URLhaus Database

You are currently viewing the URLhaus database entry for http://www.wafeeqa-realestate.com/integrity/lm/N9CE94MD8c5JGV/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:554648
URL: http://www.wafeeqa-realestate.com/integrity/lm/N9CE94MD8c5JGV/
URL Status:Offline
Host: www.wafeeqa-realestate.com
Date added:2020-09-18 12:32:05 UTC
Last online:2020-09-25 04:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-09-18 12:34:36 UTC to abuse{at}hivelocity[dot]net)
Takedown time:6 days, 15 hours, 33 minutes Bad (down since 2020-09-25 04:08:10 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-09-19list_2020_09_19_XU317.docdoc 4c294575dcf08d7b4946e3d8d883d7a62ab36dd5170bf983df08adf59d7414dcn/aHeodo
2020-09-19MES 20200919 JKQ36109.docdoc 0b20a73da9e858ca63b3e038817d2cd82a98535eb4ed6c1dbb214e3e066bede2n/aHeodo
2020-09-19list_20200919_946211.docdoc 34d91dd2c961c7932b2e9f2a6ce803cdd745ef4d3b0fd60d429858237f8e45dan/aHeodo
2020-09-19Doc-QR3293.docdoc 75e37e5c3591743af109482748f2a48e550f1a9d767316a8cece66fb4fe8c222n/aHeodo
2020-09-19doc-20200919-916008.docdoc e0343838dbe81e4a9395924017c0f16a9a100c8f03f14eb75fc8be10c72edd60Virustotal results 22.03%Heodo
2020-09-19TU1998_20200919_EJN8892.docdoc f5ca634bdeacd64ccc52ea932bd221762cc68524fcef2df96c77ecd777d16670Virustotal results 22.03%Heodo
2020-09-19REP WSV926985.docdoc 59ee3757e66be242efc0972dd6c65966fd25efedac6d7183bf2ebb22f73ed835Virustotal results 22.03%Heodo
2020-09-19inf-2020_09_19-94883.docdoc 0d6380a49e7088513773efca368acb3a783954a2d4df49ea9b730c9e49969458Virustotal results 22.41%Heodo
2020-09-18UNTITLED_2020_09_19.docdoc 000dd08101567f408a0ee2b7d095d3baa02f532ed3839f66b60b9d64ce065d17Virustotal results 22.41%Heodo
2020-09-18list-859.docdoc 2a3e7c662c026f10d65fedffc2f513a8683860a3448c822016d34579120dfb36n/aHeodo
2020-09-18LIST-2020_09_19-NN875.docdoc c23cc89488404b578a22052d1d946ea0e421961bb77a5c4b002d890506c2aba6Virustotal results 22.41%Heodo
2020-09-18Rep_20200919_98446.docdoc df50fc4b87844f590011e4655d981e4aa7d498dec2d0940b554aea8538567352Virustotal results 22.81%Heodo
2020-09-18DAT_X342455.docdoc 0e31dc003b5fa4ef58751e94f3718852fdf5c75f438a8a587eac213cc8786c23n/aHeodo
2020-09-18UNTITLED_20200919_UAQ624309.docdoc b7b9257d8c50f28e5aa87090083acecd0359655c255d52dd1030c0375097e0e6Virustotal results 22.03%Heodo
2020-09-18UNTITLED_0785315.docdoc 2cbeb14e3ad7c8a795f7454334ae6793f020780e53173535e65ddee8c2a717afVirustotal results 22.03%Heodo
2020-09-180139U 74818.docdoc 94d5445a36c1741b9e7cf1a4a3d93f84511094b007a15afa0da3f586cf405132Virustotal results 27.12%Heodo
2020-09-18mes-20200919-4914068.docdoc 94035005c1b01a7ee5cdc000f6cc2128dd739606543d29bf12949670c34ad78cVirustotal results 26.67%Heodo
2020-09-18Untitled_BH6763.docdoc ca8696eb2a7a3679a7ae16ce3c6032ee9f69cba3cfa7aa47d9dabeaaccdb137dVirustotal results 28.07%Heodo
2020-09-18539DS_20200918_2333264.docdoc b383145d8c718c1b7bb2243402c5daf77851d341963a0687893930ea0d53b6adVirustotal results 31.03%Heodo
2020-09-18Dat_20200918_687.docdoc 0993a8e2a1ede660ab29dac20d8b95443ba1577a1247c423d7c7fce39820fb51Virustotal results 31.03%Heodo
2020-09-18824_2020_09_18_275.docdoc 0a18fed225d22e39aff79199651d91a2206b781439ad8017da76ce668ec88095n/aHeodo
2020-09-18LIST-20200918-V4937.docdoc 25c51061c2d3618e6fe43b51487ff7abad46d648b8d3b9661d757ab481a3a4f4Virustotal results 25.86%Heodo
2020-09-18dat_20200918_3256200.docdoc 54ac560845b09ce00a48b604ac7c440331cbde4362839a3dbf14c378230bee21Virustotal results 27.12%Heodo
2020-09-18ARC_20200918_M42976.docdoc efba8744ad89a86914048a39cac24850ca58da6e175c75cf144b4d5499aa29f0n/aHeodo
2020-09-18dat N61245.docdoc 59be634c99d32cc1d2bdfc3663c81ef4a20e38bfb841fb02cf3152233aa9f7b2Virustotal results 25.86%Heodo
2020-09-18DAT_2020_09_18_59002.docdoc 965d36b92a4dd5e5a95f80b3dafb1a46b066473ede1402accd12971705067fc1Virustotal results 25.42%Heodo
2020-09-18Untitled-Q6552.docdoc b1ea1b35bd161e9d432523b6f7cc6c4868c5ecf8065f64d0030fff59e0aa99f2n/aHeodo
2020-09-18List_RA945.docdoc 2e08d4af746ba90b49a8af24bca94ae3e15bbbe98b5550b32046ef49208ba1bbVirustotal results 25.86%Heodo
2020-09-18doc_20200918_S4641.docdoc f4b123ba1c7abff7c01bd29835e99ac55dd614dd50d57c2a0adcacd7b8fc44ddn/aHeodo
2020-09-18LIST 20200918 680288.docdoc c1c7c1c836f1ba36f773936527d4d7afc53a36b7d4f5c191a08fa9b84c2af7c6Virustotal results 25.42%Heodo
2020-09-1899069-107948.docdoc a3243652b05c45b85ffbebf961ed8563c4fc164a71e7abf56feb805974745343n/aHeodo
2020-09-18File-8324327.docdoc 5ccd67236c37294b1d0433a19bf424554de4595df95a856a15610b947ecf2232n/aHeodo
2020-09-18DAT_RON860659.docdoc aacc5c8bd9de7daa3bfb0a533fd26684d6958f57a94d96375aaba9f758353053Virustotal results 23.73%Heodo
2020-09-18rep-2020_09_18-B521.docdoc 7ebcccd1037e7a7136a5143a2ca3f48ff36734b320dc977e612775c2336812b9n/aHeodo
2020-09-18204ZWM_867.docdoc 2ffe410c23611da6f521bf9ea1c738509e7d399ef3fd0b539a2ac9469a132479n/aHeodo
2020-09-18C02514 BB466.docdoc fe1f169897a95c7456e56473515e11fb1f0ae806d23e263f96bd152a4a3ec6b4Virustotal results 22.03%Heodo
2020-09-18REP 2020_09_18 3097687.docdoc 329518d24afcd99e1be7e1477959386d2d882707c5056693cb7b7aaae8b3d75an/aHeodo
2020-09-18dat-20200918-321796.docdoc a4e9fa7e865e2c2bae3abbd6d249ecc57198eb070b868ff767ac9220fd806efdVirustotal results 20.34%Heodo
2020-09-18Inf 20200918 412321.docdoc ca63d9c9e846ae66ae0030d7a8ec4041674dc2b6189b86eefad806122c65a092Virustotal results 20.34%Heodo
2020-09-18REP-20200918-KL72589.docdoc a980ad21eced39ab6179666648e571be61547ca21fc8dfca1d016158af5036c8n/aHeodo
2020-09-18REP 2020_09_18 345.docdoc 8e4b5c75dfd8ad1acefed08603f4a69c435e29f076db8183c17703d238ea71e1Virustotal results 20.69%Heodo