URLhaus Database

You are currently viewing the URLhaus database entry for http://hollywoodsmileeg.com/sys-cache/https://eTrac/xLHvLm6xyT2OHVlp/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:497124
URL: http://hollywoodsmileeg.com/sys-cache/https://eTrac/xLHvLm6xyT2OHVlp/
URL Status:Offline
Host: hollywoodsmileeg.com
Date added:2020-09-14 14:32:16 UTC
Last online:2020-09-14 23:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: spamhaus
Abuse complaint sent (?): Yes (2020-09-14 14:34:52 UTC to abuse{at}contabo[dot]de)
Takedown time:8 hours, 29 minutes Good (down since 2020-09-14 23:04:26 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-09-14rep 57568.docdoc b842862b97e1bb3bf480e0edfa445124eb165f8b8c6208cdc3b40a25acd5c103Virustotal results 33.90%Heodo
2020-09-14doc-2020_09_14-251628.docdoc 06548426e927d2d19596c75a58b3dcd9cb31e0fe1090b0b24fa7d01870db5683Virustotal results 25.42%Heodo
2020-09-1435624BS_20200914.docdoc fe97e6888a6d15f734ad3dc205b5d6dfbda80116eb40473a63af913888890e7bVirustotal results 26.32%Heodo
2020-09-1456417OCZ 20200914 02544.docdoc 0aaf77ddbd6733d57e90b7a839a8eec42c677c110577bd60b7cb99d0e92371a0Virustotal results 25.86% Heodo
2020-09-14list.docdoc 200d48361b60fdaa3deb618c1dfed0c7d3d2a647dd8fe438e4bd4e3eeda459b7Virustotal results 25.86%Heodo
2020-09-14041CR-20200914-GDN560.docdoc d01054cbeb1b74004b1711e8cca1bb9c162c86117e09a0e4110ac90bd1848809Virustotal results 25.42%Heodo
2020-09-14Mes 20200914 CY436267.docdoc 41a5219800a60a147e301cb5ee472f45de2130aa095d82a52fa81121b5881860Virustotal results 20.69%Heodo
2020-09-14List-20200914-G20085.docdoc 63ab439cb5788c279996c35d7e41341081f97dadb4b255653cb11194a9368465n/aHeodo
2020-09-14List-MC4167.docdoc 058568562f8c6749027b88dae3474806831d476254f079261558c9f229c83495n/aHeodo
2020-09-1417459FM_20200914_33619.docdoc d14ca2a26f3320ae83ccf62d1671ae05864f80b048af7781992fbdd253d243d7Virustotal results 20.34%Heodo
2020-09-14dat 2020_09_14 51022.docdoc 30dd2df0674e842f8a3bfd8880f538175f2f42045d66060984f720b865acd353Virustotal results 20.34%Heodo
2020-09-14DAT 20200914 CB038621.docdoc 85b941aa2dfcdb8316fad92e43fdb207d52a3f4429b7bc59134fa759931284c8n/aHeodo
2020-09-14HYV8364-99743.docdoc 170590fc384f2e6351f861d29128baa60db4fd4f9fc3b537438ac3a380dc6d11Virustotal results 20.69%Heodo
2020-09-14arc_2020_09_14_578142.docdoc 675544804d4d0a4b6fee00293125ce806c6c7e42e57930fdb1e4c0c74bcdc62fn/aHeodo
2020-09-14Mes-2020_09_14-GR8731.docdoc 01eadb3756ea05c08742edec4e0c8b5afdc3eff88ca45d5acc9e9e73ac0946c9Virustotal results 21.05%Heodo
2020-09-14Arc 20200914 I875.docdoc 26e06b0ee433f5787420c5246683878c897505c0e3c3815f3045d41ebd28b878Virustotal results 20.34%Heodo
2020-09-14Rep.docdoc d7b5b8d15b25865aa074d5b675151232523d6586eced6e28eb98955dbb15a994n/a Heodo
2020-09-14ARC 2020_09_14 AYX93108.docdoc 501f7c90a7263d5bc31bb2a536885c14bad5f0a3b0ae29d3ebfdc7b901c76106Virustotal results 16.67%Heodo