URLhaus Database

You are currently viewing the URLhaus database entry for http://wee-s.co.jp/wp-content/lm/rgEqa5sl3Z/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:595624
URL: http://wee-s.co.jp/wp-content/lm/rgEqa5sl3Z/
URL Status:Offline
Host: wee-s.co.jp
Date added:2020-09-22 10:25:39 UTC
Last online:2020-09-24 06:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-09-22 10:26:07 UTC to abuse{at}gmo[dot]jp)
Takedown time:1 day, 20 hours, 21 minutes Poor (down since 2020-09-24 06:47:36 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-09-2438843_2020_09_24_76007.docdoc 23db49d5886e034ad5ab63515e5c5c6b6374d5bad5c9b68cfb3d84f39451a301Virustotal results 41.94%Heodo
2020-09-24Arc_2020_09_24_V5125.docdoc 89a45325b3f1df9afd4f37462ca8202a64c8937098465331f9c8e11a042f9280Virustotal results 33.87%Heodo
2020-09-24File 20200924.docdoc c0e4414d503b796df3ac298ceabf771394e65acce8d3822dffff366964dd8d7dn/aHeodo
2020-09-24DAT 2020_09_24 FU328.docdoc a8c29fd851cb952d316acc958e0666ef6c6d2ce6e1d8404dc1aa1ab06c95b79cVirustotal results 33.87%Heodo
2020-09-24REP_991.docdoc 0d16dbc897960b7bcf3efddbcff01a0178862dc16208725dfba45d5ebaa109c8n/aHeodo
2020-09-24doc-20200924-W3822.docdoc 031a4e9cda99df5d982b2b59480f2354ba7a4f13a3f6d6366feff317bf4820f6Virustotal results 33.93%Heodo
2020-09-24file DY168.docdoc 3d793e08752a6dbef8cb236aacfdc3aad42aed959b5c960acfdc53f79c01eab7Virustotal results 35.59%Heodo
2020-09-24DAT_VJ8619.docdoc cb764536b329d21fa9638d8e1609ad4382e4e4ba44756045a7196c051cd12c78Virustotal results 32.26%Heodo
2020-09-24REP_577.docdoc 6e613f281a3af3a8d773be9013d997281a8af57e592e2f7fbec463c15550304eVirustotal results 32.79%Heodo
2020-09-24Doc DX949296.docdoc 7d47cfd77354eeae25a92db11ba24486d38653c3d2f2750076541f61b5bfb09aVirustotal results 32.26%Heodo
2020-09-24inf-20200924-982.docdoc f6dcaaa7b1e36ac14966538d45c8a37232030e1426436a26542239f6c4b15eaeVirustotal results 30.65%Heodo
2020-09-24List 2020_09_24 LN777395.docdoc 07b0daa0a34769595b6b92ce783ecff28fc3dc65c6db54c34e29ca308fe52991Virustotal results 29.03%Heodo
2020-09-24Mes_20200924_92881.docdoc e70e596d135c977fff3ac2431028c138f7a11cea81bfb9a9ba46ea0e0109a67eVirustotal results 27.87%Heodo
2020-09-24arc 6545.docdoc 1e3c9b0ac0a8b2beeec2dd78f45466125d000b700477b1a4ead019fb8765f252Virustotal results 27.87%Heodo
2020-09-23FILE-VF04363.docdoc a8f0618803466ed187aec2039b42491adb06253fdb89c826203fcd757992967eVirustotal results 27.42%Heodo
2020-09-23LIST 063720.docdoc 5840a444fe973bc3d41c8334eb9da05bef991ee9bb7863e19181c3c11dde0bcbVirustotal results 29.03%Heodo
2020-09-23Z526 2020_09_24.docdoc c934c4297e9c14a09a9aa27d736c11db96cbd3782049de5e8319988206375c92Virustotal results 29.51%Heodo
2020-09-23mes_20200924_WSQ61056.docdoc 3f23e043ec5f9cfff70de63af83eb3341e88053cf11f03781e44e2ea4dde98acVirustotal results 29.03%Heodo
2020-09-23DAT_2020_09_24_448.docdoc 10bf4255bb35705c86bfc4a5baf98ad46011a82c6c1af9285cf8074cafab5ca8Virustotal results 29.03%Heodo
2020-09-23dat-2020_09_24.docdoc 43c5910e32f9ea5cf37dbe248e944aea6eb02afa0fc5f87ef8e90d7a2c84f15fn/aHeodo
2020-09-23doc 20200924.docdoc b68b9c15c5a7acfeb72e071e97f69d69f7b47e89f701d85bbc2778c70ec89994n/aHeodo
2020-09-23Attachments-2020_09_24-ZOA706.docdoc 2f4d462d1ebf2efd17320d7e0a5595ab8b55f8d8fd9e9e94d5e8721cd88c2ef9n/aHeodo
2020-09-2307712_2020_09_24_Z745.docdoc 565684ddbbc44e0cb4cfd978bb95b1c3f425955e0d78b2fb2d112c1405c31934n/aHeodo
2020-09-23428879 20200923 AD49345.docdoc 6b7e79a2b7a0aad75d55233021d8fe91d143c3ad55f60871cbbf0f8be2b3e026Virustotal results 25.81%Heodo
2020-09-23FILE_2020_09_23_22241.docdoc 3d91abcdf5047599dc82e15e44df9bde34a36108f97b00e1e33bd2f22a1c36beVirustotal results 25.81% Heodo
2020-09-23Rep-2020_09_23-VZ049.docdoc ebe592427b278598ceab91d9e83d9e8446ddc92897fb1eeee2c1529d0f603c56Virustotal results 25.81%Heodo
2020-09-23mes 20200923 618.docdoc 0a51c2c5d11117627587041248f035e5a3cd5f3ac0400da32ef3b3e836a4a095Virustotal results 24.59%Heodo
2020-09-23file_U69166.docdoc b18412dda71e0718d7d4611e0d842cf9f069bcf7ac1fcfa1f81c8f2b21b96c6en/aHeodo
2020-09-23UNTITLED_GGE483.docdoc a8af16e435ec85cbc506c12db6e8e3d1645a20c86a7404615ae00c5ea20cc39cn/aHeodo
2020-09-23dat 2020_09_23 0467140.docdoc 3bf9e425582536fe31f762b8180417b05299dc4f1962b459c9e00ca0f7a3350an/aHeodo
2020-09-23mes_2020_09_23_O834855.docdoc a0f3827415da6ca8e40710ef58154c84de9e5648bf462edd651b2031a5bb1bb1n/aHeodo
2020-09-23LIST-G836.docdoc fe1ee74654249e1aa82677b51373ea93fe733aff387bb0c77e0af2fd2a3d230cn/aHeodo
2020-09-23Doc 20200923.docdoc 92f06f070a1b6b7e72a29468c11a23fa02480d076904e64a4a1012f9516f68e3n/aHeodo
2020-09-23Untitled_2020_09_23_X66873.docdoc 092411219381bb8b35bcd7ea775398ec1351f0d52972ca88a8c6bc0c521f0cc9Virustotal results 24.19%Heodo
2020-09-23file DH723.docdoc da3465101436558fc848ee5e045a55ff946b886bd836ae7864dcdc9d84112d51Virustotal results 19.35%Heodo
2020-09-23Doc_NTT759157.docdoc 2de91659abb7c6955acf76c9e6a8697511ce46636dc822bf9c9bcef874b43f51Virustotal results 17.74%Heodo
2020-09-23Dat-Z097.docdoc b88f5ec17ff522e58f63e91908817321eea7d806013d6482423f7f15e0bcc63bn/aHeodo
2020-09-23rep 0064784.docdoc cf38c161e0cff2758dd124885d9f615cbe3144de9bec628de65b4cd5d9fc101en/aHeodo
2020-09-23file 20200923 225.docdoc 1c6f1adf025aa22bfccdd948291b2582cf41b886a4fe6a066ba1329cb1e58d55Virustotal results 17.74%Heodo
2020-09-23arc_2020_09_23_7958957.docdoc 8a59fa8e5010b8d79a844d22993a195a655504c3bf78a27a44c0ee58a4e57710Virustotal results 16.67%Heodo
2020-09-23File L5538.docdoc 3a379a77a348edf4336aa1c1fb80d875fb764e7a787bdba18f911ed8e091c932n/aHeodo
2020-09-23Dat_20200923_O114.docdoc 957944949144aa50332b399c749e9238e7427ba59f416382b329a813ba58317bn/aHeodo
2020-09-23FILE 4796.docdoc db038e21bf63ae34f34ca72fcf79b82c440034cc2b279a1ab25c1a3cf091eb02Virustotal results 31.67%Heodo
2020-09-23N3653-PX731.docdoc 616b28a8c1379e490a31dcfa8e01abb0ead8f3123fefc1216d5d4cc31fcaf7c0n/aHeodo
2020-09-23ARC.docdoc c387fb63a97e74c2e0055b44e6f8ff9c6dec7f0b30ef360ee11d48beb2315482n/aHeodo
2020-09-23doc-DP270884.docdoc 3914db52e0f2cfa1bed3a07be890fa7e9622471366d7e0e681c94c360dab04d0Virustotal results 24.19%Heodo
2020-09-23doc_2020_09_23_93440.docdoc fe8bb4495f54ef2ce0125a13a6b138dccae3cb24b84ca8bc0e4f7d58580b779fVirustotal results 25.81%Heodo
2020-09-23Mes FE535.docdoc dc1c03c473e8b5b235295a3ed3696a077203c121948e44a5ef540301a9786517Virustotal results 25.81%Heodo
2020-09-23REP CQE480.docdoc cb33922225463ca3dfccd9ddf793650e22f5b39f05bc84f51780416892521224Virustotal results 25.81%Heodo
2020-09-23doc_2020_09_23_K77824.docdoc f3bffb8fa85ce3ae02008a4459b12bf8d2d98bf0c3f6f796763122a2189d6b85Virustotal results 26.23%Heodo
2020-09-23FILE.docdoc d4dff148c130a6e3e0d944a665973ccf262c6cbd24a43f586d4e93e05f9900dcVirustotal results 25.81%Heodo
2020-09-23List_C13847.docdoc fffb03e860d2b87b220c261d349801897b4412aeb590c6f6c8655f5d8ade7a42Virustotal results 24.59%Heodo
2020-09-23INF-GAX947.docdoc 75f1ed9dd71a41c4abe792b3059d2795f9f41cecc24a62328bf28df60c0d66caVirustotal results 26.23%Heodo
2020-09-23MES-EZZ939.docdoc 56030b1317e1938948565d60fb5058b0a683637f2dd820947141ccab89998f43n/aHeodo
2020-09-23INF 5595.docdoc 7f77f39de41d13df9f39ea0dbd21add279373a424ba8c0c582d738500eb0d1a1n/aHeodo
2020-09-2364767RG_20200923_598544.docdoc bf62cdbe7b5e4207ff3acb0aba88b0180f584c4a1a7d3eb14dc3d66c27fdbe21n/aHeodo
2020-09-23UNTITLED-2020_09_23-9818.docdoc ed046f3a480159d75e1c6dd59296f3dd9346855902d555f1aaaf9dd5b5b7ef8aVirustotal results 29.03%Heodo
2020-09-23mes UNM348.docdoc 4eea20ea1f7e4eb2be858aa3760fb9de41ca1e865fe12e6d3dd2ce43ed84845bVirustotal results 28.33%Heodo
2020-09-23FILE 20200923.docdoc 64c7907e94da2ce9a18f7ad3c62a54d7e9afb9b0be47c3bf44d9e94298fa4e8bn/aHeodo
2020-09-23185_20200923_WV9966.docdoc 033162fdc60c2d8188ff7d79a8a860e806d15dcef06a00ae9a68ea0cfb1f6916n/aHeodo
2020-09-23382980 20200923 EE05276.docdoc 352b0eaafd07102686fb7e59059288bd6f527e4190c6700cc5dd1e6f267bda16n/aHeodo
2020-09-23rep-B759995.docdoc 9c67d232abc4ea64aac36180f8259c7a5a52ae4ccf35ac7d5b9e6f350f5ee00bn/aHeodo
2020-09-23doc_20200923_483041.docdoc b9acb7d689f3f8a078c45f040c5a975fbdcc8be5eb88ee1ef98579350e3d99fan/aHeodo
2020-09-23List 20200923 8393052.docdoc 10d3e60a51916bad4c37aa815179934f7d5ea093ec50eeb9c58b6f53fdf6f955Virustotal results 27.42%Heodo
2020-09-230668U.docdoc da5ffbd8e3f1e32cde22e5e6d87f62a99816d614a29179e6c393e6ee1d1eec8bVirustotal results 27.42%Heodo
2020-09-23List-20200923.docdoc fbef2a146f9473c053460e799da175fe08ab1827d046e823a7b4be3cb71e0e94n/aHeodo
2020-09-23Dat-2020_09_23-400455.docdoc 3b12b9e3c5bb951db8bd86ba2ed902362a034487b029eb22199b2a7c28264480Virustotal results 27.42%Heodo
2020-09-23MES.docdoc e654ead5a64c1a9508e1824c6e391f25e0dedee6db74de85549d1c8527a359f2Virustotal results 27.87%Heodo
2020-09-22FILE-0153.docdoc 41324ce5731ef12252c333f6b777f49fc8d45e9a7ab785823e48e08c8c6c330cn/aHeodo
2020-09-22DAT-2020_09_23.docdoc ba855ac67ccef2d1b59e693dd98dcf5cdc266adcb47b0f857e22007d1108086an/aHeodo
2020-09-22DAT-2020_09_23-BW433.docdoc e1333d84250e5cc1b1b827ebe4c1abe42cdeb99f1666419fc356c38c9b498b0en/aHeodo
2020-09-22OCK71305 20200923 EFY956340.docdoc e012356e1eab3dfbe537c3011127d4e313ea9515ab04c71150782d4f0f118ba0n/aHeodo
2020-09-22FILE 20200923 3782268.docdoc ace46d2110313599b081c85c401a092182633a33621e529365657305eac4c094Virustotal results 32.26%Heodo
2020-09-22FILE 20200923 623.docdoc 373dc940348a0619b9773b50886a6ae5216fa864f787a8dab3ad546e9cd28e20Virustotal results 31.15%Heodo
2020-09-22Dat_20200923_TX370.docdoc f75097922fc6b528988d0cd8192115dd8ccaf041ef47a0e481e55185fc7dc127Virustotal results 30.00%Heodo
2020-09-22rep_20200923.docdoc 1dbd5e54a80e0d4965039e9d7c9fe2801300da5081b5167c25329d1f039c8509n/aHeodo
2020-09-22REP FR31891.docdoc 8031c668f56e12d2f6e1d54f98aea8eca655f14e6dfa3ca6df9da76aaec004f4Virustotal results 29.51%Heodo
2020-09-223016UD_2020_09_22_O038.docdoc 0e33489760ef3718d82c94dfe4827be3bbe89593da14b7a7912b7345f3e7e56en/aHeodo
2020-09-22Inf_20200922_6710811.docdoc 0c7c1cdece9776edb1cd330e990dcce6733c6d05ed173a4dbb26878c012640b6Virustotal results 29.51%Heodo
2020-09-22Arc_M744.docdoc 20a30f50caef39003bf13e5c0a0b70396e3829e08131ef3c9a807b47852625efVirustotal results 29.03%Heodo
2020-09-22Untitled 20200922 09411.docdoc 519ade7779233a4aa1559c30318a4785bb0e2c995a56b01fcf95b4b69e1a3fd0n/aHeodo
2020-09-22987587-2020_09_22-8574641.docdoc af186c14e8d9749cce94d6ca5d2f4c8d66e9d06962f8ce370b0efcea3b7897f7Virustotal results 29.03%Heodo
2020-09-22arc 2020_09_22 3298080.docdoc 35da0079ad4c7418f72ded6c49a5c942485909472851d3e8d71f289dbead4146Virustotal results 29.03%Heodo
2020-09-22Doc 2020_09_22 277953.docdoc 94e871e16d0a00448fc94b2fc941bf9d22f32b5e6045a4510ea331bf2ea9de3aVirustotal results 28.33%Heodo
2020-09-22Untitled 20200922 VA631662.docdoc 036fc7aec9f1ba2427a7f7afcea4e5189f088cd4aa047635302afb4f9770eccfVirustotal results 46.77%Heodo
2020-09-22List 0817800.docdoc f9db2998d811b8c5fc0a11e513e628001fc463d8e4c9a44068939c3668f072b6n/aHeodo
2020-09-22MES-20200922-V6432.docdoc 8b2ba2462768da834452129f383e54aa0e801d40c1995b6aa00675dc2b59c56bn/aHeodo
2020-09-22LIST_2020_09_22_V814.docdoc c4699bc83e2c480aa53af341f4b67b5dfb27cb5d28fb09a7619b55689b686ae3Virustotal results 45.90%Heodo
2020-09-22inf-20200922-66774.docdoc 049c2f09d4432715871e11695eb82f68cf63a12f8c5dada07ffcb885725279f6Virustotal results 45.16%Heodo
2020-09-22arc-4840.docdoc 20d625ae5179f625d06251b7a7376c0cd854ce2b4baac861b9a49f4f38a60db0Virustotal results 45.16%Heodo
2020-09-22List-2020_09_22-1685.docdoc fec4a3494010371e6a5c7c6422e31e804770c2e9a3980e338181aa32c91f297an/aHeodo
2020-09-22Dat-20200922-QYI80227.docdoc d319ca8bb25ffbd71b92f69f73f46e20618ff475a6e7b60c7413ff6f676ee424n/aHeodo
2020-09-22dat-2020_09_22-SYI407.docdoc 8becb7ca0d2d13bc1e667d22cf222c927c6b952a67daede438a39afcf555629en/aHeodo
2020-09-22List_882.docdoc d1669a159c514a2b9e3bc0952731176423be7db44d8b6be6118fd0100c2d317aVirustotal results 37.10%Heodo
2020-09-22list_20200922_CGQ843081.docdoc d4ebc64e8b514d0421a035ef5ead0893ee01889332cf393385f2a460b0b6807en/aHeodo
2020-09-22inf TQP241066.docdoc 5400939de59ca4b6347dd3647cbbb37cc370502f0674ecd27dda41c9ed57f58bn/aHeodo
2020-09-22REP QOR954460.docdoc ec0011702614cd33aa57769c23abfa9106382cc9b99ec9a1f9bb57204cd157d9Virustotal results 32.20%Heodo
2020-09-22Rep ST817.docdoc 04a59fd27c9e7a341ef783391b5b5f9402eff1857b83838fb0a7e1b6cd013bcan/aHeodo
2020-09-22E372 2001.docdoc 489bbe864f2dba7ae86007bcab77810f95f7b4b4dddfd6b2df4413ee096eb645Virustotal results 29.03%Heodo
2020-09-22MES 068.docdoc 8726baeebe0d8d497b1088ea75311adf4178642424006eec9701ff66e59e73acn/aHeodo
2020-09-22Inf 2020_09_22.docdoc e49ab14a710ee79669150ef0262da55ee7b9743cdd86b1628fcfbace69b5c660Virustotal results 25.00%Heodo
2020-09-221329OFY_20200922_1046.docdoc ef28e3219caccf8576b7f4eb7146b9fc62fa24e5e962b80f11c01df5a146e758Virustotal results 23.33%Heodo
2020-09-22FLE44394_2020_09_22_UL40828.docdoc 7bfde47fcd28e6a17aaa935131ac5e119a454718666722331ef2836df8efc82dVirustotal results 23.73%Heodo