URLhaus Database

You are currently viewing the URLhaus database entry for https://wizlynxgroup.cn/content/public/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:510849
URL: https://wizlynxgroup.cn/content/public/
URL Status:Offline
Host: wizlynxgroup.cn
Date added:2020-09-15 07:41:11 UTC
Last online:2020-09-17 03:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: spamhaus
Abuse complaint sent (?): Yes (2020-09-15 07:42:36 UTC to anti-spam{at}list[dot]alibaba-inc[dot]com,abuse{at}12321[dot]cn,abuse{at}alibaba-inc[dot]com)
Takedown time:1 day, 19 hours, 19 minutes Poor (down since 2020-09-17 03:02:10 UTC)
Tags:doc emotet link epoch2 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-09-17PJ0980133852MR.docdoc 673ccb819f5c45634f57cd58fc55070323b5115de7093360197b016cc2cc57daVirustotal results 35.59%Heodo
2020-09-17L_59279825.docdoc be4589b5f647c7b97fdc399757c263c8fbe549218e25eea82148ad48f7fa5017Virustotal results 32.20%Heodo
2020-09-17DOC_63445587.docdoc 32d3ded66cd762a234e91ee002a061e053d98f38a52d0fa5356bbbf1576c7880Virustotal results 34.48%Heodo
2020-09-17INV_PO_09172020EX.docdoc 3cf8f34ba881699b5932783c60c591a6b88b1523d772b1fa292425764b0aa3f8Virustotal results 28.81%Heodo
2020-09-17QLI_LCQ_090120_GUX_091720.docdoc 76bf8d09a314a6ed1f11e8794d3027fcedcc3762677e37d8f7a304e4d370837cVirustotal results 27.59%Heodo
2020-09-17INV_YLXHR5XJ8.docdoc ba46d0a65699ff5ec5670d31287ae8d04710450b5d267d9e4a2fdf0e94078194Virustotal results 25.42%Heodo
2020-09-16REP_GW5344600594OL.docdoc b7d7c443145be4e2543b2786517f68cfef114f06e7c276368a6046c98963b766Virustotal results 22.03%Heodo
2020-09-16CV5127901817CV.docdoc e94ff7ee99e57be629d1e0f2be3bada9aa1ae3c87560e031697f35d0d1799945Virustotal results 22.03%Heodo
2020-09-16INV_KS8562982665VK.docdoc ba7b3a0a6b1d37bb71adbceb6c77e589b2645f816957e7a2555934d893ed8033Virustotal results 20.34%Heodo
2020-09-1608983009.docdoc 733150afe58d633a7748c6b98f7f64f72685083f5b0535ee970260073452bc1dVirustotal results 20.69%Heodo
2020-09-16UJ_27087227.docdoc a28a23ca128d4219c14856421649e8be9836b60650040fba71022341d239b6faVirustotal results 20.34%Heodo
2020-09-16PO_09162020EX.docdoc b465429729fe580c1862844b5e743b4913418b2bde007ae65a8b150f3defe751Virustotal results 20.34%Heodo
2020-09-16BIB_090120_VJT_091620.docdoc 1f487701e120fe25420c83a9152c41ee6c4c2973470947e4b1566a22305ba9aaVirustotal results 20.00%Heodo
2020-09-1670020593.docdoc a7f50bf321bf73c7af879ec128a67f16868adbb11239f8c21520fb3ba193eff8n/aHeodo
2020-09-1635935856316372.docdoc 1bb4012e89aef09b80eda22d99a564f0d3e923f96cbf25dc4a78ff6de6dbb31fVirustotal results 33.90%Heodo
2020-09-16INV_PO_09162020EX.docdoc 901353bf497a3403db274b0c2175a9e1dfc3a0f60720e0dabb97619da3cde741n/aHeodo
2020-09-16FILE_5QS6MQM33D4EDB1.docdoc fa8627da107f5b8e635cab97b056ed7a22bbe8dec6b3f2343fe001138ea2680bVirustotal results 33.90%Heodo
2020-09-16CN0169905707MB.docdoc 38ecd62b04b76c28921cd29f65b7ccde2a36b4414a258682357c05b925825953n/aHeodo
2020-09-1658XK3V2TL.docdoc 357de09bd2572ca949d4409cad4cd61b57666b750ce0caaf51241eb4725a473bVirustotal results 32.76%Heodo
2020-09-16BAL_PO_09162020EX.docdoc b7ef6487132afa596eee56ae8e75e130b2cb003eb1f2b2a765401d651fa6a61bn/aHeodo
2020-09-16ELVS_BZ4909768385KV.docdoc 305d99490d1652cba0e4ee0e78bbc8ecc201e44033a823f4cdbbfa5c43c41c51Virustotal results 32.20%Heodo
2020-09-16S_PO_09162020EX.docdoc 0db5f8d914e43863feb97b598b9d216663ef184121d7d2fedee37f04325c1dfbVirustotal results 32.20%Heodo
2020-09-16EAFQ_SSM_090120_BIN_091620.docdoc f875df5ff3a0ae34e7f9c96c6d419326c5411a29964693ced9a875ab952484d2Virustotal results 32.20%Heodo
2020-09-16REP_1OI7S25ES5RM3.docdoc f612c549bdd3f599721c805169c70aa6e0b6f144a0a58a323f0d59d11f23b45cVirustotal results 24.14%Heodo
2020-09-1621557977.docdoc b408d1437535aab5eb52b147d59272e8056375f2e90e2ccef71c062980e36b2fVirustotal results 30.51%Heodo
2020-09-16IAXM_20407439.docdoc f6aeaefccc4efba1167df73a2a3ba80a76c030c8278f7e8466c4d3dc7cf0084fVirustotal results 30.51%Heodo
2020-09-16AZZK_39906088.docdoc ade1729cdf53dd56b39ae9440ccb71670f42e5f8fd2b0a564f11aa404c2d427eVirustotal results 31.03%Heodo
2020-09-16INV_25985555.docdoc cef5fe8cb42c84d6b646353c977ec12cd7118000eb906b2ff5625158c998c8b5Virustotal results 27.12%Heodo
2020-09-16DOC_GZ1906897225VB.docdoc ed810a173660499c4d9356a3183b890ec5f2d2c6dba475ff95a77ac09d81378aVirustotal results 25.86%Heodo
2020-09-16MQB_ACLBM0N0.docdoc 8e6f30327f622ec5f0e0af698a465ea3e932a184bd57077e5561244208e45f8dVirustotal results 27.12%Heodo
2020-09-1646158740879932077249041.docdoc c4daeb1197761ad6ebcf922fd44f7f3aed5d49a64e107dc1d79340f2a0b2ca36Virustotal results 25.42%Heodo
2020-09-16FILE_PW5487262847HK.docdoc 722e0b21752c8eb64fbb26fcf4ef9ab58f89050b3b690fa97b068eae6a0b522fVirustotal results 24.14%Heodo
2020-09-16FILE_987945491679712601221877.docdoc 7ed2061c4e694c21459db2c680fc101f2f2ed9bb6b8b8768a3bfc2b19ca14ef5Virustotal results 25.00%Heodo
2020-09-16X_5959877675210.docdoc 1fdc71b89f5d3b5fce037341692415964a8c4141c9579be50045bf9d2e309afdVirustotal results 26.79%Heodo
2020-09-16DOC_60229987.docdoc d4c8ce2687fd07ab7c3991cab5500c05e719381d7906228371f0457d260ded94Virustotal results 25.42%Heodo
2020-09-16REP_PO_09162020EX.docdoc 8803b647321791051baa9ae249b48b03143908965ed583a37b955bf28c6a1c77Virustotal results 25.42%Heodo
2020-09-16INV_WRM_090120_GSF_091620.docdoc 9a29066aa3490e60be3e563dadcd9f7ef75e6eef752abd1bd40ab5323a57a83eVirustotal results 25.86%Heodo
2020-09-16N_PK4417250330AW.docdoc 9380f9cd5f7294278d3ae6cf6e6a6b7ac08e815a2649e50d5ad1bb16b9ac0bffVirustotal results 25.42%Heodo
2020-09-15FILE_PO_09162020EX.docdoc 629e1a081ae300a6d2f05af5d3062f2b48e11d58f2589a4dc44c4f79c9c32c87Virustotal results 27.12%Heodo
2020-09-15FILE_VN2784908688BY.docdoc 8869192957c4d226cae4679243a3a7ac5a193866a2e1048e37ca60f29d9af28aVirustotal results 26.32%Heodo
2020-09-15FILE_PO_09162020EX.docdoc 20843d0cdd4530871779caa7abdd86286747cf5422074a5f981d499aed8d19d3n/aHeodo
2020-09-15INV_7350978899940227524223870.docdoc 52a5776503722d0ea87fa60009674bdd3ebbd4449ed9328bf502c7ec5c5ac516Virustotal results 30.51%Heodo
2020-09-15M_284699454519559763541.docdoc 4d66e8cc8f45638b711778d7d1b698c5b793f452d0a58eb0a71bb5a365729c96Virustotal results 25.42%Heodo
2020-09-15XZY_090120_URM_091620.docdoc c5be1178786e06c4c3265db8da35fbe4f74a96000fe5eb06874abeb6b85fbd74Virustotal results 28.81%Heodo
2020-09-15BA5282095226BK.docdoc eb6bbcf1755a8438e950e632c5e1330ff4c78dc8849914d2126abeb732ec4360n/aHeodo
2020-09-15YW876LK0MIWCM.docdoc 7cec88df6a841fbc1251142492e673c8a2cddc58f21d6fd402f8167ee96e194cVirustotal results 25.42%Heodo
2020-09-15EE_PRC3OEXML7B1WN9.docdoc b08ba532b43fe11e03765134c030e9f47fcd626ebc014e8b2d1d3cf4cd7f1074Virustotal results 25.42%Heodo
2020-09-15PO_09162020EX.docdoc 3b610a0aa4890a007dcf6df33178a042c25d7ae68a3fdff4d368a5728f811a78Virustotal results 25.00%Heodo
2020-09-1512329873338573206147.docdoc 8c88e1e8081c3c1795039fb19de72e17b4e0a72076d49470327bd62bf090909dn/aHeodo
2020-09-15BAL_PO_09152020EX.docdoc 5184e08e6c595ddbb60b6ac4030286b2e70fa5ee7567cb0360b2a66ec04f8d89Virustotal results 25.86%Heodo
2020-09-15HCA_PVJ_090120_FOM_091520.docdoc 607bf68103d9158e576beb6c3a4b287bc5f5283c5871075a532d44efa448b9a0Virustotal results 25.00%Heodo
2020-09-15C8AG6AE5CS7Y4Z.docdoc 1e8efc4f5bc3f4c1233e6072bba8d608c2c37a722e84f3a69a5776225d962922n/aHeodo
2020-09-15INV_143500390.docdoc aee8c2cd0f5858f9d9f402974a799cfa4ba52786593ce6681014c289e75f58c8n/aHeodo
2020-09-15INV_VW8862715189RN.docdoc 5961fcb88f0e94e30cd06002aa7653bfe00c9ca29501fa70409464450b8d1217Virustotal results 30.51% Heodo
2020-09-15EP6748767162KK.docdoc ae651bbc1bb9cb216ddeae09b03346aa86c991c00d59ad680a83343eac0d4da2Virustotal results 32.20%Heodo
2020-09-15DOC_56922370.docdoc 81834b464c9d4cf11ffc357df7e18071f8e5d8f62d182e997059da665294a8b2n/aHeodo
2020-09-15INV_BAH5GWOSZFV.docdoc bc6688b91c96942809bfc6219384dd3b47ee5f29d07b97d21d12e381b6ebab1eVirustotal results 30.00%Heodo
2020-09-15REP_6481149767761912127637599.docdoc 1566f358c08b612008f380dbf93ae439bedd0b527deb8bfa5ca732264e37af87Virustotal results 26.92%Heodo
2020-09-15DOC_92278495.docdoc 82caa6df7c863666c0e05d0b5220c9327d0223159c178a97d69f79a7a271d6bcVirustotal results 30.51%Heodo
2020-09-15HI_UHR_090120_MNH_091520.docdoc 4b30a75800dac8e687499541fa381736b76d3f3b69146ea8801962b7eec548bbn/aHeodo
2020-09-15BAL_HE8148439346VL.docdoc ba34bf775daa42ec9022cd46e6fc17cc035d968b15fd48a74a765e88acaec39aVirustotal results 30.51%Heodo
2020-09-15G_CWKHB0Y8TH.docdoc 33163e89d4430eb23360add971fa52651aac6d7f2212ea3bab450dca4eaafff8Virustotal results 31.03%Heodo
2020-09-15BAL_FR2APIE7.docdoc f52574630b28b46badc771430bea7ed4811951b7ac44b12af4cf6497f1afff4fn/aHeodo
2020-09-15DOC_HY01EIZ.docdoc 34c57cf72a0605b4e2839e24ba06beed39f76ecd580db06b134be4c6d351684dVirustotal results 31.03%Heodo
2020-09-15FILE_782141601804799.docdoc 41b26a08cef23f1d783c98829c4d5a4c38e260d9de966fa86c20ad488bf7d765n/aHeodo
2020-09-15BRAD_RMY_090120_YMF_091520.docdoc 9125706ef9bf6b56ee381a86a48c2c6db5aca9a2ccf49ec1ccb2682c3257966bVirustotal results 28.33%Heodo
2020-09-15FILE_271843534817376.docdoc 2698ac28bda60d163fc89497784b84864b53eb25784b30f6ca3fe03ff137b8can/aHeodo
2020-09-15BAL_26185954.docdoc fda02bec817e33a0eb6c4f769013fb985dedd41c73e728f9db5d7ff9e76cc93bn/aHeodo
2020-09-15FILE_19852229936992547933044.docdoc 8ad7a5caa6b158c4360d923395c49afde530904dc87113346b3ac80e48eea1b7Virustotal results 28.81%Heodo
2020-09-15P_56042762.docdoc 5d4bee6f5bb0d02b980f21c2ae731bd12d5de2e2810058e6098fc888a7cc6f7bn/aHeodo
2020-09-15FILE_86803784.docdoc 86e5592a5a53eba6b534b450d5b736eff616b1453a741d713aceb18d55557483n/aHeodo
2020-09-15PO_09152020EX.docdoc fd847c1ac2582df7fc923b1a1c5a5ab3c065151c082c2a2ed29b36210f899d07n/aHeodo
2020-09-15YM8681273166IZ.docdoc f6b411752457e67af88361dab260e090f3eab65cc6c2ca63f8e2ee7b81a398cbVirustotal results 28.81%Heodo
2020-09-15EEH_090120_NGY_091520.docdoc 66ff020fb95ced4f2653e4ecdff764a34d92c4e883e306f037fb46b470b5fbabVirustotal results 27.27%Heodo
2020-09-15H4ZUM62NIT.docdoc 356d47d62853cdffcc77d94782e286aea2cb43b33cfc90bd957d65bf9edf8c05Virustotal results 27.59%Heodo
2020-09-15A_Y47IP7ZJEYBWWH.docdoc 1c71f8ea6feb7151e43dd7a022fed82103545c6e079231fd59df26e00bcdb66bVirustotal results 27.12%Heodo
2020-09-15V_34496023.docdoc c5d3e05040b167eefc00d3bbe6cac732b32b88aac3d3c6b7a640e8abbd9ef10bVirustotal results 26.67%Heodo
2020-09-15JFMY_GPF_090120_HJI_091520.docdoc 1d2bf8d22eeecff963437ca091244a4de2cb9c9f01b0219fb61c858e4bb9f41cVirustotal results 27.12%Heodo
2020-09-15REP_QN4263410291DZ.docdoc a4a5666a000ba0795cb2190e808b46aa5da1f9883f5e978c5331fac6f94a102eVirustotal results 30.00%Heodo
2020-09-15REP_FH9527372648DG.docdoc 7053a78a2269988798f9dcd4a161f7bd9dbd17a48874fb4452ebdb3a33b209efVirustotal results 27.59%Heodo
2020-09-15DOC_NTF_090120_VIJ_091520.docdoc eac7da9fde8d3e5c22c228f75477007b3bfe8422575a73a92a39d995c063d121Virustotal results 28.07%Heodo
2020-09-15DOC_PO_09152020EX.docdoc a918b268968b5a10adab11be7cccc5d1993e3bb2fd81b1bff64d3351fe6b0d01Virustotal results 27.59%Heodo
2020-09-1530127939.docdoc d222b05b80535e8958a35c2f51c94c20a20b638a50a215410ec7866b3f4d15e6Virustotal results 27.12%Heodo
2020-09-15Y_IH3259876715GV.docdoc 0d03a769eb60d885882b834ddd84cc95d6194f91253998018f25169605161758Virustotal results 27.59%Heodo
2020-09-15FG7563350979OB.docdoc cbe6e83ec78b4a36eee9c7843c21aaeea59a00df4f8981b870bddd58f1d9a080Virustotal results 22.81%Heodo
2020-09-1592710125.docdoc f46261b1578f7b44ac63d3edd2f32da762c4927378be531a0a73a4207beebb4bVirustotal results 24.14%Heodo
2020-09-152DCWVYWU1IZ6Q.docdoc 8dd8ad5982340b82765d71c26e6ab11b1afa10d25ac61ba165fd9c5094553b1eVirustotal results 22.64%Heodo
2020-09-15DOC_4199635259175416.docdoc 1852a661a858fb9f40ba92329b3e26f53159a91cc4b7bd7e38fba14b30ec6af2Virustotal results 25.42%Heodo
2020-09-15BAL_RX7616670632ZW.docdoc 31db7a1a117fcb2d3e70fce042d86f7821e9038fb7698a1867b3a12825aaeaadn/aHeodo
2020-09-15DOC_68229419.docdoc 1f9d65ae17cb1589de56ff283d341f22c8131bbf301b29e9c707a48d69a016e8Virustotal results 23.73%Heodo
2020-09-15REP_98202133.docdoc 2fbe2ac4f1f56aafaa5439bb9a813e85b6390fdb50f164ab898401c7accd0fe9Virustotal results 24.14%Heodo
2020-09-15BAL_AOR_090120_IPQ_091520.docdoc b73dcf5bcc44109613bce034ae0e96d9c868d69dfd7e63a7cce706053003c9dfVirustotal results 23.33%Heodo
2020-09-15REP_13600245.docdoc 24cb7f01e7145bec55d36a8acc1cc1abd754ef76615097aeb792fa5025bc7cd1Virustotal results 25.86%Heodo