URLhaus Database

You are currently viewing the URLhaus database entry for https://sanambakshi.com/wp-admin/sites/ZZvsxQfVGBPGzJf/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:594093
URL: https://sanambakshi.com/wp-admin/sites/ZZvsxQfVGBPGzJf/
URL Status:Offline
Host: sanambakshi.com
Date added:2020-09-22 07:40:07 UTC
Last online:2020-09-24 08:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-09-22 07:42:11 UTC to abuse{at}servers[dot]com)
Takedown time:2 days, 1 hours, 5 minutes Poor (down since 2020-09-24 08:47:30 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-09-23FILE 20200923 896995.docdoc dfa8f288cec02386061e3fa153580ff5a6eacd75a41cb2d27f3a3fb4c731f737Virustotal results 25.81%Heodo
2020-09-23UN736.docdoc a9e3aa8b651a4a6fe8a2864adc4a217e7c3da1576987ce86f591761c333c7f37Virustotal results 25.81%Heodo
2020-09-23928 KO59076.docdoc c19c194be66f1e409fdeb6e093c5a35be5a0052a6880adf02a4ea800bfaf1277Virustotal results 25.81%Heodo
2020-09-23ARC-LL15031.docdoc 895fd53e9a64e8dd91b3a91c139ab4610aabb5787caf022fc1f11153b1d05cb0Virustotal results 25.81%Heodo
2020-09-23Arc_20200923.docdoc 0bc362dcfac5c9f3f2dc2ac10b1a40703d5ed6dcab12eacaa2712fb3bf13b16bVirustotal results 26.23%Heodo
2020-09-23rep-2020_09_23-39398.docdoc 1d3adecd8c9d3ee948f5dbc98ed8c01724e3a37072b14344daadb80ac15f84f4n/aHeodo
2020-09-23BM00783-20200923-Z447147.docdoc a479d904e47ac4318ff5f4b0b9e46eabd12fed4df701fb91829a08684ab7bdc4Virustotal results 24.19%Heodo
2020-09-23ARC-20200923-KVK36597.docdoc 7f77f39de41d13df9f39ea0dbd21add279373a424ba8c0c582d738500eb0d1a1Virustotal results 29.03%Heodo
2020-09-23inf NN74820.docdoc 48860f05fa54eb5e2a2d97f62a59f8bbc2f3df78ea0a6093fd26420a7c7c860eVirustotal results 29.03%Heodo
2020-09-23ARC-2020_09_23-889660.docdoc bf62cdbe7b5e4207ff3acb0aba88b0180f584c4a1a7d3eb14dc3d66c27fdbe21Virustotal results 29.03%Heodo
2020-09-23DEF35388_2020_09_23_0628795.docdoc 1efc790008eb7e0bfb5daa775aaeb4e590d6ebd45f815e33bf8370be89818d02Virustotal results 29.31%Heodo
2020-09-23UNTITLED_2020_09_23_889029.docdoc d077391f811e9aa25621f5140c96860cdda3b56bceaf5245e4d4cbc6a961e6efVirustotal results 30.00%Heodo
2020-09-23Mes_2020_09_23_2557121.docdoc 25a6879db668a83d39e1a4696472ac50058cbca71afbe055fe38e6d7c4b8c8ebVirustotal results 29.03%Heodo
2020-09-23INF BO1467.docdoc ead5e12d378c9099bd007886c313ffb492b6d6579557cc4cc9288566b7739663n/aHeodo
2020-09-23doc_I5718.docdoc f3e2c199feb4b5a8466a05e886c81f1e54a3700521769d35e39aae751770d9den/aHeodo
2020-09-23Untitled_2020_09_23_4129.docdoc f45a45fe0b9b279c6941ec5956a271d1e7bf706c54b2a744f1606237721ccbc8Virustotal results 30.00%Heodo
2020-09-23DAT_5370922.docdoc 013135853714b2a8873f816a10d899512ba749d4ff178cb5322c96677399ba71Virustotal results 29.03%Heodo
2020-09-23mes 2020_09_23 DD2708.docdoc 98c795928098a062d1d20e701e289fad2b5c3e3824cca0715df4bc23d5e3c52dVirustotal results 30.00%Heodo
2020-09-23Arc 20200923 257600.docdoc 4eea20ea1f7e4eb2be858aa3760fb9de41ca1e865fe12e6d3dd2ce43ed84845bVirustotal results 28.33%Heodo
2020-09-23file-2020_09_23.docdoc 8d9264f42739eb272f340990d05b2688263682781551a47e197cf7fd15f54695n/aHeodo
2020-09-23List FQ8558.docdoc 64c7907e94da2ce9a18f7ad3c62a54d7e9afb9b0be47c3bf44d9e94298fa4e8bn/aHeodo
2020-09-23Arc_2020_09_23_07262.docdoc e19129943efa60ddb3f0aa12601072b70ef28b8fdf1bc1b8f76fcf5f595070acVirustotal results 29.03%Heodo
2020-09-23REP_20200923.docdoc 23aff50ac3389334abb3560b23550c5849e7d2837d24dab1b1874048977ff19fVirustotal results 30.00%Heodo
2020-09-23Doc-20200923-Y13460.docdoc 2848cdf9e7ce3d808191531f2a46ab11df4f948725e708cd401944cbf333f7bdVirustotal results 24.14%Heodo
2020-09-23file_20200923_TPA93097.docdoc 835f71195c622e6d5dee5f8d307078c0efd97045a75c08947600350fb2da5a5aVirustotal results 27.42%Heodo
2020-09-23Untitled-20200923-536.docdoc 10d3e60a51916bad4c37aa815179934f7d5ea093ec50eeb9c58b6f53fdf6f955Virustotal results 27.42%Heodo
2020-09-23Rep_2020_09_23_TWZ92258.docdoc 97d2b08197301a0059c2de0cbd059211231382fd31f2435fb72eea7eed55031bVirustotal results 27.42%Heodo
2020-09-23LIST NH87212.docdoc b6f00133a52da6464eed7e2893e970887b80718514a3fadab1f4653ce636aec2n/aHeodo
2020-09-23Untitled-5540653.docdoc fbef2a146f9473c053460e799da175fe08ab1827d046e823a7b4be3cb71e0e94Virustotal results 27.42%Heodo
2020-09-23Arc-2020_09_23-QYJ571180.docdoc e654ead5a64c1a9508e1824c6e391f25e0dedee6db74de85549d1c8527a359f2Virustotal results 27.87%Heodo
2020-09-22DAT_2020_09_23_916695.docdoc 73b2c723dfaf202622c57e8b9bc4504b45f7617e3f644e4097c9489a459ee85cVirustotal results 27.87%Heodo
2020-09-22doc-2020_09_23.docdoc a132f8367518b36376bd03160587713674ff98805021fed3d6e3ff58c045a97dVirustotal results 25.81%Heodo
2020-09-22file-DWV246.docdoc e1333d84250e5cc1b1b827ebe4c1abe42cdeb99f1666419fc356c38c9b498b0en/aHeodo
2020-09-22arc-2020_09_23-M6909.docdoc bededf08f741d3f8545c82c53f67afaf26f70b3c45ebda54ade8f636d0a9ea3fn/aHeodo
2020-09-22163_2020_09_23_VT66498.docdoc 373dc940348a0619b9773b50886a6ae5216fa864f787a8dab3ad546e9cd28e20Virustotal results 32.26%Heodo
2020-09-22rep_2020_09_23_17899.docdoc 95f26a244aca835b474bdf449493ab967a0b39f10683f8df2254f678a595b989Virustotal results 30.00%Heodo
2020-09-22Attachment 20200923 HFH389353.docdoc 8031c668f56e12d2f6e1d54f98aea8eca655f14e6dfa3ca6df9da76aaec004f4Virustotal results 29.51%Heodo
2020-09-22mes_6875.docdoc 6a9f1cb57648fe546a21b732a369353a19405aca026db96bad9dc76a943ff11eVirustotal results 29.51%Heodo
2020-09-22rep 20200922 M4451.docdoc 20a30f50caef39003bf13e5c0a0b70396e3829e08131ef3c9a807b47852625efVirustotal results 29.03%Heodo
2020-09-22Doc-20200922-H0750.docdoc 519ade7779233a4aa1559c30318a4785bb0e2c995a56b01fcf95b4b69e1a3fd0Virustotal results 29.03%Heodo
2020-09-22list WJN046077.docdoc 06adccb0830725b1272de45aa1e389479de4317cc3e401396ee6320e992dc261Virustotal results 29.03%Heodo
2020-09-22REP.docdoc b81572e2a4e03017153d413982112512dbfe50f737b9a8cb5a82a1e5c35ab61eVirustotal results 29.51%Heodo
2020-09-22list-2020_09_22-63573.docdoc 0e33b003b9c1cd0b792da43846113a32d28de0d64477f84d90bbbffa40098016Virustotal results 29.03%Heodo
2020-09-22Dat 72006.docdoc 94e871e16d0a00448fc94b2fc941bf9d22f32b5e6045a4510ea331bf2ea9de3aVirustotal results 28.33%Heodo
2020-09-22Rep-2020_09_22-PGP662791.docdoc 3d3e7a36ee6daa96f0746464ac4059212f6edf7c2d5e73e9b3ad85667293ea4fVirustotal results 46.77%Heodo
2020-09-22INF_20200922.docdoc f9db2998d811b8c5fc0a11e513e628001fc463d8e4c9a44068939c3668f072b6n/aHeodo
2020-09-22dat-2020_09_22-TE170.docdoc 4e0fc19cd148b47ee573dccbb780bc459c45275318871548b3b864d9eb0af8ecVirustotal results 45.90%Heodo
2020-09-22055493_20200922_RM46533.docdoc c4699bc83e2c480aa53af341f4b67b5dfb27cb5d28fb09a7619b55689b686ae3Virustotal results 45.90%Heodo
2020-09-22INF_2020_09_22_TCW68833.docdoc c837bc71c0f1b7a1f098d0716042070f584f8437ee0c76ef49a42b159218b4eeVirustotal results 45.16%Heodo
2020-09-22dat_2020_09_22_6367.docdoc 1fc10492e6d6a535c0af806d123df88468d4afefebfe28547d5c088d2cc744a8Virustotal results 45.16%Heodo
2020-09-22Inf_2020_09_22.docdoc 3d9019e7759741c92d9b6a1af7a158b3e41d589b529a4f285416a7980aaa2735Virustotal results 42.86%Heodo
2020-09-22MES_2020_09_22.docdoc 0e3e2b366fd6d1d8225f1df04d4a0ad7fe396753f20fae73f04b3cd497cd85a4Virustotal results 37.70%Heodo
2020-09-22List 20200922 6088428.docdoc d4ebc64e8b514d0421a035ef5ead0893ee01889332cf393385f2a460b0b6807en/aHeodo
2020-09-22Dat 20200922 91973.docdoc 759e3593b4530fc40a079e4d60469656ccfa5845a8c2fe9b6c7069a77958c6abVirustotal results 33.87%Heodo
2020-09-22REP 231.docdoc ec0011702614cd33aa57769c23abfa9106382cc9b99ec9a1f9bb57204cd157d9Virustotal results 32.20%Heodo
2020-09-22AQ42646 2020_09_22 340423.docdoc 9d69feedac414e2e1554965f077deb501f1f7a47ceb72ab2b68539c8314e602bVirustotal results 32.79%Heodo
2020-09-22Doc 20200922 K876.docdoc b1a87efb52cb8e72a662e48033454ac0de75808fad6e51b8d0892931baa1dc9en/aHeodo
2020-09-22Rep-20200922-B773.docdoc 8392b428becc751330ef038d88f6b92a3b1902a9f23acebd360f8f7cb11ee9f6Virustotal results 29.03%Heodo
2020-09-22FILE-EJY396188.docdoc e9325bf53bdb893300c9633950651c3ccae5cf1c4d9485bd9a51932bf3834eedVirustotal results 24.59%Heodo
2020-09-22rep 2020_09_22 KJD915.docdoc 8d0bfa85c33d7f8725fb13809780b7a2ca9bf9ccdad1780e4e4a55bc670948a7Virustotal results 22.95%Heodo
2020-09-22INF_153.docdoc b218573be430d04bc85df63886bc59d6608ed0e84d058f52456224f9f7f06a8eVirustotal results 24.14%Heodo
2020-09-22175 20200922 CZ720.docdoc a89cbd92f2ce8c4c04c61b52cab418dcd18ce4be25f3a545268d029d91131162Virustotal results 24.59%Heodo
2020-09-22doc 20200922 110956.docdoc 9031b4f3cb08f9c5c30d6213371de41fb67360b5c420cf4c277de80158ab622cVirustotal results 24.59%Heodo
2020-09-22DAT 2020_09_22 67720.docdoc bbcbb69fdee99a6460a7164c67fb3a2a7e9f378dd900e36e87682845d0606e56Virustotal results 23.33%Heodo
2020-09-22list_20200922.docdoc 76c0630543f301f3fe63e8ca4ddef6171019fe2bc21d3c891bceb80774bb4cafVirustotal results 25.42%Heodo
2020-09-22inf-QN68562.docdoc 094e2a3d577107bbcbee3a5a181971bc5aeac18624bfdf436f85d2d47b1ef697Virustotal results 23.73%Heodo
2020-09-22Rep-20200922-I687.docdoc 375c4e3cf766dc198afe53ba37087c8a6a243b2dab3f11e2e41ca319cec937e2Virustotal results 24.59%Heodo
2020-09-22mes_20200922_240.docdoc 9beee1368c809fc1d69ee0973379057573aff27c44352c442d60199cb9659dafn/aHeodo