URLhaus Database

You are currently viewing the URLhaus database entry for http://ezratisrael.org.il/cgi-bin/wIBB/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:421629
URL: http://ezratisrael.org.il/cgi-bin/wIBB/
URL Status:Offline
Host: ezratisrael.org.il
Date added:2020-07-29 19:10:05 UTC
Last online:2020-09-23 11:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-07-29 19:12:02 UTC to abuse{at}colocrossing[dot]com)
Takedown time:1 month, 25 days, 16 hours, 45 minutes Bad (down since 2020-09-23 11:57:25 UTC)
Tags:doc emotet link epoch3 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-07-31INVOICE_HSD358_101008.docdoc 25c12d4806108d86841e67f79d958093ac0ee1b28322cbeaae2e7527322b66f5Virustotal results 46.77%Heodo
2020-07-31Invoice-EOT4-8652348.docdoc 958410d0bb67c7d367734d2485d41525305b9b547c7382bbc8a615da1c93cf30Virustotal results 46.77%Heodo
2020-07-31Inv 3 335283840.docdoc d4c0573790c2e02c30dc3ef6e219a26840751e18de0537fb023782af9db88116Virustotal results 47.54% Heodo
2020-07-31invoice-WRN0-8868671.docdoc 7d45b681bf88eb9dbaa17bc604d6aa7df3cfc0c3bfaed371a08d5c1805df192cVirustotal results 49.18% Heodo
2020-07-31INVOICE-TZ5227-545425.docdoc 541a2147a3dedf8a670a6f6db27757358e9762a15c2b2ab8f8aa7b384158cb76Virustotal results 47.54% Heodo
2020-07-31Inv OQMP85 825210861.docdoc 2793dc7590ad4da3c118e4aac6a771ee48f213454bea29f708b1d4590fcf2ba8Virustotal results 46.67% Heodo
2020-07-31InvEGUZ2634787110.docdoc 286e883e3fd7042dd61a284aafd1bb8cf55e274a5a5cae78da6f6c2e8084a24bVirustotal results 45.76% Heodo
2020-07-31InvoiceKQ34547736875.docdoc 991fefb51ab6ff987891d3156610be49073ac26a760411d94ff209425c7af854Virustotal results 47.54% Heodo
2020-07-31invoice-P361-95485142.docdoc 5e3e4c0db013c193ec0fc613f3e0876bd36a6ba53ce477f2b989f8732f645dd7Virustotal results 46.67% Heodo
2020-07-31invoice2284233857.docdoc 6157dbba4f741eefa74c0f002ed410a6117e719c2e626ea9dd8668d7452afa24n/a Heodo
2020-07-31invoice-TK763-4997806.docdoc 4cb3ccb083a74daebfaa6b646b8294f70cebbba4515d8798b52a41cccde1c7a4Virustotal results 47.46% Heodo
2020-07-31INVOICE-RXYS3140-8655865.docdoc 74ea191fd9dd8739f62ffc1cb8d3ba2aad0b198006c5e8aab604e362798cdd45Virustotal results 45.00% Heodo
2020-07-31invoice-NQS997-4447981.docdoc 8f73071e0edbc9813f45554df26b3414e3650b0982700c2ddae27bc950c10d08Virustotal results 45.00%Heodo
2020-07-31Inv-PJ315-996382947.docdoc eb06e5d66d21212c7eb73e44c67b0748a034545ff7a5127eba4ca016692e4786n/a Heodo
2020-07-31Invoice-SGI2-867116196.docdoc 26a1feed3df8164358b5997371f3ccad341b539859c7ed75914f15c59df315ddVirustotal results 44.07% Heodo
2020-07-31Invoice-R2596-565966.docdoc 3d8ef147ca84e9943fdc850171e2de9c05b0db3472cd05901e4f109e7fbe07f1Virustotal results 50.85%Heodo
2020-07-31invoice_K58_212526.docdoc c7ed06b6f4284ba3fd857f03875187654aad78683efa88d3ed984fe057d484abVirustotal results 50.85% Heodo
2020-07-31invoice-QX4_2611633.docdoc 98736475243073034ab4507eda664966af3cc2025cc4f026364550e1fb270661Virustotal results 50.85% Heodo
2020-07-31Invoice_VRCU3996{:REGEX:.docdoc 5399417505ae67bdc2253943f273fe2b69fcdb71294530cbfe0cbe731a251b48Virustotal results 50.00% Heodo
2020-07-31Inv-RZ87-60815437.docdoc c8586306addfc533e0c3ee2c72a3a19e28d38b0e41207d72632708e52ee965abVirustotal results 50.00% Heodo
2020-07-31INVOICE_G4 76224192.docdoc eae169c0ec808dcf097bfd419bae07e5c001b1157d781d90b037250ea07fd4bcVirustotal results 50.85% Heodo
2020-07-31InvoiceZVH228 0136619.docdoc cb27bed9b173d425693fe6c19d0d7502d62645a8fff074790841a362952e9936Virustotal results 50.82% Heodo
2020-07-31Inv 983 618949748.docdoc 8e95611645644103d2ab67a6ecba315228abcad85d986852783b1af75477a63dn/a Heodo
2020-07-31Invoice FR09-699365.docdoc dcfb38249b589a264dd4ce2c25853335f1399685fcd68d68c337f308d110a793n/a Heodo
2020-07-31Invoice EWC752_482052.docdoc ab9e17c09b7e6813c9ba6935c52b277e3af613ec3fee0ec44b8efe0ee7163e2bVirustotal results 50.85% Heodo
2020-07-31invoice_D4-924491.docdoc 4f8f6304215b6672eb28a000d84a4476f5a323270f08606b2970f38293051d21Virustotal results 50.00% Heodo
2020-07-31Invoice_PX0{:REGEX:.docdoc 2a378624ddc963eca6688d3c25bec4bc7637de2153e1f23f594622a03f6e600dVirustotal results 50.00% Heodo
2020-07-31invoice-2151_123422.docdoc 2789d1d3eea1e5dcb760faf9bbf395f267ec901bc7c52a67ae60133050897609Virustotal results 50.00% Heodo
2020-07-30Invoice-MNFP72-67989100.docdoc 2e24bcec136a5b896e730820974bfa9162575d275b2ee669ece097f7b195e4f7n/aHeodo
2020-07-30invoice-RP48{:REGEX:.docdoc f2e5dfabe9cc22bc5f4995c900e073bcf2219dd18413aa69a7d1148fb6257585Virustotal results 50.82% Heodo
2020-07-30INVOICE_A957-982751.docdoc 881c5ef2385626accbec7572c0b5c5b5cdff760f61e1bb044546983d6c3fbdc4Virustotal results 50.00% Heodo
2020-07-30INVOICE-O8 94983046.docdoc f2bef647cf5f376c3807d6693d2fcf28cd42e71629fb0cd64847604a0e189081Virustotal results 51.67% Heodo
2020-07-30Invoice_4_509494711.docdoc 1c8026d6bd75a1ea091d6a6676d3a7e3bcba3b17717e21607488b9fdb762fba7Virustotal results 49.18%Heodo
2020-07-30Inv PSZ78-21696678.docdoc cda0d1231d25f6de9ae03e882b92a3a972757c980227e6e7dd27fffd5be031f4Virustotal results 48.33% Heodo
2020-07-30InvoiceJRT0262{:REGEX:.docdoc a4fbb0aaf18ce158238577166a697fa8d6376423a47673cb7ed648f5e75deafbn/a Heodo
2020-07-30invoice 1_47656259.docdoc 9c1ed7eb18e0fdaae82bfd182321793cbead92d2d90ad01cc41fa34570a973baVirustotal results 47.54% Heodo
2020-07-30Inv_EHS9_458195284.docdoc c26948855f4ff48cabef919e4728ee8fee5fed3d1c0a191b3bfcf7607a57e820Virustotal results 48.33% Heodo
2020-07-30InvNV9-13700755.docdoc 2c12a7e0edad866945a8690d526d40e53fb973708e021efcd252bd1178c14544n/a Heodo
2020-07-30INVOICE H20-92220933.docdoc 22a4985e60204df157cd134ac6049f1137b57ee8577d5603c23a829c574d4a36Virustotal results 48.33% Heodo
2020-07-30Invoice-QNB805_387619.docdoc 7a8d537573808df38b103ed3d3874876753612fea566162fbbf9cfca51baac88Virustotal results 49.15% Heodo
2020-07-30InvoicePIYV0370 570754.docdoc 6c3a08adeeec901334591683b81c83d788d410f88bf645a4a63b65efef289fc3Virustotal results 48.33% Heodo
2020-07-30Invoice-BTQ96-503132.docdoc 5f8b9d0c8b209dc485dfd1ffe23cc79030dd096d3c991c15315b6c2f0ef30c31Virustotal results 47.54% Heodo
2020-07-30invoice ZR08 3015113.docdoc 9806fdaf573ddea01044f37824909d64b348a8bcbe003bcde925954e14746627Virustotal results 43.10% Heodo
2020-07-30invoice 4{:REGEX:.docdoc d9bd2eb0111b6f7391edbb640b8dc6e6412e77d2fa3121149bded48f50d9e75cVirustotal results 44.26% Heodo
2020-07-30Inv-Q9430-437121.docdoc 57bcd0ce642158f431bcd37dc2223f9c3186275eefa03ad35deff1fcc99de5abVirustotal results 45.00% Heodo
2020-07-30InvoiceRJ179 007167361.docdoc 46d310c17da858517554fcf0b0167e0a7f33f71e6bb42873207343ee1ba29b09Virustotal results 45.00%Heodo
2020-07-30Inv UN14{:REGEX:.docdoc 57cd3c6667afd66293fe85bc6632764caa8217677ecf64f34c72677367fd9472Virustotal results 46.67%Heodo
2020-07-30Invoice-H71{:REGEX:.docdoc 31e02df81ef4d7cd44122b4d0d8b07c239132dfdc5dbaed717a55ebb94882921Virustotal results 41.67% Heodo
2020-07-30Invoice-RMM54_81821920.docdoc 8d9bb420fd3f8a710096cf3e67e7694308cf65921bc6f9ed1870825d2e1c0d02Virustotal results 42.62% Heodo
2020-07-30Invoice_EC5 025325.docdoc 4c2e3ee81602130aad3a662d8500b901eb2ad5af96d12773227699e941fda724Virustotal results 39.34% Heodo
2020-07-30INVOICE_2247-9929988.docdoc ced0a2a65f3695dd4cec0afa9f1e135710d7dccd015e6b539d89ad09acd8f3adVirustotal results 39.34%Heodo
2020-07-30Inv_HQW73-284376.docdoc 2d52d74f498007a80c0f955b4004ffa43f9a156616527223b12166fc5e396742Virustotal results 39.34% Heodo
2020-07-30invoice-ZK445{:REGEX:.docdoc 4a0c2b7ffc018049812893fc6ba973b212567e436a794f9fde50207835be9d0cn/a Heodo
2020-07-30Inv_FGQ0-14891330.docdoc 3fdf511a0d2c49b47501b1ad0fd526b54177eff88f86952a9478c8168abd10b3Virustotal results 40.98% Heodo
2020-07-30Invoice2{:REGEX:.docdoc 099dbabbf2a1939ad6103ee587d3777e00c2d83f0d0f4e2343191d546dc349abVirustotal results 40.98% Heodo
2020-07-30InvoiceY069{:REGEX:.docdoc f989c047bbb3d6e7dd9b1c55e9c4d24d52fb50fd7d12048f44417f46227b9921n/aHeodo
2020-07-30Invoice-TCOA48_972471.docdoc eff2527b0d1491dcfc46be3cf12fb6a749988c8c869f06e9adadc236474b60adVirustotal results 40.00% Heodo
2020-07-30invoice CAW007_0239246.docdoc 84f1793acc6d7c229aed03c0334fcb223eb89415c1d96b08822e988c1a5652afVirustotal results 45.90%Heodo
2020-07-30Invoice_V5757 870462898.docdoc e66e3c05c9813a7da90cb5090c3b35bd492b557b83580d7f5f7592f0dee64d90n/a Heodo
2020-07-30invoice PW61-1356463.docdoc 048e2ddba3f66343ea42a0de55e8a6d3b031f118abbd528faa5bb6132943dd50n/aHeodo
2020-07-30INVOICE H336-872416843.docdoc aa6bbf739a15097060f35839f8bedf662f371e5d1f27dfacd0bd8863b46ab1dbVirustotal results 46.67% Heodo
2020-07-30Invoice-008 6964266.docdoc d7f5fca8f5de440dff815ea87b1b67a6d1a22028f8b39363240ebdb3cc43479eVirustotal results 45.90%Heodo
2020-07-30INVOICE_EAPH24-31420806.docdoc 7579d4a1d6d4da73019950ba9cd7de417560465889ccbc12fffbebff6b87ca3cVirustotal results 45.16% Heodo
2020-07-30Inv-215-580695.docdoc 1a9250e336b85ed5971242f5611efb67fa4554cc3354854fea2052257bbcec08Virustotal results 45.16%Heodo
2020-07-30INVOICE_61{:REGEX:.docdoc df7de8a45da98d24665a7c9c5457068fa727454bed406b47af9803d36b46b7a3Virustotal results 45.90% Heodo
2020-07-30invoice O7_542780.docdoc f6e93dab00f7bdbe24a8c69f83230bf76e626abc42f83f0065cd99b483bdbc06Virustotal results 44.26% Heodo
2020-07-30Inv-DZBM399{:REGEX:.docdoc 133d58f3c65e1886b5480e277bb845f9d97a7177d1da22625c6a977553b374cbVirustotal results 47.46% Heodo
2020-07-30invoice-P2-8219005.docdoc c444016d70224a2cb4808352f39232719d705243dbaf2321c3aed6cee511890fn/a Heodo
2020-07-30InvoicePTY7 46165295.docdoc f109e6ae9c85ddfe69a3f7312184afd244ca7deea6b5f977cd6b9869dbbbe860n/aHeodo
2020-07-30invoice 023-1571384.docdoc 47c3d5ad152badf3a17ebce781f3d060a059bdb107a1b8c7726469a95025e911Virustotal results 45.90% Heodo
2020-07-30INVOICE-38_0413255.docdoc f514ac7cf2027c38ccb289da23b3c3f22466682e3641843d749e800125c61c65Virustotal results 43.33% Heodo
2020-07-30Inv-SSM1{:REGEX:.docdoc 0daff577173686557b6c179acf668ffbbc64cfecd2545ded9102108e81b557e3Virustotal results 44.26% Heodo
2020-07-30Inv NKTE812{:REGEX:.docdoc b881c04d3421fa27957a0aba96dbc228420bb1dc80ed828300fb45848a66447dVirustotal results 45.00% Heodo
2020-07-30INVOICE_MN20-852080.docdoc e32b2c8e2433ba25e873642b54b3a403953d5bf9fd077801999e5534b4f2b791Virustotal results 43.33% Heodo
2020-07-30invoice SVVS2{:REGEX:.docdoc db24098d6bd41dec460588297f00255c409f745bbe32faaf2cb6476fd44ee504Virustotal results 44.26% Heodo
2020-07-30INVOICE U770{:REGEX:.docdoc 72244c8748d1f0b37e10ef8b0f5be0624ea7ac975aa1214281b4f326e6b2f4b2Virustotal results 45.00% Heodo
2020-07-29Invoice_KRC3073-548485433.docdoc 9682cb3fed20b168899452201908168de9b2c2d82530d7227a4474b8b2587eb8Virustotal results 43.55%Heodo
2020-07-29INVOICEYIV471 838207.docdoc 40a19219a853bbc60201d4cd4fc226bcdda0966f87f05dda562d113d65c8ce67Virustotal results 43.55% Heodo
2020-07-29invoice D4 04107765.docdoc 1a509a842e1a24c4ffe665706fc677197002dad72cf5ba4a2711e9aace8dcd70Virustotal results 44.26% Heodo
2020-07-29Invoice_L19_78454523.docdoc b6eb1c7760e06c0bf914bc6f8d26d4aa98a1d859d71fed9d6712db95af81f5f0Virustotal results 43.55% Heodo
2020-07-29Invoice_A1218-352846156.docdoc c56677ce1976e4f30f08c27cef0fc9d35a577e586ab6afdb0a6671aa71c7caa9Virustotal results 36.07% Heodo
2020-07-29Inv-GS0{:REGEX:.docdoc dca65af614b79dad6628ee637674667f9dee8b395388283c22e3fca41e8afe31Virustotal results 35.48% Heodo
2020-07-29Inv-456-120613.docdoc 9a2096146b8ace7eb4e64e5a25cf48da7bfe891b37e48e83edd349cce12d5628Virustotal results 37.29% Heodo
2020-07-29invoice15 327139.docdoc 0644fc32d19fccfcc17f4c76d1f463049498e6005f7228f63aa9b88a1d17c95eVirustotal results 36.07% Heodo
2020-07-29Invoice_TQ61_852831.docdoc f993b6aad57f95ab2b4d2dadf658a9accec7c914478dadf58e5d136f42b5f0b7Virustotal results 36.07% Heodo
2020-07-29invoice-PQI5-7716251.docdoc 46019bce6a3fc37ac4ba303099277dbaf8bb4e7fb09196ab0317ee1f5fae9da4Virustotal results 34.43% Heodo
2020-07-29Invoice-C3{:REGEX:.docdoc eedf761aed061fa63744aa541d5ddef3b7d53978fd00882cbf9fb0f88bd82550Virustotal results 36.07% Heodo
2020-07-29Inv IQ6681-45301127.docdoc 090a984722426633b73001523378c0fab17c231b0f9702306e9caf01c98f3655Virustotal results 36.07% Heodo
2020-07-29INVOICE 8709 05280269.docdoc 237c43a5291d6a1fcc464727bbfdd174bb1225e9c12283348c788b1b884b1dcaVirustotal results 35.48% Heodo
2020-07-29Invoice-Q64_686381580.docdoc 6bd95c503150dd15cb18ddacc365a182f9dc405d69fc8cb0c081ff4e8064e9d4Virustotal results 37.29% Heodo
2020-07-29InvZHTP008{:REGEX:.docdoc e73f2075610d9b2cdef2e9a0cd4cfb82d1be854382f0fd03f5f1f9b28707e914n/a Heodo