URLhaus Database

You are currently viewing the URLhaus database entry for http://cbusinessgateway.com/5zc0bv/FILE/x60811454707562905by1iysc52waji1e3zi/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:440919
URL: http://cbusinessgateway.com/5zc0bv/FILE/x60811454707562905by1iysc52waji1e3zi/
URL Status:Offline
Host: cbusinessgateway.com
Date added:2020-08-25 12:03:08 UTC
Last online:2020-08-28 16:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: spamhaus
Abuse complaint sent (?):mail Yes (Ticket DCU002891298 created on 2020-08-25 12:04:05 UTC)
Takedown time:3 days, 4 hours, 0 minutes Bad (down since 2020-08-28 16:04:30 UTC)
Tags:doc emotet link epoch2 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-08-27VY2672621351DP.docdoc 5676d37beb0fbd0c9f3751d51ebc15fd4aa130daa743af64d4941ef29f7a8d5aVirustotal results 28.81%Heodo
2020-08-27FILE_9915697774781798.docdoc 38923432e3f3c288a95ad269e276d83fc311457e325def95858c499997a5e00en/aHeodo
2020-08-27FILE_XPR_080120_JGI_082720.docdoc 6fd8df41a454fd5cd94079282364950f554b86e679c9ef87ff59d082afd47f8cVirustotal results 29.31%Heodo
2020-08-27FILE_MMS_080120_WYR_082720.docdoc 8b1e85e899250ae238664c29df61c908610d31299f75ab0da17ab24d8e89725eVirustotal results 29.31%Heodo
2020-08-27DOC_AZL_080120_XTU_082720.docdoc 59102c908645acebebbe3a0565e89b326f3ae44dd1f0babf9d10a47a01e1b46fVirustotal results 29.63%Heodo
2020-08-27PO_08272020EX.docdoc 151815029e695cd4af22c16d6eb0aa00c3ad74ba422c20d22e9bedf220485490Virustotal results 28.33%Heodo
2020-08-27BAL_BB3304659060IB.docdoc 4f8b5df5c453f4ad794513fdec008b16b762eb19519f909235c00e694cc0589fVirustotal results 28.81%Heodo
2020-08-27QVA_080120_FHJ_082720.docdoc ad2830d53332799552182a550a4d3f874618ab44fb3fd5ed52083ec516bb2227Virustotal results 29.31% Heodo
2020-08-27DOC_PO_08272020EX.docdoc c9bf4b4a386bfcde7c1072c3c00f1d708885dc202c1472658b0ef712f39d7867Virustotal results 27.59%Heodo
2020-08-27BAL_47365378.docdoc 6aa58a4fec778614d948932485867bd12462484a07436b65b4039c413ba6955fVirustotal results 31.03%Heodo
2020-08-27B_AI3852509485GI.docdoc 50e628b2b9eb5d2e0f6d5f68ab465af2a258e7eb15d9e859850be455408920d5n/aHeodo
2020-08-27REP_51310772.docdoc abf0bc27d555c075d94aca0ac0eb6824f009e704fa575b66203e46e30e32ff8dVirustotal results 28.81%Heodo
2020-08-27DOC_YO0976761690MI.docdoc e145b5be039742a0b89435111a34036fd1d0316c27f2ad4781450cc43073dd5eVirustotal results 29.82%Heodo
2020-08-27BAL_70600253.docdoc f8c2e1e1cec6f084c1af444e45ad2e66421abe66724f2b6542e42768a1226120Virustotal results 28.81%Heodo
2020-08-27DOC_5179708441618.docdoc 77823f121fe25decfc185abf589256c90a5c98daa17c8e6a6e2acc192bb84522Virustotal results 29.31%Heodo
2020-08-27REP_93992565.docdoc e5ac4430e125c58dbaee260b492acbb809351f6db1c0b291f9930f318ef19af1Virustotal results 27.12%Heodo
2020-08-27JAF_080120_YIN_082720.docdoc c1010a64991ed1fa9519bd2ff0ee0abc2b87853d34efd4a6c2e3f6a7b4fbaa75Virustotal results 53.33%Heodo
2020-08-27DOC_59KJFGPGN05B.docdoc 5fd8fc414f220b6e97d691571980b241fd048568374890695dfcb9df97a6845cVirustotal results 55.17%Heodo
2020-08-27OS_PO_08272020EX.docdoc 5651215bf90d3d27bf652a23f6f4ab03e32a080fba71d964022a87038fa6f1b0Virustotal results 55.93%Heodo
2020-08-27BAL_PO_08272020EX.docdoc 4a883ec03aa2a167f2ebe1778ce38fda19b778b00286254daf1de8d39a6d1944Virustotal results 56.90%Heodo
2020-08-27BAL_21168529.docdoc 4b9b0079604599e5cd8b5c21a7fbec3c3c6f244c517df6bc274a0f5fa2940869Virustotal results 32.08%Heodo
2020-08-27DOC_82988479354.docdoc 85b485deac6e4384f0d876ed4f8dd15536249715d5207558a33ab603be4f517dVirustotal results 31.03%Heodo
2020-08-27BAL_SL3539735883ZZ.docdoc ef416af10e5118129a871fbf94df4162f6dc2ae1cd5966e94b74058f8298197fVirustotal results 32.20%Heodo
2020-08-27IO8934665337GO.docdoc 4ce815a9423e52b38ceedc5af97bd2f02672b7ffde760730599452b87050eb7bVirustotal results 32.14%Heodo
2020-08-27FILE_24900192.docdoc 46ad3ffd2f18db73936b38d5e36b53663025ded5a415cc6154ce37e6639ad546Virustotal results 32.20%Heodo
2020-08-275RL5TTSXCF7BBQD.docdoc 343d1420630029215787dfd364a4faca7bc4ca38097daee242eb72f73a6e894cVirustotal results 33.33%Heodo
2020-08-27G5JETU6VXQ.docdoc 898606ce53cb944570ef3226fed74c7f3d6cfab92352cacf96d3a190cb045145Virustotal results 31.03%Heodo
2020-08-27BAL_69284886.docdoc ecee3946c7811821a799182055a523e8a0d6fde0e8898aa18b6226979f69f0d5Virustotal results 30.51%Heodo
2020-08-27DOC_ZT7HD24OF40ETS6.docdoc c1ed9bf98cfcaa46afd1c9002d8d0a5cb79e5e83636f7283a052df1dc6e27528Virustotal results 28.81%Heodo
2020-08-26INV_JT1586461094KD.docdoc 538f09c0b0e7a2ad7a2238635d7e136726a91b996a98d144ebe8a8b3b70fda38Virustotal results 30.51%Heodo
2020-08-26G_PO_08272020EX.docdoc 969ce710e1eab7279ae63b1556e1913a3db4dddefddc28803789fdb9b880e1c7Virustotal results 30.51%Heodo
2020-08-26FILE_91472738412886064890.docdoc 91a308c86bae5259dbb93a07177c2302aec9aa1d99efb3aebcf38eeec736806eVirustotal results 30.51%Heodo
2020-08-26DOC_PO_08272020EX.docdoc bf3d5149b15fa4399dfadac2556d328a9707b9332e9f063dae1d4c90e36c480aVirustotal results 30.51%Heodo
2020-08-26PZ6047694435OY.docdoc 48d23f9dd578db5e9182540eb52090352d60ee4c49698de167f1273e4e22e449Virustotal results 30.51%Heodo
2020-08-26FILE_07153204164419.docdoc 4e78ff2d8f46718a5e53083c2f96401ea3e1174f112b70c741448aad402b9132Virustotal results 31.03%Heodo
2020-08-26P_55423280.docdoc 41627e3471672730007dc13d026ac234950ae1f71564721c77dd5aff29e9c51bn/aHeodo
2020-08-26PO_08262020EX.docdoc 874b498a569260ed044256f13bd87d1a3697f02a17a364d2d61ba9005e12cd25Virustotal results 28.81%Heodo
2020-08-26DOC_PO_08262020EX.docdoc 65d504b93571392cb6513b7fa5bed4bdd2a2ae7e3d7666e409f0b13e56f1e314Virustotal results 31.03%Heodo
2020-08-26DOC_IS8233913366HN.docdoc 7e6ae0bfbd08090276dc8821dbac500fae364dab68dad84b1fc2c4d971080dccVirustotal results 31.58%Heodo
2020-08-26WYW_404776491236.docdoc d9d8d7e4e5f7fa56ad36e21ff3874101b96e601a79397a7aeff7918cd9d0ec80Virustotal results 28.33%Heodo
2020-08-26FILE_HHHSLYK4G6FW.docdoc 39fffa400541356137e91075849e49947cd4864baeeacbc328e6aa73f52ef4fcVirustotal results 33.33%Heodo
2020-08-2664359431.docdoc de6eef8f559ed20487bd721dbd7d2d2c26871567abca7c8ed929e8a16a3be992n/aHeodo
2020-08-26FILE_PO_08262020EX.docdoc f704c7aea8849d0ae729aa1436b9590e92291e62204821e5d7550db4c49b2c1dVirustotal results 32.76%Heodo
2020-08-26Y_XL9010237458JG.docdoc 3afc78f029bb37949650170083203869c970ca766b2155e134e76a2ec9242499Virustotal results 32.20%Heodo
2020-08-26DOC_ZOI_080120_PHC_082620.docdoc e2a316c9462a5f6c8c5b2bf1bac4593405f79720ddcbba1fd69b72f3d84bdb2bn/aHeodo
2020-08-26M_15660730.docdoc 6172691b40af326e4401a41208b54f047786ccc000cabda70b3afc6a0d434278n/aHeodo
2020-08-26REP_UBP_080120_NPP_082620.docdoc c93985113b7ab940892fe866cfb3b38cc34ddb4f2487ea543567364b8cf5711eVirustotal results 30.51%Heodo
2020-08-26FILE_4GH06H2FCJ7VHQ.docdoc 14d43c503a1c9c5f61bcfd706d421ffca90c3f85c85dd05adc435c623d8fb46fVirustotal results 29.31%Heodo
2020-08-26SS3396658259HE.docdoc a40b452daaaef1e757d3c55171fdbefcbfaa8342757d2037b3eb3e451f292008n/aHeodo
2020-08-26PO_08262020EX.docdoc a356e5e255cba02c8e3e973edcf986a20bff8764ba83a2bb53b55dba03d5529cVirustotal results 26.67%Heodo
2020-08-26BAL_ZYD_080120_LEF_082620.docdoc 6dd3e6bbc0eea4a8b5a155e9c5ecf6731f98e487ce6ac53020fed4afb8363f7bn/aHeodo
2020-08-26M_BH5676339073XL.docdoc 19ca8c91cd538e5f8391aa3c2aedcf6269da71895ee8746d43258bd2a8b960ean/aHeodo
2020-08-26NMH_9245173518752.docdoc 0fb8cdd6e033deca3e95931c9f20ddab1df2d839911cb271774ae42cf5460094Virustotal results 28.81%Heodo
2020-08-26FILE_366586847.docdoc 673dfbd1e8a6cae6500c6bc52686bc69101e89a34d4f579b1f3b5a45174ef250n/aHeodo
2020-08-26BIQU_PO_08262020EX.docdoc fc8d4d45930f6975b843b9efc608897012e01b772d88025fc4d2762e24802adbVirustotal results 27.12%Heodo
2020-08-26WOV_PO_08262020EX.docdoc 41554d0737be05561073afa91a83e41e5cf189cc507d5b8c22d431e712a3b6c1n/aHeodo
2020-08-26REP_JO7351262606NY.docdoc 0c96443c933d94eb5dd8cc1af29600409b0fa6cbb09308d6a633c3b8d1b0b466Virustotal results 24.56%Heodo
2020-08-26BAL_VU5649663469HK.docdoc 66d9e9f340163d1c3be2cc282e4b2871834a870392f970f4a1121da1c578b7d0Virustotal results 25.42%Heodo
2020-08-26XZ2F1LL7CE2G8NY.docdoc a1b37527202d95f794add7eefe6cdd747cb51e22ffe2d301dce761e7f27be7a4Virustotal results 25.42%Heodo
2020-08-267IHCNBD.docdoc 300cf0fd3de72ba9c28fc5428b8fac05aa455c7d7ffffbf3ae72db863f7fec1eVirustotal results 29.82%Heodo
2020-08-26REP_IB5016101707NL.docdoc 40387fe6e6a66244dfe24e5e9f6f88ca7111c0331b4239de96114a8d3b9b2b63Virustotal results 29.31%Heodo
2020-08-26REP_RK0885269646JP.docdoc b8a9e11759f4c916ebdfad5cfab584cf315a1048647d699c994d6a7b60471781Virustotal results 29.31%Heodo
2020-08-26BAL_PO_08262020EX.docdoc 4014edeacef628a8e6b950feaa547a482a43162461571eb152266564c38c619dn/aHeodo
2020-08-25K_PO_08262020EX.docdoc 86b0083e2d041b94f517ccf38d1df2c2dc97edfff8ca508c9ec3ed80bc4abe86n/aHeodo
2020-08-25FILE_621068536.docdoc f8da60fee5fe2ddbc43a2bdbd1d34276166364d1fe05e9193c71ef71719e12e9n/aHeodo
2020-08-25ULKI_HWQ_080120_OBH_082620.docdoc b1e3c18649bc4cbed912ce7f0087cdba73298204214713ad1038375ad055142bn/a Heodo
2020-08-25REP_ATN_080120_YRU_082620.docdoc a60bfe31dcab8ba0730c4edb7de14a10147c618560d09a6137b8e7bb6209dbc1n/aHeodo
2020-08-25X_PO_08262020EX.docdoc 696268abaa7fca009d2d755c96a4aab42d5aa9d20f5e586480896798e975b44eVirustotal results 29.31%Heodo
2020-08-25IXF_PO_08262020EX.docdoc 46f6f35a160697a5d77619a10d219306154c9fe17027dd94f500c71ae2361183Virustotal results 30.51%Heodo
2020-08-25BAL_57161300.docdoc 2eeec2892926e686de8fcc29fc57c57b10a4f37e49cee06ec4b5c864dcf5cfben/aHeodo
2020-08-25DOC_97420292.docdoc c0bc03edcf17373ca7bcc145fddea1578f8998fb6f1d400d3701ebbe4ac1c833Virustotal results 29.31%Heodo
2020-08-25INV_QU8922902223UH.docdoc b7d31d0d2e6624c23fdf8a2c989875d78052e661f92c0839d379c4197a188415n/a Heodo
2020-08-25HB_I4ZZMRJDXZT4XFX.docdoc f83ff86a7b80e435264d444c0bec91a81e09cbc5df01e1f2f155d3782e456eeaVirustotal results 31.03%Heodo
2020-08-25AS_PO_08252020EX.docdoc 5e8bd78307f84ea522b74ddc97c714880550136515711fdf54075c8a673cf263n/a Heodo
2020-08-25CKA_080120_LWO_082520.docdoc ec08e29fcee92737e7df6a94ee10c6ae871ac4fe2414f367a8dbcb0eed0b1e80n/aHeodo
2020-08-2522929881.docdoc dbe154340b5e5f2e020d7e33eeaadfe4a518f3dc72a2d83c43e48d16c453e9fen/aHeodo
2020-08-25BV_00075044.docdoc 5419b1d842aa8d13493c5ac67bfd2839472947b3345c2f6552dc69521575959fn/aHeodo
2020-08-25FILE_PO_08252020EX.docdoc 2005da08cf5f5e5489e2eee91a32b61ee7c2da83fcbd47f566eb7a3a29388151Virustotal results 41.38%Heodo
2020-08-25FILE_CO5948627938NC.docdoc cd5de7d65b2e9b1096050ce5dc17eab61c74558a8570d384af33e78dd2d9b025Virustotal results 41.38%Heodo
2020-08-25INV_93475654.docdoc c52d43a72bc36aa33659558cfb0788b7c919cf70f6d6c98be550891ce51556abVirustotal results 43.10%Heodo
2020-08-25INV_044001352545.docdoc d5f40d452d9a860469d5230c2770b2dd97806bcf9734af4d3f76218dba8e5c8cVirustotal results 42.11%Heodo
2020-08-25O_0746955654725974188.docdoc 23b985aeba6423e4a9a4b3c2c30d057fbf0dd29f65d0700581a45b8276eae366Virustotal results 40.35%Heodo
2020-08-25BAL_MC8027712521RN.docdoc 5ea798c77e148ba56c705159bad7572cc32b08d35f1490759356a6d114d50a2dn/aHeodo
2020-08-25EFT_080120_OSS_082520.docdoc 3dce2355e30fc9c2bcf1011d6e069107e0f65eef8e4b8dcab989ecdf8bc55407n/aHeodo
2020-08-253UYWG8QCU.docdoc 31b667c4a36243119386974054815bcd6f58ac21d868084ff020986f1b28cb30n/aHeodo
2020-08-25INV_PO_08252020EX.docdoc 340c0a7bd1dea55284f43e599ed5afbb240cbe03d66e478ce327abac2358c230n/aHeodo
2020-08-25ZM8803807985HY.docdoc b378fe416dfcb63d2ab446b973223719a1fc95e0a6e8e7131da3e65dbcec601an/aHeodo
2020-08-25FILE_EV0132116507OA.docdoc e06211b96198e300977ef5f59cf0badd6899b4e387a2b82068e4d0aea2b1d40dn/aHeodo
2020-08-251LUCWUQ.docdoc 10216de03866c86a163d074495bfd71636ac299c24a2c6f0d482a733a5582c62Virustotal results 29.31%Heodo
2020-08-2535826662.docdoc 9782513596cfc5b6c1085aab702486a584065a2801f69b7b671c7d5d347534eaVirustotal results 28.81%Heodo
2020-08-25PO_08252020EX.docdoc 67a58e87a8dd00886a21fd38eb8403c023f21a4594424b6a9067b970d59b6c7an/aHeodo
2020-08-259838940152.docdoc ae2415bcc28be74ba8a8c4aa9b98bcc4125881032b2429b9bc3bcac2860c185bVirustotal results 27.59%Heodo
2020-08-25973252918388206212501036.docdoc 1e064e084d7c3bf212e7562fe1e42aaa4a78ff7c1d622a8827bdd351476bc0ccn/aHeodo