URLhaus Database

You are currently viewing the URLhaus database entry for https://fixlab.pl/rehab/abierto/kyBdjye-e2gZp9OF-zona/sL7YGX-HbWlKG5byYt/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:419840
URL: https://fixlab.pl/rehab/abierto/kyBdjye-e2gZp9OF-zona/sL7YGX-HbWlKG5byYt/
URL Status:Offline
Host: fixlab.pl
Date added:2020-07-27 12:29:34 UTC
Last online:2020-07-27 22:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: spamhaus
Abuse complaint sent (?): Yes (2020-07-27 12:30:03 UTC to abuse{at}home[dot]pl)
Takedown time:10 hours, 11 minutes Good (down since 2020-07-27 22:41:11 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-07-27NK2837171-MWO_4084.docdoc 110958842970c18b548f32979e2f8dda09be2245e346597e747d1268e4439987Virustotal results 43.55% Heodo
2020-07-27INFO 06_2203.docdoc a286e9a82e74a59c3b03dfefaf39ed3c8b2f2554210ce258c56e08cd486f603fVirustotal results 44.26% Heodo
2020-07-2725331-072020-JI_3210.docdoc d5c02f77a90c627c04faa9dabbeb7271d11a7df0749d07af987994c830ea0657Virustotal results 45.00% Heodo
2020-07-276459_072020.docdoc f9e21c32753d07b9af540aa838505f4aab10a1fc3e670affaae3c322976891ffVirustotal results 43.33%Heodo
2020-07-27DAT.docdoc 1ab7b70f4feb30e25e1119bec4d481459f094ed3803c6b24e7556afb571523b7Virustotal results 43.55% Heodo
2020-07-27Documento-303_7100.docdoc 5710b01ee4d0e978814cc2610a9cd3a20fd8761101b3a3de4f63b51679796c0aVirustotal results 41.94% Heodo
2020-07-2749-14-42518102.docdoc 8bcb81a90d9831d9b0ffd723b83b907cbf0011de32de2cb18c01cbd66b11d47eVirustotal results 41.94% Heodo
2020-07-27Arch_BXA/937919.docdoc 1a704c94e4b9c2397d69c18e3bcee059f55c598d5ab8bede5013a0b9714f68d8Virustotal results 41.94% Heodo
2020-07-27FILE 27 072020 15-717794.docdoc e9ef5c401b58fc9ea7f505e34f8ce812c324732ada0d7b7780bf19f93b360af6Virustotal results 37.70% Heodo
2020-07-272883931_43728.docdoc 3b2604dc930d5e628e05c8c46071cb84c8617fdf0d87ebc66018feba48f75524Virustotal results 37.10% Heodo
2020-07-27Archivo_313-3649.docdoc 8df3948dfc46fa0168ed7803a28dc400cb4f23dfff43c3ac553b832c88e962b9Virustotal results 37.70% Heodo
2020-07-27Datos 81-125732.docdoc 7f76a60eab9cb36327a411c4cd41688749f91d4dc5d2a96d67dd0f5014c7fcd5Virustotal results 37.10% Heodo
2020-07-27info 27.docdoc bfb47d299444268850ba81fe8405b0e67bb464edeafdd2256da8b407c7c631c1n/a Heodo
2020-07-27Documento 072020.docdoc 3026d2a170c300a107ba8fc93c4a30219dbd9e888abafde4b08adf098416b010Virustotal results 36.07% Heodo
2020-07-27Datos_27_7-262292.docdoc 9425930e1da8f5bb9e2818f20871cf3407541762830a5b65bb5e70e3af742061n/a Heodo
2020-07-27Datos-970905.docdoc ae69c4051e695f733aed8ab179413093ab05a7c85409e95847968da5bcd9fbd2Virustotal results 35.48% Heodo
2020-07-279819-AM_2135384.docdoc 025a673c09000f02defa8330ee5c1d430075f2918fdbd1ecdea827f0e8aa5626Virustotal results 35.48% Heodo
2020-07-27Mensaje-2707-2020.docdoc a8ce509813334e27d35525994ac3fbd22d52463478668d4437cce2a566c21e62n/a Heodo
2020-07-27Archivo 03-524493.docdoc 66ad126d0fa0435c277daaa539681c21f579cf4382009490c7b27d791f042648n/a Heodo
2020-07-273021-2020-IH-256572.docdoc 931d7f09beded99051b237bf32b08398ac9552e6671b26f125a076fde828f0a6Virustotal results 34.43% Heodo
2020-07-27file-0272.docdoc b76c0070bb4db2128b1580cd09ca0f2f9e41146f965d2d4e05cb1761849bf280Virustotal results 34.43% Heodo
2020-07-27DAT.docdoc 6c5324c5da5dcfa7d42eeab7d5a2e985853f1a06b186abe833296d75d13c9e5dVirustotal results 35.00% Heodo
2020-07-27Adjunto 27.docdoc 0a479543609c0a5dfd9da512221616a307fb608be96c70898e17e94481ede16fn/a Heodo
2020-07-27Info DNL/96076.docdoc 27bf386530cd799f5dc7930b23ac7cf808a7e36b9bc6f268d02046981bd4b65eVirustotal results 34.43%Heodo
2020-07-2727-2707-194-8775.docdoc 0e4ffa122c124d285e28032dc1ae77bdcd69fae8c9f982b1c233db0d89daa136Virustotal results 34.43% Heodo
2020-07-27Archivo-2707-2020.docdoc c8ddfe93a33470e36d777cd8154d546ceac1f2b81b436b0b14c6d47cf8587db0Virustotal results 34.43% Heodo
2020-07-27626741_154_415746.docdoc 9ad9aa39b0e6bb0a5a09d0d6a5127e586997c802001e6368dddd52d799458bc3Virustotal results 36.67% Heodo
2020-07-27Adjunto-072020.docdoc 7e367005096c8b3f267835a07445ee2da42934f0c812f5f04450433cbb749431Virustotal results 36.67% 
2020-07-27UON50507-2020-387-9825567.docdoc 023f4e503301706417dc3f41e97c80ea36b0b8cb13a6bc00033127f5f02cf3fbVirustotal results 37.29% Heodo
2020-07-27FILE 2020.docdoc ec5d16525df1eb52466849d2c0ac3814f89b0ecffd1771868baa38b99904c7cdVirustotal results 36.07% Heodo