URLhaus Database

You are currently viewing the URLhaus database entry for http://cojestgrane.simplicitygames.pl/songs/available_box/external_profile/1ecNrvRJjRUq_iKIiyykl1qb/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:432584
URL: http://cojestgrane.simplicitygames.pl/songs/available_box/external_profile/1ecNrvRJjRUq_iKIiyykl1qb/
URL Status:Offline
Host: cojestgrane.simplicitygames.pl
Date added:2020-08-13 21:42:33 UTC
Last online:2020-08-17 17:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-08-13 21:44:03 UTC to abuse{at}hetzner[dot]de)
Takedown time:3 days, 19 hours, 49 minutes Bad (down since 2020-08-17 17:33:30 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-08-15file-2020_08_15-DV647999.docdoc 489e84c61f0e1903d9276dc7bba7fe7f936f26076d1276f41c8c52b3e3f2ffafVirustotal results 45.76%Heodo
2020-08-15DAT 20200815 560.docdoc 54fe97f4af2c1a197affe09d507f8a716ca280e39e797c511a2f0642fd6bdda5Virustotal results 45.76%Heodo
2020-08-15mes 2020_08_15 SL021.docdoc 8d4e3c0427c6999f24dae1b38c8b71e8b00987df6e428b8360088c36959c5b1fVirustotal results 42.37%Heodo
2020-08-15REP_384.docdoc 692823887bbac35e5838510b1349d2350db983776ad0b73ea078f4749ec82cc2Virustotal results 42.37%Heodo
2020-08-15DAT_2020_08_15_149726.docdoc 3d0f2d26b212b8b5e15f8a6afbeff9fe0dbb6f5ab1bd25602b569df788ac4ae3Virustotal results 42.37%Heodo
2020-08-15inf_20200815_M998.docdoc dd45ce6c1f1a9a801eec41b431fdd298ab6e17be0173a547471ba404e4dd6e47Virustotal results 42.37%Heodo
2020-08-15list 20200815 817002.docdoc f3e823fc5ce4bce6c33ea59183b1e621c9844796d47adbe60ec1f97d1a7bae18Virustotal results 41.67%Heodo
2020-08-15ARC 20200815 HY937.docdoc 0f88561d6f75c975f244bd60a1ef8ae02a82a8a8e6cc26cc82b60926dc93a3c8Virustotal results 41.82%Heodo
2020-08-15File 2020_08_15 ILX8420.docdoc 757ef17c5551173f0ba443d3e6baf9b6600c1bd38ab52892958ae12141662451Virustotal results 41.38%Heodo
2020-08-15list-2020_08_15-KJ6042.docdoc 887346a69d1ba9c04b865579fc2de76d74eca448bfee1cc78c4c0f65ad346fe0Virustotal results 41.67%Heodo
2020-08-15doc_2020_08_15_FEE98302.docdoc 3aeb854be075e3c18902edfe885d185c62571b0cd1e42d21a4c97c8487557fe4Virustotal results 39.66%Heodo
2020-08-15inf-QK927.docdoc 83a652a9e80ff82739c3fb224c1bf29522bac6fc00f309902851495c61aec779Virustotal results 40.68%Heodo
2020-08-15INF 2020_08_15 JM612378.docdoc 89cb3ebc887d5a3d8e60a1c6d07ba72c3a3b0985933d4f47bb23284b4f7947a7Virustotal results 40.68%Heodo
2020-08-15mes-2020_08_15-FH665201.docdoc 6775fe3e5a9f98b128c917a2afa9346f077e0adca9eee16f4834a8783ed01983Virustotal results 41.38%Heodo
2020-08-15Dat-SSU8965.docdoc e1e5252a51bf87e2a8c94d5592e3e1bae598a63271cb133bf3c6a08e817dab57Virustotal results 41.38%Heodo
2020-08-15file 2020_08_15 N317579.docdoc 93faa1e8a2b3f901f7bdb006d984f19b99333679368b191c63f952950c63a78dVirustotal results 41.38%Heodo
2020-08-15List_QEA826.docdoc e47121456c5ab25b2b79100f440937c094ae2f09549d4734f3e9add81fc5b88eVirustotal results 40.00%Heodo
2020-08-15doc.docdoc 02a59b06449a3ba4194e86770a7589c843a4cc341f544ca925d6c2d20f31d237Virustotal results 41.07%Heodo
2020-08-15Rep 2020_08_15 679296.docdoc e30f2187480717774431c9396520d352f50a92b8ed57838d535ba1da580b6251Virustotal results 39.66%Heodo
2020-08-15rep_20200815_LCJ5234.docdoc 1734600511f94a2370e03e5367dd885e52858cbef41ea6d3e06ca06370573260Virustotal results 42.11%Heodo
2020-08-15LIST J003.docdoc 29c27429a81caec5cc9d25cf7d663dd6747fa92569b49471b5c967d29b464260Virustotal results 41.51%Heodo
2020-08-15DAT_20200815_716.docdoc 4e43c1bccc2a042dc04313c13767fe7198126d875df525d57496e7b75453261cVirustotal results 40.68%Heodo
2020-08-14mes 2020_08_15 857.docdoc ba0039933254ee8ce9ef82399c953656984aae076ee36fcd0427f0fe2a2f89e9Virustotal results 38.98%Heodo
2020-08-14Arc_2020_08_15.docdoc 9517fc7b84b22b3d4f23e53877062e2d46f1491e927b91eea03a9f3fe2dc5571Virustotal results 38.98%Heodo
2020-08-14Inf-20200815-S257.docdoc f646aeaff883c64577b9a0c190d5e020f5278ad21bfbe9a2192850c5e201bf93Virustotal results 39.66%Heodo
2020-08-14file 2020_08_15.docdoc 931d0d50761ef1699cfa6dcbfd7f77082e12083b8dce14a80088a003dd862464Virustotal results 41.07%Heodo
2020-08-14file_2020_08_15.docdoc 47bdaea6a07bb610606749e17a9bab9ef95c161454b2c782d5cf1dc2b3b63a45Virustotal results 37.93%Heodo
2020-08-14MES_20200814_ZP61410.docdoc 0329d83d9949588804bf1615b60d92ce249db4cf10f1e177992923891e6c3218Virustotal results 37.50%Heodo
2020-08-14REP_2020_08_14_M8653.docdoc 867d61461a5eeb78df4942aae98f65fb28eae0c60b7b987f751d5d6db2c4ed2bVirustotal results 37.29%Heodo
2020-08-14mes-20200814-G210244.docdoc c74d9497f6e45b986c8d3aa90e037e0bdf572731082d874ca8187cd51fd90486Virustotal results 37.93%Heodo
2020-08-14inf_933.docdoc 171778f3f71370ac71991a37d610af0b288786d43479051653130914d8460ba6Virustotal results 38.98%Heodo
2020-08-14Dat_2020_08_14_3828957.docdoc 6f2bad19995d806001d11763cf479ed0d2bec3fcea1dc902dd7fdc375274bfffVirustotal results 37.93%Heodo
2020-08-14doc 2020_08_14 9679355.docdoc 6a0fbbaaea608bc615282f654c37b65a1ae6521dd8734366aaeb902d4fb7a969Virustotal results 39.34%Heodo
2020-08-14dat MSX0502.docdoc 0d01a7fdccf93dc8175ced2abd4e77c377c633003dce71e12fe488214c5c5a6dVirustotal results 33.90%Heodo
2020-08-14inf 4099.docdoc 56e8d477ed29d02084826e8cfe03054c8daf20ad6279d3cec7e45e40863ac17fVirustotal results 31.03%Heodo
2020-08-14DAT_2020_08_14_56267.docdoc 40c4f362a1a1879f45c08432e146c2cf40b2b018cffbf48ba0b9f5d19422d29eVirustotal results 29.31%Heodo
2020-08-14mes.docdoc e56836746be09c9508de189be4dcb73b8d44bcca31a24567423635ab94ec1cb2Virustotal results 31.15%Heodo
2020-08-14MES.docdoc f8d9aeff9c3ce77dae1ba129171de9f937a96e0b2428800091c0336bd58ee6a0Virustotal results 26.67%Heodo
2020-08-14INF 20200814 X653502.docdoc fd6567e4ae335c6454d5cf6ba74d6560fbf0f2888a8d242dddbbb75461bf333dVirustotal results 22.81%Heodo
2020-08-14MES KCM5887.docdoc d6e3852d9b5e2c9717899fa9861a2878d75b40f83fdddaef1c32baeb791ffe52Virustotal results 22.03%Heodo
2020-08-14LIST-2020_08_14-689.docdoc 2047b7af8a019340890cac77368ae9bc2ddb3d2536eb35e0ef289f84c5c9f4d7Virustotal results 22.95%Heodo
2020-08-14File YV7354.docdoc 973434d578f5a1a1f6d7720ee10452449bcc65565f6af61a9266958f5d6f2c33Virustotal results 22.95%Heodo
2020-08-14inf_20200814_23543.docdoc 3d1486ce24783f11fafd7742a4be89b506a618c8d25c948fbf3de40868e22d71n/aHeodo
2020-08-14rep-89728.docdoc 9e9393a35165f1fb3e86284539bb3a40c4018511f933e8187c34af00790e5a35Virustotal results 23.33%Heodo
2020-08-14REP_2020_08_14_Q037835.docdoc 6af630f2e8eba8699fb72196cd2a2dae2660d9ff10f3899585f70b8a99087838Virustotal results 23.33%Heodo
2020-08-14list-2020_08_14-W159849.docdoc 2f17311d6c32f320a36893e8de9e72b3e724236a0c5f47d7c770afb2a9963a0en/aHeodo
2020-08-14Rep 20200814 FS0021.docdoc f5b6e7cab4e6364d573ec7c97730ca0e84746b0fcd0b27dc2ecefa2615e8aae4Virustotal results 23.33%Heodo
2020-08-14List_2020_08_14.docdoc 0e20d82d65c38680574f0e9aefc2907c047f1e5eb43a17568a7b773ae2560df0n/aHeodo
2020-08-14Doc_2020_08_14.docdoc 0a2dc95d0fbd8d2807c7a36ddc4f5584685be3dc2bdfeb3a1320fb5b93ec6719n/aHeodo
2020-08-14mes_2020_08_14.docdoc 2eb2087c8a3df78cf534203df82195d80ade6ba09ee79301c12522adaf9aa4a9Virustotal results 24.59%Heodo
2020-08-14Dat_20200814_VR34727.docdoc 783a766ff6d8b06f0050f051c16b04cad1298697c81bbaeee5d8fcb014a60a29n/aHeodo
2020-08-14inf-I079672.docdoc eb8626c09f81f7723ee7afa0cf39e78db7be79b5e5522f82ed7c116eb5fae52fVirustotal results 37.29%Heodo
2020-08-14DAT_X151.docdoc 3fd35a3cc362b58b5c94ac63923bf17f681cd3e9c9c3fb349071d87b758d3686n/aHeodo
2020-08-14MES-2020_08_14-975515.docdoc 29489efeb7ae7bd57c8cbca798da5a97deae5630ec298d8c5c71dfcea1eac7c0Virustotal results 38.33%Heodo
2020-08-14rep_20200814_RC241397.docdoc 750f4237628ffd460893c6534883f476f6d461970961beb9c1222b05b59d2c2cVirustotal results 37.70%Heodo
2020-08-14mes 2020_08_14 2619.docdoc 6280278fef02126376fca03e39598bb3c17632cafd9fa99d26694b43c73da6c2Virustotal results 37.70%Heodo
2020-08-14Inf_2020_08_14_819193.docdoc fe72004e6a838fcb078f8b14b9e31e68d627ab0aefdf9bd24c5e9db91e96f4f9Virustotal results 36.67%Heodo
2020-08-14Inf-2020_08_14-688328.docdoc 2465fb97adc0bcfd2852bc97bf6a929405c2b0c8abb85b57d294befdefbac099Virustotal results 35.59%Heodo
2020-08-14MES-20200814-GU639459.docdoc be002af97ec2cdb43edc083f492340be1995195c05bcd860b3268acb96e2c539Virustotal results 35.59%Heodo
2020-08-14REP 2020_08_14 KN830279.docdoc a5aaa7a63b5ec81fdfe4916e720a21e4df252c2d3823d6558f0593cb1f4f65a3Virustotal results 36.07%Heodo
2020-08-14List_360144.docdoc efd285d45835c318c4e079fae4840399a89ae40bf6134dac6cef9e7483e9680cVirustotal results 36.07%Heodo
2020-08-14doc-2020_08_14.docdoc 1c09a7e4afcf582fb0ae2170a0375571dcc9ae463e6c9f29770a590039704a44Virustotal results 36.07%Heodo
2020-08-14LIST.docdoc 24cffd9cba643e90804ca8b7c8cfcc717ef8ae85ef64485427c51d320333baa2Virustotal results 36.07%Heodo
2020-08-13Mes 20200814 M312.docdoc 96fbcc6247407284134b11eb29a5cb2dd6c00fdb5f500c58b19be4822cd412c0Virustotal results 35.00% Heodo
2020-08-13LIST_20200814_1223.docdoc 3efd4a08c50243b09398358b273ba94d87c862c3d35c87c3ea053efbc6de000bVirustotal results 35.00%Heodo
2020-08-13Arc 2020_08_14.docdoc 5b68cacd505c48c0bd694945dcefea1cb936cf62b9e0528cf88b4c7c63d8ae30Virustotal results 37.29%Heodo
2020-08-13DAT_20200814_LV016883.docdoc 4227f32a89436e380b82c791f5d101a5031c35916bcbd1ca8eb0669828a654e8n/aHeodo