URLhaus Database

You are currently viewing the URLhaus database entry for http://mazzottadj.com/stats/uglDZxeIE/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:426838
URL: http://mazzottadj.com/stats/uglDZxeIE/
URL Status:Offline
Host: mazzottadj.com
Date added:2020-08-06 23:49:08 UTC
Last online:2020-08-07 19:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-08-06 23:50:03 UTC to abuse{at}iplan[dot]com[dot]ar,abuse-iplan{at}iplan[dot]com[dot]ar)
Takedown time:19 hours, 36 minutes Good (down since 2020-08-07 19:26:44 UTC)
Tags:doc emotet link epoch3 heodo link Quakbot link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-08-07INVOICE-D6221-95145768.docdoc 66762226f0f7bab8acf658aaf69557223a227f9225671446d93e502b6d221fd0Virustotal results 30.65% QuakBot
2020-08-07Invoice-BCZP332-8243913.docdoc a1d3c10648113856a54d5142939fddfc547781a277390386c2c66731226e65d7Virustotal results 31.67% Heodo
2020-08-07invoice XXC70 976248.docdoc 3a7e162433ba4372c7e49ee5cb6bd4afb23cde7bc0f19d39edc30aa22473994eVirustotal results 27.87% Heodo
2020-08-07invoice_SGTB3_426436.docdoc ce9c9aa5b7aeaf8280a14d4bdca59c62624e14eeae978170acdb80a98ed185deVirustotal results 27.42% Heodo
2020-08-07invoice PD736 479000.docdoc c2ecd3419f71d51acb56c7f02e685cdd46ec96514b459545a931768e2141ae58Virustotal results 27.42% Heodo
2020-08-07InvoiceSXT995536507.docdoc ab1f576293cc70428b0adcadcbb453c1525ff8bf2fa71d650e52b83ff4092f81Virustotal results 26.67% Heodo
2020-08-07InvK840882164.docdoc cd0a8f71f9191062a85d74dcd5321d7882e38ba58e3f04468a7e5b2c1aa32209Virustotal results 25.81% Heodo
2020-08-07invoice-W2540-447402.docdoc 67067a83cf054c8deccf1e31d09a2d8ed82469b2e27884e87aefef248019b89aVirustotal results 26.67% Heodo
2020-08-07Inv-DWH704-0667248.docdoc 0a4b53e2bf7608fe93c60618cf50a657598aa4fc95b947cc7fa7b8fb0331d561Virustotal results 25.81% Heodo
2020-08-07Inv-TUL6961-14636418.docdoc d3c7b17eb10b73fa3e2c519f2e78fbf3d2fc0ceca12fa1eb7b6d2f2b550ee3ecVirustotal results 25.81% Heodo
2020-08-07Inv_C02_110839681.docdoc ab723065fb8fafd32113fe8d82678c68c7a6bca00da77eff65dfc0907c2bb458n/a Heodo
2020-08-07INVOICE IDU7552 841983.docdoc d5202e4ed5df576f77a60bb522bcd3083a63427ed51096c87214e5a1ca9b6ed5Virustotal results 26.23% Heodo
2020-08-07Invoice-GDZT73-16685047.docdoc c6808a80402ca8681d1d154b3c6f34f3234641262b544770e01db268c66b2de8n/a Heodo
2020-08-07INVOICE_K0_180330194.docdoc 4b2a3123f9c35cd05baa562f88b99a767710e4576ab2f5da552c910fecc5b76cVirustotal results 26.67% Heodo
2020-08-07Inv-VXM1-3884538.docdoc ebfc577418a0ab193288a2ed0c540e2d00b5a5e804aecceef9df0f6f3f90fa75n/a Heodo
2020-08-07Invoice OAD480 57772977.docdoc 382b082eed966058a7515440d5f5a584e13539b7b12e3c75ccdba195df22f2d2Virustotal results 25.42% Heodo
2020-08-07INVOICE-F86-78202916.docdoc f0f5f013ab26d3b00b287eaa4f95787de6f79f1655fdaba066db4dff469588dfVirustotal results 34.43%Heodo
2020-08-07invoice 4616 234596272.docdoc 9aefb6f389c5867c81bd2ed1aabdb2c82eadbb256f417b396c0d50d1acc3c942Virustotal results 36.07% Heodo
2020-08-07invoice 22 783697.docdoc 951dd6a7741aea4cff5813cc5546bccc10ba19d357778b8ea3b7192c5b9dfb10n/a Heodo
2020-08-07Inv-FTG6122-393891.docdoc 3dbd6983aefc42a5197e52a2463a24ae5d94ecab6a499a4c0607773944c3bbdeVirustotal results 29.03% Heodo
2020-08-07Inv-YTH3-5500730.docdoc 98f5d31d0ece06d1167361e0886843c5d0e28c0c394cc105256a302be66038a3n/a Heodo
2020-08-07invoice086349165.docdoc 6cdade839f05e749d79545f061af1a49db0f84ebbbb8cdc86f7738c7e5d568c9Virustotal results 27.87% Heodo
2020-08-07Inv-XEV406-49293352.docdoc 1c024255eecede738af23041dce02427bf7d670769be308c2982406778aaa045Virustotal results 27.87% Heodo
2020-08-07invoice-T8806-35037928.docdoc 4528ae49466b05296cde29f30b295e9c405e8fdb60e9ddfea00f6ccfd7d950b9Virustotal results 27.42% Heodo
2020-08-07invoiceLKJS4488724229.docdoc 2578059d07477ef34a31cf4195c47543fe2463d6eea9687ab6c2b4416926ff37Virustotal results 27.42% Heodo
2020-08-07InvY2549866.docdoc 031e43825f2b7871a3f99e55db0e9cfba4045a7a22a45d283d9783e1b2590e09Virustotal results 29.82% Heodo
2020-08-07invoice_C4615_986423.docdoc c9a9fbc41a7285f67d63ed23242f654f3e2a86ddc21f38e5b7d7059c5af1de4cVirustotal results 27.87% Heodo
2020-08-07INVOICE 2 80571664.docdoc a8585830fa13dad333bb6013a31fbd091a1bdf83f13eee388f27e3aab345fbefVirustotal results 27.87% Heodo
2020-08-07INVOICE-WU95-233039.docdoc 4f45c033ce53894098871f4cc7496a3c068390adaebd9773d649ab906581822dVirustotal results 27.87% Heodo
2020-08-07invoiceXQ18415059375.docdoc 635ee74a309d9f1f7b4d0096a218aaf10f90d115c83ce91dd0ebf02199b4d84bVirustotal results 27.87% Heodo
2020-08-06Inv TE515 37351700.docdoc 98c92f9f7760480bc95e3c091adf4d40b14c4235b7940122ecaf52495a811524Virustotal results 27.42% Heodo
2020-08-06invoice-HND2086-2517180.docdoc e2e0bd0963b5e948dccce45441ca6dae05b8f16110323ea256c2e4f1b1de8795Virustotal results 27.42% Heodo