URLhaus Database

You are currently viewing the URLhaus database entry for https://spectrumenergy.co.il/wp-content/open-su1zy6len435-vl37b8t/97785341-SozeZ2wt0d3zq-profile/1313419922-aFhLse1/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:417821
URL: https://spectrumenergy.co.il/wp-content/open-su1zy6len435-vl37b8t/97785341-SozeZ2wt0d3zq-profile/1313419922-aFhLse1/
URL Status:Offline
Host: spectrumenergy.co.il
Date added:2020-07-22 14:53:35 UTC
Last online:2020-07-22 22:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: spamhaus
Abuse complaint sent (?): Yes (2020-07-22 14:54:02 UTC to abuse{at}isoc[dot]org[dot]il)
Takedown time:7 hours, 20 minutes Good (down since 2020-07-22 22:14:36 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-07-22rep-20200723-024.docdoc c1e8ca6ab04cda931078956f97ce9472cbac4e8d0718506c2d4f3c618514e7c5Virustotal results 37.70% Heodo
2020-07-22Doc 2020_07_22 62780.docmdoc e5b1755803e1fd990e3747b22c5b2e5dd674c403a309b2931ca7b5ae74262d91Virustotal results 37.29% 
2020-07-22Dat_2020_07_22_55368.docdoc 73d6cf5248a0604eba81bfe1a1f55473820a97df0c5746014dd47e3d10071cb2Virustotal results 35.00% 
2020-07-22FILE-4315.docmdoc 905996c85050d4b5b56ece80b9a231c6e5d46d0ec5e5ed84d7ee33f64011f88dVirustotal results 36.67%Heodo
2020-07-22DAT_20200722_RB0017.docmdoc 4e5ca71ab308655fe2a2430dfbba2c2f7633fbda4a0e4c44714724f00e27dc51Virustotal results 36.67% 
2020-07-22REP_2020_07_22_511.docmdoc 0909752f9e8cf877b820f107687a6dc12e42ab76f995635a56116d94fa3cc86aVirustotal results 36.07%Heodo
2020-07-22FILE_20200722_WL06219.docmdoc ef64e139ac5120bcb2be7ca49559d2e39d9a00d5007ba03f7745618a805d08cbVirustotal results 40.00% 
2020-07-22file 2020_07_22 RC351.docmdoc d516375ff9a645547e27b1359395936c1ba1c5725795a78864b281f8a8b426d3n/aHeodo
2020-07-22REP 2020_07_22 BMX42440.docmdoc 9386f4a822f6bb11eb7588717ea43c765b9501a32ca42607846f8f577ea7a8eeVirustotal results 36.07%Heodo
2020-07-22dat-2020_07_22-H934.docdoc 542819b27b072fd1341c7dd6e46836eed08511bc4ae33bea70fccb341d1da1a6Virustotal results 35.48% Heodo
2020-07-22Dat_20200722_5044077.docdoc 4e537fac2f1b71c8466b55b1539006dfebfcb9d8d01c793df2ba1198de425f12Virustotal results 38.33% 
2020-07-22file-Z09136.docmdoc 3e4ddd1938e731730e44eb64c507528103d4584d6e9e3bd99c11b9d7dd4c14dbVirustotal results 37.70% 
2020-07-22Inf.docmdoc 5f934443860f4ada8773989bf4ef1a4f9b25d5b0b8449222afdcc5ed0f44748bVirustotal results 37.70% Heodo
2020-07-22File_8167.docmdoc 3cdc4b152007b8583277c7ae4ad9e2df4b455d70ea68db4e16537a0354c97362Virustotal results 38.33% Heodo
2020-07-22dat_20200722_YH88111.rtfdoc 00f9030cbfb095139a4e8f6fc9e282149fb32fa202c75dd95063951b237bdcb3Virustotal results 38.98% 
2020-07-22Doc 2020_07_22 1427.rtfdoc b30860973bcdcd040d50b0bb6c2ea01eaba9b34856e80b02074b7366a047438en/a 
2020-07-22list.docdoc 8ab6f085ec3bc42bd4cea7ba63a8f6c9005a1dd198a73976abdc8c749556fe14Virustotal results 45.00% 
2020-07-22file-2020_07_22-900802.docdoc 7e1e28f3605a3ed7b5c08f64e8b18ac845ca5545d5369a4d5bc62c4d496b6f10Virustotal results 42.62% Heodo
2020-07-22inf_2020_07_22_SYU32812.docdoc bfe94d0dfb8bb64753096dbfa9b63cebb6e4035eb64c44ad7fdb0dfb9a5a20eaVirustotal results 44.26% 
2020-07-22INF_20200722.rtfdoc b6d61e35726e8b3a7b927301d0577dc610610104d94432cced3a6d063920b865Virustotal results 43.33% 
2020-07-22Arc 2020_07_22 36653.docmdoc f075848ad6d384c4cf68d031f2acb0454e37bc993fc8fba6a111d8e744fac9dfn/a 
2020-07-22LIST_3547.docmdoc d17c29d68d4af4033a871a4bfee1affb3ba3b34aaf54059f3062fc0f78ce318aVirustotal results 43.33% Heodo
2020-07-22rep_80905.docmdoc 38ff0a4a502e7e0992adc7b5078f916bd301d0769dcba3bf19008581f73fda52Virustotal results 43.33%Heodo