URLhaus Database

You are currently viewing the URLhaus database entry for https://witdigi.com/wp-content/plugins/go-live-update-urls/Reporting/bqclvsb11/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:511673
URL: https://witdigi.com/wp-content/plugins/go-live-update-urls/Reporting/bqclvsb11/
URL Status:Offline
Host: witdigi.com
Date added:2020-09-15 08:44:04 UTC
Last online:2020-09-16 04:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-09-15 08:46:38 UTC to abuse{at}amazonaws[dot]com)
Takedown time:19 hours, 34 minutes Good (down since 2020-09-16 04:21:19 UTC)
Tags:doc emotet link epoch2 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-09-16BAL_WRF_090120_PQV_091620.docdoc d4369f512f97c8b7c76bc433989129b9805389a353801dfb3ba84b6a296d5ef1Virustotal results 30.51%Heodo
2020-09-16FILE_LBX_090120_MCB_091620.docdoc 9563d877bafd1387934e2e5243284770dc969f8406fce65bc70b4a8741081548Virustotal results 31.03%Heodo
2020-09-16INV_US7360450613WP.docdoc 350cf5c830bdf242f41ea336e2803b83af81ba91751cb13c418e5cff3674d95fVirustotal results 30.51%Heodo
2020-09-16C_70754396875750624523.docdoc eb6bbcf1755a8438e950e632c5e1330ff4c78dc8849914d2126abeb732ec4360Virustotal results 27.59%Heodo
2020-09-16S_0198461168169.docdoc aff9c4fbadddf0c2b4c80320ddb1809027d157508adbf5e5f12d88db367c782fVirustotal results 24.14%Heodo
2020-09-1666588790458524.docdoc c22a92c3f9f72a3ac154573621c47a61ea04bc8df6fbd72a14f55b0ac858f385Virustotal results 25.86%Heodo
2020-09-16INV_TL7021056047PZ.docdoc b08ba532b43fe11e03765134c030e9f47fcd626ebc014e8b2d1d3cf4cd7f1074Virustotal results 25.00%Heodo
2020-09-16M_SQ6237900962JE.docdoc 507e2356293102846a1fa73ec4869b6f98ecb3ef5b43f4d5261562eae848b613Virustotal results 25.86%Heodo
2020-09-16WPAQ_638231644085.docdoc d4c8ce2687fd07ab7c3991cab5500c05e719381d7906228371f0457d260ded94Virustotal results 25.42%Heodo
2020-09-16REP_53905856.docdoc 5b6ad999ba9c1fc2c8a7c9405f7e52131bde9eafabb19f737c031e3b6206d4b4Virustotal results 25.86%Heodo
2020-09-16FILE_32545487.docdoc d4b79b30c6abd6633d513bd08d8b3b9b3de6f0705245b72b3e2ee09e0d03746fVirustotal results 25.86%Heodo
2020-09-16LY4934571350PU.docdoc f8a35f4ee5b56117d206ece5cd25afb33aba58cbfb3c32748018d4424f212bddVirustotal results 25.42%Heodo
2020-09-15FILE_71396490.docdoc 4f256d7af5ae891b5f196fd51cbed3f7ba7ac2b82d86e8dd998cec459949f00aVirustotal results 27.12%Heodo
2020-09-15BAL_CTZ_090120_YDY_091620.docdoc aee8c2cd0f5858f9d9f402974a799cfa4ba52786593ce6681014c289e75f58c8Virustotal results 27.12%Heodo
2020-09-15Z_MS1982816056XF.docdoc 3a008e06592f52dd80d9010935d5c1600be581e27402f7b909fb7d66aca492cbVirustotal results 32.20%Heodo
2020-09-15INV_AU0580856501BO.docdoc 879cb07fa12e39fbaafbeef54a8c988ee57a673fb57a02099a1f6bb733318c44n/aHeodo
2020-09-15X_PO_09162020EX.docdoc ade1729cdf53dd56b39ae9440ccb71670f42e5f8fd2b0a564f11aa404c2d427en/aHeodo
2020-09-150382148883.docdoc eba11506102b0d17ade3dd25ef88614226a2faa5c3710af2a89b5588f49844a2n/aHeodo
2020-09-15INV_PO_09162020EX.docdoc 6f04f539195c899715c54e7cc3db85949143180e021314c0e670e09722d2afacVirustotal results 24.14%Heodo
2020-09-15INV_THC_090120_JPU_091620.docdoc 57f88105c170f6a9c0718d37fc98fc60ebc7eecbd83b74780b5284d5412ff8adVirustotal results 25.42%Heodo
2020-09-15INV_ZF5659845211JS.docdoc 7cec88df6a841fbc1251142492e673c8a2cddc58f21d6fd402f8167ee96e194cVirustotal results 25.42%Heodo
2020-09-15DOC_YQOSQDH7YNOXK8Z.docdoc 6783ef413f3dc640c8c9accbac37c09de5db05eee45604f5334cd90e7bbc109eVirustotal results 25.42%Heodo
2020-09-15N_YNZ_090120_NKY_091620.docdoc e6f1e7b2859714d5a971f9bf49e595cd31bbf292fbda1b9e5928fa031cfc7275Virustotal results 25.00%Heodo
2020-09-15REP_78536435456544800.docdoc 8803b647321791051baa9ae249b48b03143908965ed583a37b955bf28c6a1c77Virustotal results 25.86%Heodo
2020-09-15INV_PO_09152020EX.docdoc d413b9053b30e18ef4358645da23d5c4f74ab8d57d2d78a6e7d423103985b071n/aHeodo
2020-09-15BAL_PO_09152020EX.docdoc a4161a1c0ab452048658bdf4e30fe550fe9da9f47ea4525fdb2858949f42887en/aHeodo
2020-09-15FILE_74185344.docdoc 726a51164eb4f89fd1fee9271d44eea1befbae96e4816673b46c2fdf7d71fcabVirustotal results 32.76%Heodo
2020-09-15CN_7618136835582614587307022.docdoc c6cc0bc5f638343530d50e465ee7b0a2cf952d971f2d50d1b26c5ff8d2068280Virustotal results 31.03%Heodo
2020-09-1542503393.docdoc 2088edeb14b235a68f1d6c36b0f0538fd4850dc4001d21db0a5c147916f8124cVirustotal results 32.20%Heodo
2020-09-15DOC_87726639.docdoc 81834b464c9d4cf11ffc357df7e18071f8e5d8f62d182e997059da665294a8b2n/aHeodo
2020-09-15368528577903.docdoc 99cd329144ecd59f0a395fb6b78ebc0e16c295cbb98369baad836540e2037af9Virustotal results 28.07%Heodo
2020-09-15GQ1280141384DW.docdoc 567b914c19e54fb78b9c487868550a0ead98ccc21e1f640d571b7d98ad1e13b1n/aHeodo
2020-09-15K_PTYNY6KO6DE.docdoc 82caa6df7c863666c0e05d0b5220c9327d0223159c178a97d69f79a7a271d6bcVirustotal results 30.51%Heodo
2020-09-15B_PO_09152020EX.docdoc b6ef89ad934abd3b5e218a5e4b798f80446809c13aa649cc8062453da031a33dVirustotal results 30.51%Heodo
2020-09-15FILE_149922484024808200586786.docdoc 5b7a530e566f80edc92877f4a00d851c3eb005fcec8c3388fa98c501f299f3c1Virustotal results 31.03%Heodo
2020-09-15INV_14206040.docdoc 33163e89d4430eb23360add971fa52651aac6d7f2212ea3bab450dca4eaafff8Virustotal results 31.03%Heodo
2020-09-15X_VEH_090120_MQZ_091520.docdoc f52574630b28b46badc771430bea7ed4811951b7ac44b12af4cf6497f1afff4fn/aHeodo
2020-09-15PO_09152020EX.docdoc 857871926554fab0b9e7c348f8075046340f99238c5d624926f3d8ed6d71d5bfn/aHeodo
2020-09-15S_73047101748649886004335.docdoc 581a442c8f357cd8426973b33a637355147a00fb666148093af07d91c805052eVirustotal results 30.51%Heodo
2020-09-15INV_PO_09152020EX.docdoc 84a3218db211f14f6afaf90ced3a518193158b80bbbf43bbf82a955d6064fa2dVirustotal results 28.33%Heodo
2020-09-15DOC_H7NFCSKEJQ6.docdoc 0ec418e8980ab3a6855c2e01e16335d606b8f8b54a4eb3dd9e3ac41201668ffcVirustotal results 28.81%Heodo
2020-09-15KXKP_AS93JL9QNR0C4M.docdoc 2698ac28bda60d163fc89497784b84864b53eb25784b30f6ca3fe03ff137b8can/aHeodo
2020-09-1538610343012521127089.docdoc 9aa6d84f75ffca251bb16890d6587306d655a61bc218cf7459688ba4526090b8n/aHeodo
2020-09-15PO_09152020EX.docdoc e13fe582fb3f540b7bae68b1aab1cdc1f9e872dffc0f73bc14f04287c66cc813n/aHeodo
2020-09-15REP_124012436663278.docdoc 5d4bee6f5bb0d02b980f21c2ae731bd12d5de2e2810058e6098fc888a7cc6f7bVirustotal results 29.31%Heodo
2020-09-15PO_09152020EX.docdoc 4b8d943fe81e879719ab1718262d43f8621b5994175b1668d85913aec3f5332fn/aHeodo
2020-09-15IS0810687392AK.docdoc ac25deaff3c5f73148b9ab0a424b5f1c7200c74671d6d101da13ce64ef248510Virustotal results 38.98%Heodo
2020-09-15INV_PO_09152020EX.docdoc 00584fe3831e669f912c1b7d648d5d3e1346e6051f4f0ddd1f1c3187c9f30ecdVirustotal results 31.03%Heodo
2020-09-15FILE_PO_09152020EX.docdoc 4e80a09ed0a4a98e6f2891d07eb2f4f8de63314c22c8d00cf0ed87c5d55a1e7dVirustotal results 37.29%Heodo
2020-09-15XQM_090120_OLU_091520.docdoc 356d47d62853cdffcc77d94782e286aea2cb43b33cfc90bd957d65bf9edf8c05Virustotal results 27.59%Heodo
2020-09-15GMM_090120_QEZ_091520.docdoc 5f5e03528d71d6b4ca5fcac04fadc482d9f2d6640c96ebbb54b05e9030f179e9Virustotal results 27.12%Heodo
2020-09-15FILE_PO_09152020EX.docdoc 2cde4939f797633de929427a46005c56edcb0480a7a87e6194df70cbe707bc7eVirustotal results 27.12%Heodo
2020-09-15BAL_YB4152911080ES.docdoc a27e34af3dd6de2bd605581cce065e11a651c8ee0544d3ea0d7419a9a3daa3feVirustotal results 27.59%Heodo
2020-09-15REP_PO_09152020EX.docdoc 0a027ac005f0ab69b76b7587c1f5ac68377f933bb7d7aed7741899867ccd0032Virustotal results 24.14%Heodo
2020-09-15DGL_ZKZ_090120_KRZ_091520.docdoc b701933f7ffd80577c3d8ea10ff3e373b79a72366c0ab41e91d424cd237a77d4Virustotal results 27.59%Heodo
2020-09-15TMG_43719639.docdoc d4c5ec6cd0dc168df94c8bde06feae22392a77c269bee92608393095a4e8f99aVirustotal results 27.59%Heodo
2020-09-15YQ7760773767CJ.docdoc 682fc9f26b04065498d3f9b006ad5171f933c8af4ccf0193d72531747e7fcebdVirustotal results 27.12%Heodo
2020-09-15BAL_PO_09152020EX.docdoc 0d03a769eb60d885882b834ddd84cc95d6194f91253998018f25169605161758Virustotal results 27.59%Heodo
2020-09-15MJ_FS7674190039FA.docdoc a8fd2808ccfd8453ff229d0c6c0c874b154d9031fe33e519eba2be356d9790a6Virustotal results 24.14%Heodo
2020-09-15INV_CZ2304188891PA.docdoc 4668679a52a06dbdb2eb65be12e6175011a6c99e90adf7c71fb2eff66fb66d5eVirustotal results 24.14%Heodo
2020-09-15JL_22EQGLUZ9DF1Q.docdoc 9d78d1a07b45a1857b883af34f65f5b126d198a6fbe0d0983c41295d5981c1f1Virustotal results 25.42%Heodo
2020-09-15BAL_AVWBVW1.docdoc 6e355397335b8c26c9a258ecf85a47174ee5f0d4f331e5207a008393f7386b04Virustotal results 25.86%Heodo