URLhaus Database

You are currently viewing the URLhaus database entry for https://memorie.live/wp-admin/DOC/UUZA6GZ7zkj/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:545569
URL: https://memorie.live/wp-admin/DOC/UUZA6GZ7zkj/
URL Status:Offline
Host: memorie.live
Date added:2020-09-17 13:47:06 UTC
Last online:2020-09-17 18:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-09-17 13:48:03 UTC to abuse{at}digitalocean[dot]com)
Takedown time:5 hours, 4 minutes Good (down since 2020-09-17 18:52:19 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-09-17REP ES063741.docdoc 1d73c9029ef0fa7df4ae3ee9f8afb936c6528ffb9333bfa052652b58b5d13886Virustotal results 36.21%Heodo
2020-09-17arc_20200917.docdoc 4f623e4423ce4204a70d67ba54ed3d68b8dc279e8bb84f41e463b4bcf4f949acVirustotal results 36.21%Heodo
2020-09-17ARC 4410242.docdoc fe7428f64f7c7989b677eec330df49a2238fd6fe56be8576eca26936d7efab1bVirustotal results 36.21%Heodo
2020-09-17UNTITLED_DM8542.docdoc 2c5f61a9c5804f5a6afb49d1ef674687f18d7d4cb2c32c8bd02bd33990d2fa5fVirustotal results 35.59%Heodo
2020-09-1757383188 2020_09_17.docdoc 77b35ef953d16224dfb90e0c534ce30f48b16723738498a0cc61dcf274f4bcc9n/aHeodo
2020-09-17dat-247.docdoc 754c1c6182cf24004ca005e843e007cff4a65d1a82f13da77528c05c8512c458Virustotal results 32.20%Heodo
2020-09-17ARC_2020_09_17_D506.docdoc cbaf0612c3619a42ec68fd728b67ec33649c56949b6bf415d189d28a5791fa6en/aHeodo
2020-09-17REP_3895519.docdoc 6b876e7e2ab51b43855fc6f61be843893b4f75176e3ba28160330afeb9eb51e0Virustotal results 30.51%Heodo
2020-09-17Mes PL6116.docdoc 1251b9682c8a51c32331a111149e2a428045ef814cca215e4b45379863efaa60n/aHeodo
2020-09-1780161 ARW963.docdoc b271099532941d145ac4278751e47fcb2235760a28b145a26b0bca5f06827e46Virustotal results 31.67%Heodo
2020-09-17ABH9970_2020_09_17.docdoc c0b0190e9c0f54631ef80450c23e834d03dc3c1a7f09b6628a90cfd23863d7a1Virustotal results 29.82%Heodo