URLhaus Database

You are currently viewing the URLhaus database entry for http://ossoriobouliz.com/wp-admin/239060-CD6qVSddtJnQq0fK-module/security-area/79708693989311-TCegjO/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:436669
URL: http://ossoriobouliz.com/wp-admin/239060-CD6qVSddtJnQq0fK-module/security-area/79708693989311-TCegjO/
URL Status:Offline
Host: ossoriobouliz.com
Date added:2020-08-19 14:59:29 UTC
Last online:2020-08-21 12:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-08-19 15:00:10 UTC to abuse{at}oneandone[dot]net)
Takedown time:1 day, 21 hours, 51 minutes Poor (down since 2020-08-21 12:52:06 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-08-20List 2020_08_20 55519.docdoc 48c065c3c6c626c7fca855686845bf480a74dd0902ae005eeea171dcb5237947Virustotal results 24.14%Heodo
2020-08-20Doc_20200820_5147.docdoc a352582176c8f6ccef9286c97faec72461076b101973783284eecd6d42ea3e4eVirustotal results 25.00%Heodo
2020-08-20MES-20200820-UR665300.docdoc 41e41e5f1f8b2aff80e45e953dd83940e4b3f419f749158861614405f686a5beVirustotal results 21.67%Heodo
2020-08-20dat_H24850.docdoc f08d7bebe518919883aedf8b598a15e5961f848acc3cd068104b99c3cc5729dbVirustotal results 22.03%Heodo
2020-08-20ARC 20200820 4447.docdoc c770bba68818296583e90edb1401e456254a70721f9572ed9036d9a4aabd3aa5Virustotal results 22.03%Heodo
2020-08-20File_2020_08_20_1560.docdoc 2aa3ae963e12e360ed0aa0cac15bb33e19e9359e7b08e7b2f9055df72c76c34fVirustotal results 22.03%Heodo
2020-08-20REP_20200820.docdoc bb5c7cc50314e29b5bec47c7124033a531be632d03166dfce846d84e393148daVirustotal results 21.67%Heodo
2020-08-20Mes-2020_08_20-300.docdoc bfb25184f9b5d23f0ecbe771e95e524d98ae19abe2847236b0269a963078ffe8Virustotal results 21.67%Heodo
2020-08-20ARC-20200820-7953978.docdoc bd0d2e2b677ac399c561156e9044105cc1b264a82b831046eb87c508d58359ebVirustotal results 21.67%Heodo
2020-08-20REP-20200820.docdoc 953b662d9aef02326fea06afebcb2c0f499bf6075210cee6bc361cbf62c74c8bVirustotal results 22.03%Heodo
2020-08-20dat_20200820_516.docdoc b3d5549c41a6159ff9e0df4205dc4cc52da484301e854c8b9d34fbc808bb49d0Virustotal results 21.31%Heodo
2020-08-20LIST-20200820-08615.docdoc 69d6a65b2713b6e8dbb03de13dd93631474f3daeefd5c6ff415e6b16cd9e3affVirustotal results 42.37%Heodo
2020-08-20rep-2020_08_20-S74471.docdoc 8f6788d862d18d0671375430af4c756bc9cdc6b99663b5df0842840a77af44d3Virustotal results 38.33%Heodo
2020-08-20mes-8561.docdoc 89b6ed4e8a0cf8a07e457b0f616f06fc4770fd168802ee6180994858453dc3f3Virustotal results 40.00%Heodo
2020-08-20dat-2020_08_20-215.docdoc f6393c7e4e0b8603bbf2de4f4a138e6002e14b472d8d79514ed04a38bb6abd79Virustotal results 40.68%Heodo
2020-08-20File_2020_08_20_MYK70392.docdoc f28b0ecc48cbc29c0012148055d79a34ab74c7915bf0cca7ba368c935913dad2Virustotal results 40.00%Heodo
2020-08-20dat_8056371.docdoc 187e9bdc1e2164fcf26b37b0dd2782d45ce5e77204d07e62415fab629ef1c691Virustotal results 42.37%Heodo
2020-08-20MES-HXB893388.docdoc 139d96003a5964f811cfd1d2a1c28130de97b7b0a548b04e7eb8dbf7331d94e3Virustotal results 40.68%Heodo
2020-08-20LIST-2020_08_20-851.docdoc 6679ce1f8ad158f0d6b60d0ba53a9320239863e3250674f436ec67091b98ae80Virustotal results 38.33%Heodo
2020-08-20inf-20200820.docdoc 5ad149456e0772a69b4139cd61954bce1285c24eb8e99a88b9570736e7ddae47Virustotal results 36.84%Heodo
2020-08-20LIST_9522767.docdoc 38910d48a5b54e7d0b4f33b6ae9ff7668cb5a8ea4b8895d894b73115cf8d3596Virustotal results 38.33%Heodo
2020-08-20MES_UWD504483.docdoc 93f9d6bb9716c6966fe42149253438f3efccaa82e2ead12abf9bcaa2ee75164aVirustotal results 38.98%Heodo
2020-08-20DAT 2020_08_20 75085.docdoc b9dd0c46c40a59f5ee13585b936980a4e93d12bace98f342421fbb63fc15a460Virustotal results 38.98%Heodo
2020-08-20REP-2020_08_20-VD6595.docdoc 14837e0fca7286d6b85e13b9a9f1d5498b6a30241cd7cdfc59b5adcb0547be15Virustotal results 38.33%Heodo
2020-08-20ARC-20200820-YQO4217.docdoc 34df63aaf08820ef807a0992d54df52142bea2fc2135e5f4012ab9f1f89aaac9Virustotal results 38.33%Heodo
2020-08-20arc_20200820_97787.docdoc 4a3130ce997517653b96c59865fc6c7a60a0c6444c2a7c8a5a8d93fd1dbbc6b2Virustotal results 38.33%Heodo
2020-08-20list-MR835356.docdoc 9ea89a24c2efb06595aa09d8d9dc8ac79ad4a9df0d0d99a7fd5fe63fe9e1f7f8Virustotal results 38.33%Heodo
2020-08-20ARC 774003.docdoc 2689c419bfbe55bbfccf9898fc0f3589fe6f3f905e0ce33e5b65944e9a01e597Virustotal results 38.33%Heodo
2020-08-19File_20200820_126.docdoc 3da2f30855f576440f786aad61dadf00ad6dfe8605f41870a3ddde6dff7ac7aeVirustotal results 33.33%Heodo
2020-08-19Inf-20200820.docdoc 3209a90ec70f3c389ad600fad212afe06d4d60c9ebf4535af52b590f95c642d5Virustotal results 27.12%Heodo
2020-08-19ARC E81246.docdoc 5c74356183992b27397f191b6b6968050d1ce8762dd082afa67b5844585280a4Virustotal results 26.67%Heodo
2020-08-19mes_20200819_283.docdoc c940432dc1875cdb1adfbda4eb2c3a23b3a10fd0a53cf12cc32e79389120b5d8Virustotal results 26.67%Heodo
2020-08-19MES 20200819 536.docdoc f5e4a952679216d941adedd132d8b92deebd85db080e12521e397e66d8477dd6Virustotal results 26.67%Heodo
2020-08-19Mes-2020_08_19-433.docdoc d6d457be164cb42cce5e01d69219ecdf8a62761f5c4d4c2319bf536a86b57477Virustotal results 26.67%Heodo
2020-08-19rep 20200819 YN556069.docdoc b6bc398b50e53b9134174954be2711af3ba4a2715a4407db570f3f0ab63c81bdVirustotal results 26.32%Heodo
2020-08-19file-2020_08_19-5365663.docdoc 7c9a4d56c192bd2e71e2098965b8affdfaf10cc6e3e5ced40ede0fd1c947d50eVirustotal results 27.12%Heodo
2020-08-19file-2020_08_19-NDI3771.docdoc 480761889ebb7040b138b87207419aa6634dfec3a5c8b3672392b21bfb15c46bVirustotal results 26.67%Heodo
2020-08-19arc_NB851327.docdoc ad1cd733252039fe55df9241f672a3e0dc2435552a2f48e40f56477612916743Virustotal results 26.67%Heodo
2020-08-19mes-20200819-VG438.docdoc 5a69dbe048fbeb2da153621f4cb921772399169f8fc1b021e72ff4650f82f6a6Virustotal results 27.59%Heodo
2020-08-19rep 2020_08_19 602634.docdoc 60583244e23ce73f1033463f27a56403be325eef59cb3050e85c5265d2cbcb3bVirustotal results 25.00%Heodo
2020-08-19MES_20200819_U031.docdoc 71dc926db655b5b9fef23c85f018c062da873d1138f1175f00af75f8b899f237Virustotal results 23.33%Heodo
2020-08-19Dat_BPF604216.docdoc 6978a1f2f28f45288d59a7c748fc6500c5cc09186b3d41ce8b7e1be8212c47a0Virustotal results 21.67%Heodo
2020-08-19arc 2020_08_19 2965.docdoc 35a575d3cc73b07a44de16fc04dbd04650ba5d4a0005028abc178ad78e1d47b4Virustotal results 21.67%Heodo
2020-08-19Arc_20200819_0596.docdoc 017dedfe5d57e11c86048a8f6470f4d48573fc0bc581b8ef0a6e22c06169770aVirustotal results 20.69%Heodo
2020-08-19File 20200819 0076711.docdoc b4980748305d9329f376c996a7887e4cb40713c823693998d4360500c510062an/aHeodo
2020-08-19Inf-R6293.docdoc f04dd72e780c21c9e4b8c93008e7c679ba859a9ffbff5a9e997d387659a324c1n/aHeodo
2020-08-19arc.docdoc ff3dae4dba7055a170bde6b5cd1c62c47c680d32b65e19ea32fc4af41f8c3f06Virustotal results 20.00%Heodo
2020-08-19Inf 2020_08_19 974440.docdoc 1e1bd9b8516ba6602eafeeb65a0fd430014d63b18bb637cc352f7f55ccd80332Virustotal results 20.00%Heodo
2020-08-19Mes_LNI8622.docdoc 124ae2447478f4b71404f5f07ea89abe4b985e402955ebcd02fb67b27939de31Virustotal results 19.30%Heodo
2020-08-19ARC-J2683.docdoc 0438242a3ca04ab173d67a0fcf3cad13a9cfaffc01aac04ffe0050024bc471f3Virustotal results 20.00%Heodo
2020-08-19inf-20200819-XMY325.docdoc ac5d6169036212c360d8f4232685f6664041d612f03126d5ae29a48dfdcf2d1dn/aHeodo