URLhaus Database

You are currently viewing the URLhaus database entry for https://www.albazai.com.sa/js/783764456_KClJOoqkc3rFLW8_array/XPmGbhR_Yx5lVNX6Hyj_yh5xa2_2sy/l69dnpays1fl9_2tu6/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:434451
URL: https://www.albazai.com.sa/js/783764456_KClJOoqkc3rFLW8_array/XPmGbhR_Yx5lVNX6Hyj_yh5xa2_2sy/l69dnpays1fl9_2tu6/
URL Status:Offline
Host: www.albazai.com.sa
Date added:2020-08-17 07:55:06 UTC
Last online:2020-08-22 09:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: spamhaus
Abuse complaint sent (?): Yes (2020-08-17 07:56:04 UTC to abuse{at}amazonaws[dot]com)
Takedown time:5 days, 1 hours, 34 minutes Bad (down since 2020-08-22 09:31:02 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-08-19list_20200819_L84881.docdoc 6bbc3b2db07121f1c61fce194756b3421a1a16a1e23eaa747fd3ecf62528dfbcVirustotal results 48.28%Heodo
2020-08-19Arc 2020_08_19 273741.docdoc 18c971e96b1f8c95b4b048b3037f9f732a509fba23c4d219a40d4c605c639d7bVirustotal results 45.90%Heodo
2020-08-19ARC-2020_08_19-OY268643.docdoc a09fb497ce5738081489fafa343ed354128eba16cc5f8f6bfbb26ff79e19ceebVirustotal results 47.46%Heodo
2020-08-19REP-20200819.docdoc 1c98753feb43790bf0b2979ae0d73c4760638ab1d9c5d6b6336ce2241ba31aa4Virustotal results 45.76%Heodo
2020-08-19file_2020_08_19_PAA1269.docdoc 06cad41d0787e562a96ad8958e26b1f207b90cdf231201faa801225a7a259256Virustotal results 47.46%Heodo
2020-08-19rep_Z497.docdoc e5b01db94661c2b883ef2842c74fb6f95c34c13ba556efde6c2877c168a5204bVirustotal results 46.67%Heodo
2020-08-19Dat 20200819 LT662.docdoc cc8e1c8be741f1f4185f8e0c64663644af9b6364554ada9ed521f37659373c22Virustotal results 47.46%Heodo
2020-08-19dat_2020_08_19.docdoc 00ae8c566e55be2bcbcd11072f67a71e34b8b28b3e3dcb0f949043c17c398ecdVirustotal results 46.67%Heodo
2020-08-19REP_766826.docdoc 8ecfd0e0dbd4257b0b0f97f99517f9d1d825e32d7862b1ceb1b6bfdc67b205a0Virustotal results 45.76%Heodo
2020-08-19List_AGR45678.docdoc 9f95680d93e52258b33600da99d066d953f0aa373f991d850e83ae0e050fdb4eVirustotal results 45.76%Heodo
2020-08-19dat_602.docdoc 5194005835c1f487f14f03ea67a9300ad9821c5d0922e5549321d2629448f630Virustotal results 46.67%Heodo
2020-08-19Arc_20200819_40214.docdoc 2ba8fcda5f2c844238e6cf224eb3caa16d4841ea77a8a2731ac4058c1df137ceVirustotal results 46.55%Heodo
2020-08-19Rep 2020_08_19 4479.docdoc 827570bd1ed9f9f55019ed836ca55734d9d6ff3bd52fe74cb3f652f183d53164Virustotal results 45.76%Heodo
2020-08-19Inf-2020_08_19-930.docdoc 563a3c798199fa7da950162b8e2321eaef397d5b33260ab029cc3e537d43e0a7Virustotal results 47.46%Heodo
2020-08-19inf-2020_08_19-65604.docdoc 04f5fb6798ce3949fb5191ed7c89dfc725231489c34bf2369d98e5228a6efcdeVirustotal results 46.67%Heodo
2020-08-19arc 26305.docdoc 1760353fd58eea90ff9c662ee490ca7baa99a4f967358939aa15fe87d774205bVirustotal results 46.67%Heodo
2020-08-19Inf-2020_08_19-H16902.docdoc 5df568ab274842e91a3f5717af61fdbe6827249fc71e135fdc493f5177ccac7aVirustotal results 46.67%Heodo
2020-08-18ARC-4810.docdoc 85d051184c78737bf858c74a6fe5cbf9d30ed82b3ace8cad4b7555c5132cb11eVirustotal results 43.33%Heodo
2020-08-18INF FB76208.docdoc 96ff6e1cf0debb38b542d25de485f8bbedbebacc99a76bc427946603266b19b2Virustotal results 43.33%Heodo
2020-08-18FILE_2020_08_19_9700840.docdoc e117f0764676376ab70927fbe88c42c123142a0efb17a6ccb243cb7ecda8baefVirustotal results 43.33%Heodo
2020-08-18List_2020_08_19_3689787.docdoc 68184e955d9a5e852a40b7c215d5654f9172d35c4e7a50e24b0080bb14c6ce0aVirustotal results 44.26%Heodo
2020-08-18Dat-20200819-234.docdoc d4c93094a5cef205fe007277aced4f5459df2305374302c7651b93e5f77398c9Virustotal results 43.33%Heodo
2020-08-18Rep-2020_08_18-86519.docdoc 7dbc80955be6f6f9c26cefc01a6111c8328569d951dfd2e3342c0ae508aa5d47Virustotal results 44.07%Heodo
2020-08-18LIST_20200818_M34371.docdoc c998c60111b424a9eee08cff17b0f146045209d21d312a0b6b0ca71095697c8fVirustotal results 45.00%Heodo
2020-08-18Mes-2020_08_18-EB1317.docdoc 8d1273855ee8cfdd0fc057fd7e4a3ba57fba212771de2b2165660d19aa24430bVirustotal results 45.00%Heodo
2020-08-18List MYC360880.docdoc bdd85a761fef4dd714c4096940648eef52aebea82be3d8c91c0fb5842405f6cfVirustotal results 45.00%Heodo
2020-08-18doc-6766863.docdoc 52386a3f4ed721abc491a22e4d08ba4497e8392249b04e5fbcdcff39502cb314n/aHeodo
2020-08-18Arc 279841.docdoc 119e31c97f1254759e57ac901452c408e74c094919190ae94625b5e5a40312e3Virustotal results 43.33%Heodo
2020-08-18file 2020_08_18 3214192.docdoc 28810939674484b940c1b242c2defba24f6fa84ca59b37ed3196792e22adc284Virustotal results 40.00%Heodo
2020-08-18inf 20200818.docdoc c2c31857eddef908bb15ebce07f54e91a068ffff5b92014fd70c1d5ce8f34cd6Virustotal results 40.00%Heodo
2020-08-18rep-20200818.docdoc cae4e9249f1219782d6c234dc44eab63930830f75ab90f4d533f0ddd3bacb745n/aHeodo
2020-08-18File.docdoc 93114977eaae46aa265bdd2918d70cdbaf292177875098c8e3f52bb992f719a1Virustotal results 37.29%Heodo
2020-08-18list_2020_08_18_NIN524433.docdoc 4d316cd3d25e9d8a06ef98b25cda90cd9899fc4dad304552754e9e540b630812Virustotal results 35.00%Heodo
2020-08-18dat 20200818 COL162.docdoc 46411363967383fde95f164b6ca16cdf6f2da8a1269ee7c150b892d445cc9f20Virustotal results 29.51%Heodo
2020-08-18Mes_20200818_81019.docdoc b9e74d54e9138fa7ef402b14aa1df4b1b59295bf0664eff87426820863baa337Virustotal results 30.00%Heodo
2020-08-18INF_2020_08_18_594803.docdoc 84e3d0512943c7f88ed646190a17521f13a3540c2574350e0abceeddd0c18dfeVirustotal results 23.73%Heodo
2020-08-18Inf 20200818 71694.docdoc 42a0cfaa607d5692ec644461d00e1c908ee096285fc7e376e9e17e4171f20d0aVirustotal results 22.03%Heodo
2020-08-18list-20200818-U488.docdoc 2205e547d23005dd90dfbdb24d868bab2f4d6cc70c025a1825c050812ab27f45Virustotal results 21.67%Heodo
2020-08-18MES_2020_08_18_I483.docdoc 2d9c3ad3458a6371d8d940be9e5379d3334396576ac0a4cf794f13309056ce6fVirustotal results 21.67%Heodo
2020-08-18arc PE796.docdoc 6f0f54737b574488c42223ae81bd83ea0da431f0732413951fe4572ca19e6442Virustotal results 22.95%Heodo
2020-08-18rep-20200818-811340.docdoc 38641e768b9ec944d2dd8a17371d7afdda7b14689d6cdc06f3af5b419931e0e6Virustotal results 22.95%Heodo
2020-08-18LIST-20200818-8058241.docdoc ef82ba7726590c175aa9483782be07ebf1c3ca56839c2a61cbfea1f8a8aae774n/aHeodo
2020-08-18FILE.docdoc f9c427a4bfa737b6f93b8d1271eb7c351a78fa1296db93634de337be0479d319Virustotal results 21.67%Heodo
2020-08-18dat-2020_08_18-AR373.docdoc 11fc1f9d6498f19e72ab631137d825255d199ad361f20916cfc2130f46661061Virustotal results 22.95%Heodo
2020-08-18INF-TP94384.docdoc 0765e1bb0b4d13e31fbacc7276950e6ec95967111ad6846429d274987ba83cb8Virustotal results 21.43%Heodo
2020-08-18LIST 2020_08_18 EY0078.docdoc c05713068f1705d81e3bcdac768839b40dafb7f82ac746d7b3933d60a22b29a8Virustotal results 23.73%Heodo
2020-08-18Dat 20200818 624787.docdoc 6f5f480e18ce00a7072df338b34f7d1140a5829ac041ae1483a6430a8211f81cVirustotal results 22.03%Heodo
2020-08-18MES-20200818-5968.docdoc ef65c9f4858045271c7a6baf6f96364dd76acc60c1c3da6ac156bdb6322c43bcVirustotal results 21.67%Heodo
2020-08-18Mes_SIM7033.docdoc 07295ca2a5d3946d2553fc0a3e140872311843c9f6d20130ed5cd7d0f073826an/aHeodo
2020-08-18arc_20200818_0796707.docdoc b532ca1d80293700b173d821d788d7f1a27d7a9cbc5b8e83aa351dd69e0fbd5cVirustotal results 21.67%Heodo
2020-08-18INF 20200818 3968.docdoc 9b12143b085ad044f054f5080820ffcb76f9c92df51d76173e60c0559001f16bVirustotal results 45.00%Heodo
2020-08-18INF_5149.docdoc e3f7a4d87f6be9e6c64a7e8b4a05b027f61b2f1d3b26c29b56c289f900c5cea9Virustotal results 43.86%Heodo
2020-08-18Rep 2020_08_18 146.docdoc ce7f5157d0128d0740ec074ee8db6dd03e234c410111f7aa6832f7adc820cfe0Virustotal results 45.90%Heodo
2020-08-18file.docdoc a792d36a5d86adccbd0b2ccbb0fd67191beecb5e7230040f8d4626c8d47fd717Virustotal results 44.83%Heodo
2020-08-18File-20200818.docdoc 3b916aa5cf96d7330d89f1de96c84ecc9f5acb0f21832d5571cdfe9fcc0b069dVirustotal results 45.00%Heodo
2020-08-18File_2020_08_18_NYW050724.docdoc 2ce679953d8f4a7b2d6d9f47c635d574aa6e6a9ea94154654e1bb1472971f502Virustotal results 45.00%Heodo
2020-08-18LIST-2020_08_18-4081.docdoc 4a49fe6ff5e8731a7aa0536b8f0c0dbc5673dae67c35f0141efb3807cb21daddVirustotal results 45.90%Heodo
2020-08-18Dat.docdoc 85d29d1d7b0defac3d595525d663889a12f7d5388d8bb0a993665335f72bac30n/aHeodo
2020-08-18File_L259531.docdoc 23866d5c01d81dae8b6112cf09cb195b3caeab201b8d5b2074c6c01e280d1783Virustotal results 41.38%Heodo
2020-08-18inf_20200818_69801.docdoc 9f6acf9a0b1abf9481a13650ecdec0e7a9cb7a4c30938c2ffcca8da0934a96d2n/aHeodo
2020-08-18LIST-20200818-U26243.docdoc 1a92578592df96f6bc3c58861c8719f37bd57d2386789d07d319c613fcf2f79bVirustotal results 45.00%Heodo
2020-08-18mes-20200818-101802.docdoc 046ef2036e93a6cf34529a8ebbb37aa633f1036021511edbee0fd2fac0363770Virustotal results 41.67%Heodo
2020-08-18List-2020_08_18-M5418.docdoc 403175e425e2a4c0eedf4b7a5fee64bdcb3b6e6929a1aea63dbda7f9a84e8086Virustotal results 41.38%Heodo
2020-08-18MES_20200818_38776.docdoc cbae984f113307015e9a42c646507cd4fecbc37c1ce7ed2fa9d731fdfff7e00fVirustotal results 42.62%Heodo
2020-08-18Arc-2020_08_18-QLD30060.docdoc 872c0c3578f24be338bcaa8a29f2b157d80a2d3d5e5ecbd33b028bced714c077Virustotal results 41.67%Heodo
2020-08-18doc 2020_08_18.docdoc 0ffb643d2ef22089512c5de14e1d2f14d5632e77e9f609b1374c79fbe0a788e0n/aHeodo
2020-08-18list 2020_08_18 22890.docdoc d34a4e095dde98d6740346383251d18ce5f9bb8c58071f128db8083844be55e7Virustotal results 41.67%Heodo
2020-08-18List.docdoc e7007d098ff3b77d307fdffbc2b566e6396298bfb9718bd207a8b377aca0b96aVirustotal results 42.62%Heodo
2020-08-18FILE 2020_08_18 516.docdoc 92bd87c0eed15bf75f7c61b1879280e25a7997a4afe7c804c82a3902f51d46c1Virustotal results 41.67%Heodo
2020-08-18Arc-20200818-R4133.docdoc 8bbfe9b6aae9ae8cd42ef61b046d0c690f0637f216d5a22d4a5f7911b59469f7Virustotal results 41.67%Heodo
2020-08-18doc 2020_08_18 Z4469.docdoc e976f7e4de4c0bedc4e4bbc27752994f9110c050508b106611f035260551a8e0n/aHeodo
2020-08-17MES-2020_08_18-XW0860.docdoc cc2b2954e615657190a6b35c6784f2280cf56ca53c09647bcd8e096a005642cfVirustotal results 41.67%Heodo
2020-08-17arc 176.docdoc faffee3625908bf1e2cb82c961bd1d777beeff0f87166e3aedc6fa984834c42fVirustotal results 41.67% Heodo
2020-08-17inf-2020_08_18-R2483.docdoc 32cb1657bab6cea4734f694fefe16389dca17cad7673cc0be676c77e070ae735Virustotal results 41.67% Heodo
2020-08-17list.docdoc 246461495bf7fc58bafe93aa9bfdc0a9d3ffcd74b1050d8816847b9c37ee029dVirustotal results 40.00%Heodo
2020-08-17INF_20200818_G793.docdoc 6535313a52f000bc92afec62f22968677544878c5cf2109e862e72f7c441dda0Virustotal results 37.29% Heodo
2020-08-17REP_20200818_572.docdoc 501347c9360b488436c4d6e34ceaa7cc2aa8d3800fb675fc40ec5d016e86c204Virustotal results 37.29%Heodo
2020-08-17dat_20200818_S1853.docdoc b217056622d2655617081ef69ad65da589c7ca744d2d1d6b666425f5d55f4644Virustotal results 38.33% Heodo
2020-08-17REP-VXB13974.docdoc fcdb070abfffb0c9f0e4f52377b257f711f6d42380533d0e0230a6afedf0c489n/a Heodo
2020-08-17Rep_20200817_G123059.docdoc b5ba2a25b6b78baed8f427232afed8841e367725d1fb05bb47b5ec863dcfcf7aVirustotal results 35.00%Heodo
2020-08-17Rep_20200817_LDK13871.docdoc 332fb15e827574730b238731c1d69515d2110a2a48ecf3742552854097bbc5a1Virustotal results 37.29%Heodo
2020-08-17list 20200817 IJR778.docdoc 348368dc3b9ba59325226c159fd0b695e4256ad96894a3f58d3b97297a87a1b0Virustotal results 33.33%Heodo
2020-08-17file_20200817_AU758001.docdoc 3d22fec6c122302f98c08a308d62a7f52a75ee6d24311103ae0af25bb246d480Virustotal results 30.51%Heodo
2020-08-17File-0007.docdoc 4e222c92dce7f604bdab06a48a8b26d08c4c3ff4e455795f8024e98823f1c13eVirustotal results 32.20%Heodo
2020-08-17DAT 20200817 PQ708695.docdoc da10e987e0f17cdbf08a4c765e272d4feb929d329ba74d4fb5d1d27c36c1ed38n/aHeodo
2020-08-17Arc_2020_08_17_XZZ8646.docdoc b5084e440fafd228cc3ff0eef418b654a434ed1288735ebe57084253b903a3caVirustotal results 31.03%Heodo
2020-08-17Mes_HIG16732.docdoc da36139efceba6bdc76e654a8ee65827216781721578417791ffd386102b8272Virustotal results 29.31%Heodo
2020-08-17Inf_20200817_U4132.docdoc 201b17de99f93a5fa3807f62e4e862b2ab1b07126ee25a8fb255e5d2c4527375Virustotal results 29.31%Heodo
2020-08-17MES_2020_08_17_PGK627424.docdoc 008b4cfbe6c65f8eff107a4e75b2fdf0a04e8ccc576aa651971083412c256477Virustotal results 28.33%Heodo
2020-08-17Arc-2020_08_17-2942.docdoc be3ec3f71ce797fc82f6e2c0d4544dde3c5ab20ff6df9ed778b0ba1199a980e2Virustotal results 28.33%Heodo
2020-08-17Rep 2020_08_17.docdoc f270338465d313eb61ba96fff7969d855bdbd8f547a9eb71f5519e789d8ddcefVirustotal results 25.00%Heodo
2020-08-17list-20200817-890.docdoc 414a3261de7975d33e98be8efd2d34d23f9b0f3f51146b5d771026f5eb0a27d1n/aHeodo
2020-08-17Mes-UGP478.docdoc 955c1f638a523a970bd12d1759116d5779837c871c77d308a1275129f7d3a53dn/aHeodo
2020-08-17file-2020_08_17-353.docdoc 285cbe4cd306ae4c3557c91c2fd38e3a562f79d21643a6295b53aae718aae367Virustotal results 26.67%Heodo
2020-08-17rep-2020_08_17-Z689641.docdoc e484e9b8614dff68bd63e103a395b4e03576c2f72fdcba1ff45344012e0f51b6n/aHeodo
2020-08-17INF 20200817 QM0417.docdoc 768b963eba0a3f6936ff6a6953909f9f70e8751a3b527b73aa0bb5def1b18305Virustotal results 23.73%Heodo
2020-08-17Inf 2020_08_17 963385.docdoc dbecd98d9fd1626b3aa562d063ba66033db39d1b8e846afe8634d738feeda550Virustotal results 23.33%Heodo
2020-08-17dat 20200817 379.docdoc 13698824549fe260c90e29eb5e82ad4cbee7584982786b0fd581f8d3d9fd3ccdVirustotal results 23.33%Heodo
2020-08-17Arc 20200817 UOY57203.docdoc 0ffc730b768c45ae0f359cbcfad987af88e15ac6e383857a2d42e7be17d01bf7n/aHeodo
2020-08-17arc-2020_08_17.docdoc 80033762f63c113feb8a08a6c06eb29c8d53d857d30f3a85d05cf47c021afd08Virustotal results 22.41%Heodo
2020-08-17DAT-2020_08_17-FMW8495.docdoc 3075e5f4103e8dd642f315d74bf45b8683c6634fd3bf5958bc5225f745dba25cn/aHeodo
2020-08-17Doc-JRQ23522.docdoc 2c2d3c4b97887da9753012fdf167bb4da83ab8ced7eca83281d632ee9059fa73n/aHeodo
2020-08-17File_2020_08_17_YXE383.docdoc 8992dac490fc80d452da1dd38cd366857076c9a05f27b79ccd7ef8333dc0ff6en/a Heodo
2020-08-17doc 20200817.docdoc 91e99f29b48c23c1b75790679c34323d6b6be790bb261994b0745926fdb717ddn/aHeodo
2020-08-17FILE_20200817_071.docdoc 2116d668fe951d0c6416856abaecd566f9ee3e52d4a9cf85fadce76aa234aed4n/aHeodo
2020-08-17FILE_C048.docdoc fc8f143b76129a21cbaf106213b9da31fe950484924e66818efd606982dbacb0n/aHeodo
2020-08-17rep_20200817_QNV137772.docdoc 6f099dcd03406b99e18af017ccbb95779cd65489d087b7e9337a07d78ef41f0cn/aHeodo
2020-08-17REP-20200817-JNQ98602.docdoc c8e8a7a4ce0e9882cd95a7b76547db579164b8ef3164e4aa7638e08ca5c1d0e1Virustotal results 21.67%Heodo
2020-08-17REP 20200817 VBN50646.docdoc 60ebc1de65395aa85a5f018973e7f34782aa245c89ec1a3d6c50f55e5a365322n/aHeodo
2020-08-17DAT-2020_08_17.docdoc 7d9f979c11d2224fb76f3009fea7b637d76f183dfbdd909a15b3427a83efe9c2n/aHeodo
2020-08-17File 2020_08_17 045.docdoc 882b6b3ff2f69788723b61fc35188ea985db261d865313be8ec7686dd6015ce0n/a Heodo
2020-08-17ARC L67456.docdoc b34a6069fa207a279967cf2149774511426d27bf015d70a96017555122a91c29n/aHeodo
2020-08-17rep.docdoc 82f3032bdc1747f0bf06109edc2941d03e3d9406da985e2b31a3bdd5d5ffc7cen/aHeodo
2020-08-17inf 2020_08_17 2042.docdoc 4602ab6ff950014ed49278c1101a4f5c64417eb9f70856c9d361c2e393806b93Virustotal results 18.64%Heodo
2020-08-17Inf_2020_08_17_P531.docdoc c9ecdc15bca866554ec01be24a64856310aee575956cbbe8a0dd27417db4b5e4n/aHeodo
2020-08-17Inf 992.docdoc 8ed501fc409c51f8a42921561c64ef45aa7c2a4c09d80e0871fea63734262fb9Virustotal results 19.67%Heodo
2020-08-17inf-2020_08_17-57355.docdoc 4d1ffbaeeb94a3adb75f9922984da87853510fb64295d0f0616c95384a911ca8n/aHeodo