URLhaus Database

You are currently viewing the URLhaus database entry for http://urog.co.uk/wwvvv/browse/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:419715
URL: http://urog.co.uk/wwvvv/browse/
URL Status:Offline
Host: urog.co.uk
Date added:2020-07-27 09:29:35 UTC
Last online:2020-08-01 13:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: spamhaus
Abuse complaint sent (?): Yes (2020-07-27 09:30:03 UTC to abuse{at}namecheaphosting[dot]com)
Takedown time:5 days, 3 hours, 37 minutes Bad (down since 2020-08-01 13:07:41 UTC)
Tags:doc emotet link epoch2 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-07-29FILE_QS7445385426SM.docdoc 8effe664c0a1db73813f9e2998bd14f595d720d245273749b47170054f497cbeVirustotal results 27.42%Heodo
2020-07-29M_FV8767224183VJ.docdoc 10bff4abcb10a44b3d14435988ead41d1468bf4dc8fa4fc184e0babdac5ae73dVirustotal results 25.81% Heodo
2020-07-2946331130.docdoc 85d095862eac57f9468543eca0c155a633dcbe0258599cb769b157125686fd88Virustotal results 27.87% Heodo
2020-07-2926769771592031947.docdoc 6a41216f74505746cd9e27126335988cc5ef4727fc68e2375fb50dea917e4a0eVirustotal results 46.77% Heodo
2020-07-29FILE_DHH_070120_EER_072920.docdoc 63b027fb3e70f8211fd1d27de7a473d4a8e4d4f7e19774275ac6a60f8b6e5fcbVirustotal results 50.00% Heodo
2020-07-29PO_07292020EX.docdoc 9e3690a0a71dc239833dddc5b2aa94983eec61d88a636aa96f12bcfac9898592Virustotal results 41.94% Heodo
2020-07-29VOS_070120_PHG_072920.docdoc 1f19f1cc91f28959e4f1a099b4f6d11a2dfd3b5d5ecf73f596b764dfdc356b57Virustotal results 42.37% Heodo
2020-07-28INV_FCA_070120_TXX_072920.docdoc 19aff1e7636349b77c19f5a6a5814d8f852f83fc487a4c5afc0df15ea7635bc9Virustotal results 40.32% Heodo
2020-07-28INV_4256538006012644566109.docdoc 9ba684d3bb94c46b9c7476bf8ea2ecba98cc9e6975bb465242081e17e69ff0b1Virustotal results 40.32% Heodo
2020-07-28X_71657672.docdoc 5f9b42727ea965d687ec9d1f1e1793d4c35993a10e15ed1e12c30019a64b1003Virustotal results 40.32% Heodo
2020-07-28NRB_PV0846397330MK.docdoc 0f3d19d2092e84e52aa8eec6d932f177849ae15bd1febf920b40e980de9aeb97Virustotal results 40.32% Heodo
2020-07-28XRL_5C4CINF1N.docdoc 3e2831ccf4838f335ae045a84e88a8ff63d11b35b6dde37caede7a0862f8249dVirustotal results 44.07% Heodo
2020-07-28INV_YA7066046090PW.docdoc f99b67fa20072521fe46ac4a9069ea3c3a2710aa50c0c5bcb41a35318fbbb43eVirustotal results 42.62% Heodo
2020-07-28TEB0KRWWN.docdoc f2923e11f899280a7a6a6c8d850e06fa88308305376979e9043d1cead513f71aVirustotal results 39.34% Heodo
2020-07-28JB1296061308ML.docdoc 46f4eb6b24e26918227d59cc9746b6a71ddb1889f8efd8f72877ee19f01009cbVirustotal results 37.70% Heodo
2020-07-28DOC_KUC_070120_YIH_072820.docdoc d831fb7e6ca7099b615f50a60fca9d58ca6307bb95d592dfdd1c793b267f7f86Virustotal results 39.34%Heodo
2020-07-28OV2120220578PA.docdoc 2840dbe68611c23040d1bcd78b9473dcd48de959c93280ee78f105b5af51fe75Virustotal results 37.70%Heodo
2020-07-28C_AK8356234193QR.docdoc 8b8b2829eec27c2687e1e4dfb190e65d66875564f241e73d6229909a552a510cVirustotal results 40.68% Heodo
2020-07-28REP_GM6083246986IC.docdoc a3799f3ffca16b52df7bbd7a8aa3dd073fd284dd975eff882f6295cbf70084e4Virustotal results 39.34% Heodo
2020-07-28T_ROS09LRK1.docdoc 20d81ffc64ba89a114dc4ee30c643d555945ab0ec0f3a17c96b56d6087ef3b13Virustotal results 47.54%Heodo
2020-07-28DOC_PO_07282020EX.docdoc a4bb65f9dd61ad1beb274142446f1c86eb4bf2eb424dd75ba6993890f1a4e2a8Virustotal results 41.94% Heodo
2020-07-27TWE_070120_EZM_072820.docdoc ec58eee07fffa7a7af0387949a025a2ed4f748060d7420dc53316cb6b9a332e3n/a Heodo
2020-07-27INV_C7PNK3XWTK4.docdoc 3d58123ccd88ada2e760b9bf07db9231cc706ced206f123f1972e3a154458729Virustotal results 41.94% Heodo
2020-07-27M_PO_07282020EX.docdoc df3f07a28988e65741321c968afd02eaf8a49fa2dcf2e2f2685d04e13a236122Virustotal results 41.94% Heodo
2020-07-27XK0212429593BD.docdoc e014e7351a4ad87f016b72570a6ea61c63069ef368ef1501bf75c019760740d7Virustotal results 40.68% Heodo
2020-07-27REP_UU5755366784YH.docdoc a98f960e08eea28006d1b9d0faa43f9a4fc83062c9c33c1dbe5ed020a8cd51ffVirustotal results 40.98% Heodo
2020-07-27BAL_DK1870637567GI.docdoc 2317a555c5aabac7a3b94757661b5ca7f25d7612b4c4a93df00b35fa56fd8e9eVirustotal results 40.32% Heodo
2020-07-27FILE_BO8994194895JQ.docdoc fba566111a4e23c3973ac5cc3e16c75119cd239fa5c331d1a10716d24b9c18e1Virustotal results 37.70% Heodo
2020-07-27DOC_086147552666347594.docdoc 97ff7c2c097cd943607c5fcf76feea7d24b42b35cb8abf7e380d0e3a7ebb9d2dVirustotal results 36.07% Heodo
2020-07-27OL0724957107ET.docdoc 00c50d0db6850b09e3df0f260a5f83b10b07536a8cc6f91eebdbb7a694687e45Virustotal results 37.29% Heodo
2020-07-27PO_07272020EX.docdoc 91631b5f74221ef36cfacf1572e87d4a71c5876f16e20d1131401cf6f61f0c1eVirustotal results 36.07% Heodo
2020-07-27REP_03274086.docdoc 09f7d48ed4d70c24ee8888b1ef67071cbca500ff3fe98267923a5ff68d113b28n/a Heodo
2020-07-27REP_67731980.docdoc cfb29bce041ca72fbf97be1b608791b9d7e4fd6b632aebf4f91111ce6491cfc1Virustotal results 36.67% Heodo
2020-07-27Z_NHWQSBIIKMKE.docdoc 8eec7fabc0058e0bdd126d4940cc9eb119bc517668d81d4e5bb837dec39c36ben/a Heodo
2020-07-27RAI_070120_GRM_072720.docdoc 6d0c01bf6407219c53a6c8d1d0e49c2dfb8e564ab8c8e8d43282b537184e2053Virustotal results 36.67% Heodo
2020-07-27H_84376869753.docdoc 79ca2b44528e5a943259587e1d02d7d31dea8f6f5d2dad3010d89a8e61afebb3n/a Heodo
2020-07-27DHT_070120_KXN_072720.docdoc 6e86292d81a588b8fe865c672d1d7a08e7466ece264415b74b100564e1b811e7Virustotal results 39.34% Heodo
2020-07-27BAL_BFL9XMY7D8E846.docdoc 7da491ebf960db553ac5406c952edb7e3f5edbf1c8a0cbac65e1ec1a7a0ee766n/aHeodo
2020-07-27BOX_070120_KLI_072720.docdoc b6573958a8e38541a7c3a352ec38add53b0e5d264ca6bff1076fe768bfddc805Virustotal results 40.68% Heodo
2020-07-277072826766241.docdoc 6737ba014434f5f2166ef909a0e5706c797d25f26312fbaf3f8b36bada686249n/a Heodo
2020-07-27IF7069314223PM.docdoc 0b18bc490fe596ef56746fcd1eb900a375669c17430c6dbb3d5c2806722b6081n/a Heodo
2020-07-27PO_07272020EX.docdoc 1910a26195ba76b7667ca41dcf8d28bbcfe6371de42f0daf68f17aa5e5307b10Virustotal results 42.86% Heodo
2020-07-27OPK_070120_HGG_072720.docdoc 5957ed88b3b0b0362d7713e4a25cc9f2d0001630978e6598b0cbc2e46ff30606Virustotal results 39.34% Heodo
2020-07-27DOC_T3DH6CYWCL.docdoc ddcea6aef8e0b3575e1c598fe877c9f87f923d88b5fc765d4de31b018e6b5eb3n/a Heodo