URLhaus Database

You are currently viewing the URLhaus database entry for http://www.wazahat.com/js/adokkna1/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:437263
URL: http://www.wazahat.com/js/adokkna1/
URL Status:Offline
Host: www.wazahat.com
Date added:2020-08-20 13:01:04 UTC
Last online:2020-08-21 17:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: spamhaus
Abuse complaint sent (?):mail Yes (Ticket DCU002877718 created on 2020-08-20 13:02:06 UTC)
Takedown time:1 day, 4 hours, 51 minutes Poor (down since 2020-08-21 17:53:30 UTC)
Tags:doc emotet link epoch2 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-08-21DR_FGVY6RL6V.docdoc fbd63265ff2f62db6c66adcef3562a678b0243b77f9be2a726d4bcf87f68a9c8n/aHeodo
2020-08-21AC3493871742XV.docdoc c6a5cc3476c048456af1997e698dc72231c1be3e590f6c9783e8adf136320f46Virustotal results 27.59%Heodo
2020-08-2145725628.docdoc 55c098b1fd0458cfafe7839002c15777abafdccae1eb822693225399a46f744an/aHeodo
2020-08-211I30WV2Q05Q74AC2.docdoc 8629c793b67877bd01d45910331ea12b6f45da2b3723d513588c6f27017f7af5n/aHeodo
2020-08-21DOC_PO_08212020EX.docdoc 50a71ddeb7a891caf13c01c2b7d4dc5bd839559bce259d661302cc56aa5f7baaVirustotal results 27.59%Heodo
2020-08-21J_GQR_080120_DRN_082120.docdoc 3e8208734b44f5600a38c69cd3cd3275d2fe8dc82af7ec78c8619383741b66d7n/aHeodo
2020-08-21BAL_AOAB11AIS650G7C.docdoc 653b972960d0bc9bd9d49ec85b038fcdbf2c766a68509911ca2ee4a4410433fbVirustotal results 22.03%Heodo
2020-08-21INV_LF0173333608HR.docdoc a13897aff5bbdee2bf78782be00ac516731e334463b3846c57df74c6167e97c8Virustotal results 21.05%Heodo
2020-08-21DOC_PO_08212020EX.docdoc 92ce63816306ff769b615c927a2677d7a4d1eecdbe7e6bc825ce4a446df1bc7eVirustotal results 22.03%Heodo
2020-08-21BAL_ZN8614791759FI.docdoc 6eb69e6bf953f664d116b1f723231c894c54ff4b2482e3f9d1120b10fc541bd5n/aHeodo
2020-08-21REP_PO_08212020EX.docdoc d88027c8f802a9c670d326835d3153aadf2dd191cf9bf60148bc6532b6614402Virustotal results 21.05%Heodo
2020-08-21TW8738494173WA.docdoc 8a887dca0fea26577923cdf9c4985eac7870541eacebc98ac38b51a4bda04ab7n/aHeodo
2020-08-21HI7092858070UF.docdoc 5f663d1e8899dd1bf8794a251e7acd014dbe349b71e9d4cbb592a9ad3d4d155aVirustotal results 21.05%Heodo
2020-08-21DOC_VW4992531098XP.docdoc 0b9e3c02f006ca8d80e2110949d3abff845df2e896a24f42a5c3d11ac0bd002cVirustotal results 19.30%Heodo
2020-08-21REP_HOZG16I2LKT39.docdoc eea83be73bb6b63138b070ecbc75bc0af0a8f6540fb9125735eda75701adc2b5Virustotal results 20.69%Heodo
2020-08-21RKQA_93696846180286166.docdoc dd3afacc150ce99efa0843ef4211a83be23385d9f1d8661b1fd04f45975323e0Virustotal results 20.34%Heodo
2020-08-21FUA_080120_YFF_082120.docdoc 28f2d62905428be69bb94405cef4459871fb4d34be7d8e1cd99be4088802ce60Virustotal results 29.82%Heodo
2020-08-21E_KN2747347876BJ.docdoc bf9fe3f7b66ae5baa3877c2da0edf95f1434298010128ce61c76f6bb6c4c46e0Virustotal results 29.31%Heodo
2020-08-21PO9377245057XA.docdoc 54352cd25b7c6901b81eda69dcdca9f9177865d644ff9bf018890b9ce49d3580Virustotal results 30.00%Heodo
2020-08-21PO_08212020EX.docdoc b3bab296d26d412d3adaa195a93ca6ff44a5b6bc5e16f130e2386928d12f0570Virustotal results 30.51%Heodo
2020-08-21DOC_KC8223222240HE.docdoc fd2732589c07dc97af78689360772ace939ebdbf5c47132f7df607d9e24a267dVirustotal results 29.31%Heodo
2020-08-2111352136.docdoc 1fe0891c052882024b25b0fa7d4b15654e380ec923aa12943e177a3b076157fbVirustotal results 30.51%Heodo
2020-08-21XTK2EYWY8VRGL.docdoc 88d6e1ed15385f113c6a82c9d25f4d2e3a7534dc2a50b948bb34a19f1e9ca71aVirustotal results 28.81%Heodo
2020-08-21REP_SPC_080120_EEQ_082120.docdoc 899de53046dee542652783aaddb111a9ca0eaa24c584ee2b5737b7f6fe3c8419Virustotal results 31.03%Heodo
2020-08-21PO_08212020EX.docdoc 346bffecd143569cdd0fb796380eb297dbf4b03fbb9c68edf994501847763d20Virustotal results 31.03%Heodo
2020-08-21ATT_87817249.docdoc b067f851af29843c48232b84fd2062937192d864d7f69979bc590786f4f4d4d7n/aHeodo
2020-08-21BYQK_FM5PC42194IH.docdoc b008c2a5a3f325892c0b9e4b83ede888637a59c8b5e320968165589ba583af7eVirustotal results 28.81%Heodo
2020-08-2109233864.docdoc 913271f10fdbf26cf67c0c6b3b0f0f501848bf25f539c04feb5553f95307bd95n/aHeodo
2020-08-21INV_JBI_080120_IZO_082120.docdoc c87f02029dfc7cc838cdbd76fe5640ab9778826bebdd965fd772f7b853d4178cn/aHeodo
2020-08-21BAL_55586393.docdoc 32473b384e1e07f387b80575017b09c425d1bee0904b9d96319e3bb72e7d6ecfn/aHeodo
2020-08-218Y05I5022F68J.docdoc 4ab707775fa2390fd9243175abdd54e81f7bf91607d4d7fc5c97be1d43f8606bVirustotal results 31.03%Heodo
2020-08-21Z5GVYIVPL1KQP.docdoc 24fd38bc7a9fc81d9db5634f8d3c76f68707dd688bd30ade28d86def52b8aa8bn/aHeodo
2020-08-21H_641670117.docdoc bae16ea340cc512d6e1934d205bb3f0e34da81c10bbdf1a411b338c91f415c03n/aHeodo
2020-08-21QNIB_2IOIP7YSA.docdoc 543d4653e727a81a043520535ab31b14ebeb76e76c4e033e3c76a95c02f17398n/aHeodo
2020-08-21BAL_AR6717875285IP.docdoc 0a10c7547caff2ef72359bb8941e5b1d66920f7ecefd54c795b7d18c1474ab9dVirustotal results 30.00%Heodo
2020-08-21FILE_43531511.docdoc ee0ecbcd1c840072ab9f352930a3d1d53c1669f8ea22577bed152b6e644a6c74n/aHeodo
2020-08-21REP_XD1442655147KZ.docdoc 827b61d3f0f0d3d42ee69919ecdb9a190e3939c7d32cf425f7cf355276a3d2d4Virustotal results 30.51%Heodo
2020-08-21INV_28996941.docdoc 92212c2f3b4445e151bb54c869e7b1d8025339f89a49962048c61a425164a38fVirustotal results 30.00%Heodo
2020-08-2118108415.docdoc c78e1a46aaa668a1c315dfb0b147f7a8d1b34af64b8f3cb9c6621ac872d7a2afVirustotal results 30.51%Heodo
2020-08-21BAL_PO_08212020EX.docdoc 31e1775c43a698b705e2a0e7b26e8b8942b04b51bb902f9008fc355c637c2c4bVirustotal results 31.67%Heodo
2020-08-21REP_MVN_080120_FXI_082120.docdoc 87fa434c22634148cd773528a464946457014d363c09cfe28a9a28b69f14f136n/aHeodo
2020-08-20REP_94385740.docdoc db5d466d972210f819496f74e47cc8db88a065acde70d9d2ac61221eb8746003n/aHeodo
2020-08-20VM9934480115LK.docdoc 7a5a55b43ecfea50eeb9c49237690761f59724b78c13b3bac6c3daae988fb145Virustotal results 30.51%Heodo
2020-08-20INV_DPUHZEIMY37.docdoc ea9a29f42ce90bd0cc4aa2b4758dc76ce4a5d639dcbe1ee8f4f0b61632793577Virustotal results 30.00%Heodo
2020-08-20DOC_PO_08202020EX.docdoc 172af56801cf4f253a30974aeeddb1910408d1417b4d8bffbefe887436c3b633Virustotal results 27.12%Heodo
2020-08-20FILE_PD7011565731ZW.docdoc ba76ba6e85a81cbac52654f9de3f6b2e7d3416f2bb3245be7a584944a9e7949fn/aHeodo
2020-08-20FILE_IJME103Q1.docdoc 60222c9a16cecc0e2cdbc84cf33986aa7663cbf80321a3106f4dc0b096529401n/aHeodo
2020-08-20V_00830303.docdoc 0c03dc40a8db0afc9ae714106e0bf60601869368336a60842cde31c0a3c8b55dVirustotal results 23.33%Heodo
2020-08-20ALLQLOC9N.docdoc 18898d58822870334064b88a2224dc8d236210978f732a70cf80f3617e5a6445Virustotal results 23.73%Heodo
2020-08-20PO_08202020EX.docdoc 1c61a6fec7f540e75cf3ee83531b0da27e40c95f3aef4f8fc750c911d731c1can/aHeodo
2020-08-20DOC_PO_08202020EX.docdoc 3d3214a91f8fa0fe6c54f9de7d331ac31f1a562aa0c0b0e33fb5aef75163ff95n/aHeodo
2020-08-20REP_52083271986980202935.docdoc 2704479bb70ab89f699b958bff80a648c4c3b03d3875afd7cf5d833fd625e037n/aHeodo
2020-08-20FILE_66978143.docdoc f2c11a8f3f6306050420e37c8c1c24cfde3ca7e03cb703761581c1e5f6f75757n/aHeodo
2020-08-20G_74810684.docdoc 8ad0b928bcd0d93cbd13cd44cd5b5ee93420438c1baa08e211c1bec80e722328n/aHeodo