URLhaus Database

You are currently viewing the URLhaus database entry for https://dagranitegiare.com/wp-admin/643641261253789/A9hv900C2Nryl/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:540411
URL: https://dagranitegiare.com/wp-admin/643641261253789/A9hv900C2Nryl/
URL Status:Offline
Host: dagranitegiare.com
Date added:2020-09-17 02:41:36 UTC
Last online:2020-09-18 05:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-09-17 02:42:34 UTC to hm-changed{at}vnnic[dot]vn)
Takedown time:1 day, 2 hours, 21 minutes Poor (down since 2020-09-18 05:04:27 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-09-18UNTITLED X3239.docdoc 6ea3f35c72f4386c51886db2f95d4c8158c9cc46d4852b02d4d12301c9ee6a8cn/aHeodo
2020-09-18doc 20200918 XG54184.docdoc 186ef4aa313417e178a272142392d6f289c1b9e3c9bc3818b3c04a399670b2e6n/aHeodo
2020-09-18arc.docdoc 2803a90ae1d2443a47eb09c48dc3b21cafff5fc1e70c87222b14a3379a757236n/aHeodo
2020-09-18doc 20200918 RF4809.docdoc 96d436517f2e35248a049283382d963b8924ec0a569f93a093838f1cce8e3708Virustotal results 40.68%Heodo
2020-09-18doc-20200918.docdoc 1cba542ea755572052ee0ee05629e5f1a0b3161fc11106ad6e2679fc5ee2a6f4n/aHeodo
2020-09-18Attachment_2020_09_18_LXV24856.docdoc f6255c1d9d5c191c0265b5b1fbca564c2a9f38fd1e93cb25ebf3073f0e560e29n/aHeodo
2020-09-184711F 2020_09_18 7241.docdoc ba2672913493f1b112bd60bf5b2a277361c1ae2122c208c3ce55e55f14da909bn/aHeodo
2020-09-185218LU.docdoc afec45f4897df0117cbcbec6972de56bd81af8ee3e6b1cf88507764596a9f927Virustotal results 39.66%Heodo
2020-09-18rep-20200918-B743097.docdoc 1aa763675bb57de2419ff0c6db6954df9d9b83b1d05a49fbc33d8db379753db2n/aHeodo
2020-09-18dat 2020_09_18 MD702317.docdoc ae2debd077e0cc2e764ce16c176c7d08129ef095bfae6c5196dc3789f6ea0612n/aHeodo
2020-09-18File_2020_09_18_KTQ56591.docdoc 0fa784f6a6eaad808c6f9037d5515f435da8c204edba06b50d4839499bccd481Virustotal results 37.70%Heodo
2020-09-18file-2020_09_18-OX664.docdoc a5dcf96a690cc7c036613316d9003c9f6ee74e66dc2a8ac00502e63f8dfae85fVirustotal results 35.59%Heodo
2020-09-18dat 20200918 9077952.docdoc c386868e3f526e0cd5d9093ae760761ebadb17cf74591886e56d8de0d3097f1cVirustotal results 37.50%Heodo
2020-09-18doc-BYU365.docdoc d43356345eda22fd3100b860df7cd151651be7931f0b01eeedf055aad895cbe6Virustotal results 35.59%Heodo
2020-09-18REP_2020_09_18_OAF981.docdoc a8fbe20181a901e4ee77e91e558cb97c24abdf0654a81d254124fc9dbcfce07aVirustotal results 35.59%Heodo
2020-09-18mes-RTF65828.docdoc 694a675405bba3ed747dd1bb25ef59a25081523c6ded90281559d95d2f262737Virustotal results 33.90%Heodo
2020-09-18Inf.docdoc f9a9596b06fd6053fd9fe2f73a3cc010078c12423f3e963d553675df3a02b77bVirustotal results 34.48%Heodo
2020-09-17List-20200918-NE92832.docdoc fac05b7ef1455e22097b936c48496ba95620364be0aea7125fce483d1bcd7849n/aHeodo
2020-09-17dat-20200918-58821.docdoc 530858eeda54ff1d99b828eb623af11974e63f04d327b8fcf5457694db74a35fVirustotal results 33.90%Heodo
2020-09-17LIST_20200918_Q73272.docdoc a799324029ea75b6b4a71f02bce59d976fd0926ce98d134c071d39e892f1da2fn/aHeodo
2020-09-17FILE.docdoc 578663ca789cbb8f68ad4c1a55a609f0cfe21226ef04719d8fe894db5932f181Virustotal results 34.48%Heodo
2020-09-17FILE-2020_09_18-204736.docdoc 03d25f99b30809ea158b778215811e2b6f77ce324adbf5ee133e0bddc5a5089aVirustotal results 34.43%Heodo
2020-09-17File_139.docdoc 4d24738568acaa4cb1874eb562dc8868c8097922ed0cedbb56f60f21135f5b93Virustotal results 33.90%Heodo
2020-09-17arc 2020_09_18.docdoc 5cf1c435df44614218257702eaf9e9efd98f63cba2d6306e704ea49a0799fc39n/aHeodo
2020-09-176754293 20200918.docdoc d80641aed13ba5e1b8d4dfc10810d0a6533a51231342b46851f4357025945129Virustotal results 32.76%Heodo
2020-09-17LIST_2020_09_18_VK5346.docdoc 330ee4f0efd63dbf210487a2063245aaadee2a0e9914d2defea50dc68abc3426n/aHeodo
2020-09-17361879-20200918-2700.docdoc 1bc4a47d0fe2369993ff6f11e93075f7e441de5d443e88719a9787c43f6a277aVirustotal results 31.67%Heodo
2020-09-17File-2020_09_17-741.docdoc 7a7facaf5ee1b9709ccc3bb2b8188ee0307b2a7be7e97cead7fdb9c02d232752Virustotal results 32.20%Heodo
2020-09-17727GJY-O40887.docdoc c17a1457a32fa56ac31ad5c80d2b6fccbc071a5cd3705a68603ee176f93de1b4n/aHeodo
2020-09-17Mes_20200917_22567.docdoc acb7d51a659d51400a7114dffed21ad9d0dbdf6ffaeb3ea865ca56eab2781e90Virustotal results 31.67%Heodo
2020-09-17DAT-20200917-206.docdoc 89581e3b0f0418b128d76769f816538ee7bc8aeae7a499ce355041e987092d16Virustotal results 31.67%Heodo
2020-09-17list_20200917.docdoc e5c379900d7e18c7eee5477d6e7172e592542bc6f638b4ec96dc09e0b3ed1110Virustotal results 32.79%Heodo
2020-09-17inf-20200917-SG0516.docdoc 45bb15541bf4fa50e30998433c6dd5e214bc778d31cad277d3078cf443fafc59Virustotal results 35.59%Heodo
2020-09-17List 20200917 PM301.docdoc 3aa4f27101991883f1d5ff18ca7f7188bb0f473eaf17b1525c590b5c0296a2b7Virustotal results 36.21%Heodo
2020-09-17Rep_20200917_J60248.docdoc 7490d5daf3c56c388a7b35e4e502e9d4be4f6b6c286666a73219664d3db95449Virustotal results 35.00%Heodo
2020-09-170767208_20200917_714.docdoc e5c7cf685fc8a492d002057fa7a17c4bf0931ec66ab71cfe60631b0c5b80ae7bn/aHeodo
2020-09-17list_QIW0177.docdoc 2490b8c9dacc66d7513a5439fc5f4665604d784b9840f8236119c5cac1b19bdeVirustotal results 36.84%Heodo
2020-09-17List 20200917 24072.docdoc 2c5f61a9c5804f5a6afb49d1ef674687f18d7d4cb2c32c8bd02bd33990d2fa5fn/aHeodo
2020-09-17REP-2020_09_17-DKV307508.docdoc e21c80ec1ffdc0b879d4bce74eaccb6a391d1292fee653b7439c4bdca302592bVirustotal results 33.90%Heodo
2020-09-17LIST 20200917 393.docdoc 7116b8982d2e5c63be2e3edf350d562b991314205feda61eb9c8d33cfd8ce0e4Virustotal results 33.90%Heodo
2020-09-17arc_2020_09_17_86088.docdoc b0a9ce0b9fd719fe2a359bd524f9555231f7e32201f9e49e0a681661b3792ee0Virustotal results 30.51%Heodo
2020-09-17Attachment 20200917 4040.docdoc 4da03f3dd9a88222f881491f8588fe3ffceac4027fd65dab832a3c1e0edcd512n/aHeodo
2020-09-17File_SY4757.docdoc 680c553827c6408a1ed529ec9c4e492f757deb6f7c798627a6119998c81e0f89Virustotal results 30.51%Heodo
2020-09-17file_PU693.docdoc f3b8ff61ea17946cef98f45d9cc0d8a2040fd8786b423f4263667aa81730e644Virustotal results 31.67%Heodo
2020-09-17INF_20200917_4798512.docdoc 1d0a0fe2eb5812a4b5c73283e39d16005b4d8f154905b8554c3c138e8c848cd4n/aHeodo
2020-09-17Attachment_20200917_5734476.docdoc 498204b7179b4e744a2c48a9c98bf0db418964e72d579a677e818ce06a7410cfVirustotal results 30.51%Heodo
2020-09-17Doc-2020_09_17-9280486.docdoc 6b876e7e2ab51b43855fc6f61be843893b4f75176e3ba28160330afeb9eb51e0Virustotal results 30.51%Heodo
2020-09-17File-V78681.docdoc 9d9354908b81a04ab0bf987a38568afc5ca83ef04d8c9436fdac228b6167947fVirustotal results 31.03%Heodo
2020-09-17mes-L794870.docdoc 260b0bb5de1e2ca1065a5cee4ae2bb461341f3c6c056a494860c222a1b180c7dVirustotal results 30.51%Heodo
2020-09-17Doc_119.docdoc 3335005b1d10b660afc3bdf17651f15d892145971773989d9638aec5b012a015n/aHeodo
2020-09-17ARC 58367.docdoc 8f91dde780ab0a7bcf8fcf57511eff5c919226d21b835ae1754b7c72bc8d391an/aHeodo
2020-09-17Mes_20200917.docdoc 42f8349a51f2a89dc0e94db8a5437d9a51a817b6a12f77178b9beed274730b5dn/aHeodo
2020-09-17List 2020_09_17.docdoc a6284c036a3af1f33d92b1448f0b013044dd98793337296c69a4fdc7af39ae29n/aHeodo
2020-09-17Attachment JJA94893.docdoc c5cc3998a2cc30509d574726144681cf4c764697705c65822515a5f89bb47f07n/aHeodo
2020-09-17MES-2020_09_17-567.docdoc cb8c0029dd5b12ee1b661e2fd49262dfb5235a9ea75801a2d8c96fff7c12a19fVirustotal results 32.20%Heodo
2020-09-17Mes 20200917.docdoc 72aaee51f51ef608a2562da64c484f0cc8b721fa2bf7f28275e434f1f58e6c30Virustotal results 32.20%Heodo
2020-09-1746186NKW_20200917_13672.docdoc 854bcd59fa6d9dedc3e6021ad7793bc443b022868cbc0ab394c72373e237d3bfVirustotal results 33.90%Heodo
2020-09-17mes_20200917_V6768.docdoc f61d46dd57c4f0fab9586e96ed2990da9e5c71b02a46561cb6ef0ba0c222e62an/aHeodo
2020-09-17DAT-2020_09_17-M12497.docdoc 577145a90888049667fe0faefce1bab143ec16a84550461a596ebc4cc7d30c5dn/aHeodo
2020-09-17mes 2020_09_17.docdoc 6d09eea8dd02d943fe8fc9d1255f296da69f9acf33336e42418cc0aefdc6add9n/aHeodo
2020-09-17list-773.docdoc 90977cee153334af0c84b8bfa29245fcc56734d5c0d84a6db5f3c51173e935c8Virustotal results 33.90%Heodo
2020-09-17259QCJ_20200917_LL4721.docdoc c9a28702a0b6cd04188d85b172c22a48e21897d7386fc452fbb9731b937155c4Virustotal results 34.48%Heodo
2020-09-17Untitled-BN929987.docdoc 87ded30e3ef6563b9027510c19fcb3b8893f48503ff9fc715d14c1fc049c0b14n/aHeodo
2020-09-17File_40126.docdoc 75405bf807404078fd4d99e9804c1cda3ada4ebdbb98b343e557c91e784ff121Virustotal results 33.90%Heodo
2020-09-17doc 4403.docdoc e28b9264ec1942c7107b3ccf9259d754b9892e28eb458349bcabc8946b0c15e1n/aHeodo
2020-09-17Dat_MBO669824.docdoc e1aea669bdbce9e8415d426e700f5f6fa548b3892a6cd0804e64cf0ed8a5892dVirustotal results 30.51%Heodo
2020-09-17REP-7358.docdoc 9161c882ef9eef91f92211138e668bc58a1ebd3e65cf75cd34076e0eb64bb892Virustotal results 30.00%Heodo
2020-09-17list 515.docdoc c92c63a311dbbdd4c29e14f7aa265ed660b549cf2753dc393b840156674d513dVirustotal results 30.51%Heodo
2020-09-17Dat 572.docdoc 9c98e089c945cefbc8299157f8e0c77b285309ca93d5b1fa28a08ec168b3d823Virustotal results 30.51%Heodo
2020-09-17Arc 2020_09_17 91873.docdoc 115a640bbaeb2f1e723b968b7183fbf51a129d98e03399f3321547fc16e766aeVirustotal results 30.51%Heodo
2020-09-17ARC_2020_09_17_HT177529.docdoc 61c7bfd6829234b2cd6a84c38048192f52fb8440a624df29ead0fbc8a1bee8c1n/aHeodo
2020-09-17arc_20200917.docdoc 6ad7d6517b01019c7b440ffae67f0cb3a1234ad5ef679615f69741aac503b38aVirustotal results 37.29%Heodo
2020-09-177291WS_20200917_JJ49417.docdoc dad3849c48e7bcab3910f21714cf78be123d625e4198309441654f24ec7b2b9eVirustotal results 36.67%Heodo
2020-09-17mes 2020_09_17 AP4231.docdoc 6561e4cdc80f2632773be1e12fbeb24ce835bbfc7510f526de3baeeccebcd452Virustotal results 37.29%Heodo
2020-09-17Arc_0044119.docdoc cc91b3ba3b838911e1fab454a436dc5cd64906c0546c9555d84698ed04462c35Virustotal results 37.93%Heodo
2020-09-17UNTITLED 2020_09_17 7350180.docdoc bc3727251a38cfc083089eebaa80d9f03b1143064cf2ce8e18e245b6b72dd223Virustotal results 37.29%Heodo
2020-09-17FILE-208.docdoc 35088b84f2026bcbde876c9c9188d18287ccaf07b304b1fa9910f476c7aa36a7Virustotal results 37.29%Heodo
2020-09-17INF_20200917.docdoc a5da9c7c791c0c911dbef2332dc03be1f01cb406f25c6aa8b313bbdf9b6ea68dn/aHeodo
2020-09-17LIST-20200917-G4726.docdoc b65fc0d82786a15ce9e6a028e521d79621c24ceae0da0ec61aeb703ed6921e94Virustotal results 33.90%Heodo
2020-09-17MES-2020_09_17-155283.docdoc 8c6e1f00958d647954074b2d7421fc87c704afab5e244d5d392fb68c2b779ca0Virustotal results 33.90%Heodo
2020-09-17Attachments-5741.docdoc d1202687107a7741189869aaf59e41c0204405239ccabc3d9dec7e770943cfefVirustotal results 33.33%Heodo
2020-09-17UNTITLED-2020_09_17-J898.docdoc cb0e277830f887c3f59725a4c7388bb0a8053518414d95f6831f1e8f4672865dVirustotal results 32.20%Heodo