URLhaus Database

You are currently viewing the URLhaus database entry for http://cianflone.com/wp-admin/7znayry6j2qg-3p2u2rjsftuu63f-zone/LwpaOrOMi-iYICDcb3xeoN-area/VdQOng-aHb01e1t5/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:429355
URL: http://cianflone.com/wp-admin/7znayry6j2qg-3p2u2rjsftuu63f-zone/LwpaOrOMi-iYICDcb3xeoN-area/VdQOng-aHb01e1t5/
URL Status:Offline
Host: cianflone.com
Date added:2020-08-11 13:30:21 UTC
Last online:2020-08-14 18:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: spamhaus
Abuse complaint sent (?): Yes (2020-08-11 13:32:07 UTC to arin-abuse{at}tucows[dot]com)
Takedown time:3 days, 5 hours, 0 minutes Bad (down since 2020-08-14 18:32:31 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-08-13doc 296238.docdoc 5ca6ea487737d466f0d7756842765820117874bb7bd40ae82a395c1ff1d3732cVirustotal results 26.67%Heodo
2020-08-13LIST_20200813_192.docdoc 33fc45f2fa1c6137d7f9b8b1e0bcf5318753199a8eb69d913c9c416ffa430fc1Virustotal results 26.67%Heodo
2020-08-13REP_20200813_9269138.docdoc 820a49cd26ad77be87e5c647a26ccf63b8327e74912dc803113cc04dd56f642aVirustotal results 26.67%Heodo
2020-08-13DAT_677.docdoc eca29e6b51bd3a1a11e111442145b444d56ccf246f7fe2598901c5fc75843e58Virustotal results 51.67%Heodo
2020-08-13DAT-2020_08_13.docdoc 0453fae20f8759d4b93663ba58ad3a923f868ba094decd801c43eb9d270f3d8aVirustotal results 50.00%Heodo
2020-08-12Doc_20200813_AH9371.docdoc 8636eae025c2d478a05182ad0e7d1ea67555a40f158d148aa99c991bea941396Virustotal results 51.67%Heodo
2020-08-12INF 20200813 E212544.docdoc 986acc515daf31c8bd8d424f27e1307eab1f51a043c896ffeb2cd94df1eed8a1Virustotal results 49.15%Heodo
2020-08-12Rep-8927.docdoc c194497bd53deae5037d7ffd04e93de9ae4a080daa6a37959aa42207f197a31aVirustotal results 45.00%Heodo
2020-08-12file 2020_08_12 KY360031.docdoc 81889bad48106063f2688facc035c3f5004800cb6277f576b7ea3dd2ede0f388Virustotal results 41.38%Heodo
2020-08-12Dat_2020_08_12_7385782.docdoc 39227a6c8a0b167a3aad5a6e5d2e7304a218612337395933e2fe813738560f44Virustotal results 40.00%Heodo
2020-08-12LIST_11922.docdoc a5ce7c141cf42b88969840733ad4c75043727f228bc874f55788fe4d8ea17039Virustotal results 40.00%Heodo
2020-08-12DAT-20200812-KN756.docdoc dd2e74bc0055a3c3b570343b3820ee447a0960d450778c134677763be91bd9a0Virustotal results 30.00%Heodo
2020-08-12List-20200812-01373.docdoc 3ddd0b3952a2b38af2b33bf8b12f01d841b3566b79b45d3b3ce47a914ddbbc79Virustotal results 28.33%Heodo
2020-08-12ARC 4575.docdoc e4f344c168cc9804eb86d14ceca0c834b8404c3e04cf9c0d1c8c70f611e6d5dfVirustotal results 27.87%Heodo
2020-08-12Arc 765074.docdoc e9e73551b173018c97ccd712ad5590dad7d9a180b3a4d70750d5c56ce4ad282bVirustotal results 28.33%Heodo
2020-08-12list 20200812 4723.docdoc 16b1a2608a3fb3030eb55c06c4fba55b308753907c915bc6caed2bd397c65390Virustotal results 52.63%Heodo
2020-08-11File_2020_08_12_E90553.docdoc 26efbff4d4dee1aec8b2cda89beaf93261b440cfb491619b95f1590b95f200efVirustotal results 49.18%Heodo
2020-08-11inf 2403530.docdoc 062afd98270aae9eadeb47e14d2270691b2254239006bed96b4a65eda4df5ff5Virustotal results 50.00%Heodo
2020-08-11dat_20200811.docdoc f877299430fb5de6e1ec2be1e0c071640cba6d2607afca9b2a9b62aeebb8be97Virustotal results 41.67%Heodo
2020-08-11doc 2020_08_11.docdoc e589ae383d2dda4770ca6a4cd98ae21ad8e8230567a0c3c2dd5fe33395d90cefVirustotal results 38.33%Heodo
2020-08-11list_20200811_85277.docdoc 044d06642354a6eb14607f8979059a90591603e4f52ef900ff441368be7c11d7Virustotal results 40.00%Heodo
2020-08-11list_2020_08_11_6526924.docdoc 298c4e598ac5553c5e29ce8a580234b92748004be2b24a5b024b8c9cec3c0000Virustotal results 37.93%Heodo
2020-08-11Doc 2020_08_11 VHS0771.docdoc 136ea2d85935a084e96025d09f475c97eeda378c7fb42a2b621fc77b13d5cc2fVirustotal results 28.81%Heodo
2020-08-11File 20200811 US859.docdoc db7193bd4ade13db9176b928367925a9c2a83e175a118ec2c74fc16697408d80Virustotal results 28.33%Heodo