URLhaus Database

You are currently viewing the URLhaus database entry for http://ezelleproperties.com/wp-admin/multifunctional_711456_lTCJr/test_cloud/SFPjo6DP_s2kd0issGz/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:415837
URL: http://ezelleproperties.com/wp-admin/multifunctional_711456_lTCJr/test_cloud/SFPjo6DP_s2kd0issGz/
URL Status:Offline
Host: ezelleproperties.com
Date added:2020-07-21 09:11:08 UTC
Last online:2020-07-21 23:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-07-21 09:12:03 UTC to abuse{at}amazonaws[dot]com)
Takedown time:14 hours, 27 minutes Good (down since 2020-07-21 23:39:34 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-07-21rep_20200722_N424436.rtfdoc 3e24c4373b1e2ba1e3d16925cd0d4a1752452402ae4aaa8ad8ce498bbff5335cVirustotal results 26.23% Heodo
2020-07-21Arc 2020_07_22 TRN91988.docmdoc cbccd20b9bc23454ec01bec4a0094e77dcc43d577666259f8d97aa30a118ac35Virustotal results 26.23% 
2020-07-21Rep V319734.rtfdoc 97d6a51f311c9af7f316be2f4d5ed00901bc5eb08c6daffb87fcf98ba3bd851eVirustotal results 27.87% 
2020-07-21REP 20200722 8808031.docmdoc a8eaeae150c0c2f63c21f90adf8634bbd7653092f06a273410a5c26df3f0e25fVirustotal results 26.67% Heodo
2020-07-21file-20200722-S43534.rtfdoc 205a04626bdf6f3da605d8f8ba60126d02451085528330524d899a38520be8c3Virustotal results 26.67% 
2020-07-21arc_2020_07_22_U39582.docdoc 6852b34db0c7a6150c1095a704236a1938b4ed46cd9d7bdfd412555ebf61890aVirustotal results 26.67% Heodo
2020-07-21dat.docdoc db88b385b97b7038cd233960f7f99ce350a72a3eecf6bbbcb227645f111d4e7cVirustotal results 26.23% Heodo
2020-07-21FILE.docdoc c14b2e55a66651e287542e13c52b9e5490534ee0d55cde933f5b6f0744ca27f9Virustotal results 26.67% 
2020-07-21REP_20200722.docmdoc 1a3131840aa881ca39803d20f5224e9339a2cc959ac92ab756f6ded8d81a1a90Virustotal results 26.23% 
2020-07-21Dat_P71872.docdoc fe0262abd2e28972585a28e0db4036c88dc6bc7858de8135e9cf58c599228037Virustotal results 26.23% 
2020-07-21arc-20200721-62856.docmdoc 31f2efffc02e6ee0f8a7339acbb1eb5aa9faa94b66709417b22f4c2fbc77e7d2Virustotal results 31.15% Heodo
2020-07-21arc-20200721-62856.docmdoc 31f2efffc02e6ee0f8a7339acbb1eb5aa9faa94b66709417b22f4c2fbc77e7d2Virustotal results 31.15% Heodo
2020-07-21FILE-20200721-XVJ421.docmdoc 2748fddcf19685fe54157b965c7332d3abe89dee666467ba9655e4ffb6d805e3Virustotal results 32.79% Heodo
2020-07-21Rep-2020_07_21-P991.docmdoc 94afe20839c1b4794b268af701170510a03aca8ba4c42d4f37056f048b4f4312Virustotal results 31.15% Heodo
2020-07-21Inf 20200721 BR08000.rtfdoc 8d842d76f958c70be828a217a80c8398107c158a2320c0d36f3b75512b8deca9Virustotal results 29.51% 
2020-07-21DAT_20200721_975229.docdoc f76760e19ef8c715a396435ac9a3fc931699e03a431a25ba0f9d0f20c104495cVirustotal results 28.33% 
2020-07-21file_2020_07_21.rtfdoc 193921b13cb10f97c4211e6694ee26cf2ebb7d6eff920ca64cc0d96252fc3487Virustotal results 29.51% 
2020-07-21File 20200721 3499859.docmdoc 1b3a66fa218971358919a1dc0cbfcd9fdaac7ec3278bed6109f0df2550dfe3b7Virustotal results 31.67% Heodo
2020-07-21list-2020_07_21-627.docmdoc 7203fa5731e4f60d782eb7248af9620384981a39282d70094f40946b1b7a60c8Virustotal results 30.65% 
2020-07-21FILE_20200721_697813.docdoc 3d808e9e116ecad94d0839d1a951f8aa24c96f6dfaaa774a889edbb38c857b56Virustotal results 31.67% 
2020-07-21Doc 2020_07_21 152.docmdoc 87d3dee382ec0e4a5a3c0c6979d2e460be44819c475c2cebe34bc5a83bb26b98Virustotal results 31.15% 
2020-07-21inf_93963.docdoc 17edd29207d9e7cfbd660d6dff7a0c660acefd0b02131aa2eb8d280975bdca74Virustotal results 31.67% Heodo
2020-07-21Mes 2020_07_21 333.rtfdoc 04808644927ee4ee2afd1635e4f998de9740c04dc4bf72336e4c7faaaa7aff16Virustotal results 29.51% 
2020-07-21ARC.docmdoc 519ac8bbe23cc0506580ac08c5bc589d9d5382e00ea81898846715cef7502d8dVirustotal results 29.03% 
2020-07-21LIST 2020_07_21 6341873.docdoc e6294d7fbee243e8b73deee0a892f92f51e5c1ea412f64e55a109c42c9922018Virustotal results 30.00% 
2020-07-21rep-20200721-XMU287995.docmdoc 95d8b345f72bf52ee554c32232d32359be4cb131298f45e717641f6dd3e2bcadVirustotal results 30.00% 
2020-07-21LIST_20200721.docmdoc f8b6027e9d4e24699d0d2de7d514c4fbc237b8f4ea6aa8aab0cb693fb0c26834n/a 
2020-07-21Mes_20200721_7871.docdoc e03def51cc78a91e3c97945ebbf083bea9efa86f55fde07a8c4bae905c1b8671Virustotal results 27.87% Heodo
2020-07-21file-20200721-M937897.docdoc d1f13cff50c5950b6842f81fb632405df63e1d6a953d4d912b3f5ecfb1afa55dVirustotal results 26.67% Heodo
2020-07-21INF 20200721 A7101.docdoc 15617b37ed587c9af7ec3de8d4aabd3de95ded6604f652abea14822da2c94ce0Virustotal results 28.33% 
2020-07-21Rep 2020_07_21.docmdoc 3b2f5f46ff691d1339cd98d00d79cfc31b0a7c7820a17c45c7be9197a392f2f6Virustotal results 26.67% Heodo
2020-07-21dat 2020_07_21 KOY630288.docdoc 8e5c404214aebb7a65039287dbc762e68cdd4018a635783be1f7c241ae3203efVirustotal results 25.00% 
2020-07-21inf-20200721-BLB7340.rtfdoc a82dd2141315d36a0f9ba74bb443a40e0495cd089323254c35d0c4686249de7aVirustotal results 24.59% Heodo
2020-07-21Mes_20200721_42755.docdoc 55a103c16b3c4d8958091e55cfb62091fd2d209e07ffba0a5c88252946b8ae39Virustotal results 25.42% 
2020-07-21file-PN23695.rtfdoc bde282cb96f5986ecffac2e217f661fa0f00c92f1e4b2a788aad9cbd53a2eb51Virustotal results 25.00%Heodo
2020-07-21ARC_2020_07_21_69075.docdoc ad614712ee0ad71a7408a527a3a2051489b0ff4f08038b7a676ad967ea160fb7Virustotal results 25.42% 
2020-07-21file-2020_07_21-KA6518.docdoc 23bf0066e26b5b6e2403af2810c57d5ee5c0e04cfb175df6c134826cdb68bce9Virustotal results 25.00% 
2020-07-21Rep 2020_07_21 LNM1992.docdoc 38a052e49569227f531849f52c6e801e5abb2c68a7dd2c5a9fca8e92ec6b0211Virustotal results 24.19% 
2020-07-21MES 2020_07_21.docmdoc deb29a892e444cde34fe7642bacbee1bf74d35fcff478966636eec77c5e28646Virustotal results 25.00% 
2020-07-21FILE 2020_07_21 V293.docdoc ecdaf78dab236699d9244160f6b4865a5cdc8481ff2e8d798df9a342d10f1654Virustotal results 25.00% 
2020-07-21inf-20200721-S1448.docdoc 44d93b12f57a0d476e774d58da761e56ddd20f6d299acc2390a9111082e448den/a 
2020-07-21File_2020_07_21_MNG622299.rtfdoc 9c0722c9c84f726c2eecf7d6edd51e95e7bbb11993ce3bc27bc24271916d181en/a