URLhaus Database

You are currently viewing the URLhaus database entry for https://n95mask.tech/o/closed-module/049561-2l05Ct6C3Jmo-warehouse/1cOBclltgJ-6ssdr021n5/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:432398
URL: https://n95mask.tech/o/closed-module/049561-2l05Ct6C3Jmo-warehouse/1cOBclltgJ-6ssdr021n5/
URL Status:Offline
Host: n95mask.tech
Date added:2020-08-13 20:41:35 UTC
Last online:2020-09-17 03:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: spamhaus
Abuse complaint sent (?): Yes (2020-08-13 20:42:03 UTC to abuse{at}colocrossing[dot]com)
Takedown time:1 month, 4 days, 6 hours, 47 minutes Bad (down since 2020-09-17 03:29:10 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-08-15dat 2020_08_15 M555.docdoc 489e84c61f0e1903d9276dc7bba7fe7f936f26076d1276f41c8c52b3e3f2ffafVirustotal results 45.76%Heodo
2020-08-15REP_2020_08_15_UK00364.docdoc 54fe97f4af2c1a197affe09d507f8a716ca280e39e797c511a2f0642fd6bdda5Virustotal results 45.76%Heodo
2020-08-15doc_20200815_6851261.docdoc 8d4e3c0427c6999f24dae1b38c8b71e8b00987df6e428b8360088c36959c5b1fVirustotal results 42.37%Heodo
2020-08-15arc_2020_08_15_390.docdoc 692823887bbac35e5838510b1349d2350db983776ad0b73ea078f4749ec82cc2Virustotal results 42.37%Heodo
2020-08-15ARC_EY983108.docdoc 3d0f2d26b212b8b5e15f8a6afbeff9fe0dbb6f5ab1bd25602b569df788ac4ae3Virustotal results 42.37%Heodo
2020-08-15rep-2020_08_15-ME0486.docdoc 32f1dada1992240b8ebfbae0d0e47bcc55d728959815a00a4f35cd597e66a1b9Virustotal results 42.37%Heodo
2020-08-15FILE-20200815-794382.docdoc 5a38534247da53a12f7cfc12252ee16eb0624ea2ce30bd941f844292419a6024Virustotal results 42.11%Heodo
2020-08-15Doc_TN19654.docdoc d6491fe33e3ff96d8d86139e175e0b8dea1bb40b5e6ec2d269b64c52abebaf48Virustotal results 40.35%Heodo
2020-08-15list 20200815 U3321.docdoc 2aafeab60021447f7c510291abc794c5e46ae2187c71c09f0f5eec310a46c254Virustotal results 40.68%Heodo
2020-08-15list-20200815.docdoc 2f981bdbfbe8f4a399aaeed9be1d2a6869e33494f413d389d8dbcfa4e7039df9Virustotal results 40.68%Heodo
2020-08-15LIST-20200815-WSS328.docdoc c4b7da28a9918d631e77295dc0a70642575160097871cb03142029c94bae08a0Virustotal results 39.58%Heodo
2020-08-15DAT FJ5990.docdoc 83a652a9e80ff82739c3fb224c1bf29522bac6fc00f309902851495c61aec779Virustotal results 40.68%Heodo
2020-08-15doc_452947.docdoc 89cb3ebc887d5a3d8e60a1c6d07ba72c3a3b0985933d4f47bb23284b4f7947a7Virustotal results 40.68%Heodo
2020-08-15DAT 20200815 J2944.docdoc 6775fe3e5a9f98b128c917a2afa9346f077e0adca9eee16f4834a8783ed01983Virustotal results 41.38%Heodo
2020-08-15file_777469.docdoc e1e5252a51bf87e2a8c94d5592e3e1bae598a63271cb133bf3c6a08e817dab57Virustotal results 41.38%Heodo
2020-08-15Doc 2020_08_15.docdoc 93faa1e8a2b3f901f7bdb006d984f19b99333679368b191c63f952950c63a78dVirustotal results 41.38%Heodo
2020-08-15INF_94745.docdoc 5e374eec96975f9ac7eb92fd7eb763646c99be88f5db3377ddb7edafb488ae05Virustotal results 42.11%Heodo
2020-08-15File-20200815-245.docdoc ae57a693f14a99d743ef184eee54eb1e7bcca0af0afa5916fbb39b8e2906acecVirustotal results 40.68%Heodo
2020-08-15rep_2020_08_15_XD57606.docdoc e30f2187480717774431c9396520d352f50a92b8ed57838d535ba1da580b6251Virustotal results 39.66%Heodo
2020-08-15ARC 20200815 169.docdoc 1734600511f94a2370e03e5367dd885e52858cbef41ea6d3e06ca06370573260n/aHeodo
2020-08-15Mes.docdoc 29c27429a81caec5cc9d25cf7d663dd6747fa92569b49471b5c967d29b464260Virustotal results 41.51%Heodo
2020-08-15FILE-553431.docdoc 4e43c1bccc2a042dc04313c13767fe7198126d875df525d57496e7b75453261cVirustotal results 40.68%Heodo
2020-08-14MES-20200815-45127.docdoc d07ec4fc9657ea145484957e5b68242e719e4a327f4f1c7b1fe940ae182fdc84Virustotal results 38.33%Heodo
2020-08-14Inf 2020_08_15 JJS4082.docdoc a04d9ab1b95d893d51dcecbf927f6f27c97d30ace8fdbaca14c643b6cf9be407Virustotal results 37.29%Heodo
2020-08-14mes T54350.docdoc e3cfaefd87b2aa287ac22562cc177ec6744c3c9ac27db58b5d2bb7625b694d3dVirustotal results 40.35%Heodo
2020-08-14Rep 321.docdoc 931d0d50761ef1699cfa6dcbfd7f77082e12083b8dce14a80088a003dd862464Virustotal results 41.07%Heodo
2020-08-14Dat 2020_08_15 XZ4372.docdoc 47bdaea6a07bb610606749e17a9bab9ef95c161454b2c782d5cf1dc2b3b63a45Virustotal results 37.93%Heodo
2020-08-14rep-20200814-OIH290775.docdoc 0329d83d9949588804bf1615b60d92ce249db4cf10f1e177992923891e6c3218Virustotal results 37.29%Heodo
2020-08-14inf_2020_08_14_Y6431.docdoc 665456af44fc843e545d1937baeefa7a85f67eaf4b0c1254adf627ceb4024372Virustotal results 38.98%Heodo
2020-08-14List-20200814-FZ88599.docdoc c74d9497f6e45b986c8d3aa90e037e0bdf572731082d874ca8187cd51fd90486Virustotal results 37.93%Heodo
2020-08-14Mes-20200814-4775741.docdoc 03c28a60a61ec204581fa78f28e3baec87467c83831961614db2fed65da915e9Virustotal results 37.93%Heodo
2020-08-14INF-2020_08_14-WI432.docdoc 6f2bad19995d806001d11763cf479ed0d2bec3fcea1dc902dd7fdc375274bfffVirustotal results 37.93%Heodo
2020-08-14Dat 20200814 GT48838.docdoc ca892e2e1fc6ecc27842bda8c95ad80e56f74fa8721ace19c21213c09144492eVirustotal results 40.00%Heodo
2020-08-14rep.docdoc c766d261150f255031605f427f9e5c5d8a3123a338b642a51db44e495b32ec2fVirustotal results 34.43%Heodo
2020-08-14rep-20200814.docdoc 56e8d477ed29d02084826e8cfe03054c8daf20ad6279d3cec7e45e40863ac17fVirustotal results 31.03%Heodo
2020-08-14INF 20200814 9521447.docdoc e30ab117472fe6e748880cf8c3e23c28aeedbf17e7a3abd2c85d4242e16d330cVirustotal results 30.51%Heodo
2020-08-14dat 2020_08_14 ZLV078.docdoc d7d0bc90406ac2e4110cb71bf2793bff657e01d0a25b48944bfa75e14855f84dVirustotal results 30.00%Heodo
2020-08-14list-2020_08_14.docdoc 78252ad2b7fdf76084db5db5d08d225e76927350c41b4ee9774a52c519bd085aVirustotal results 27.12%Heodo
2020-08-14dat_IRS128565.docdoc fd6567e4ae335c6454d5cf6ba74d6560fbf0f2888a8d242dddbbb75461bf333dVirustotal results 22.81%Heodo
2020-08-14FILE_2020_08_14.docdoc b8b90fd5558b725027b14645be547cb15a3cfc4014d3a93bc36000bc3ab50b31Virustotal results 22.03%Heodo
2020-08-14DAT-P3333.docdoc 1016eb399eceb670e7e53e790665793fff8c601a62e98b9a195a2b76166b8c3dn/aHeodo
2020-08-14file-2020_08_14-904016.docdoc 973434d578f5a1a1f6d7720ee10452449bcc65565f6af61a9266958f5d6f2c33Virustotal results 22.95%Heodo
2020-08-14mes-2020_08_14-3132.docdoc 3d1486ce24783f11fafd7742a4be89b506a618c8d25c948fbf3de40868e22d71n/aHeodo
2020-08-14doc 20200814 YW21724.docdoc 116eebc5f7d8cc662f1b021f9e3375811f4346bad3b84bdd68b249e38f9063eaVirustotal results 21.67%Heodo
2020-08-14rep 2020_08_14 XP8356.docdoc f16c7dfb71e683ba784eed6c712267f130b88478efd3fe1a3b2897e07638ebb6Virustotal results 25.00%Heodo
2020-08-14Mes_20200814_474728.docdoc c09ca830d8e72158e3a845643e41facf35f4022b75b424c044f6ee936abbebf6Virustotal results 23.33%Heodo
2020-08-14Inf-20200814-511.docdoc d6028f2bb96365cce05da417a123515321309850764b2f428a6ef433b865a0b5n/aHeodo
2020-08-14LIST-LDD362.docdoc 4e1b5b80657e228a85c94fd3e0c63f65436df92cc36c985967272bb69f72f997n/aHeodo
2020-08-14ARC 20200814 45405.docdoc 0a2dc95d0fbd8d2807c7a36ddc4f5584685be3dc2bdfeb3a1320fb5b93ec6719n/aHeodo
2020-08-14list.docdoc 5b893ad0bb28ffb9c0e56be94c04c05ccd0d26b7abd8bf9b4a01a228df3b5677n/aHeodo
2020-08-14DAT-20200814-305.docdoc a2de797ad23c2211a80a0f83b3ee774fa17931ce941a60511d850b1ebd3e4aa1Virustotal results 24.14%Heodo
2020-08-14LIST_2020_08_14_MYT92307.docdoc 783a766ff6d8b06f0050f051c16b04cad1298697c81bbaeee5d8fcb014a60a29n/aHeodo
2020-08-14Mes_20200814.docdoc eb8626c09f81f7723ee7afa0cf39e78db7be79b5e5522f82ed7c116eb5fae52fVirustotal results 37.29%Heodo
2020-08-14dat 20200814.docdoc 3fd35a3cc362b58b5c94ac63923bf17f681cd3e9c9c3fb349071d87b758d3686n/aHeodo
2020-08-14REP GVN90959.docdoc 29489efeb7ae7bd57c8cbca798da5a97deae5630ec298d8c5c71dfcea1eac7c0Virustotal results 38.33%Heodo
2020-08-14doc-20200814-0755.docdoc 5a04c5b9d29cad47ad5b1a17c2615ef48dcb29c7e211f7b9adccbbaeaf8a94aaVirustotal results 38.33%Heodo
2020-08-14file 20200814 JM793.docdoc 6280278fef02126376fca03e39598bb3c17632cafd9fa99d26694b43c73da6c2Virustotal results 37.70%Heodo
2020-08-14MES-20200814-N207240.docdoc fe72004e6a838fcb078f8b14b9e31e68d627ab0aefdf9bd24c5e9db91e96f4f9Virustotal results 36.67%Heodo
2020-08-14arc_2020_08_14_9255917.docdoc 2465fb97adc0bcfd2852bc97bf6a929405c2b0c8abb85b57d294befdefbac099Virustotal results 35.59%Heodo
2020-08-14INF 2020_08_14.docdoc be002af97ec2cdb43edc083f492340be1995195c05bcd860b3268acb96e2c539Virustotal results 35.59%Heodo
2020-08-14rep-20200814-SFK5700.docdoc 0512dd4092177778885827b440a58af8d2f3b198cdbfca155a01c83363f39c94Virustotal results 36.67%Heodo
2020-08-14Mes-HC14437.docdoc efd285d45835c318c4e079fae4840399a89ae40bf6134dac6cef9e7483e9680cVirustotal results 36.07%Heodo
2020-08-14doc 20200814 270.docdoc 1c09a7e4afcf582fb0ae2170a0375571dcc9ae463e6c9f29770a590039704a44Virustotal results 36.07%Heodo
2020-08-14Dat 2020_08_14 NB4527.docdoc 24cffd9cba643e90804ca8b7c8cfcc717ef8ae85ef64485427c51d320333baa2Virustotal results 36.07%Heodo
2020-08-13Doc-20200814-Z078.docdoc 96fbcc6247407284134b11eb29a5cb2dd6c00fdb5f500c58b19be4822cd412c0Virustotal results 36.07% Heodo
2020-08-13MES Z8324.docdoc 3efd4a08c50243b09398358b273ba94d87c862c3d35c87c3ea053efbc6de000bVirustotal results 36.07%Heodo
2020-08-13MES_866384.docdoc 5b68cacd505c48c0bd694945dcefea1cb936cf62b9e0528cf88b4c7c63d8ae30Virustotal results 37.29%Heodo
2020-08-13DAT_2020_08_14_5527332.docdoc 6186082bcd32e8eb8752a7326d1977ca740de8f69073da700ddc6f508e6c2daen/aHeodo
2020-08-13Mes 2020_08_14 FG244.docdoc 8c9ad53dec636d785fb17d8d2e71a59498898c587e80673d8213ce50eb382e3dVirustotal results 36.67%Heodo
2020-08-13list_2020_08_13_L41643.docdoc 3cfb59dba8f521746b10428aac0d14c54bc21e8e3998893d0a2637f0b0abfd48Virustotal results 36.07% Heodo
2020-08-13dat-964.docdoc ceafb545d3029ee8f0c6de479f64c24dac4487b787297c580e1bf2d1873de861n/a Heodo