URLhaus Database

You are currently viewing the URLhaus database entry for http://electrowifi.es/translations/protected_disk/guarded_sj8nVDdf_ODYOPYt1jL7uH1/u2fcmhpa2q_1wt22yy13y1/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:436958
URL: http://electrowifi.es/translations/protected_disk/guarded_sj8nVDdf_ODYOPYt1jL7uH1/u2fcmhpa2q_1wt22yy13y1/
URL Status:Offline
Host: electrowifi.es
Date added:2020-08-19 23:29:34 UTC
Last online:2020-08-28 10:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: spamhaus
Abuse complaint sent (?): Yes (2020-08-19 23:56:04 UTC to abuse{at}cogentco[dot]com)
Takedown time:8 days, 10 hours, 51 minutes Bad (down since 2020-08-28 10:47:38 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-08-21REP K115.docdoc cd59c3570d89a3b5b8263e3beb294d4a87f3a1524d40f58e27d22b415db7b40fVirustotal results 36.21%Heodo
2020-08-21REP_YG951.docdoc 06da47e8874c949c899c40bdac1c203ae60c6d0b6dccef8a9fd09a98d5b274e9n/aHeodo
2020-08-21arc 1602.docdoc 6af966f1bdc008514bb8d62272c0ed1d7d1d858bfee659e50488bf3591cb87d0n/aHeodo
2020-08-21INF_684.docdoc 9e69975dc06b14ef59f0b2b3c90ea60751f1b5a352c10e97eaf03c7cfbe7265aVirustotal results 33.33%Heodo
2020-08-21List 2020_08_21.docdoc 045722a598eb4956a7229f49d8208b80677db2ae6464d4916ab9908d961bc1d2n/aHeodo
2020-08-21Inf GYD31895.docdoc 9bc64010c8d94a22d54acf8497f0854e97dc1cec1f0acb8a662102adc4763b89Virustotal results 27.12%Heodo
2020-08-21DAT_20200821_1568872.docdoc e5127f6a2dd3584ac76aad5bb3faa8eb109205c8e04c1b879e75a95a6a2304a8Virustotal results 27.59%Heodo
2020-08-21FILE 20200821 2247.docdoc 3b17e737a54751a71b9d73e78868fe24f0033eac1b31dd744fcbc169eab139beVirustotal results 27.59%Heodo
2020-08-21Rep_809.docdoc 73c81bb630bfceb653d5fb6d8142cec1a3de9b2c90f78a189f32c5618264ffc6Virustotal results 25.42%Heodo
2020-08-21REP-2020_08_21-141.docdoc d878966783b12d88e9b423f7197c32558e7a6a90f59f218d29ae46bb03b8b939Virustotal results 27.59%Heodo
2020-08-21Dat TS9802.docdoc 59f461186ff1b04ff67a0eb66219d76691b063e994de9931311337c6b9866024Virustotal results 22.03%Heodo
2020-08-21file-20200821-9240.docdoc 41b160a7d55e5fee3871597117f8a0606985711d0413a8378ea0127fcf9e58bdVirustotal results 22.41%Heodo
2020-08-21inf 2020_08_21 DQW68328.docdoc 46a025740279d934562690c712ca905cc8ff7c09b3b0d504ee948580dac3e0f9n/aHeodo
2020-08-21doc.docdoc dba1866ba18f33e0225fd995db16edcaead43edae0108a69bfbcc55fb3681e97n/aHeodo
2020-08-21Rep_20200821_96610.docdoc b36d1c620766f1988b1c2691a39ded91a17c7a00e37a5a63daece67eb7eb46e2Virustotal results 21.05%Heodo
2020-08-21Inf-20200821-C372285.docdoc cd4acf626468abb958f591b95714b884902fae3b8bca138662cae3131d02b5b4Virustotal results 20.69%Heodo
2020-08-21rep-20200821-695.docdoc 69e2642a39f3623ff4684c8edd401395687e6df7b69781cbfbda139c3893e56dVirustotal results 19.30%Heodo
2020-08-21LIST 20200821 4073848.docdoc bd1f61a672ca313044042393a055b7741609f6a39d20a47c39ddd7b75fa32a08Virustotal results 21.05%Heodo
2020-08-21dat_2020_08_21.docdoc c5f1db69ed174b44e6f28d9059127762a2e9c095c3ed2dfa8df24cbf041bcf36Virustotal results 30.51%Heodo
2020-08-21rep-5521441.docdoc fa336adfd7a299b591529b19cfc7dffb2f8b1ea588d2a794580f82b0920cf159n/aHeodo
2020-08-21Rep 20200821 0854.docdoc 1041d215adf5d2e0fbc48e95e42e71b6a39d5f07484f553324cff17cd1b17b63n/aHeodo
2020-08-21List 20200821 TUX071.docdoc c9bad47669f1a68030c7b2f48a18f390eda3caa398c40a97d7bd284da95b7274n/aHeodo
2020-08-21INF-20200821-ZR404.docdoc 0aef0abb386c3c08a0f0e185462213b345f9591e943882b015b1d0ef8eeaa2e3Virustotal results 30.00%Heodo
2020-08-21DAT_2020_08_21_0787.docdoc 8d533777e5e6b3040faea6d6f9c839f55ce377d49607833baefb3a1141eeef47n/aHeodo
2020-08-21Doc-20200821-NQ496.docdoc 2e837bdd08baa417e4b6e6e286ec14454940b09b23cd893532ab7dee4b4ec061Virustotal results 30.51%Heodo
2020-08-21doc 2020_08_21 7587.docdoc 07108d19c9ebaac8f7dc6c7259296014f7bd6f4f8df85c582b156900b6af3ea1Virustotal results 30.00%Heodo
2020-08-21ARC 521.docdoc 387e73e8b041a7eadb9503b7cd1f194ec03c786ba1d81b2c895fa324e27e7866Virustotal results 30.51%Heodo
2020-08-21list WEJ3487.docdoc 74aa225334a26fc1cdf238fed7de6f44a9d131122ac0f220d79467853579708cVirustotal results 30.00%Heodo
2020-08-21file_1366859.docdoc 28b77aebdcbdcae80bd92aa279f603c7089575bcd0dcb2eba95d6a0bd1e0aab3Virustotal results 30.00%Heodo
2020-08-21Inf 2020_08_21 6172804.docdoc 174b8620c03615174f2b7d2ab5cb4adb81d92cc6c863c02d7e66812c1c35d60fn/aHeodo
2020-08-20LIST 3069775.docdoc f3628cce512675151ecc79b76c4fab0c1be35b785bf673ff2a44d61dc3066048Virustotal results 32.79%Heodo
2020-08-20file-20200820-3479.docdoc 739d1a0cb32d1185c3a29e2fdba23d010d6f89076810095357750c6960ddbfd4Virustotal results 30.00%Heodo
2020-08-20DAT-20200820-O095.docdoc 27b0bbb8e92f8126f8412fe15b213bab3ea2ad4202e3ef5e8502c3bb3c255dabVirustotal results 30.00%Heodo
2020-08-20Inf 20200820.docdoc d74739d4b2e9d93a617920af5b793616e0269bb2ad9bae8117508032830bdf52n/aHeodo
2020-08-20rep.docdoc 6c66b6322f5524311c293f604e9d3f8447cd8d1046ab82917ab28875baf63a33n/aHeodo
2020-08-20REP CSB439236.docdoc b88f25b6b3b9f12e86e8d1089b89e1f7184c9f00fbb2684dde423cb99deb0c6cn/aHeodo
2020-08-20inf-2020_08_20.docdoc dc8bc2441acf7274984f003718867ae2154621e54c8cc744ca05e47f646e494cVirustotal results 23.73%Heodo
2020-08-20Dat 20200820.docdoc 9ce07c9533158a2746e1d54d350d03cd64b1504b69558341659a574238f74753n/aHeodo
2020-08-20inf 20200820 024.docdoc 9c9367c53706fa2ba5f1d7fb94dc1e4f88c020964733d83eb07c6b6df1e54c3cn/aHeodo
2020-08-20rep.docdoc d8a8a0f1dcbf50e189a8b0433e5c62e8ff908e4b29ef93c4d0ecb9efd87402a5Virustotal results 21.67%Heodo
2020-08-20rep-20200820-NJZ384510.docdoc c11d62723af7a6fe384f8bba4caebff15e9e0888fc230a14099888cbe4e058adVirustotal results 22.03%Heodo
2020-08-20file BK56162.docdoc 6b754f9fa73603a870be77bf320fdbd456f68f73c9f2f70e9c4598554d3deb9eVirustotal results 21.67%Heodo
2020-08-20doc_L734756.docdoc 9fd1da8df0b3d674db426702e9198f3d5c335e71356534cd8f2943bef5dbd1d2n/aHeodo
2020-08-20Arc-LNB868.docdoc 953b662d9aef02326fea06afebcb2c0f499bf6075210cee6bc361cbf62c74c8bVirustotal results 22.03%Heodo
2020-08-20Inf-KD557624.docdoc 503bbc527390e7cd45139ae20ea83f39bc5865b4f6143130b0bbfc855570ad6bn/aHeodo
2020-08-20List 2020_08_20 4903.docdoc ff2219bf2a6e79b513db9d0cf17c1ba49ab9b6b9b64ccc86662e2a8090a54b13Virustotal results 41.67%Heodo
2020-08-20DAT-5137658.docdoc baecfd05f5a6a6f654ef927e3a8bd1c298a12f8cfaa1a494cca33e97f45329d3n/aHeodo
2020-08-20ARC_20200820_9589.docdoc e47caa21a204cff18af76ca9418e048f41e70ffea406ea5c41bbb6fc6bac357fn/aHeodo
2020-08-20dat_20200820_121.docdoc 952683edbc68d14ab30b2b3030a02fc68c3210a7f1a95ba97cf484fbb25c045fVirustotal results 37.93%Heodo
2020-08-20ARC-2020_08_20-QFD721810.docdoc 81bed19efa97ba8177bda3736a8ab04d1a331974d94e3ccbda0e1c85f0cde5d5n/aHeodo
2020-08-20dat 20200820 815580.docdoc e5deca8f8e045063d0e0afeda512241e1a5e236df99787831cb21e3efe335acfn/aHeodo
2020-08-19List-67107.docdoc 763cc0ddbf92ab735d7975d8e7137950d402f8475ab7f08f1e332940e4dbdd05n/aHeodo