URLhaus Database

You are currently viewing the URLhaus database entry for https://www.cwa.mx/himalaya/eTrac/ClSMVGieMlLzCmhV2/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:599395
URL: https://www.cwa.mx/himalaya/eTrac/ClSMVGieMlLzCmhV2/
URL Status:Offline
Host: www.cwa.mx
Date added:2020-09-22 18:44:03 UTC
Last online:2021-04-12 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-09-22 18:46:06 UTC to abuse{at}tierpoint[dot]com)
Takedown time:6 months, 22 days, 2 hours, 53 minutes Bad (down since 2021-04-12 21:39:07 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-09-24UNTITLED 2020_09_24.docdoc 0659cfc4b010396551f8842405a5d4d047abbf71bd783a7956dd41c1329972c9Virustotal results 25.81%Heodo
2020-09-24Rep_20200924_027672.docdoc 1fba84d3bf95f4bcd6dea7cb0e278712f39c4adae6b83a63f00252c1e7e82c34Virustotal results 24.19%Heodo
2020-09-24Doc_837799.docdoc 4748d811f718783bd0504c198c082e051a61e55c9a003e9e0a53d13feddf9f1bVirustotal results 24.19%Heodo
2020-09-24WP865-2020_09_24-R720.docdoc ee8bbbd66f875dadd1be1e600b7ea785439dfae118c9ae269a9beb0bc11c1b8fVirustotal results 24.19%Heodo
2020-09-24ARC-MLG26237.docdoc d5496150a225e2950b4d68c44020e8bf9b30d640ffbf2d72046c3adbd2584818Virustotal results 24.19%Heodo
2020-09-24Doc-20200924-298.docdoc 60bd12b32ea4d28ec43c02a394f2ddfcaa21c0820cbdff6e37debb55c1673fb0Virustotal results 24.59%Heodo
2020-09-24FILE_ADP3520.docdoc d079a4cc049fc13598f5948eecc167893f87b507fdba72479e5c5f631e3bf7c0Virustotal results 22.95%Heodo
2020-09-24Dat 2020_09_24 266825.docdoc 244b14f85ca42964383cebf201f3f6e02a75b7cdc12c7c9a5b57b1504b5924a8Virustotal results 24.19%Heodo
2020-09-24rep_T9439.docdoc 21f933eff22a641a84e1cd7a52596a0362a80f5cb1b90a0582fb5a19044dc4e3Virustotal results 37.10%Heodo
2020-09-24REP 2020_09_24 00020.docdoc da86de2e8d0fcec9820a7cfe23a969be0aa5b7d4e281fa92481c33346a57df0bVirustotal results 30.65%Heodo
2020-09-24Arc.docdoc 3db5537afa72bac1ad7529d5026dc4962d42b2e6af1cb12235cfc1f8751676b5Virustotal results 32.26%Heodo
2020-09-24FILE-20200924-083036.docdoc 649574766029bc1522b50f75bc2e6aeb76537751b1daf24bbc2f6bfadeaac360Virustotal results 32.79%Heodo
2020-09-24UNTITLED-9256396.docdoc 533105911387edce82f0e5d06f12973eb9267f91c3ed40481bb6cabf571a206cVirustotal results 32.26%Heodo
2020-09-24UNTITLED 2020_09_24 802619.docdoc 241da35fc47abf50c83032be9bdb0df27d81d7d1920055a76b7a84aedeb8a30dn/aHeodo
2020-09-24MES 2020_09_24 158353.docdoc fa032558502310bc3f8ee4300b2782308982f75f72d03991a3a106e8c5e8210dVirustotal results 32.26%Heodo
2020-09-24Attachment_20200924_SRE8136.docdoc bd6ba8caafcf9be50726450d40a4a576ed569ac4cd07c506f17e24af80da7282Virustotal results 29.51%Heodo
2020-09-24087WJ_20200924.docdoc 9554237d9a237ce9702ff8502da80e347df17141104c58b4ea721a482875c7ebn/aHeodo
2020-09-24Dat 2020_09_24 0879.docdoc cd068c5d74c950762065417db06dbb634c48135e990211e3415ffe6fe766046fn/aHeodo
2020-09-24mes_2020_09_24.docdoc f639c68c402624a47119cf4e726a67b5eb1135e4d263382081fda1b0ab1842f4n/aHeodo
2020-09-24inf 2020_09_24.docdoc 035e659d05acb9a53616292d7d331fc86c3f656b2e12becc2ca65ef6e402992cVirustotal results 20.97%Heodo
2020-09-24MES XM054.docdoc eef0320291fea4b857e373510a8f865102bf7eeabf6556cff02a87558c4cf776n/aHeodo
2020-09-24UNTITLED 2020_09_24 N8689.docdoc a8b0c95f687d86dc74995de8a27b0d68e8f8f32a07ad8333a1aadf15c1cdff67Virustotal results 18.64%Heodo
2020-09-24Arc_2020_09_24_05599.docdoc 7ac2d92f6e512351d634ba8379ee1740add6e1ef9323c0b1f178d38d4b37a50aVirustotal results 19.35%Heodo
2020-09-24arc 20200924 CN210.docdoc eb57e86cb83d891d8f3c4affcf8004405974426112d58396bd7f5684f6d2d7b7n/aHeodo
2020-09-24LIST 2020_09_24 EZ3844.docdoc 15b5594b366a3bae22e4d6bdaad907bf889b957c9e8572452d9569ed245530b9Virustotal results 41.94%Heodo
2020-09-24ARC-20200924.docdoc 23db49d5886e034ad5ab63515e5c5c6b6374d5bad5c9b68cfb3d84f39451a301Virustotal results 41.94%Heodo
2020-09-24list-20200924-0660.docdoc 5086f95ffc91178dceae70451353f443b5360b35276391dd6e588ca7c0862c99Virustotal results 40.32%Heodo
2020-09-24Mes-GZ490.docdoc e7f6321d905f4db566091d8d4520f4d128bf66917cc86d794f1d435352ed2899Virustotal results 37.10%Heodo
2020-09-24704544-20200924-B607874.docdoc 89a45325b3f1df9afd4f37462ca8202a64c8937098465331f9c8e11a042f9280n/aHeodo
2020-09-2485648 889011.docdoc a8c29fd851cb952d316acc958e0666ef6c6d2ce6e1d8404dc1aa1ab06c95b79cVirustotal results 33.87%Heodo
2020-09-24rep-2020_09_24-R400463.docdoc 0d16dbc897960b7bcf3efddbcff01a0178862dc16208725dfba45d5ebaa109c8n/aHeodo
2020-09-24UNTITLED_868.docdoc 48523dc1483cef07ef0bca44fe8f6629de0a7ab7e89899640b66568d4816c54aVirustotal results 33.87%Heodo
2020-09-24inf_2020_09_24_R79694.docdoc 012315f853afe5d3fc90d06fc2e902dd1c0f29f6f53a01b6d9644331714d8a71Virustotal results 36.07%Heodo
2020-09-24inf_2020_09_24.docdoc 0bf5cdd3f37f117e4ae69a13ceeb2d812055e6bb5b5119bf9adbf69d4218d63cn/aHeodo
2020-09-24Doc_20200924_P691.docdoc d459ae5f366703f6a9c1ad00f597a966ab17bbe733d0eb970e94a9e1ed912dc7Virustotal results 32.79%Heodo
2020-09-24Attachments-20200924-B807779.docdoc a1eadd639edafd2b4c14ee3c756169cf8cba0b790c132d2a40f21f5febfecb77Virustotal results 32.79%Heodo
2020-09-24FILE.docdoc 234d3ad4abc48e15ee2c813f7202154e54609b7380d8d7f803801c1759ed2042Virustotal results 27.87%Heodo
2020-09-2457287 C60856.docdoc 94e4fe6c73db0e80100417fe60ab8d9b1fe7fc9ece7a2923861e1e1d42717d4dVirustotal results 27.42%Heodo
2020-09-24Arc 20200924 BU977.docdoc 723d382c65591be516dc0f62f769cd79b42fffef91a244bf773da31d1478f631n/aHeodo
2020-09-24DAT-20200924-DM1399.docdoc 84f79d722be936645f3ae527e940d6902ca8c87bdbd337e85c31a2990460dfa3n/aHeodo
2020-09-24FILE S431.docdoc bf3d18989a7a63608d556b1d26fdbfdba74fa356e1afd7140720f67b69ee3b89Virustotal results 29.03%Heodo
2020-09-23Inf_20200924_58107.docdoc bf610aa108a8cdb11b895e0c49cbad7b781810f1c4b95a051d0a75ad830563baVirustotal results 29.03%Heodo
2020-09-23967 DA042183.docdoc f3d1c3c53293c401bc39848174a8b6877d25542de861e94b8e6560c63a4e94e6n/aHeodo
2020-09-2302905991-79572.docdoc c884ecee384466aa2277769f07888f2f8039ed3293f378229a20b976db70fd4cVirustotal results 29.03%Heodo
2020-09-230109680-2020_09_24.docdoc 7c2e5a786cd93193cbf4304bf8e31d4a43d82372020df0af6cccf42807c7271eVirustotal results 29.03%Heodo
2020-09-23rep-Q040531.docdoc 10bf4255bb35705c86bfc4a5baf98ad46011a82c6c1af9285cf8074cafab5ca8Virustotal results 29.03%Heodo
2020-09-23545655_20200924_9101222.docdoc aae947a6fbfba87e976638fd5811037cfdbcb8527d1b048ba6dbf58f52928455Virustotal results 27.42%Heodo
2020-09-23List 20200924.docdoc d82d99a32edfb254c55cc05e4bcc2b770e769163bb0bc8e53a766ef902103b5cVirustotal results 26.23%Heodo
2020-09-23inf_2020_09_24_721.docdoc 75876c4b8ebbac638052c4f3fa36f23a3c95260b80ea6fc8f79eaca9eb520384n/aHeodo
2020-09-23mes-2988.docdoc 4abadaaac5deae9fc700f643ac17a294f0e79c9b2a279539f63143cc7b093cdfn/a Heodo
2020-09-23INF_OMI2077.docdoc f55309ef8103e8a22b236ec04b6e3d4e4f358098a3cf215c9048a202e7beba6bVirustotal results 25.81%Heodo
2020-09-23doc GSW196639.docdoc e9cea850b7a645238c9b39eb7a1faf8093f63bcd9ab044d572ed112556c8ab71n/aHeodo
2020-09-2397074G-2020_09_23-DD6631.docdoc ef0f87ee25f38eda66b32f65310c44bc9cb1d55a286d78b2eef6ee0d78a7efb2n/aHeodo
2020-09-23ARC 20200923 6746197.docdoc 2da755849beaa81459e2f944ff17d55183c04b3258b63d8f6f3e146aaaa2ba9eVirustotal results 26.23%Heodo
2020-09-23MES-20200923-47597.docdoc e03fbfff8b790ae8b16fc3ff14808af211ce6dd07d6ad6d8bdb2d733c685db6cn/aHeodo
2020-09-23file-20200923-561564.docdoc c115496f1c00acee0ba2504206a523fc093e8c17d127a85a9fdfb88ae9625065Virustotal results 25.81%Heodo
2020-09-23Dat_DF580246.docdoc 3bf9e425582536fe31f762b8180417b05299dc4f1962b459c9e00ca0f7a3350an/aHeodo
2020-09-23Rep.docdoc 4f01417931e4498a58f74e41c407ca92ea12ae6cce0bc3ea9a658dc10f8426daVirustotal results 24.19%Heodo
2020-09-23Dat-2020_09_23.docdoc dfae82013bca633741113a217e0121e03f6184d7c0286fee76dc0a8065fcc658n/aHeodo
2020-09-23Dat 20200923 JB0825.docdoc 64a140f15baa3a53451394cf8f5baf72223d168768013bbbfc57c4d1406fbdd7n/aHeodo
2020-09-23List 2020_09_23 AD06664.docdoc da3465101436558fc848ee5e045a55ff946b886bd836ae7864dcdc9d84112d51Virustotal results 19.35%Heodo
2020-09-23C8028 5641.docdoc 157369508a680552109742d725d9ce198466b3df0f1c2110ef7c1a2afcf7522en/aHeodo
2020-09-23Mes_OBL902378.docdoc a90816cf56bbc1ef2ceae46399356c907ff542be49e38c335cc9140d3936d61cVirustotal results 17.74%Heodo
2020-09-23LIST-2020_09_23-1714646.docdoc c53d8edf475ff674233e2780b4393eeca0983f983463ca9a6dc2167e67b39526Virustotal results 16.13%Heodo
2020-09-23Arc 2020_09_23 9441773.docdoc d9735d6b5f9b942ce00384c9bbbb997abf37f1ff2580dc4a9ff879670f961c8aVirustotal results 17.74%Heodo
2020-09-23Doc_XYX667682.docdoc 8a59fa8e5010b8d79a844d22993a195a655504c3bf78a27a44c0ee58a4e57710Virustotal results 16.67%Heodo
2020-09-23Doc-20200923-073.docdoc 0a9fba1104c5690ac609faf1d3e0e67d22cb7b1545a4577d1118c9c93782ceeeVirustotal results 14.52%Heodo
2020-09-23REP.docdoc 3c4fc657dea3aa035d3254dea984b5f8bce46775164377937b11f796454e7968n/aHeodo
2020-09-23rep 407.docdoc 9a6baa0a9bb647efb0669a7937efaed725329b6f31be7825f9cc682c5e0ece6cn/aHeodo
2020-09-239392 2020_09_23 QJF85823.docdoc 5938520931f9ed2b806f384e82f9f2e7e3616c63f0c5859b030b2842831257e0n/aHeodo
2020-09-23file.docdoc 1f9cfd0e2db4fe1c4a23b7a19dfb0c2ddbcaa834259926dce22421a07ccb7401n/aHeodo
2020-09-23File_ZR434.docdoc 33d2fd697a8c2c1c25324389d7d7fb90188fbb99fa0b4a662878b7aceae8c6c2n/aHeodo
2020-09-23MES_2020_09_23.docdoc aa72d19ef7e1bbf9931fd39ac7d794603c710bbe7099e64e2e5c114a58cc00bfVirustotal results 25.81%Heodo
2020-09-23Untitled.docdoc cbcf169ef81ebb6ff607f88b8a05590d501c70fe69aac3bf69db17c15587ad87n/aHeodo
2020-09-23INF QPH909705.docdoc a9e3aa8b651a4a6fe8a2864adc4a217e7c3da1576987ce86f591761c333c7f37Virustotal results 25.81%Heodo
2020-09-23file_2020_09_23_FH87918.docdoc cb33922225463ca3dfccd9ddf793650e22f5b39f05bc84f51780416892521224Virustotal results 25.81%Heodo
2020-09-23Untitled 20200923 UB93952.docdoc eb08530e5f924639dcd82792dbdb90d6cc3b51a631675c77a66a27351382158cVirustotal results 24.59%Heodo
2020-09-23ARC-20200923-AQ850.docdoc ead850998ef19987a2e21771e9b09484af3bb04bb923249ef8ff2ca79cfbb4acVirustotal results 25.81%Heodo
2020-09-23doc-20200923-T9072.docdoc 535fd5994deabeb09ed2bf602c60a653d8865397969b747dcb504083d3dab970Virustotal results 25.81%Heodo
2020-09-23Rep 20200923 Q655253.docdoc 2ab17f6163c325943c87411fe2e3a03f6b8f8099ad6c4b668bf0e9607613bc2cn/aHeodo
2020-09-2309448 2020_09_23 L293.docdoc 30b84466aa52649c8f6d61b4a9fc3dbc81571bcf5b5292337ea0fd6b82a7ba81n/aHeodo
2020-09-23inf_20200923_181637.docdoc 48860f05fa54eb5e2a2d97f62a59f8bbc2f3df78ea0a6093fd26420a7c7c860eVirustotal results 29.03%Heodo
2020-09-23LIST UQ0367.docdoc e57f2ee4d91ac6c94a9a19245a7d869c2465705846d1c4af6f85162448587c0fn/aHeodo
2020-09-23Inf.docdoc a61f1b45b06305829478c9c58b8b8e94fff53017fc1e735bcd18e288f0efbabcn/aHeodo
2020-09-23FILE-20200923-DW244684.docdoc d29db979a44af6a91074afd2c68cd3c1f353bc4f4a30a953916795ecb3813e61n/aHeodo
2020-09-23Attachments_20200923_761.docdoc 85b4fbf1a796cd28815ad521352072c05d7e3b638a3810de89036c2a1459cd1an/aHeodo
2020-09-23Dat_582652.docdoc 4f09397b6219cc33b6d317121c35865043663d6bead47a855a9d33820f8f49fbn/aHeodo
2020-09-2334597T_U931.docdoc 9bd69510e3c43ec7952a8f5468ff9928523e1a435164c281bd3f6b789568e8a3n/aHeodo
2020-09-2388022419_2020_09_23_4253593.docdoc 027663162c00f241d945da03d397e35d882cdccce8e0e487e463501b6d2dd503n/aHeodo
2020-09-23FILE_20200923_8476.docdoc a1b5ef92ceaa6be33f3950c95ae60066fd936f9757ed3213b26f31ad04659cf4n/aHeodo
2020-09-23List-D33926.docdoc 692bbf3c78f0c8af1c57acea7c9910b8138ef4e85822096176a8bbd7603623fan/aHeodo
2020-09-23Doc_20200923.docdoc 66fb0ff0bc019411aae249302066f28d3d4a17f14d79cb2d743b4b3f86cd2e0dVirustotal results 30.00%Heodo
2020-09-23doc 2020_09_23 18741.docdoc bc8d7a492cc45195a67d8500390b631b8106bfba0c324869264f3a255fb0ccb4Virustotal results 29.51%Heodo
2020-09-23Dat_20200923.docdoc 033162fdc60c2d8188ff7d79a8a860e806d15dcef06a00ae9a68ea0cfb1f6916n/aHeodo
2020-09-23inf 2020_09_23 K2797.docdoc 352b0eaafd07102686fb7e59059288bd6f527e4190c6700cc5dd1e6f267bda16Virustotal results 29.51%Heodo
2020-09-23REP_2020_09_23_9685.docdoc 9c67d232abc4ea64aac36180f8259c7a5a52ae4ccf35ac7d5b9e6f350f5ee00bVirustotal results 29.03%Heodo
2020-09-23MR07207-TXO019.docdoc 307171fcb05392d270829ae4280316153d7e525cacfed182dd111eb697dc2e02n/aHeodo
2020-09-23mes_20200923_PR45317.docdoc 10d3e60a51916bad4c37aa815179934f7d5ea093ec50eeb9c58b6f53fdf6f955Virustotal results 27.42%Heodo
2020-09-23Dat 6949.docdoc b6f00133a52da6464eed7e2893e970887b80718514a3fadab1f4653ce636aec2n/aHeodo
2020-09-23Attachments 20200923 Z108.docdoc f2de99ef933f7cf018ba9947803a5f5c5a9cb72ea0971ee3a565468c10a8783dn/aHeodo
2020-09-23doc-2020_09_23-802.docdoc e213173e3eda08277bd3f8276a466a8eb67f19823c6fb95aa45a06fd29fcd646Virustotal results 27.87%Heodo
2020-09-23doc-2020_09_23-535.docdoc 5f81d77b9f520598ee93cdda1bbea38982756b2457fbdea877739ce5dacb294bVirustotal results 27.87%Heodo
2020-09-22Untitled IWX477954.docdoc fa34e83bd47e1cc41bc07924630b547d11a2cb12509838bb422368feb883aeb7Virustotal results 27.42%Heodo
2020-09-22REP_20200923_843105.docdoc a132f8367518b36376bd03160587713674ff98805021fed3d6e3ff58c045a97dVirustotal results 26.23%Heodo
2020-09-22list_2020_09_23_8250523.docdoc a4be8227b93822ebc5ee886e18ff44b120a5a3349f1cb2698504ae2ce0004530Virustotal results 31.75%Heodo
2020-09-22Untitled-2020_09_23-KDT224625.docdoc bededf08f741d3f8545c82c53f67afaf26f70b3c45ebda54ade8f636d0a9ea3fn/aHeodo
2020-09-22INF 2020_09_23 51011.docdoc 4ac3cd1d15cf6dae4a45f6b6bd244e27cafccc89d0cdad0d2766a17a34aeeae2n/aHeodo
2020-09-22ARC 20200923 M0283.docdoc 3581578c9dc74cfccd9fc4db4a1253d45b3155e89b6f731117c15699a3e29089Virustotal results 29.51%Heodo
2020-09-22MES_H43384.docdoc 2ffd3c832ab970b982643ef6999afff6bde8b4903165950ed51a536263b42f4cVirustotal results 29.03%Heodo
2020-09-22REP 2020_09_23 9318187.docdoc 9239a6b5f8db1ff1643aec4cf3bf3bb20d07753ffe2b686b091154ba96d97c42Virustotal results 29.03%Heodo
2020-09-22MES-LGV155324.docdoc f7d2c758c06cd5e2ee4d6e2df8ef0dde049145434e8cb1ed6d667aa35d5c5877Virustotal results 29.03%Heodo
2020-09-22List-2020_09_22-CQ940.docdoc 5118e3bd72677f8cda269a8e2c50571beffb5dc3f7dbfb1b05cd1e44a904a214Virustotal results 29.03%Heodo
2020-09-22Dat-2020_09_22-0969.docdoc 06adccb0830725b1272de45aa1e389479de4317cc3e401396ee6320e992dc261n/aHeodo
2020-09-22P827 20200922.docdoc dbde4aaff8c1d5748e3be5ec0e07691b1f8d1b6a089e1c041825584d5b49ae7dn/aHeodo
2020-09-22doc_2020_09_22_742.docdoc 877325fa959dd70b6e6279c0000e5b2e40a206b88c550c288b961db9740c681fVirustotal results 29.03%Heodo
2020-09-22DAT_2020_09_22_2776.docdoc 807f0fb8f94f16a66f2cba86e04982b3c8cce542eb80678040264f2a5f3ea051n/aHeodo