URLhaus Database

You are currently viewing the URLhaus database entry for http://uzedpro.com/sys-cache/https://sites/PjEZy7Yx2S3Sjqx75b/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:496011
URL: http://uzedpro.com/sys-cache/https://sites/PjEZy7Yx2S3Sjqx75b/
URL Status:Offline
Host: uzedpro.com
Date added:2020-09-14 13:20:35 UTC
Last online:2020-09-16 06:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: spamhaus
Abuse complaint sent (?): Yes (2020-09-14 13:22:33 UTC to abuse{at}amazonaws[dot]com)
Takedown time:1 day, 17 hours, 15 minutes Poor (down since 2020-09-16 06:37:57 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-09-14973284.docdoc 8014f6ab3e277e6346b2e49fae79962948c0b264e7000be259601b0b715b3e15Virustotal results 25.42%Heodo
2020-09-14LIST-8185730.docdoc d61eed6495d66ec5c0af991b418af8f8feaba83378a99261c374e11c7e64f98cn/aHeodo
2020-09-14ARC-CUM913.docdoc 5171e0e602e27c4122239e9c7833c603beebb69bea148c5d29341990af469f55Virustotal results 25.86%Heodo
2020-09-14INF_2020_09_14_O36471.docdoc 04c3ce2f282ed4ed9c831c5caff0edc29324dbd2eb39817fc6ed53683c5e0933n/aHeodo
2020-09-14Mes-20200914-8793414.docdoc 3f9968dbb3d21b0c64fbf4e6c7ec8fc1e458620e08cbfc640f9dce50c286ab07n/aHeodo
2020-09-14file_20200914_TI033086.docdoc 30c24452fe4cbae0d507fcd57055a6172174abbb6ecdec68304f244d67a152aan/aHeodo
2020-09-14LIST_2020_09_14_8546831.docdoc d28c4a81b7b65453a8ac5e0633c7504b2ddc37bf979bf32f7a946d7c02cffc59Virustotal results 23.73%Heodo
2020-09-14INF-S87393.docdoc 63ab439cb5788c279996c35d7e41341081f97dadb4b255653cb11194a9368465Virustotal results 20.34%Heodo
2020-09-14Doc 2020_09_14.docdoc d14ca2a26f3320ae83ccf62d1671ae05864f80b048af7781992fbdd253d243d7Virustotal results 20.34%Heodo
2020-09-14Attachment-20200914-Y65692.docdoc 83467069c2ec2cbe80e57095585d63441d9ebb7ade6e634ebc31eab616f5580eVirustotal results 20.34% Heodo
2020-09-14Attachment_9588.docdoc 30dd2df0674e842f8a3bfd8880f538175f2f42045d66060984f720b865acd353Virustotal results 20.34%Heodo
2020-09-14DAT-20200914-QS5321.docdoc 3ab666907d1caac6699ea16ad02a0143d9478daeabc0fb3e5bd94199cb787774Virustotal results 20.34%Heodo
2020-09-14Mes.docdoc 922d0848bdeb45de8993cf7663e729ccc87c4b6f7c93ece47472e9cd8cce416aVirustotal results 20.69%Heodo
2020-09-14dat 20200914 331538.docdoc 4b91fba1ab5d8983f62386771d0ef027518483ef95895a6f88bbeade5cace290Virustotal results 20.69%Heodo
2020-09-14FILE_7895.docdoc 4fa14744abdb2748ed7e262ba36b017ac6ca22ba39c70f1afab7500d728bd256n/aHeodo
2020-09-14List_1340.docdoc 86c0ce7ddf5c6e12b271984c7724e66b7b8db3ccc611a9635d8482bc01c86931n/aHeodo
2020-09-14file 20200914 38356.docdoc 0b783948053f5f1dadd529527bbbea3e2ed5e25f1cfa250aca3b6620aac9c26cVirustotal results 17.24%Heodo
2020-09-14INF-20200914-2669.docdoc 051792acd1ef777cf4872e67d4fe87bb93c8d8bbef658b9246a03c24e7fa4489Virustotal results 18.33%Heodo
2020-09-14list_2020_09_14_UD8348.docdoc fb254543c44a1cd539f80a6ad686889e82942bde7aebada34cfe594da563ce12Virustotal results 18.33%Heodo
2020-09-14REP 2020_09_14 6433.docdoc 18a349df5779d75e3edfa11a8e4f4b08c492ca0012594283a64d35f672e7c639Virustotal results 20.00%Heodo
2020-09-14ARC 20200914 0633318.docdoc 34fd9c4d643cf3cb0678e52d0d8f0c83d2f992ee6b56cfdf47c411a721821a2an/aHeodo