URLhaus Database

You are currently viewing the URLhaus database entry for https://rejumax.com/owfm5k0h/available_disk/open_warehouse/271252950_7ZX61bm4G4chJgI/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:434771
URL: https://rejumax.com/owfm5k0h/available_disk/open_warehouse/271252950_7ZX61bm4G4chJgI/
URL Status:Offline
Host: rejumax.com
Date added:2020-08-17 16:58:05 UTC
Last online:2020-08-17 18:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: spamhaus
Abuse complaint sent (?): Yes (2020-08-17 17:00:04 UTC to CloudFlare Anti-Abuse API)
Takedown time:1 hour, 52 minutes Good (down since 2020-08-17 18:52:09 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-08-17FILE_20200817_OP4549.docdoc a6f0cf28f723e60dd839983a85664defa478b6b54d9acb1f09bc7a4e98802254Virustotal results 25.86%Heodo
2020-08-17INF-5850.docdoc f270338465d313eb61ba96fff7969d855bdbd8f547a9eb71f5519e789d8ddcefVirustotal results 25.00%Heodo
2020-08-17Dat 2020_08_17.docdoc e4db4ea9470b17de4ef84c2c86c06d071fd7e443202331df06e303b9bd9a135aVirustotal results 25.86%Heodo
2020-08-17ARC-ZPO778.docdoc 1228899af965485c56b01b3877f3e27a6c3419a7444a7e6c5d5cd0d0aa9bccf2Virustotal results 25.00%Heodo
2020-08-17Mes-VWJ743358.docdoc 0b3c0e9e585c187c0cd73a7b46e88b06de2dcf0e3bc11e372868160594e150d8Virustotal results 26.67%Heodo
2020-08-17Mes_20200817_K357.docdoc 8a346d540cf74e5dd42aa37659347c7620b972f541ed167bf4ffe7cfcacfe5e5Virustotal results 23.33%Heodo