URLhaus Database

You are currently viewing the URLhaus database entry for https://uzdh.nl/4wh0t0zzx/SNhAEESO/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:417913
URL: https://uzdh.nl/4wh0t0zzx/SNhAEESO/
URL Status:Offline
Host: uzdh.nl
Date added:2020-07-22 17:16:10 UTC
Last online:2020-07-23 01:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2020-07-22 17:18:02 UTC to abuse{at}domtrader[dot]nl)
Takedown time:7 hours, 50 minutes Good (down since 2020-07-23 01:08:07 UTC)
Tags:doc emotet link epoch3 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-07-22Invoice-8103_293230.docdoc f7e57a114b25d746fd0b4c14c656eae2c02238130d90124939885bb0b36f3674Virustotal results 40.32% Heodo
2020-07-22INVOICE-Q83_771918441.docdoc 2dd5a90bf7f556f0c8a9a024f6ac592b4c6654f59b7d663c5b313e77757702efVirustotal results 39.34% Heodo
2020-07-22invoice-L093_8221588.docdoc 121ed8988b04cd935a814c1721a9f0d568268c9771e9a54104e9d603bfb63735Virustotal results 40.98% 
2020-07-22Inv_F509_18536023.docdoc 90b2a224e113c22ea44a6ff37ed4441133bc38638d2c622f8273fc275d8a5170Virustotal results 40.00% Heodo
2020-07-22Inv KRZI635_04368118.docdoc bfd7374a797a6c3e77d704c3ec20c246e532ab967cb7cec9f3f77f386bdd7455Virustotal results 38.71% 
2020-07-22INVOICE-IOT8894_0132354.docdoc 9906a5bee4b9e562812454fe546581f17dcea82db95ce7b846c50d1537cb8316Virustotal results 37.70%Heodo
2020-07-22INVOICE 95_023851042.docdoc a8377439065663a204f302e8b1ae0aa1d880b86780a7a8ddf0c2569a8a78ef0eVirustotal results 37.70% 
2020-07-22Inv 818_703968169.docdoc abb692721c19ff5f382ccfc5bd6ce5301433d4ff75f8745e73d8fa929b4ab1aeVirustotal results 40.98% 
2020-07-22Inv-42_78751379.docdoc 81974e12641a56b689a90de529d306a53cc4570ae79cf6c7e34b4aa15345babdVirustotal results 38.33% Heodo
2020-07-22Inv-QAWG71_577653.docdoc 7757df52299b5b7d7d83f3b72cf1fc8415dd72f90ef93160a30e5270d9528d0cVirustotal results 38.33% 
2020-07-22INVOICE-CMXM68_052999.docdoc a09aab2acea55dc5a41e050de922953dedd0f8177ddf8c60a56af74d25daf577Virustotal results 40.32% Heodo
2020-07-22invoice WV7834_1069060.docdoc 16c6a9dd4a72829040a232b03b8dec183f1b62ba3a8fa829760e83ce534755aaVirustotal results 39.34%Heodo
2020-07-22invoice_QMHE4462_1919323.docdoc 73ca49f367f9ccc5d7afeb6979409e1e116a8ff24d143b7cda1482204e8a12c2Virustotal results 41.67% Heodo
2020-07-22invoice_OV6_33916913.docdoc d8604cc57ed2635d1426b6baf81d79cd5b5a14e28bdb492c2349fe6652d74acbVirustotal results 39.34%Heodo
2020-07-22Invoice_EA83_438868.docdoc f4d6bd934ef834677a5ce5ec7204eeed8160c5898f51669c234b563c5ea13d7cVirustotal results 36.67% Heodo
2020-07-22Inv-59_279219.docdoc 8d5403870d67fd083d92f1d72328054f16e6dc6d0bb546e03cbd7ae747b219e1Virustotal results 37.10% Heodo
2020-07-22invoice IF3128_05386225.docdoc f5edd4853a9bee8bfe075dfc71946ad2c183ebf260cb065f843190c91e30a913n/a 
2020-07-22invoice_IPT404_161662.docdoc e09095837eb8aed55d515c792e0b53dc27997b561883f122d7aa2f1875b1a063Virustotal results 37.70% Heodo
2020-07-22INVOICE 8752_932065.docdoc cd51ca27f85c3b99bce83221b135a984e5dc890b9f3080b11e8add5bdb4456f9Virustotal results 37.70% Heodo
2020-07-22invoice-3431_663737838.docdoc 502e60db49d073ac974289badb5c93a067667aedba768f5ad734a28f0bfce643n/a Heodo
2020-07-22Inv-Q9826_7367569.docdoc 3b0668d557cfedcfb944c24245f1dcd5bde35c04ffa17d9b93a14d2b7c443768Virustotal results 36.67% 
2020-07-22INVOICE JNTW3_622869.docdoc 4ba900dd18d66271ab47157940947389df7558cfcf0bcb2d2907868ed430171fVirustotal results 36.67% 
2020-07-22INVOICE_EPY2469_743876.docdoc a5fb8475fd26e5f4bfc52a2d8cee048ee2e810a374067df326520c3a31eced4dVirustotal results 45.90% Heodo