URLhaus Database

You are currently viewing the URLhaus database entry for https://dubailuxuryproperties.ae/sun03/http:/attachments/DcMjtPPj1bRzOyZWe/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:501811
URL: https://dubailuxuryproperties.ae/sun03/http:/attachments/DcMjtPPj1bRzOyZWe/
URL Status:Offline
Host: dubailuxuryproperties.ae
Date added:2020-09-14 19:35:43 UTC
Last online:2020-09-14 22:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-09-14 19:36:03 UTC to CloudFlare Anti-Abuse API)
Takedown time:2 hours, 47 minutes Good (down since 2020-09-14 22:23:49 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-09-14doc 20200915 IMC920.docdoc a0fbbf6d90db762b113e5a37d79d574800eecd5ee6ae058b260917eaa521d62bn/a Heodo
2020-09-14DAT-2020_09_15.docdoc 04fc8eb6365b5e1141a8fff68a48eba572c8a6a61704cf384ed3fd9de537e908n/aHeodo
2020-09-14ARC 20200915 2208.docdoc 5215ec882e86e8604927d2f9da1a9ac3d0f6cb8cb2cf4b53441df2a10602bcfaVirustotal results 27.12%Heodo
2020-09-14LPU92824 2020_09_14.docdoc 6c58e04ac46f5f16a638f4f54998b9f162745897f0f79940736c2b572235a2d5n/a Heodo
2020-09-14mes 987536.docdoc 6eb7889d705322ae1a17f1b7bb05f17e5d428836248afe4463b8e43c29d8deb9n/aHeodo
2020-09-14R60760_20200914_19664.docdoc 2e862ef067763f16e673864da07b1343f51d650b8776466a34ae27a3a49816bcVirustotal results 25.86%Heodo
2020-09-140106R NBL979.docdoc fe0adfcbe96e41a03d65dd47514b5db3b216690ca8d3c1680a913e6927e27195Virustotal results 25.42%Heodo
2020-09-14dat WRV594448.docdoc a08de510f35e7e06ad165ed35d4292990a37f575efd818a6bc06d5edf736fabfn/aHeodo
2020-09-142719EMZ-VC817023.docdoc c04d53318d6727682e77638d17a7d9563f9040c46a9a426576349dba7acec4ddVirustotal results 25.42% Heodo