:doc emotet link epoch3 heodo link ZLoader link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-07-22Invoice_R711_563005713.docdoc b5708647fb659a4ace2819f0509a8aade944a82e7153a40f9476f40d5e2d8ab1Virustotal results 41.67% 
2020-07-22Inv-OZC3_9397320.docdoc 0755b92799a2d90e2f71183965154961239c89ca15d8ae77b2346b068e7d53daVirustotal results 39.34% Heodo
2020-07-22INVOICE 5339_54773138.docdoc 9f61c634155e4c4c25cda79ab4da536afe7bfeeb879754985ea6bb196ee0272dVirustotal results 38.33% Heodo
2020-07-22invoice-IMUJ8027_600434.docdoc 393ac27aa81e021260be2c3de9507d953b3d57f2dfd0ebee96d4a18af210b982Virustotal results 28.33%Heodo
2020-07-22Invoice-CMMH4_462561.docdoc ff44b1d144fb3343d7d7580652077fadeb72bcac55733df8fad986203c3e15a4Virustotal results 35.00% 
2020-07-22Inv-C9_226330.docdoc ac88ce74a14a0b5a78e6bdf86ffa9bd0f2770cd7255210ffed47affc2f220dc7Virustotal results 30.00% 
2020-07-22Inv_3_399673.docdoc f58aa21cf6707dcc6eceb3fa977fa15325d0faab50dd9f08b2ea392c28658068Virustotal results 32.79% Heodo
2020-07-22invoice-FX4_20815133.docdoc 595c40c85c80044dbfd9608613744dd68bcc0b2fbbf8517599d0c78eee6ad99eVirustotal results 30.36% 
2020-07-22INVOICE-Y9_5939291.docdoc 9c36f76e927ccde32781becbf6a3a8ee5d2b843d19172105b9b9610680e3d82dVirustotal results 30.51% 
2020-07-22Invoice XLBW77_75326622.docdoc 18fe339a03b33e6b2fbe0b44287c1a8869d8b21af3ce76b437a1243ab5601102Virustotal results 28.33% 
2020-07-22INVOICE-ON92_497233.docdoc 6734a3ae13c38e8fd44de930f8cf0da0bda0a3afec46ea9a8899e61b8762ecaaVirustotal results 27.87% Heodo
2020-07-22invoice_4_735395160.docdoc f7668e2f4e40c50b6fa62b37e39899c5f7c5f742f9cd72840d3c9c1730928509Virustotal results 29.51%Heodo
2020-07-22Inv_YY43_199718326.docdoc bc1674694af57a7a421c131be6eb3403a2d2392a862aaff679ac7d2087690953Virustotal results 28.33% Heodo
2020-07-22Invoice-K4_1111000.docdoc 02c7fd8ed2ff395eb8c7eb3caca1e0cec299f4db7480e6d19829069ce541bc7dVirustotal results 27.42%ZLoader
2020-07-22Inv 296_40427863.docdoc 0f2039a528f454dc85d45347c05e3deeed35f371d829ed160143b2cda326accbVirustotal results 26.67% ZLoader
2020-07-22Inv 6_579160376.docdoc 962dfcf9dbe2a5f4e39e1ad1100caa0da7d50a87928be0985eb4014a51f3ebc5Virustotal results 26.67% ZLoader
2020-07-22invoice-24_577392.docdoc 2336ac58867df7f458ac7e7aa61927f0dc767d9c37fddbd7ef26bcf2351833b8Virustotal results 26.23% ZLoader
2020-07-22Invoice-FK144_3842003.docdoc 134fcf928417712824838f1dbfb546e7735361bf131324ddffe62aedbcd5f679Virustotal results 26.23% 
2020-07-22invoice J865_31059714.docdoc 64904286f139771314584f5ebf505208623b941f9fbc7c36e5039edcf595d9e8n/a 
2020-07-22Inv-KYE7_184679896.docdoc 59ea049ff3ab24d93029a5395073975931ffb768537ca09e45fa6bf34af34accVirustotal results 26.67% 
2020-07-22invoice-BOQT89_506995951.docdoc 455dfe523b388db738afa8d1f08933f7ff42ba148a286ef3b05c0d12d3424d5fVirustotal results 26.23% 
2020-07-22Invoice-RSR073_5982803.docdoc 4b0e52b567cd400c2c99e8d0862590bb832ae10b79277b8985318a3c05e5176bVirustotal results 25.00% ZLoader
2020-07-22Invoice-ZTBF539_0528789.docdoc 0e544f6935b9f889755f2920a690cfa00909e4ac8c9732ad5735151f2490b407Virustotal results 26.23% 
2020-07-22invoice D590_155869.docdoc 41a0f5eacd46efb4fbcb759125506684df90da34071ae4ea585b5d15ccd3b25aVirustotal results 26.23% 
2020-07-22Invoice-RKUH7435_5036326.docdoc 7476dba24b28d2a074d7e75aea79591f98fbb95b065c91870b5a8198ab615f19Virustotal results 26.23% 
2020-07-22Invoice_QVAM1318_201686.docdoc f615f977969d02231be115ed31cc86bd74d0348b382f6da944231f573468b960Virustotal results 26.67% 
2020-07-21INVOICE-FDJ9468_847808.docdoc 062c45cd22faf032486fa920e68f639cfd2a7b640c0d36d297e6490118729c69Virustotal results 26.23% 
2020-07-21Inv-AP84_628635.docdoc 112aa4be04d85780875343365b40f2fe9351e69dd4756d26a01f923251e17a49Virustotal results 25.81% 
2020-07-21Invoice-424_7372165.docdoc b697a31e24a1872813f044cfe369887a6850b80c7d79509587d7e4e6955ba322Virustotal results 26.67% ZLoader
2020-07-21Invoice-XPLG6_9663359.docdoc 3d8d9972ea35adeb0f1d1014490dd3f3595a14b01aa429e48fe21cdfca7daa31Virustotal results 26.67% 
2020-07-21Invoice-QKO27_43153353.docdoc feed500d26ff9cfe7df7ce168b01198a6f1fa9d53080d6fae513381dc632844cVirustotal results 26.67% ZLoader
2020-07-21Invoice_L612_420872.docdoc 29fd633ba82c884e342db1c88a40a28984b2cb2fc5cbb4fdd901a3c6e5850817Virustotal results 26.23% ZLoader
2020-07-21Inv_K4774_109126.docdoc 9e2fa2ec0c3818292f9a10539ef4bdcda848df84a8e0223cae2f28f82360a11fVirustotal results 25.81% ZLoader
2020-07-21Invoice PN22_17329948.docdoc fa107254b6f843bb079661702c64654bcdffb1fe41fdcdd125d5d99437e15106Virustotal results 26.23% ZLoader
2020-07-21invoice-WB030_5224042.docdoc 2bf992bac6895328fca415aeeee4f89aff347608e709524ad9a2f549b007dae3Virustotal results 26.23% ZLoader
2020-07-21INVOICE-ZKQA3006_519939863.docdoc 72a76d3c5a30ccf7584528d7bd29ac47062d468d56a417063c19573496089d56Virustotal results 25.86% ZLoader
2020-07-21INVOICE-L3662_00800515.docdoc 97af910f93ee8e736e135660fd84b888bdcc82c809ef30af7cac06da62907994Virustotal results 26.23% ZLoader
2020-07-21invoice 9276_191348.docdoc 3363f1375d1705778c34f83818742724c75fa3c3b13bc2fc131fd95b2d03c8c8Virustotal results 25.81% 
2020-07-21Invoice RL6_660431160.docdoc 69f98944d3760e294ea601defa72bf8b0ac0c8105267a560426f3c2f3888aff3Virustotal results 24.59%ZLoader
2020-07-21INVOICE_QUVA95_102896.docdoc c7f1f379555ef08082a617234440aebf2a68fe7c55bf8280d333518d22adbb4eVirustotal results 31.15% Heodo
2020-07-21invoice QS65_78724893.docdoc 3a5dd00ce1b9f75836d4575816fd4e49d546dfa29d24a4b5dff87b94d9b34b13Virustotal results 30.65% Heodo
2020-07-21Inv-COF212_180574696.docdoc efa78601a195a5d90844411d1e045d9589a8249a71bf35b0132e17b31a412c5dVirustotal results 29.51% 
2020-07-21Invoice_15_484553561.docdoc 33c53ca7807a817b61ed5b3a0a7e0ffe44059f5aac7475b14df784384aba5308Virustotal results 29.03% Heodo
2020-07-21Invoice OT3_4064547.docdoc 07954a3e04bf45308251fa489e56c8b119621131ec4617553fc17ae1e98e051bVirustotal results 29.51% Heodo
2020-07-21INVOICE 4972_8290688.docdoc fbe574d0ec900ab75186ccf3c428c88e23c8fbcab1f479239fc690e327a127c5Virustotal results 29.03% Heodo
2020-07-21INVOICE 4972_8290688.docdoc fbe574d0ec900ab75186ccf3c428c88e23c8fbcab1f479239fc690e327a127c5Virustotal results 29.03% Heodo
2020-07-21Inv-KDOG8284_292037.docdoc 11d9013218c3cfdd117b399765af57f2714a07774b29ab7a0a2b54c48284cbc2Virustotal results 27.87% 
2020-07-21invoice-VYPG8_713043.docdoc d013f801cfa2f62367b6b5d0e6fa61696b2f171c058c2a9fbb52b5d0af7a5d81Virustotal results 28.33% Heodo
2020-07-21invoice-886_06417468.docdoc be14def968a7a7ba9caaac07b0784bf90fcc93c6917657fa2aae18ebc3813563Virustotal results 28.33%Heodo
2020-07-21INVOICE-TDJ8102_39527044.docdoc 3f617acb83c5475031abcaa50669a8312b95c9bef22bcaf8f25b92f2611bb657Virustotal results 28.33% 
2020-07-21invoice V54_173986.docdoc 0392ead1e27d50c2ef2f5e29a23c1dedb44cb59a82a87bb8380920056eaab899Virustotal results 28.33% 
2020-07-21Invoice_Y37_567222156.docdoc 75c9115e924a7b2ea6b2565e7d48407cbcdf06ffd452bcb6834bb821185b2272n/a Heodo
2020-07-21Inv-KZ5221_852526785.docdoc 59dd7c2d9c2fad7c4cbc87c1818ab2684f7e977d40f4898d2c9e93a443fc39cfVirustotal results 26.67% Heodo
2020-07-21Inv_D6783_53363835.docdoc f0cea087091da38f768de3f0c43d844a3b7031390cc2e4e2b8a69133bfe2654bVirustotal results 30.00% Heodo
2020-07-21invoice-HKW6485_90809735.docdoc f46d92d4440678792e72b414df3ccbe066766a4b486ea3c25c767d8c297335b0Virustotal results 26.67% Heodo
2020-07-21INVOICE Z6_81715112.docdoc 4526b97cee7e97d38575c3ccf35f4dbbdbb3b4acf4bc89a5d8afb139c28f7f30Virustotal results 26.67% Heodo
2020-07-21Invoice-G2_57281704.docdoc aa31041b4dcd03e3ad1818d6ca5ac597b999aa6725212a9dfecec97c68100a27Virustotal results 26.67% 
2020-07-21INVOICE EM304_45290874.docdoc 969b9fcc13e520a48a60d7e65714c495c99ac1a90075aef31a7486070b8bb171Virustotal results 26.23% Heodo
2020-07-21Invoice-TJHB4068_1368303.docdoc 6a474d19ec3d28962de1668764ca03da5b762d1d6a949bdf78910db1a1bd1bc9Virustotal results 25.00% Heodo
2020-07-21Inv_G3877_8092692.docdoc f5c36212e4019e707739c87dee26a0edfcbd71cdc35235011ecdd04817bc5537Virustotal results 22.95% Heodo
2020-07-21INVOICE-PXYU10_280393441.docdoc f37d602c2d14ef7dade7cd13740d744939c846704065c8d20367a677ce0ad095n/a 
2020-07-21Invoice JCV150_18047807.docdoc 52a6cc1cae4bb7db5dab47b477a9ea0285a5645dd8474fc917c43585e93b8d62Virustotal results 22.95% Heodo
2020-07-21Invoice-W545_18183878.docdoc c52b5dcbf4076af7cf644bf441a3f5d6e23cf101601a46ba7c1042a0935b3d98Virustotal results 22.95% Heodo
2020-07-21Inv CUGU87_565004348.docdoc 6020e4cdc4530d9bca911449afce9133e64a210243ec92cdca4bd2ae9f9b38ebVirustotal results 22.95% 
2020-07-21INVOICE-BODL2_28479004.docdoc bf8bb162498a1b769691daad0ae9d8efae07943941749a5c2bf607aab85e59e8n/a 
2020-07-21Inv_QGL7966_305595459.docdoc f0fecf9d52e4dda54f5bbc27ff57ec831654d0b9e3a12f4c46a497ab7f653a3dn/a Heodo
2020-07-21INVOICE-S383_73622274.docdoc e41c70d31b0de9b543804face14735e0e40236bd3f45dd6561f2ab2f37bf44f5Virustotal results 22.95% Heodo
2020-07-21Inv-VPOY782_9090062.docdoc 391cf59d4b78c8ae4b705489a8806b14bd1e0e78a977ff7be86e69b6d7b76fbdVirustotal results 23.33% Heodo
2020-07-21INVOICE-GPQ5_990015.docdoc 2b44339164b5e8b860c12c8e8b4ad6dc2e1bc587463ec797b04401d948978140n/a Heodo
2020-07-21Inv_XI8_94293908.docdoc 4903f451f19bc16aaefc695c70d0fb223e73d48958a54a4381cf8f776bc4e8f2Virustotal results 22.03% Heodo
2020-07-21Invoice-PYF14_2447727.docdoc 7c96c1803f8860f0ecafb733376ee2fd8fffdb3313a7b4dfeab712ff27242d1bVirustotal results 22.95% Heodo
2020-07-21Invoice_B4034_03339384.docdoc 59fdc24661735c738aea0c5ce35581112339c50c9a16a48bdc26694fcc2aec0eVirustotal results 23.33% Heodo
2020-07-21invoice-OJ92_797131848.docdoc d279829ce22ee6a6b6a7c259b4c7be73b7cad4a3ba3771caf3255dc6c4024f3eVirustotal results 32.79% 
2020-07-21Inv-5089_751664.docdoc 42dfaf38d76b820e0fc08cd9f255e0753717bbc652535ac71420633a72236529n/a 
2020-07-21INVOICE-0_195546449.docdoc 4c0125f72c43063a474cd06d510baf4675597b0dc15dbc75808ba19e47c3b508Virustotal results 33.90% 
2020-07-21INVOICE_WAI608_3457567.docdoc b2e6d17b72bbc1198dddd5144883936a9682e7393f1e55df7c55ad6bc65e0232Virustotal results 33.33% Heodo
2020-07-21Inv BY6_537031.docdoc 38f0850e9bbc46f419acd8e723015f8a5c90bc3643e680ffac42cb2b88179c77Virustotal results 33.90% Heodo
2020-07-21Inv_M111_17115407.docdoc 295dab6cbdbbcb48ed5d8b1623aeec9031d7a1c617436d3805f32e3da8267efdVirustotal results 32.79% Heodo
2020-07-21Inv_R725_85841488.docdoc 9ac4e472b511c0b96a51fbe283a6c3866653e85769c59e6361242e240efcace8Virustotal results 32.79% Heodo
2020-07-21Invoice HUWB47_006774.docdoc 33a93dab74ebd140d4d77872dc8c32cc0a9f876e750bfe15994bc2884d42a458Virustotal results 31.67% Heodo
2020-07-21Invoice 3299_0262517.docdoc 419837343d76794b196fddd3182502ab55441813f7a2470603b7cfb862c9638aVirustotal results 32.26% 
2020-07-21Invoice-TPI781_91926819.docdoc 19d54ecf09138dbd9153771a0928e858bb5afc3ca208c3a58c9bd8aa5934b110Virustotal results 30.65% 
2020-07-21INVOICE K253_251271543.docdoc 6276e54e524aa8f2673d85fccb4911846bea164b88e98b3f6e2e69a4d171a830Virustotal results 31.15% Heodo
2020-07-21Invoice-23_0450925.docdoc e37800a8be08a41f6959068617236eaaa5f0bcfbf166b68d0aac0292ff664780Virustotal results 30.65% 
2020-07-21INVOICE-14_09865513.docdoc 1e38964560be5db28480898bc494d0741e25d94ae6996bf044c62bb4c9bd16acVirustotal results 30.65% Heodo
2020-07-21Invoice-O394_9411994.docdoc 7c03cfe78d7ea39979a3ddd32c291e24b9f7ce39b2c506057ddd7b58cd2c0148Virustotal results 30.65% Heodo
2020-07-21invoice-AEJ5_18219154.docdoc 95521126899057b8f8f629b236e7c4a56130094ebfa8491bfaa84b99928b2fd1Virustotal results 31.15% Heodo
2020-07-21invoice_UOA32_15059598.docdoc fbbc68006312482fe86858f0e436bf863dc02c9fba333d31bb62dcc0c2a343a3n/a Heodo
2020-07-21INVOICE_TUKB960_50388698.docdoc 5485c7cf7b40078c94e2c968586b72385916f9b53e82ff67c7695356ed8d3298Virustotal results 30.65% Heodo
2020-07-21Invoice K2778_37320609.docdoc 802ece20f9e8d8e21ad7959dca63e0ca0a5f7d073b9248adac42e190bdfafc92Virustotal results 30.00% 
2020-07-21Invoice YX7799_6223748.docdoc f916021cbe73bfd8627d562ee93c19154bbbe443d8ca69be9c17b36d726c2e6bVirustotal results 29.51% Heodo
2020-07-21Invoice-IKP0_537052727.docdoc 744400e8635a32fb24f676ee340a20773e68142cfb176b193e6cb597e1c7a6c4Virustotal results 27.87% Heodo
2020-07-21invoice-870_63564272.docdoc 4a7ad369bc6d78974896ad6568e2426a7119b2eb60885af73d334cc58d32141bVirustotal results 27.87% Heodo
2020-07-21Inv_C22_664250838.docdoc 5fd64595a9534bcd7b0f2ee6803054e7e6f93b7b7fc96501e473415e9b0e75a1Virustotal results 27.87% Heodo
2020-07-21invoice-NSNQ13_4973532.docdoc eadd6a9bef9985d2e1f90b731523e212fd80b42953b3ac6268899d6a6665bd0dVirustotal results 27.87% Heodo
2020-07-20Inv-S5127_08633738.docdoc 5f1887cf72f71a23c08f18c60219e35e35f62e7cbba4e66bf2ca129eebe073abVirustotal results 27.42% Heodo
2020-07-20Invoice-VAA602_8381515.docdoc d7b77575dc085ecd7c3c5afe2429e440bd01846d67a014b55f3d5e6cc210dfa5Virustotal results 27.87% 
2020-07-20invoice AYB9_1422342.docdoc 09a625c95d4a93e9379a57f8fa5c92e643b61e7d236e46a28829a3ddf7698b0dVirustotal results 27.42% Heodo
2020-07-20INVOICE BM768_55286816.docdoc 1f438b948fbb1e65337f2cf522d485e8502fe165581ff27869b9ef565155cfebVirustotal results 27.42% Heodo