URLhaus Database

You are currently viewing the URLhaus database entry for http://mazzolas.ch/www.mazzolas.ch/http://OCT/9cAc3oxX99jTLMh1uqka/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:451811
URL: http://mazzolas.ch/www.mazzolas.ch/http://OCT/9cAc3oxX99jTLMh1uqka/
URL Status:Offline
Host: mazzolas.ch
Date added:2020-09-02 17:45:34 UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?):No
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-09-03ARC 20200903 KVH542.docdoc c4e63aa4bd93111e81fc78b0cf516be383a95aaa80e1afbed1215283c56ad3adVirustotal results 30.51%Heodo
2020-09-03List.docdoc 34280c447a8ffad5d29899ac71200552e4c648ac215fe6bc47168c2d398bc44dn/aHeodo
2020-09-03rep-20200903-IZX19659.docdoc e16df740c6b4d003b00ff92bcecbffcee7c2b1beb17d9bdfe388f753ffeee9a3Virustotal results 30.51%Heodo
2020-09-03file-2020_09_03-NF35913.docdoc 2d722fb6b23c15b0147b0a8503dd6ba60b38e235cda2ae6a722abca5e6af9045Virustotal results 30.51%Heodo
2020-09-03Untitled 7891904.docdoc a4b4827811c223bdb21e19eca21093bfd039640ef42b2f6df2bbd36db7f59a5cVirustotal results 30.51%Heodo
2020-09-03file_903.docdoc c27e13323301dcbf879fd5d7c743e5f810ee5dca4d256bb69c599b85e26fe839n/aHeodo
2020-09-03File.docdoc b4f5b53b9a038bcfed6b0ede01b82d41c3829d4e18e0672ed48ad2ed6795ce29Virustotal results 29.51%Heodo
2020-09-03Attachment_20200903_V20124.docdoc ba6fe089390cec5baaab565159c0b3cd9d0357eb3d92919d629d33929c96da12Virustotal results 28.81%Heodo
2020-09-03doc 2020_09_03 83216.docdoc 3dfe28733e74beee2043c25a24a6ff3041c2411ce6054f8c843537c3f8c3b973Virustotal results 28.33%Heodo
2020-09-03rep-2020_09_03-797254.docdoc 1c4ae5147277da1ae2e1698cb5bbb78013414bc44ec134e7b0b5443ef4839f62Virustotal results 28.33%Heodo
2020-09-03060006-2020_09_03-G084.docdoc 8199d7cc599593d80152545c14a29f7e8c5bd99b5e114c67ff1d3c8938432cbcVirustotal results 27.59%Heodo
2020-09-03INF 2020_09_03 7023831.docdoc 433967efefa29b0d97818d4e20329a19d8192755d65023bbb679d96ef4c23004Virustotal results 26.67%Heodo
2020-09-03arc-2020_09_03-EI334881.docdoc 56cc3fba7824817094a7bda5669fcd970513a9728b5baf553c28c6d556d0f27cVirustotal results 25.86%Heodo
2020-09-03UNTITLED-2020_09_03-3471836.docdoc 030dc88d3c5827bd9cd7bbf0117a6cfdf55fc56d5b8d4715dfd85406a04ffd4aVirustotal results 26.67%Heodo
2020-09-03Doc-ALN4512.docdoc a05c6c80c1aed4ef6f7d276ea976bd3a3ebfbf8e80f46273376440eff47bc87bn/aHeodo
2020-09-03File-JE200681.docdoc 12eb109b5cc21f61356696a06698808a9bcc8e97a6d3a5ef1c96d3aedd57b13cVirustotal results 27.12%Heodo
2020-09-03Attachments 2020_09_03 FA23991.docdoc e42a5e7775e7be97e39d3f3f792bde9f6bad2b1a2e5c2832bf3956328e57e452n/aHeodo
2020-09-03LIST_6511486.docdoc 08461750f88454bb39066eb05f966d9592f736fee04659787314b643da114389Virustotal results 26.67%Heodo
2020-09-03arc-2020_09_03-4260630.docdoc 99522c539da7ddace0b75678c64242e00a3171bfd46ff591936a1bed34ff407cVirustotal results 26.67%Heodo
2020-09-03Attachments-20200903-RY2281.docdoc a3e2eb1611caf695f981fe0341b42b3eb3ce6c89d4c5592e3a6f42de7fd61c50Virustotal results 26.23%Heodo
2020-09-03FILE-576867.docdoc 5b27a5e6cdae618e9eb5e14035ea32c95ce43e30a8c36e1402d81e941dbebb03Virustotal results 26.67%Heodo
2020-09-02file_LAH6070.docdoc b4516e62068c35d8814a1d175c4f1062a9bb15afc1120a5c017d52a0b8b2ab98Virustotal results 27.12%Heodo
2020-09-02Attachments 704.docdoc 307a4fbaa0d80db37e3ea6e971fae14df8588da457932320d6ea7f4d4df61ac4Virustotal results 26.67%Heodo
2020-09-02mes_1102668.docdoc a9604493990426298f032a099836b353e88a4b5152690b58c6eb87865d2864e8Virustotal results 25.00%Heodo
2020-09-02B82641-314074.docdoc 6e6db219ffe9ff6be1e7df214bd10146f8df7e51344845c7c8ed5ab7954e58a6Virustotal results 25.42%Heodo
2020-09-02INF 99409.docdoc 42cb24fcecf7fda3dac12fd3cd37e79730f914e718de105352f702edd99427c1Virustotal results 25.00%Heodo
2020-09-02rep G728.docdoc bd1f50d7ab54069b7ed4c35fb0acca8f3461c146de0a719027dab82c6b0874dcVirustotal results 23.33%Heodo
2020-09-02Mes.docdoc 3984d62229bd9ebaf24af039aa5741ede99e729aaf51da3ce067332c8f0542b5Virustotal results 21.67%Heodo
2020-09-02inf_20200903_44468.docdoc 13ab456a38769f62874636b17911970ca8c4886474e7b3229d86d0559e50d33an/aHeodo
2020-09-02Attachments 20200903 N70736.docdoc d5632b761f91aedf966b27495697bb0943e9c1b1e8b6706fa781d8af58485d67Virustotal results 21.67%Heodo
2020-09-02doc-20200903-DK666456.docdoc 47051914b32358b3277db21d76c1f681d97058305cb4d6b55d4bac81816a6f47Virustotal results 21.67%Heodo
2020-09-02023018-20200903-2322298.docdoc c3815498d0ab03e8e6573ecaff58207363aa23d7ed116b5d10bbf72fda771fc8Virustotal results 20.00%Heodo
2020-09-02rep 20200902 W286.docdoc 85070229a4f2218b3b9b4553b1eb6969dbd1fb773aeff95bfc541375fb39d33aVirustotal results 30.00%Heodo
2020-09-02Doc_20200902_PLW195683.docdoc 8fab3555ca662e201e47ac1580342714901215cd42d2e30a07881ce0d10194d0Virustotal results 30.00%Heodo
2020-09-02Attachments-8867.docdoc 336e92ab1d170735ac2c49a67a5d819ec8260f2aabf4fe60158953222716789cVirustotal results 30.00%Heodo
2020-09-02SI61783-2020_09_02-YS14035.docdoc 6527116041dfc94bcf1f5eee275f11a909a43ac3ba6a928b5a897d7ed0d27414Virustotal results 30.00%Heodo
2020-09-02list.docdoc d4b4b9f21b22b73cf88fd15efc55f3f3cb141a8cb8f441b6947541c813321414Virustotal results 30.00%Heodo
2020-09-02arc 20200902 VHC6116.docdoc 493d10d356dc7e8bae687fc4b59fc36fc1160df0f7427ab7bfbafb328bc2fcb8n/aHeodo
2020-09-02arc_2020_09_02_UQ1279.docdoc 70e1c77b41f017bed49d2fe03acc7b6453a8eba17f25cfb64a6549f34bdbc7e9Virustotal results 24.14%Heodo
2020-09-02Attachments-DBP97987.docdoc 27b9518420cfdabff22ea9b600729259d76bb6dd805ab0eaff621004520422d2Virustotal results 21.67%Heodo
2020-09-02arc_20200902.docdoc 53b9b4fd0b023d53fffb7f98ccdd17240d2ede158c6b34bd8f08a10bd2cb01c9Virustotal results 22.03%Heodo
2020-09-02LIST_2020_09_02_TUK52134.docdoc 8179b17f5da98d6dc74fae15ac0b3c72209d7ac4606b8d3b36f8cc9d71856fe0n/aHeodo