URLhaus Database

You are currently viewing the URLhaus database entry for https://www.witdigi.com:443/wp-content/plugins/go-live-update-urls/Reporting/bqclvsb11/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:502648
URL: https://www.witdigi.com:443/wp-content/plugins/go-live-update-urls/Reporting/bqclvsb11/
URL Status:Offline
Host: www.witdigi.com
Date added:2020-09-14 20:45:04 UTC
Last online:2020-09-16 04:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-09-14 20:46:25 UTC to abuse{at}amazonaws[dot]com)
Takedown time:1 day, 7 hours, 54 minutes Poor (down since 2020-09-16 04:40:53 UTC)
Tags:doc emotet link epoch2 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-09-16PO_09162020EX.docdoc f6aeaefccc4efba1167df73a2a3ba80a76c030c8278f7e8466c4d3dc7cf0084fVirustotal results 30.51%Heodo
2020-09-1689710486909592596800.docdoc a643c8295a70cc3882662f7eac8da65ca398f824961fcd9a47454364138218e0Virustotal results 38.98%Heodo
2020-09-16BAL_HL6S04F27O9RVMZ.docdoc ed810a173660499c4d9356a3183b890ec5f2d2c6dba475ff95a77ac09d81378aVirustotal results 25.86%Heodo
2020-09-16FILE_SQU_090120_IIO_091620.docdoc 8e6f30327f622ec5f0e0af698a465ea3e932a184bd57077e5561244208e45f8dVirustotal results 27.12%Heodo
2020-09-16T_IDA_090120_OQU_091620.docdoc 722e0b21752c8eb64fbb26fcf4ef9ab58f89050b3b690fa97b068eae6a0b522fVirustotal results 24.14%Heodo
2020-09-16REP_NP7421081556PE.docdoc 7ed2061c4e694c21459db2c680fc101f2f2ed9bb6b8b8768a3bfc2b19ca14ef5Virustotal results 25.00%Heodo
2020-09-16DOC_69838940152676168333027.docdoc 1fdc71b89f5d3b5fce037341692415964a8c4141c9579be50045bf9d2e309afdVirustotal results 26.79%Heodo
2020-09-1602072258.docdoc 3b610a0aa4890a007dcf6df33178a042c25d7ae68a3fdff4d368a5728f811a78Virustotal results 25.00%Heodo
2020-09-16WPAQ_638231644085.docdoc d4c8ce2687fd07ab7c3991cab5500c05e719381d7906228371f0457d260ded94Virustotal results 25.42%Heodo
2020-09-16547173208659596846607753.docdoc 9380f9cd5f7294278d3ae6cf6e6a6b7ac08e815a2649e50d5ad1bb16b9ac0bffVirustotal results 25.42%Heodo
2020-09-15FILE_71396490.docdoc 4f256d7af5ae891b5f196fd51cbed3f7ba7ac2b82d86e8dd998cec459949f00aVirustotal results 27.12%Heodo
2020-09-15VCGT_VR7223325140UG.docdoc d4369f512f97c8b7c76bc433989129b9805389a353801dfb3ba84b6a296d5ef1Virustotal results 30.51%Heodo
2020-09-15INV_AU0580856501BO.docdoc 879cb07fa12e39fbaafbeef54a8c988ee57a673fb57a02099a1f6bb733318c44n/aHeodo
2020-09-15X_PO_09162020EX.docdoc ade1729cdf53dd56b39ae9440ccb71670f42e5f8fd2b0a564f11aa404c2d427en/aHeodo
2020-09-15DOC_LPYYB85YET.docdoc 350cf5c830bdf242f41ea336e2803b83af81ba91751cb13c418e5cff3674d95fVirustotal results 29.31%Heodo
2020-09-15PNM_090120_YUK_091620.docdoc c4daeb1197761ad6ebcf922fd44f7f3aed5d49a64e107dc1d79340f2a0b2ca36Virustotal results 25.42%Heodo
2020-09-15DOC_WN6753898233SJ.docdoc c22a92c3f9f72a3ac154573621c47a61ea04bc8df6fbd72a14f55b0ac858f385Virustotal results 25.42%Heodo
2020-09-15HV6638534508PZ.docdoc 9656f634b78c149e6a428cb521d7a9ae339fb27e467de4ab2d6131cc7673021aVirustotal results 25.42%Heodo
2020-09-15062538119466.docdoc 4d6b056c7bab909b0af3f0a3a24f5b7fbc4453e31746d29c0c3d60122def5705n/aHeodo
2020-09-15INV_ZN4563905314PT.docdoc f8b89f97feff5649f70d133e5a998bb941c042aa450267dafba9ed28a95b7f59Virustotal results 25.42%Heodo
2020-09-15DOC_PO_09152020EX.docdoc d4b79b30c6abd6633d513bd08d8b3b9b3de6f0705245b72b3e2ee09e0d03746fn/aHeodo
2020-09-15R_818771634849674619707.docdoc d2939ee7042da0a88a76cc4e60e5a8cfbc83e5b4fad03c547ffb13bb006a2c5fVirustotal results 24.14%Heodo
2020-09-15REP_VXU_090120_JLZ_091520.docdoc aee8c2cd0f5858f9d9f402974a799cfa4ba52786593ce6681014c289e75f58c8n/aHeodo
2020-09-15DOC_VVI_090120_PGF_091520.docdoc 82c25613755c7a3a9737fe08cbc7fae6d75faa2807218b65d6b5a6dfb1bbff67Virustotal results 32.20%Heodo
2020-09-1542503393.docdoc 2088edeb14b235a68f1d6c36b0f0538fd4850dc4001d21db0a5c147916f8124cVirustotal results 32.20%Heodo
2020-09-15INV_WDK0LS609YV6W0.docdoc 3a27d228a126b4876ded1657ddeebfc55df1277042bb3c9e8a88af914fead10eVirustotal results 30.51%Heodo
2020-09-15368528577903.docdoc 99cd329144ecd59f0a395fb6b78ebc0e16c295cbb98369baad836540e2037af9Virustotal results 28.07%Heodo
2020-09-154858030009586.docdoc 06f74948e8415b0a5c18875bf65de75f9f4513e69ebd87c743c91fd8160aafeeVirustotal results 31.03%Heodo
2020-09-15K_PTYNY6KO6DE.docdoc 82caa6df7c863666c0e05d0b5220c9327d0223159c178a97d69f79a7a271d6bcVirustotal results 30.51%Heodo
2020-09-15DOC_GP3153272052LD.docdoc 29e6800b32fe83e4c3eea894351d851e0ba7013aa256aa96ca27b0423fe084d8Virustotal results 30.00%Heodo
2020-09-15B_PO_09152020EX.docdoc b6ef89ad934abd3b5e218a5e4b798f80446809c13aa649cc8062453da031a33dVirustotal results 31.03%Heodo
2020-09-15INV_PO_09152020EX.docdoc 7596b6c44ed87c1a5add7150e54cc661c822db7eb7f87f717b9df75c4a6a3fa9Virustotal results 31.03%Heodo
2020-09-1504871261.docdoc 920c6c5caca9705a67c7133db7edb7a9c9752f138bf9e2ce372169cca625b083Virustotal results 31.58%Heodo
2020-09-1594922670466895270.docdoc f52574630b28b46badc771430bea7ed4811951b7ac44b12af4cf6497f1afff4fn/aHeodo
2020-09-15REP_V3AOWXRK36JD.docdoc 34c57cf72a0605b4e2839e24ba06beed39f76ecd580db06b134be4c6d351684dVirustotal results 31.03%Heodo
2020-09-15INV_PO_09152020EX.docdoc 84a3218db211f14f6afaf90ced3a518193158b80bbbf43bbf82a955d6064fa2dVirustotal results 28.33%Heodo
2020-09-15PO_09152020EX.docdoc 9125706ef9bf6b56ee381a86a48c2c6db5aca9a2ccf49ec1ccb2682c3257966bVirustotal results 28.33%Heodo
2020-09-15KXKP_AS93JL9QNR0C4M.docdoc 2698ac28bda60d163fc89497784b84864b53eb25784b30f6ca3fe03ff137b8can/aHeodo
2020-09-15PO_09152020EX.docdoc fda02bec817e33a0eb6c4f769013fb985dedd41c73e728f9db5d7ff9e76cc93bn/aHeodo
2020-09-1538610343012521127089.docdoc 9aa6d84f75ffca251bb16890d6587306d655a61bc218cf7459688ba4526090b8n/aHeodo
2020-09-15REP_01921967.docdoc 8ad7a5caa6b158c4360d923395c49afde530904dc87113346b3ac80e48eea1b7Virustotal results 28.81%Heodo
2020-09-15INV_CGV_090120_LOT_091520.docdoc ba5438233a666d053b3190ea71fad9c14619c3aadb9b7c842ad6a9922b9a779fVirustotal results 28.81%Heodo
2020-09-15REP_122467004006.docdoc 2231867f5f922d40ae930f032654dc95e2966b101a79e3f6a4f86ccc3d46b084Virustotal results 23.21%Heodo
2020-09-15IS0810687392AK.docdoc ac25deaff3c5f73148b9ab0a424b5f1c7200c74671d6d101da13ce64ef248510n/aHeodo
2020-09-15REP_6466095388060501601811.docdoc d801da6fdceb7c5596f89f5c6b3cccb1f4c79690bb0a6f612ceac1ee58096eb6Virustotal results 33.33%Heodo
2020-09-15INV_76490125.docdoc 4e14eaff86f204c98eb2c3e3f1c819d230863f05ee0c1e9e5ac35ae3cceb507eVirustotal results 33.90%Heodo
2020-09-15XQM_090120_OLU_091520.docdoc 356d47d62853cdffcc77d94782e286aea2cb43b33cfc90bd957d65bf9edf8c05Virustotal results 27.59%Heodo
2020-09-15U_XZ3O9UB.docdoc cb3644be00ab5082dc6aa30f9f55bb3d658ed66930c439fe0431ed1bc6937cccVirustotal results 30.51%Heodo
2020-09-15INV_E50PMCR1N.docdoc fb643feff479ae9885669488962697766e6dbd2da0ca79b1af07c225f60b0527n/aHeodo
2020-09-15FILE_PO_09152020EX.docdoc 2cde4939f797633de929427a46005c56edcb0480a7a87e6194df70cbe707bc7eVirustotal results 27.12%Heodo
2020-09-1590157377.docdoc e7e0a0de53bafa7844907fcc5204ef1e3aa3be7578cbfd5c8fb676d8d9f1cf5bVirustotal results 27.59%Heodo
2020-09-15REP_08526458.docdoc a4a5666a000ba0795cb2190e808b46aa5da1f9883f5e978c5331fac6f94a102eVirustotal results 30.00%Heodo
2020-09-15REP_PO_09152020EX.docdoc 40fa80a89b068b5d03f654143399184e60506a0dbdb66d0a3c7be8130450679bVirustotal results 26.32%Heodo
2020-09-15TMG_43719639.docdoc d4c5ec6cd0dc168df94c8bde06feae22392a77c269bee92608393095a4e8f99aVirustotal results 26.67%Heodo
2020-09-15Q_GSF_090120_GPO_091520.docdoc cb6e641825c4b9b3dedb8bca6f5e8759d21a3f5a72cecd7b8fee14075a09e27dVirustotal results 27.59%Heodo
2020-09-15DOC_WR9042774479WL.docdoc f5760a0faea9103ebeca6a19ba621b538b00dd0f4c863aff0f4de466b17a40f6n/aHeodo
2020-09-15A_UG8NOJVLJ7.docdoc d19eca13ca9c8ff9be4588914091c9a665da6a264ba8f6576abc8bf1a329d517Virustotal results 24.14%Heodo
2020-09-158XV01MZCPDV6I2U.docdoc 31aeb8e51051e3d4f523140e952cfdcbd12fa1f65bbb85e1b0050a67d61320b4n/aHeodo
2020-09-15JL_22EQGLUZ9DF1Q.docdoc 9d78d1a07b45a1857b883af34f65f5b126d198a6fbe0d0983c41295d5981c1f1Virustotal results 25.42%Heodo
2020-09-15BAL_AVWBVW1.docdoc 6e355397335b8c26c9a258ecf85a47174ee5f0d4f331e5207a008393f7386b04Virustotal results 25.86%Heodo
2020-09-15DOC_91548594.docdoc 6ac63832436ca5632cbaec573ddf64699db3e154cff6cba39cdaf61183c00416Virustotal results 24.14%Heodo
2020-09-15A_PO_09152020EX.docdoc ab62b40af15a3394d7dce6cb44652e58aec60150e431f9eff3ceb517bfba76efVirustotal results 24.56%Heodo
2020-09-15BAL_89755797.docdoc 2fbe2ac4f1f56aafaa5439bb9a813e85b6390fdb50f164ab898401c7accd0fe9Virustotal results 24.14%Heodo
2020-09-1519295868.docdoc 8e553ae04464e45346ac48af348fe2b0c9e02f78fb19b127f8b8a4c293ab784eVirustotal results 25.42%Heodo
2020-09-15DOC_0662329935736725502812665.docdoc dfc085fb48eb7ead553a0a37cd764391525df9118c56b7da432c222cdd3ac408Virustotal results 23.73%Heodo
2020-09-15TQJW_29284084.docdoc e23b2dcce72f16cdad14d38245feafd10ee07ba8ad722114408b65e21b5e4da3Virustotal results 47.46%Heodo
2020-09-15VL4120791507BI.docdoc 10b17795235e180a179c175fd900f397c7d967604ffd8bb0e06082b68c57c0f5Virustotal results 48.33%Heodo
2020-09-15T_DZX_090120_OEL_091520.docdoc 80b4fba8603d653281bf5b22b1070b5bcc940fa3ff7c3dd4b5a95bad66fc8ae4Virustotal results 47.46%Heodo
2020-09-15FILE_KB3558004644BO.docdoc 807bf4c0dd85eea9b4ea5c41fab297064a1a79599cf41ee23eddea254c4f5692n/aHeodo
2020-09-15BAL_DEW_090120_IRN_091520.docdoc 3c264c77078bb3d9bd3d548d754a07710e88b565117a67b25dd5a4c6ab990496Virustotal results 49.15%Heodo
2020-09-15BAL_YH2285230673BQ.docdoc ac84ed5c10ba6d28038338fbecb049196eb6aaaf01161f686bf9b7d8738908e3Virustotal results 47.46%Heodo
2020-09-15NSL5I7U32YP.docdoc 444edfc514c9e7ddf7d47152ab219ed246f5fa2feacad2d9f98932df0901b406n/aHeodo
2020-09-15BAL_PO_09152020EX.docdoc 15b496bf68dc5385ebf19054bf7621ebf354cf0c1be1df95e200918da33483fcn/aHeodo
2020-09-15INV_CH8327969599OG.docdoc 11457a99a5505f705c398e4e05548708cc0ca4e18748421ea1374c0f410eb5abVirustotal results 44.83%Heodo
2020-09-15JPZ_PO_09152020EX.docdoc bbb17cff723308662ddf9825752ef644a33b89e26830c1e32256330d3abb32edVirustotal results 45.76%Heodo
2020-09-15DOC_NQZ_090120_OGM_091520.docdoc c35e9c9afc96480d2758c3b540ab077b6cb25140d4fe35c18a49627acfad2745n/aHeodo
2020-09-15BAL_42076786.docdoc 0610a25bd15aa42196ef53e0895bd6a44111f961df28f1c091c54016c9669b26Virustotal results 45.76%Heodo
2020-09-15DOC_OR40MEF6SW7Q.docdoc 6ef3421c3c2d879e5ca7cb83b8a540f77a9f78cc60ed7ef9771ef39e8b92f48cn/aHeodo
2020-09-15DOC_BLTFWY7ZDV.docdoc bb9f602ad96cbe273388a0693171c3973e1353bef3ceff859abf378ee3ec09f1Virustotal results 44.07%Heodo
2020-09-15BAL_79483939.docdoc a5339cde30bc4e023fab90f875aa0511e8b74c3b8bd6e019c39b91eb35c64f27Virustotal results 46.55%Heodo
2020-09-15DOC_211195245409117779.docdoc e159458d4bc5114c9261dfedaff530c0bea0b0d109555197f3fb7747692e538eVirustotal results 35.59%Heodo
2020-09-15E_EC5J875SDRXH.docdoc 0e8e9f0192523753cb234c4a8131fbc99d38e59de4a1514fdb89982130f487ccVirustotal results 44.83%Heodo
2020-09-15DOC_UTV_090120_MQE_091520.docdoc 896a53572f85ad0c7e76943a28d4e017a47ec95b8905300f6e1e03ddea47e4e8n/aHeodo
2020-09-15ME7611137883RV.docdoc 29d8e169a30fd7895f5e7c44d984fc2df3ecdf41230c24bbad22b1084ede0a32n/aHeodo
2020-09-15BAL_NNF_090120_FZN_091520.docdoc b5fe7ec6d41ec506aec64e171d1a201d8c9ea0d72bf698265439530d7b96a754Virustotal results 30.51%Heodo
2020-09-15INV_12487509.docdoc a4486575da11821fe28dfc285d3e4b93f37d127adc771887dcc7b3eb17c24546Virustotal results 41.38%Heodo
2020-09-15BAL_QPF_090120_GMI_091520.docdoc 091e7d3539fbb1cfb971b96abeeeb3b0e2abbaa3f19bbcf605f36589b2f7fadfVirustotal results 41.38%Heodo
2020-09-15INV_25935872180406200081778.docdoc 23adb5a46e285b5dbfc94b24cfba24c796c5ac4ed407661ab8bdc83a007de7a1Virustotal results 39.66%Heodo
2020-09-15BAL_PO_09152020EX.docdoc 052459689d69d170fc38722107e8ad827f626fc0808ff2c9afb2d7fc74b464f4Virustotal results 38.98%Heodo
2020-09-158441702370.docdoc 8aaac3ba7ee1eea4f407286fb7974879a2cc0baf38d4de3d7add15df3ba2bee6Virustotal results 42.11%Heodo
2020-09-15NCS_CWJ_090120_PMN_091520.docdoc 3101660852449fb80ba31c9c0dbb29ffd2c33de28fcf1e2080b3ec6594f4f963Virustotal results 40.68%Heodo
2020-09-14BAL_PO_09152020EX.docdoc b1519746d2c2a349f5fd48d89760bc67161a6474005f9060909bcf2e2c3fa1c2Virustotal results 27.12%Heodo
2020-09-14DOC_1025667697224139.docdoc b3c6abf670480a16083371fbbe54e43aae5e790eff0aa861813e51e44ca2c975Virustotal results 25.42%Heodo
2020-09-14C_612322563066084870.docdoc b5a7d485108a6ba50def96acbffc0765954b5e85ec5e3898ea386ddd63b247a7n/aHeodo
2020-09-14V0OE3DJ8O4XMHUU.docdoc 5f31da31a925d5eddfcd8a434b8adb8329c95b9ef397d6d4b0c3cf33c44787a6Virustotal results 33.33%Heodo
2020-09-14D_5683872442044.docdoc 228f4f253488803c245aad64df1d3673fa7c72874fb54a9d60741e1cdac97b37Virustotal results 32.20%Heodo
2020-09-1479228012424.docdoc 4d58f9bc9cb9c71282fc9003acfff87afebaa80186b02cbd42d663d20eb5c43aVirustotal results 30.51%Heodo
2020-09-14G_25561637.docdoc 52cacf28b237a0c90d4a49fd44192565cda0c2ce66fcec9e082fc36bfd4ba4f4Virustotal results 25.86%Heodo
2020-09-14FILE_UV3093648765XO.docdoc 3609ace31b854b805dbcd138722334bbf3ba80fafcba1cf7b2ec42abb3ab15bcVirustotal results 25.42%Heodo
2020-09-14F_8098547910404209614646.docdoc 25495bfd60e1250a8ff4fe5bc5f0360ec275594ca52f86be9d2cef2d2c134734Virustotal results 25.86%Heodo