URLhaus Database

You are currently viewing the URLhaus database entry for http://cengizgulec.com/wp-admin/parts_service/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:434623
URL: http://cengizgulec.com/wp-admin/parts_service/
URL Status:Offline
Host: cengizgulec.com
Date added:2020-08-17 13:13:03 UTC
Last online:2020-08-19 14:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Status unknown
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Not blocked
Reporter: spamhaus
Abuse complaint sent (?): Yes (2020-08-17 13:14:02 UTC to abuse{at}hetzner[dot]de)
Takedown time:2 days, 1 hours, 43 minutes Poor (down since 2020-08-19 14:57:38 UTC)
Tags:doc emotet link epoch2 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-08-19REP_GSD_080120_IUQ_081920.docdoc 8a1634dc3a1afd07526cf8ca032c6da0f19f14a1c09aedabdb21249807de460eVirustotal results 16.67%Heodo
2020-08-19T_5HR9X32WOU0FT371.docdoc e1ad58fc89b2089ce1478cd296d226c1152315a2b047c86d84819160061e1dceVirustotal results 16.95%Heodo
2020-08-19PO_08192020EX.docdoc 25155c0bdbb328c6e4d68df35320b627b978d287c658085bc03617601fff804bVirustotal results 16.67%Heodo
2020-08-19NJ_PO_08192020EX.docdoc 5ee8314065d14a3a3a5b81dcc72ecdcf770103b6d6fbd433eb4a6f41a9dfed1dVirustotal results 17.86%Heodo
2020-08-19INV_80345224645754990499391.docdoc bb8612a686ae9c12046192e2792a6ee1841b6c6ec871d1112fef955888458a34Virustotal results 18.64%Heodo
2020-08-19DOC_5YDD4NV.docdoc e6897b31f6e77a3182753226f0781709a200bf67633cd45568c33c4e78b9456bVirustotal results 20.00%Heodo
2020-08-19FILE_40077812.docdoc a89f4a0e07aed6f0db5226aa6c45eca8e232db1686eaaf99f163acf0eb849c37Virustotal results 18.33%Heodo
2020-08-19INV_PU1444544074FA.docdoc aa1d2dcc15933f18170f40f70938d143402811f0a42e8b0e8d5b0b9db4469603Virustotal results 18.33%Heodo
2020-08-19FILE_68458607.docdoc eabb0d96b6305e12e9b8530211c58a20acd991bb00a802156a1cf60c83d54cbdVirustotal results 15.79%Heodo
2020-08-19JUW_080120_LBL_081920.docdoc b6966069b269be3564ad98f838ff90182c10803bf019c0e298eb6ae910b1af31Virustotal results 18.64%Heodo
2020-08-19DOC_7444163569753768026091.docdoc e7b5571f8fcba096c1240aec4d940d600588432e00c3f22504711fc6b240f8bfVirustotal results 18.33%Heodo
2020-08-19892403284043588.docdoc d5b8f7aec352f5d8ac2d69df3092351a5eb917efa88b9e676fb8fad5ab66d38bVirustotal results 18.64%Heodo
2020-08-1915262557.docdoc 1b65c5b7a01d6bdf62f116d7f5ec112791380234747d3b47374bf28c9457a51dVirustotal results 50.91%Heodo
2020-08-19REP_7UEAD8DZ9G6AJIC.docdoc 962a26c8b14fff33e17a53528c31a36242e3a8c223900a6feeb4cef134039a0eVirustotal results 47.46%Heodo
2020-08-19DOC_1940188066601528055.docdoc 6b59c1ac41886b7b520cb46b401444b04190a20523acdfa15e3c77701c51660dVirustotal results 48.28%Heodo
2020-08-19INV_44116597.docdoc 64a3e365b04da23fe6353138e4634c2b4ea09a7a0723786bc08bd0b6f9c57c4eVirustotal results 46.67%Heodo
2020-08-19C_337794683011902.docdoc 882600fee7e0ea4b30699f07b2c5237c9cb80b2ed0bdd471d055f7b450565272Virustotal results 46.67%Heodo
2020-08-19FILE_PO_08192020EX.docdoc a7fff8bf3bbff829f3388723e5da242e32d59f0b648925cb3ad55dc7db5697eaVirustotal results 46.67%Heodo
2020-08-19KB1375572912ZV.docdoc 6756567ceeda5670054c44e707aeb67389b6bcf82b1bd7406461c520fc185bc9Virustotal results 47.46%Heodo
2020-08-19DOC_296714163464412409401037.docdoc 4fafaff4c35c7050da039eba46004fb4df1789b0f4cb103ecaf05d4fcf0834beVirustotal results 47.46%Heodo
2020-08-19H_89833719.docdoc 8fb8f3fa5d462f85628b0330a2096b4ac02c1c469729a17c59f34f252b737b5cVirustotal results 45.76%Heodo
2020-08-19T4TOE7O6V8.docdoc 950ead59e4c021f8d66ebdcdd3b5b4e2f48fcd965fdbc6df7ac7358eba19de9fVirustotal results 48.28%Heodo
2020-08-19BAL_38714564.docdoc fbf8375b991d64aa1173b7a2d5792b19bdc39b63df4d483e9ac99f47157f3446Virustotal results 48.21%Heodo
2020-08-19DOC_83102746.docdoc 13ecb0280410d83e2d67d9f049fe85af186a0c9959c316c90f3ec327a9ab244dVirustotal results 46.67%Heodo
2020-08-19DOC_1289802W1GBZ.docdoc 28e4449bf2803e0d685599cbfbd23a03ac3f9a69b25f6a2669de4ce252de4073Virustotal results 48.21%Heodo
2020-08-19Q_5188739076344202643281.docdoc 8cbff41f116777e211aaaf9dc201ab774ffd4c84ed9de0869f3b0f8edf3bd409Virustotal results 46.67%Heodo
2020-08-19LKUM_08245474.docdoc 94fe6d0cc1723a60d8965c606027ad0283a60c1f4677cf33c8cb85fd202bbc60Virustotal results 47.46%Heodo
2020-08-19PO_08192020EX.docdoc fededa8f56c791fe22493104398edd8f25c5b47a5668857fbbe72e6ee16ede93Virustotal results 45.00%Heodo
2020-08-18BAL_TVH_080120_YGL_081920.docdoc 560849f5b4cfc8e64f8d0ccabfbba2f9691f80103349650e12ebca53186d1dbcVirustotal results 45.76%Heodo
2020-08-18D_818740289289208.docdoc 6c9d3d58e28a1e8bbf0d1c77a0bbb7f6c71a55ac204041c9f1f8e372b19df91eVirustotal results 45.76%Heodo
2020-08-1871873531730965266493716.docdoc 805f00873a643dff1edc0ebb808bcc771a6641780897a3d7732b01444b2ec3d8Virustotal results 40.00%Heodo
2020-08-18A_X8VYSFAVDR.docdoc 7f32822db30d0d6ab9d5ef5dd261b4629d251e40b69b860a30fa476c0e7b8d0fVirustotal results 40.00%Heodo
2020-08-18FILE_75051684.docdoc 2db327ec6e030d7937f39cdedb6cbdbade5a89c43fbf6ff39f7c4b7299261a0dn/aHeodo
2020-08-18DPN4LXOHM.docdoc 462b55199b1901a5d737132fa6f604c4b6e8d201ca57b5971ce95294fb74a056Virustotal results 40.00%Heodo
2020-08-18PS_0079901000123136854681303.docdoc 87becefe3e3cd497258a1bfe5a143aa5f119ddb98b934070d60c747f85529fa6Virustotal results 40.68%Heodo
2020-08-18FILE_NDF135S0FKJXC.docdoc cab6349ac0df4084c7ff95a5e68f961048537236c2602cd3aff11482fb0d0af0Virustotal results 40.00%Heodo
2020-08-18REP_WJZ_080120_VZI_081820.docdoc 58f54242a517952baf0ab77f9eba354e7f6299fc66a0a2ef3eddfbc9def3870aVirustotal results 40.00%Heodo
2020-08-18DJB_080120_LTM_081820.docdoc 455f2ce2d5b18bbce7c1ff8a8eec0e143f98fe0c1e0a4d289aee56f5f8e33e4bn/aHeodo
2020-08-18PO_08182020EX.docdoc f13b6d284eb7046fcbacbc7d199359ef96282da973fb4baee25c10fe1f96d9b9n/aHeodo
2020-08-18FILE_DE7231659694EG.docdoc b41ec1e2a346142f6a70bfdfacab07de1e84348cc1287cb09b59e439fff526c5Virustotal results 40.68%Heodo
2020-08-18V_98546265.docdoc de5408a8f5bdfe07fc7968fb74f88eb396f296bb04e46861cee727b23e040ec2Virustotal results 38.33%Heodo
2020-08-18FILE_01122074.docdoc a7e09fdce8bb372722c2e23e9a17db2d7ebbd56845a8a4d640485b9597b271f5Virustotal results 37.70%Heodo
2020-08-18FILE_RYF_080120_EDJ_081820.docdoc bdb11339f1bd60995f4f996322b18b502f9fd561ba97b25fbb7e290f03c44e28Virustotal results 35.00%Heodo
2020-08-18REP_XIHHC7UO84AH.docdoc 2d39a2c3798256d5fe256cc31b187ea8d4304b72a38c6c03f7646c74d84f19e2Virustotal results 30.00%Heodo
2020-08-18FILE_94255301.docdoc bf49addf4f772ad58a38abfefd0d5c4ba4d193533c687a048ebd339e512098a3Virustotal results 28.33%Heodo
2020-08-18INV_PO_08182020EX.docdoc 77300670b06067855e3c1d1b58df8a505ec1598099aa1a03970407a2798336c7Virustotal results 22.03%Heodo
2020-08-18PSJ_NDK_080120_XEG_081820.docdoc c6313b13d24c46970563fd973b3b8b40ffd67b9270160ba475ba43994c824d8eVirustotal results 22.41%Heodo
2020-08-18BR2850804027WE.docdoc 40adc356165aeb925dcc32c72e98d5d0a548f3f5ca83cd3f932792c081bcc106Virustotal results 23.08%Heodo
2020-08-18IJ9357666765AE.docdoc 5c8ecccdd3152ef12c7449cc2637ddcf40c2e53920f92ccd91885695605d118eVirustotal results 21.67%Heodo
2020-08-18DOC_PO_08182020EX.docdoc b112d8627b556a0c0ac19e877bdfe439b82cb1a1985603fa5c3a8b3de73a4fe0n/aHeodo
2020-08-18FILE_PO_08182020EX.docdoc 188f12c1b555d0e6cd96ed8fa6f5ecf13108f9f4d163e6c3d1ae189e2b13e8d6Virustotal results 21.67%Heodo
2020-08-18BFG_080120_QUY_081820.docdoc 2141d1d359bcc5c286268a6fd8b3d82d6bf0fe297aeb7721813f41da88fa7c59Virustotal results 21.67%Heodo
2020-08-18INV_PO_08182020EX.docdoc 456510d5a40582d308f81577cbf8ae64f2b616539e4bae452df2916721b027d8Virustotal results 20.69%Heodo
2020-08-18REP_IUJ_080120_KUI_081820.docdoc 37210ef6358c6fcdb6ac65bc3f7fd336ceea5e697411155cbed2d30789e7c161Virustotal results 22.95%Heodo
2020-08-18DOC_GX2705430504HD.docdoc ea9dfb49de29351fb9fae1e80177b3ed473f9229e5da8e2ae5eea121deb29760Virustotal results 21.67%Heodo
2020-08-18REP_PO_08182020EX.docdoc 13f007247a133e15c91b87cca369b39cc7b383603cbe773fb626e306a41a99d3n/aHeodo
2020-08-18L99HODVJZC26DOXI.docdoc 9c9cf53af694c053c682a3dfdf2c204c75e1a78a18e9bd92fedae2622b83b9abn/aHeodo
2020-08-18Z_95990SB0.docdoc 6e95c43a8b2b08d6d37fdb596544522ec747317954db11749b8585aa8bf5594bn/aHeodo
2020-08-18REP_LE7546145019FV.docdoc d43ab83c9405de6cabd5db3463beaaeba958d73c6d6566f43fea69b522267ae4n/aHeodo
2020-08-18LYRA2GQVQ0JP.docdoc ab6c9909e16fdf41b17881417d7ae3e0caa1a66bff25a443a4e5ce8b338ddb0dn/aHeodo
2020-08-18REP_OBFY9RL.docdoc 7976a8188a5d793cdbb85eae76d2bf5dcd550789634815969fd953edefd06been/aHeodo
2020-08-18INV_50545638.docdoc 8265ec213eaa6d222c57d0befde6281f1e53f7cbbc3e23df4b0b151921316accVirustotal results 45.00%Heodo
2020-08-18Q_RLY_080120_QOT_081820.docdoc 4dba7674a65d6c5e1cd3a1ad7226c21f0b91705ac0a61326e58044947a641cacn/aHeodo
2020-08-18ZDWX_FMA_080120_QHQ_081820.docdoc 1904353690dbe307aaac69ccaaf4f1862c2991b85bc778b4c02a080b10845e1cn/a
2020-08-18LOZ_080120_UIE_081820.docdoc a821076f4e8ae03d113a981ac01066b1025195206bace6b13c4a12e00b868bdfVirustotal results 45.00%Heodo
2020-08-18BV3253366135NZ.docdoc 01003564db8e02cdc33e4d259b217f180b85cc278ef24e8f8077a6071c0899d6n/aHeodo
2020-08-18REP_PO_08182020EX.docdoc 5cd230c2b9aba6fe87d1b68c517682690a758f5fa5864a6424b548f7417c39d5Virustotal results 45.76%Heodo
2020-08-18FILE_FJQ_080120_JYJ_081820.docdoc b1021100edd56e9a41eb6661376e44e4066fe511be9fcf5a71538156713fd91fn/aHeodo
2020-08-18PO_08182020EX.docdoc 2b221062e6443009fcdbcc513a4f981e019e92626e88fd9a6f1c849a74b1169an/aHeodo
2020-08-18REP_U8EYJFO52B9XBL4H.docdoc 36df396c174d0c918c372a25114d8732328ce8658fe2b138d953e0c0ac3ad471n/a
2020-08-18REP_6369560042787.docdoc d2b8765df72f5975d4984c9186d5373ea19685fa981b09438eb6600188ce4477Virustotal results 45.00%Heodo
2020-08-18REP_17864533.docdoc eb46b89d7e58183df45838e5a44989e33a129063e6b410d5e1a0fb8eb9e5cfban/a
2020-08-18I_03616037.docdoc db593f135aa15cb1d2279c26e034744e979223392fe2ecd2d5e204648bd0ca6dn/aHeodo
2020-08-18REP_71984569.docdoc e284647edaee2ed25f77af25077cf6abe3b9339e1890a0cae20dbfdc5bf1399fn/aHeodo
2020-08-18LZ7331078549UM.docdoc aecb14f5fd610dae65d94c788e6451f3f073561c8c00b0b62b4cf9d710c570edn/a
2020-08-18C_YO7121390031UZ.docdoc c5a5417ac06397f164bc4984deb3c87c1d4290465e649f541f74aa3e19854fcbn/a
2020-08-186104723752174.docdoc d455be8bab47cee43ba5e71e1ecb482cddbc0c320d39874a081d23d5d27d7fa8Virustotal results 42.62%Heodo
2020-08-18X_GQAV3XFH5SC.docdoc eec53e193ef4301a8a7e0c901b5525cc447136daa569cb0a4e589d75bed15be9n/a
2020-08-18T_PO_08182020EX.docdoc 27c375a8f3878f06b0f95f14705dbf8400f42c0208bdbffc432c9fe9be231b7an/aHeodo
2020-08-18JF8509538174OU.docdoc 4b2c463c130aa9358e9853fd7af4e476c3f9721168623f6befc47050979d936eVirustotal results 42.37%Heodo
2020-08-18O4PW20I6CH.docdoc 5b6530e4d580725b37bd1d03eeb44c472d0529b1422b830bebdc62bf8b6d0c83n/aHeodo
2020-08-18V_407328527320.docdoc 5c8b923944c5816b259806159d34a3d379b2c8f347ef3b69cbc5b18f60637d93Virustotal results 41.67%Heodo
2020-08-18B_GW2851192110PJ.docdoc a9f2dfb969ec4a5c09edfdcf49a041eed112c8ef64c36610131b1ef17118292aVirustotal results 43.10%Heodo
2020-08-17ZDGH_87044164868883424.docdoc a783101fb9253a2ae868e31c813032e4f2962e5a6e94e19266e5ec25a14ab9adVirustotal results 42.11%Heodo
2020-08-1784214695617690.docdoc c0bd051153ba3fc559191e1a744dafb51332259e42fe8e436dade8cc96fae9een/aHeodo
2020-08-17ZF7007758902LO.docdoc 7b77207a79af88d9ae875004fe564803f06bf6fc32432e99635e7910c43e720dVirustotal results 42.37% Heodo
2020-08-17FILE_PO_08182020EX.docdoc ec178e0f0ac105f09d9c4a287238b6b5fd1a48107228b8eb7afd96e2ec4747e7Virustotal results 41.67%Heodo
2020-08-1784WSJGZXQ2ET.docdoc 7776a0f18e269f643225df332d619771a31094c4f40736c9a03d179c03fbc668n/a Heodo
2020-08-1767977725.docdoc 18b1585abb668182213b56998ae5ed30758e1649c11469b52af43723c5b0704eVirustotal results 40.00% Heodo
2020-08-17INV_PO_08182020EX.docdoc 6eb52f464c8845b595169880341a670e6dfc2fb1c5ba4e59f01122d6e15c9536n/aHeodo
2020-08-17BAL_BNN_080120_JXQ_081720.docdoc 974cee607e26fc226dc6835c3823f25a77541be94a01be3d3ffdb69afaabcdf4Virustotal results 37.29%Heodo
2020-08-17REP_92944047039213.docdoc 2f70dfac38cad01f35e35b9af87dce14dff3cea72cbab5c9650ecb608cafa766Virustotal results 37.29% Heodo
2020-08-17ZF8377932246TZ.docdoc 4ec08e452e7eafcff44c88aecf71b7cd95f8d3a68a7258f9bece3aa3a0caa123n/aHeodo
2020-08-17ON_MIE_080120_LTU_081720.docdoc c7595cc977ce809096eeafa5542fa816e3a8f68effa336371c9536bbb92254caVirustotal results 32.20%Heodo
2020-08-17DOC_HDV_080120_QTP_081720.docdoc 3ee4af869f74285c3506566a4df827b46129038c38f621349ae70b937ac04b20n/aHeodo
2020-08-17PO_08172020EX.docdoc 45c12bfb8fe3999e238da081df10be3d1eb7d03190fdd0921affae9bc945729an/aHeodo
2020-08-17BAL_32641515.docdoc 8c5b8907514829cd3c77fd2dc48359d7a74533ae80fc0451d6ac51a998894584n/aHeodo
2020-08-17BAL_PO_08172020EX.docdoc 6081a7fd5bc17a551c83adf95e2ce4101e03a1de13cd02668259ea8f16432df0n/aHeodo
2020-08-17PO_08172020EX.docdoc 98b1f2eff24595a16d48e214e8f412c7e6dca8a44e20f4bc3aee00441439eab8n/aHeodo
2020-08-174280218384741198224201045.docdoc 367d2ef7ea1441dcde2fc0753659e679ada7edfbc17a2a0501123ba0d39ee926Virustotal results 28.33%Heodo
2020-08-17X_HA2411FKJSZ2BN8.docdoc 3caba7efd725be382a8a8eac13727a40e06874f65eb610f89e0b36dcc38ad34eVirustotal results 28.33%Heodo
2020-08-17FILE_DQ1ORU3M.docdoc 61ade7afc3021dfde983fdab31597cc2934ccda2012fe9ef49c985f5a52aa89dVirustotal results 28.81%Heodo
2020-08-17FILE_UJS_080120_PDN_081720.docdoc ea5c34f5476af3a195a69280a548a233ef0657ade8908a1df661ee3c9abbb802n/aHeodo
2020-08-1721995319.docdoc 7953c54fcacaa1a31dfbd127cc41f089eb3d531f9d8c863404d07aa902f0f3eaVirustotal results 26.23%Heodo
2020-08-17INV_VPT_080120_GFJ_081720.docdoc fb97c4ab0046a60d20e5ae58c4fc426053c1c168d24495e1463765c194272238n/aHeodo
2020-08-17DOC_MIO_080120_DTX_081720.docdoc 6980660bf1ca57e192c0ee710540b409ef1f0490b7d58f60469d14a5a2f8ec63n/aHeodo
2020-08-17INV_OSH_080120_HPQ_081720.docdoc 0a80a905cb06b8af73d6ecd4fdf057104115e69b52b8e28b2d99baef9500c25bVirustotal results 27.12%Heodo
2020-08-17Y_HYL_080120_VZI_081720.docdoc 5ab6a65545b12347703be18b93a92d8fc9c5a4598080bfcbb5b2bddd593507daVirustotal results 27.87%Heodo
2020-08-17GCCG_ISC_080120_OIE_081720.docdoc 23b702194ab1ce70a597bd240a60d6d14593f7b799ea86a9321b4ce236989afen/aHeodo
2020-08-17REP_AJ7157303607RO.docdoc 4807283c80ef1a3a30d7b1cffc0372d863893ddc4fc8bfea9c74b773db7036f5n/aHeodo
2020-08-17MHBF_19317226.docdoc f160b7196b2ae74264c75c03364a119a8e59a322a5e56592bb5037130a236252Virustotal results 23.33%Heodo
2020-08-17REP_IVN_080120_TVP_081720.docdoc 84ccb7dd64a2a08a9be41050698b514edd4b7b2360f42a6342f4960977bccdc5n/aHeodo