URLhaus Database

You are currently viewing the URLhaus database entry for https://bengal-gazette.com/customerl/2ZjMz4M7G_nqfXkcjfbYM_section/security_423672879_RRg6gviyn1Lxi/AFhOASRlK_axd1GIkawzJG8/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:431878
URL: https://bengal-gazette.com/customerl/2ZjMz4M7G_nqfXkcjfbYM_section/security_423672879_RRg6gviyn1Lxi/AFhOASRlK_axd1GIkawzJG8/
URL Status:Offline
Host: bengal-gazette.com
Date added:2020-08-13 12:28:05 UTC
Last online:2020-08-15 15:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: spamhaus
Abuse complaint sent (?): Yes (2020-08-13 12:30:03 UTC to abuse{at}contabo[dot]de)
Takedown time:2 days, 2 hours, 53 minutes Poor (down since 2020-08-15 15:23:12 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-08-13Rep_20200813_8212.docdoc 5bb4b84296ec60184ea017e657bcea6f6d3acaa986abdfd64cecbbd4ee027731Virustotal results 37.29%Heodo
2020-08-13doc-20200813-PDJ948.docdoc b70ef5272311329771dc7aa2f6e62affd540bffa733e6f8360abfaa99e14ff07n/aHeodo
2020-08-13Arc-2020_08_13-622836.docdoc 2cef09e3fc1b53814d9a5338dc7c7c56dadd6395f2141931c4de351956132085n/aHeodo
2020-08-13MES 20200813 ED439.docdoc 658b81e912c908e06150b1351a244262cf277f4c99003a8f7599354d478a4657Virustotal results 33.33%Heodo
2020-08-13Dat_2020_08_13.docdoc f4ec266b14464dadad86630e4f028e4e59dd7e7b806925e1ea65fa9e277abf11Virustotal results 35.00%Heodo
2020-08-13file_2020_08_13_939267.docdoc f9c8ab13c75b9b4f583962eddd9376163fe85a8e12736648689168bca6f49511Virustotal results 30.00%Heodo
2020-08-13arc_20200813_1161.docdoc b67ea7bd82a7a8cc26c3587fd81972d4475a5c342f5980f400a1c8184a142867Virustotal results 30.51%Heodo
2020-08-13MES 080.docdoc 92ef252d93dc57fe3b08c5ae7b0d8a6054d85e3b6f378af68a5c184099aa75e5Virustotal results 28.81%Heodo
2020-08-13list 20200813 877.docdoc f3a8e7b9b6078f48976580a7ae7ea2e3ffb077b9d68285f6ec7de8e3972a9d92n/aHeodo
2020-08-13rep 20200813 569.docdoc e946007ca584996c15a16e621741968ac65868ef3d76a451669f37f0d0be1d8fn/aHeodo
2020-08-13Rep_2020_08_13_3310.docdoc ed5cf96ce29d25d0ed178015e7bfff38df7088dfb18ff6b3443bfa7ab107286dn/aHeodo
2020-08-13ARC-20200813-2473.docdoc 4d9fb0fc21364011b0155c51ae24085a4371dfad9f32a0569e54d330fdf068ccn/aHeodo
2020-08-13mes-2020_08_13-90841.docdoc a29171156f8613e2fb07ecaddce758a942371a5df390af684dd26d9eb8c58629n/aHeodo
2020-08-13mes_2020_08_13_DKC290.docdoc a8a916f66d089d2a2c23ed7f30163860cc91269fb71b2415123cd57e3e424593n/aHeodo
2020-08-13INF_2020_08_13.docdoc 21daf21da8f0b098290789d2482e138e7d7aa4cee35835b46dd8684136aa0a2cVirustotal results 30.51%Heodo
2020-08-13Arc_20200813_V46304.docdoc 4cea566229c73afde8f711ab3753d32bc35a21d9667dd73c709977964aadf3d9Virustotal results 31.15%Heodo
2020-08-13inf-ATI88643.docdoc 59cf60d70be84cb50173a843815e0f1e700e02794af516037a781dec3a6d6be8Virustotal results 28.33%Heodo
2020-08-13FILE 02711.docdoc 9f729a199518aff47368826d6036e6de95ad82b7d52e78e2fb268a993fbe7634Virustotal results 29.51%Heodo