URLhaus Database

You are currently viewing the URLhaus database entry for http://ledgr.xyz/wp-content/multifunctional-Id7m0-wnZC566OZxNq/709274-5v2NRK-kC5RRRNqb-ZOCwhqlp/9doqoo-vz5v64w01791x/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:428088
URL: http://ledgr.xyz/wp-content/multifunctional-Id7m0-wnZC566OZxNq/709274-5v2NRK-kC5RRRNqb-ZOCwhqlp/9doqoo-vz5v64w01791x/
URL Status:Offline
Host: ledgr.xyz
Date added:2020-08-10 06:53:35 UTC
Last online:2020-08-18 06:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: spamhaus
Abuse complaint sent (?): Yes (2020-08-10 06:54:03 UTC to eig-abuse{at}endurance[dot]com)
Takedown time:7 days, 23 hours, 49 minutes Bad (down since 2020-08-18 06:43:12 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-08-12doc 2020_08_12 O65948.docdoc f5c06fe4e1896808b45552d16a3c9de979b126fb30b655254f14ebde0e56843fVirustotal results 52.54%Heodo
2020-08-12FILE 20200812 Y29612.docdoc 750ee8cbbaf949d49f5cb20f8c8c2aa859faea839bdac616c41b539afb9a777eVirustotal results 49.15%Heodo
2020-08-12LIST-20200812-CJ7449.docdoc e44866ddc3408fab14c87c206e408852253a05de531691d4cb8e1dcd7f37cf72Virustotal results 50.88%Heodo
2020-08-12list-2020_08_12-KF260.docdoc 1f2721d86674c089b606753be49e601afa652cd0daa1af0a19239ca33981af29Virustotal results 51.67%Heodo
2020-08-12Mes_20200812_S013006.docdoc fb3cc3350e60d43b553472c75d1c7ec6d97b7a837094ac667dae539d90e627a5Virustotal results 51.67%Heodo
2020-08-12INF-20200812-5227.docdoc d6ceff199daed77e31636bbce10dd06d27353c4064b10c076028aea4313071c1Virustotal results 49.18%Heodo
2020-08-12inf-XN306093.docdoc aa16198b53e4a0f12906d869baf7d712279438c0e5cb818a405a26f02d9b29d0Virustotal results 53.45%Heodo
2020-08-12mes-2020_08_12-19774.docdoc e5c2116828d317efeac4ff3a7fe2092bae369fbb5265db371d919a3ffa037cefVirustotal results 51.67%Heodo
2020-08-12INF 098.docdoc 97c96d516ed17d4020cd6eb8bc30414a3c99e2d192a3ac91fe520cca444b1924Virustotal results 50.85%Heodo
2020-08-12MES-20200812.docdoc a86eec1385c130042a6609edfa33a94bd2e475ddda047eb16553247dd67622b9Virustotal results 49.12%Heodo
2020-08-12arc_C070.docdoc 3978433c3749e3e2c401e046dde407aef5c2365a0ef1bfa9e6f47182b9c4c1edVirustotal results 52.54%Heodo
2020-08-12Inf-GDE387.docdoc 52b725e19110d9c7b614784f84880a6f9e181c033ba521b012662ada81fc1cb7Virustotal results 50.85%Heodo
2020-08-12inf_2020_08_12_4787172.docdoc 2d9d999204b6190a6e91bc1da7b0330466f17a916b33c2cab9bd681bc5060e10Virustotal results 48.33%Heodo
2020-08-12file FZ929079.docdoc e49959014262227a3e6ca5bc2937e6afab83a251fc694000d1a3d38e7814d9dcVirustotal results 50.85%Heodo
2020-08-11file 2020_08_12 U258.docdoc 79c47358c6ca784a93b378478cf157a96b6810484e3fa17d544d8ab047274c17Virustotal results 50.85%Heodo
2020-08-11dat_V793391.docdoc d135bfa839f7aced43217658d78cc59d8c51a7120940e59b3c805612e1b276eeVirustotal results 50.85%Heodo
2020-08-11Rep 20200812 NS7451.docdoc 0241b1ed7a1656dab5d9fe64b7e59fec547126495769ca53d78220090b494889Virustotal results 49.18%Heodo
2020-08-11Dat 082.docdoc 8f5d6af71053c703ef6ac42971b9c19766bb0682e793b8f295af1453eccb5023Virustotal results 49.18%Heodo
2020-08-11Dat_BMX7224.docdoc 593a1eee983e1c66c480fc52ce564f0ebb60c48d5cadef3f5ed4367d32f1112bVirustotal results 50.00%Heodo
2020-08-11doc 20200812 H550.docdoc 7100d7486bcccf991906541b709fd020c8cf3aebaed5025f37c19ea15924b034Virustotal results 50.00%Heodo
2020-08-11DAT-2020_08_12-BR52832.docdoc 288e7aea199e7c3ba4f0d826bbaa80686faf6ae3061eb61544aa74cf76f928c7Virustotal results 50.85%Heodo
2020-08-11Doc-TJS68918.docdoc 13114e608a7cc05973b50935d669f9bb5a135bee36e1f29a47243cdcb3cd7401Virustotal results 46.67%Heodo
2020-08-11REP-20200811-065.docdoc 6c43bac38a962a5ba3d1c691a45946526dc5a550897af82d14982b94077a6d29Virustotal results 48.33%Heodo
2020-08-11File-20200811-971683.docdoc 505bf00a3f0c6b5d8ececc410f78de1bdb0fffc8fe7a3324166448fbb3a213f0Virustotal results 46.67%Heodo
2020-08-11arc 20200811 BT75642.docdoc fcf12915febaa89983bd1db12d8ee00046fe77d5012b2cf75a08fc8fa9aa2791Virustotal results 39.66%Heodo
2020-08-11REP-KT32269.docdoc 1da87bf7cde42012d6ef60a19e839e43b5cf12ca5942cd31c40cc0ac0e31da49Virustotal results 40.68%Heodo
2020-08-11List-DL36304.docdoc 418eeb7ae0db2b02c5717e9db6635d4164c49b94b435a006d2b447258f71a9abVirustotal results 40.00%Heodo
2020-08-11doc 20200811 BT077.docdoc b27de5accc5440416824521c2e1ea63ede6b2c5658f5e01a0472db9789a1729dVirustotal results 38.98%Heodo
2020-08-11mes.docdoc 0c2fd444f2fb9f77cde4f5629c19ea2ff814f7cda10a63a6bc6227d3ce403b4bVirustotal results 36.07%Heodo
2020-08-11rep 20200811 G649.docdoc c3832fbc9a1ddc68c6e46a3833639941057f03d5a0382d4987e72a406da4d1ddVirustotal results 36.67%Heodo
2020-08-11REP-2020_08_11-0867.docdoc 3f42c82f2f7de6ef82c2ecb7cd33aead81989314771113ca39e4b739a0d8f4adVirustotal results 35.00%Heodo
2020-08-11File-2020_08_11-99246.docdoc e116b128fdaf41295ce37895adc734d500040cd8b6d027ad266a73d31a7f7ff3Virustotal results 31.67%Heodo
2020-08-11Rep-20200811.docdoc 443267f63d955561b6da7e86366dcbd233c605fb7eb3b92e5863f7482738e692Virustotal results 32.20%Heodo
2020-08-11dat 20200811 1001.docdoc e6dac22de4a1789bdae05c59750837717268dcc9a7b70543887fdf7ffbccb713Virustotal results 29.51%Heodo
2020-08-11mes-2020_08_11-L04245.docdoc af9ff31ff456d702233a75ae766bd7ac893887f5b4ad12bfb901752ea6f54463Virustotal results 29.51%Heodo
2020-08-11dat 20200811 415.docdoc 6db2f19c991c9c2062f7e32efe10557d28155731528f4d21b9a77848db303841Virustotal results 28.33%Heodo
2020-08-11file_2020_08_11_OX281813.docdoc 03ae6dacc26669e23257af7d5e8a8c8d15bdbe6cc973112960392ab22d03d93fVirustotal results 25.00%Heodo
2020-08-11Dat 20200811 2069681.docdoc 23315f65b06123e965e1949c08085c097b3efc919a3807955cd3e1acc596e809Virustotal results 25.00%Heodo
2020-08-11file 2020_08_11 ZF3397.docdoc 29d67f5bde2807da0a4316463578997237825ad1a5e219e2dc5d9c4efa4cf3e1Virustotal results 25.42%Heodo
2020-08-11Dat_V262.docdoc f680090987b21b32b1b79195b479f3bb74ae2e1507572e091736a055335597bdVirustotal results 24.59%Heodo
2020-08-11File 2020_08_11 56132.docdoc 9715534fe73d1a63f33ee24b769c7a8dfdadedb96b0c0e52fe0fa713f889d37cVirustotal results 23.33%Heodo
2020-08-11MES-2020_08_11-9817.docdoc df4028247491b1fbd4814fdffd5c5520ff0f3b674fc2a8b279767193d14c96e5Virustotal results 25.42%Heodo
2020-08-11file_20200811_HAU039097.docdoc bdec17a0bd8af4f682e06a0e45531d3e90242d09c6a7e99b3c293fcd72418b21Virustotal results 23.64%Heodo
2020-08-11ARC_0268.docdoc 9ef7fa8efe7c59b7cdbd9d44134d7876fb641fd6cbd2b1aaa1fadab058c7e4efVirustotal results 22.95%Heodo
2020-08-11List OEP226.docdoc a6fbf64be5dd2d619a7901f3fd09bc144304555b5abd2bdc82b52e17164fd652Virustotal results 24.14%Heodo
2020-08-11File ULJ4649.docdoc 2625218978dc84d278092066c6e099ed58f536ea22be875f879d7180bf1a0eabVirustotal results 22.03%Heodo
2020-08-11doc 20200811 F364.docdoc 00d8cd508fed4a962bb50884748fd8d75c9f8074cca9bb140894c28b4c021819Virustotal results 22.03%Heodo
2020-08-11Dat-2020_08_11-822.docdoc 835fb139123223e0744868aaea747cd334a4b5e5b770d017dfab4b17d30a0b85Virustotal results 23.73%Heodo
2020-08-11Mes 2020_08_11 LJN779.docdoc ad8ecc85066be281b996f847814e7770dd2316faeaf97406e310db7bd1e3498fVirustotal results 20.97%Heodo
2020-08-11Arc_20200811_9143.docdoc 12587249744f2253a36fa401256c0bfe0d806185522023bd4862720f14b9cb15Virustotal results 22.95%Heodo
2020-08-11doc_20200811_VRI83639.docdoc 9dea2448db7b1a50b96944b0d89c0541ea881d78e7b0cd42598ae3bac80bc3ceVirustotal results 23.33%Heodo
2020-08-11LIST_2020_08_11_45182.docdoc c63d69fb1a335468a6aeebc2b8af051bf71cb55b4808a17409b332fc70728b8cVirustotal results 44.83%Heodo
2020-08-11List-MGF0005.docdoc 61a3696a9198091587a55008ec682860adeddaf5a0cc68060e71647881009598Virustotal results 43.10%Heodo
2020-08-11DAT_2020_08_11_2517.docdoc fce0f3d055c058d10eaff76ccd0a00bc87a7fb733b1ce6894e486b39ebf6793fVirustotal results 42.37% Heodo
2020-08-11Dat 20200811 YWO9068.docdoc cae649fa4834fbe773a6759d1c55036ab5a152fa90aa2f64b7751e50b3e7deebVirustotal results 43.33% Heodo
2020-08-11inf_20200811_313.docdoc 353b24cd1dbb7be15133b64495afbbd1846a83e775870f07cef1efc21c411ddfVirustotal results 44.26% Heodo
2020-08-11REP-2020_08_11.docdoc bd21c54cff53a13d78966917cf55e87135e7020967d2416f6a0b259beba63dbaVirustotal results 44.07% Heodo
2020-08-11INF K1934.docdoc ee1ee54baff4c78ecda5e4b6ff18630ad8152cabe662ac370b7d814ee6d457e4Virustotal results 44.07% Heodo
2020-08-11ARC_13086.docdoc 1d6d7c0058e45499315faa839a5d61667865f8b11c4ae4038f23e60cbfa8a8efVirustotal results 43.55% Heodo
2020-08-11MES_2020_08_11_0485.docdoc 8a830a6191d9a05c952d79d0799c7e0c106e46eb7f690d42fd878228184ebabfVirustotal results 45.00% Heodo
2020-08-11REP-12812.docdoc e4790d41e27c6978baf5ccf9461b74b1e9606fdc7edcb4d2022edafc3d8a6fd6Virustotal results 44.26% Heodo
2020-08-11inf 2020_08_11 PP878.docdoc a1ddd1dfe24bc5f5585a78c97765889b729d333d8ee53ea4beaa258be4f399b3Virustotal results 45.00% Heodo
2020-08-11Rep_2020_08_11_8888736.docdoc ce70fba1cd6c71bfbc91162f8e5d6f99e03ffba2db898e1088139f06cef9c304Virustotal results 44.26% Heodo
2020-08-11Mes_20200811_6549832.docdoc bda55acb649535e7d61133cf076b1604f3da829aa4d7b45a7bf3ba27466d9c3aVirustotal results 45.76% Heodo
2020-08-10dat-2020_08_11-47867.docdoc 1ff50f088800028624af3ad83890529e6cd409d4c797d27b35f77e33fe36793eVirustotal results 40.00% Heodo
2020-08-10rep-2020_08_11-659.docdoc a685d179f34dc5fcb9fdb968d93826a1931f9e729bd7fa6491dc6cacf4ca0c68Virustotal results 40.00% Heodo
2020-08-10arc-20200811-69881.docdoc 230cc48c70942780ddd2cc9327ac6c9b96bd8c1272c1ad0ccde75cced629204aVirustotal results 40.98% Heodo
2020-08-10LIST 20200811 R966.docdoc cc915da7e58c724b0602504598bbad14ca38c5ab5323a50095fd1fae2fb9d62bVirustotal results 40.32% Heodo
2020-08-10File-486.docdoc b932a398f4a9b8d5908191100539006283c4cad9b8078b75bc1d468ecc8d4680Virustotal results 40.98% Heodo
2020-08-10REP_20200811_H3240.docdoc 3b59369e3166425caaacc1f0c00428539ecec010f83337e7af44a660bc6c7735Virustotal results 40.00% Heodo
2020-08-10Rep 2020_08_11 K651.docdoc 8bac60fe9c581db6206a5ca49fc3fc76df934a47006c8effcd145a6ab3c70cc8Virustotal results 40.98% Heodo
2020-08-10INF 2020_08_11 192310.docdoc 69a6b1c09608f190a59315faa99814cad90c3eda1f938f379415adb9ce80d7fdVirustotal results 40.68% Heodo
2020-08-10Rep 20200811 U2848.docdoc 3708962d8333f33b8ca2229ccdf932d5f06c2e380b5634afb33c2b29e209e269Virustotal results 41.67% Heodo
2020-08-10MES-WL140009.docdoc ebbaba5678052bce84258a50142fdf8cfd4b3e45e276ab994541824ba032b6c4Virustotal results 40.98% Heodo
2020-08-10List-2020_08_11-UBR336.docdoc 6fdba2a3c021e527cc4d508e143f075fee286280cbb58cc759f2c7968248b1c6Virustotal results 41.67% Heodo
2020-08-10rep 2020_08_11 BL611.docdoc 9b16a279970535f938fcae16c2df00eaf040804d5eb740193210aced906a8e2dVirustotal results 40.00% Heodo
2020-08-10ARC.docdoc b5184411717b5186e80a521f6b70c47091f21c4e9c586d2f565438dfaba70d7dVirustotal results 40.68% Heodo
2020-08-10Arc-2020_08_10-60200.docdoc ab58eefb4005ca4696afc807419f13ce1aa5beb2170bbc5ec4e5d943d96f7ba3Virustotal results 41.67% Heodo
2020-08-10LIST_802.docdoc 21d305c97502379abad7f15c44454ff18239806f9839d1e72f83028893df2fa4Virustotal results 41.67% Heodo
2020-08-10inf_20200810_AO39238.docdoc 6d218e558b2cf4b5f4564d9bbfe8feb68602b363228a53f9c7e7aba48ae19d1dVirustotal results 41.67% Heodo
2020-08-10Dat-2020_08_10-LZ492424.docdoc 3a2bcd46d722290108da96d36f9b0ba93b0135b9ec0363f0fbf116ecef4c7163Virustotal results 43.33% Heodo
2020-08-10inf-2020_08_10-CWR30847.docdoc a183ad4b8a0e9fb7dca68946fd71e2382b7d6818ea27d5aeeee1eccb0c15ede7Virustotal results 44.83% Heodo
2020-08-10LIST-2020_08_10-D113.docdoc 8641d44f1d6d745099cee15a65f849a2cdc8f197bbd3b6ab628908ac967af7baVirustotal results 40.98% Heodo
2020-08-10Arc 2020_08_10 S660239.docdoc 03c3b83396d5866a19b8173b63e93341e1fb76a16e082ec63d43b8db44d2b9beVirustotal results 41.67% Heodo
2020-08-10MES_S967.docdoc cc150d98c77467413cca20e24af2ba69870168fa8a7793d89a2ca28cf926323dVirustotal results 40.98% Heodo
2020-08-10list-20200810-RO890.docdoc 05b19f1a3f37ab7e3dc1adfcb331e76f1669a70c8cef3aa4de7e7a322c7cb244Virustotal results 40.98% Heodo
2020-08-10Mes Z937687.docdoc 26c0eda17c5ff7c88858beb7a132b30d9075607bdf525019481fd9db5b8cb158Virustotal results 40.00% Heodo
2020-08-10FILE-2020_08_10-4725.docdoc f93085363207df63463e918f54710d8958d46b5d0b25608a90ed707145215062Virustotal results 40.32% Heodo
2020-08-10list-20200810-39590.docdoc 89e6528d812e9c5ebd232efc41db376df49a2e62f631d7bc6687ce1e4505f900Virustotal results 40.32% Heodo
2020-08-10List-20200810-K064.docdoc 0d7254d03f1bc024880861da0e91b0d9ffa356e6f9ac24a4361b453f4ca5d770Virustotal results 40.00% Heodo
2020-08-10Mes-20200810-CO63779.docdoc f16272641f3e751ee863e6c99be9995bb082fac98363bfdf39694abc46620906Virustotal results 37.70%Heodo
2020-08-10File-2020_08_10-4034.docdoc bd4f437fb7e619a4c950887ea0bdf376ba140bc4f3cd5bd1fb4f9a30c1824e4dVirustotal results 34.43% Heodo
2020-08-10Mes_20200810_P7282.docdoc 363bf79f27cfcde60d5414d6a5228e37c9d820cf1363c369e31da5a76020108aVirustotal results 34.43%Heodo
2020-08-10list_RL4610.docdoc 1ffeeaaba729ae71d1ace58dd6403d93cf036e5faf59f53b19437b2e5bb2a26aVirustotal results 28.33% Heodo
2020-08-10inf_20200810.docdoc 254be797ffbf8675b2ea4ba0e525fe4be49e809bf39ec4d8edebd9be0a548468Virustotal results 27.87% Heodo
2020-08-10Inf-2020_08_10-932.docdoc 42aa54c97fd4610db06d1243f65542ff4e4fb19f46680240989a85e26b01f565Virustotal results 25.00% Heodo
2020-08-10doc_2020_08_10_AR49207.docdoc fea75486f779a09cc13afd43618fc5e3fb34dd21ad064fd50b17f9ba0efb21e4Virustotal results 24.19% Heodo
2020-08-10inf P05999.docdoc 180422e0ef48fc6ccd972ff5be4adb974f18a65fc2f7cabe648bacc9aaf8d2a4Virustotal results 24.59% Heodo
2020-08-10mes_2020_08_10_TS63450.docdoc 4d4ae1699db9838c38dee58dcd77506a4d264f9bb07868d8238c32f614162907Virustotal results 24.59% Heodo
2020-08-10Rep-20200810-71793.docdoc 0bf00915e9ddb010ba952f6ed1f1ddeeb3c5b89a793d21ea76c27311fff52beaVirustotal results 25.42% Heodo
2020-08-10arc 1153353.docdoc 4785c1a88f785775f3e1ff5d2a23655322d1beb91d61da3f9a328ca4f2443c0eVirustotal results 25.00% Heodo
2020-08-10ARC_DN79244.docdoc fa4d4fd753c9e149d01fd2d3c9c4feb9c2de06940c9fbd3337d959e768eff74aVirustotal results 23.73% Heodo
2020-08-10Inf 20200810 718011.docdoc e69afc6d54aff95e19e85f490944cabaea9dcdff0ab1fbaeba2a0a049634c929Virustotal results 24.59% Heodo
2020-08-10arc_2020_08_10.docdoc 89916122c841fe8367c6789ba4feb91c43d3d31445ea5abbcfa7c14ef3d67f4fn/a Heodo
2020-08-10MES_2020_08_10_0539.docdoc 0a3291d2715fd01250ba5d617a9526e37b1e15edd535968de9770e3ecfe0b66aVirustotal results 24.59% Heodo
2020-08-10doc 20200810 91349.docdoc c8ecb35f1491b312bc8f34bab1a9746238044b23b70fe26cc8f232875f484587Virustotal results 25.00% Heodo
2020-08-10Mes-2020_08_10-HS88744.docdoc f0c9f234048ed056319e68fcaf4bc54130e3975fa89a9177f690bff1bb85fcf9Virustotal results 25.42% Heodo
2020-08-10mes_20200810_HVK0026.docdoc 3eaad8076f7d44f6369c773e5036ad76732075e9bcc7e947ec41c4f654f2011fVirustotal results 24.59% Heodo
2020-08-10dat_2020_08_10_5558.docdoc d21a55d705462d1b4d97ffd814f48ccdd1e51e9d0d27c7bfe1402dc65f03796cn/a Heodo
2020-08-10ARC JZ580.docdoc b2007d798fc6649650a0ae3c650214f04d56590722cfa2d49f71b110a5be0663Virustotal results 22.95% Heodo
2020-08-10mes 2020_08_10 5974.docdoc 6b553058f93257ec6386c05f22ae9d25258f8eb9171b39061e7c72d96ed5b4c8Virustotal results 25.00% Heodo