URLhaus Database

You are currently viewing the URLhaus database entry for https://readandcobooks.co.uk/wp-content/k4eLF-7XMHSfkhdfxpJ-array/security-warehouse/wa08-90w0u5s/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:415719
URL: https://readandcobooks.co.uk/wp-content/k4eLF-7XMHSfkhdfxpJ-array/security-warehouse/wa08-90w0u5s/
URL Status:Offline
Host: readandcobooks.co.uk
Date added:2020-07-21 05:15:14 UTC
Last online:2020-07-21 18:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-07-21 05:16:03 UTC to abuse{at}amazonaws[dot]com)
Takedown time:13 hours, 36 minutes Good (down since 2020-07-21 18:52:45 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-07-21list.docdoc 7922f5b485edbeab235751b1f775ac411b5511202a73ad2df02e19943c686fffVirustotal results 30.00% Heodo
2020-07-21list.docdoc 7922f5b485edbeab235751b1f775ac411b5511202a73ad2df02e19943c686fffVirustotal results 30.00% Heodo
2020-07-21list_WRC34879.rtfdoc 3e9d864db108ff21b3dbc6aee0596264668e95aa02677c5e98cb40bc9bf40998n/a 
2020-07-21Dat.rtfdoc 7203fa5731e4f60d782eb7248af9620384981a39282d70094f40946b1b7a60c8Virustotal results 30.65% 
2020-07-21File 20200721 231968.docdoc 3d808e9e116ecad94d0839d1a951f8aa24c96f6dfaaa774a889edbb38c857b56Virustotal results 31.67% 
2020-07-21doc 20200721.docmdoc 8771e257fc13efea0c60ee072b8fd918f12f287632341fe5f20756d5675112d9n/a Heodo
2020-07-21list 2020_07_21 9856047.docdoc 3a27b053c2c3fafe4a45dec9f48127084b6f180a0fcc3ca2a08a3bdede5e1ff0n/a Heodo
2020-07-21mes.docmdoc 04808644927ee4ee2afd1635e4f998de9740c04dc4bf72336e4c7faaaa7aff16Virustotal results 29.51% 
2020-07-21inf 20200721 2144029.docmdoc c47b08d9ca93621b701819eb3c8576d145a0eae0dc10ddbc6d6ec7183b257e7bVirustotal results 30.00% 
2020-07-21doc-GP81812.rtfdoc 620ec5ba9b3488d2f0df3f27c7efbd786e501f76dc0cd1e11e70e9783968374eVirustotal results 30.00% 
2020-07-21Inf-2020_07_21-4534793.docdoc 95d8b345f72bf52ee554c32232d32359be4cb131298f45e717641f6dd3e2bcadVirustotal results 30.00% 
2020-07-21inf_2020_07_21.docdoc f8b6027e9d4e24699d0d2de7d514c4fbc237b8f4ea6aa8aab0cb693fb0c26834n/a 
2020-07-21inf 2020_07_21 282265.rtfdoc e03def51cc78a91e3c97945ebbf083bea9efa86f55fde07a8c4bae905c1b8671Virustotal results 27.87% Heodo
2020-07-21list 20200721 5139.docdoc abc5d61e460dd7012dd5db11834813772ba453b4bbc00771a5256848e7baea44Virustotal results 28.81% 
2020-07-21ARC-2020_07_21-LF9980.docdoc 15617b37ed587c9af7ec3de8d4aabd3de95ded6604f652abea14822da2c94ce0Virustotal results 28.33% 
2020-07-21inf-20200721-H595.rtfdoc 186a6ee6322d2e6656e0125cba0536eef43d3a66e4ce73e129332dbb236cab60Virustotal results 25.86% Heodo
2020-07-21file 20200721 7679965.docmdoc 75cb0d33fbd33b08aede2930d9ac79f7086ef7db06803c493d9214d84a4391e3Virustotal results 24.59% 
2020-07-21REP_2020_07_21_4880345.docmdoc f71d024b4271aa2cce102ca4d7736cfd3a80503b28146ea2afd7ca8233164f88n/a 
2020-07-21MES-20200721-TME38234.docdoc f0bbaafc7f8e8677ac74fe5c76625f29793a0ca04c8177ce41d4b4aabbd2cde2Virustotal results 24.19% 
2020-07-21Inf.docmdoc 55a103c16b3c4d8958091e55cfb62091fd2d209e07ffba0a5c88252946b8ae39Virustotal results 25.42% 
2020-07-21MES.rtfdoc a1808398c37712705f11218018390d7aa7ceae6c9c8209ba305d140fbd4e900an/a Heodo
2020-07-21DAT_20200721_35831.docdoc 453a8fcf41577a1a1aac7cecb7e81a306cba31f43dc6bb95ebf0647ddc2f271eVirustotal results 25.00%Heodo
2020-07-21LIST_2020_07_21.rtfdoc 64eee4aab6935f2d3d11646b1c38bdd7519aef0367f417afc89d07c5b15b8eaaVirustotal results 25.00% Heodo
2020-07-21mes SXG46725.rtfdoc 0f8288ecc5022d06cdad8fae0c835f114f39303b84778aa885154623802bf532Virustotal results 24.59% Heodo
2020-07-21file-009.rtfdoc 48c64e836cbb9aaab5e723471651e7826d9bc032cf7aaba59ce8006ab14626edVirustotal results 24.59% 
2020-07-21inf-20200721-27581.docmdoc ecdaf78dab236699d9244160f6b4865a5cdc8481ff2e8d798df9a342d10f1654Virustotal results 25.00% 
2020-07-21Inf 20200721 EFI430.docdoc 7701cb5a8f75904004c1438e6e79eaac41be47f7d454a35f7ab373b2ef1aa392Virustotal results 24.19% 
2020-07-21File 2020_07_21 905.docdoc f84df4afb6ec0e756c79748271dd66528e1f262427405a4171c48b7ef395b22aVirustotal results 25.00%Heodo
2020-07-21ARC_2020_07_21_HQR35278.docmdoc 77381e8fde74067c151274bc344395ef59df227e209ec80c0d7879aacbd5d654n/a 
2020-07-21MES-20200721-193.docdoc 590404bb24804914ea53c3480612bebc506f54e56553ef7b366d545a4eaac100Virustotal results 24.19% 
2020-07-21DAT_2020_07_21_8242.docdoc 2e716647297132c94bca63747c48379889273658b12366fbe0e689a2b9966470Virustotal results 24.59% Heodo
2020-07-21REP 439508.docmdoc c915922a81a8064f3c80285e3615bd5aaeb6452a92f4588fe03bdc81caa840a9Virustotal results 24.59% Heodo
2020-07-21doc_2020_07_21_9100041.docdoc 09d5cad4c8b70edf0e4e47c1abcbbdec9872ca65c129f100c3eaa76ff6197497n/a 
2020-07-21Rep 20200721.docmdoc a8d9eceee2cd3735b96abf3528e7ec3e8e2d8ceb8991c00c7ff479e9034655f5Virustotal results 34.43% Heodo
2020-07-21Arc-2020_07_21-XBF18377.docdoc cd7e26bbcc41d0820e6e2e0e42e56bef410264d6bcf74033fd1fe26d52b389eaVirustotal results 33.87%Heodo
2020-07-21INF 20200721 3677.docmdoc f78e874b4d5c5dedede72b85b571f2b04d8edba617b6634d95c2af181e6e4dd7Virustotal results 34.43% Heodo
2020-07-21doc_109.docdoc 793132996a7b6875055c2bdbde2173f37e68ce5f04ab651acad13f84ab89cb82Virustotal results 34.43% 
2020-07-21Mes-2020_07_21-L8805.rtfdoc 276568f9c3bb230aabe183dbfd02ad1c36b7aa141d382d34a839a611a422c07fVirustotal results 33.87% Heodo
2020-07-21INF 20200721 83704.rtfdoc 754a0bebe018b079d9d9260256ea2106b4b5ad9a654c8b8a1989bf6e3f4568f7Virustotal results 34.43% 
2020-07-21ARC-MPG508126.rtfdoc 5816bc271d88617e627d64210b8ac9df417f8072b362af861ade766137eb1564Virustotal results 34.43% Heodo
2020-07-21file-2020_07_21-B425.docmdoc ace014e43d78870f28d2a732d72b60fe0c602b71dcc8771989e5cfc0bb1e0befVirustotal results 33.87% 
2020-07-21file-20200721-ZF603.rtfdoc 2f55a2589348a194b850fffa9bcf7f3561d179bd35905f6c38d35530e0e05fbeVirustotal results 32.26%