URLhaus Database

You are currently viewing the URLhaus database entry for http://ctr.com.my/wp-includes/public/GWGfcc8a1k/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:607360
URL: http://ctr.com.my/wp-includes/public/GWGfcc8a1k/
URL Status:Offline
Host: ctr.com.my
Date added:2020-09-23 21:53:07 UTC
Last online:2020-11-26 03:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-09-23 21:54:02 UTC to abuse{at}web-hosting[dot]net[dot]my)
Takedown time:2 months, 3 days, 5 hours, 18 minutes Bad (down since 2020-11-26 03:12:53 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-09-25Arc-I79630.docdoc 2e8de1edb489db88f400ff1e2e6ef785e137b9fe39b5af48eef98a1a51e91a9dVirustotal results 27.42%Heodo
2020-09-25UNTITLED_2020_09_25_2134374.docdoc cf7d058393ab5a76eb4f2dfc204951696acdb2c2785fcd2d3ac3373ff3d3a2bfVirustotal results 27.42%Heodo
2020-09-25INF 2020_09_25 710479.docdoc 059202ce7b96a89a3d55a0f47f496ac65e242c3fad84762019f5ddd4c00f6a29Virustotal results 27.87%Heodo
2020-09-25dat-2020_09_25-Z78950.docdoc 19665d81b443fbbea43c2269393dd1497a8ca560342eb9bcbb5bf6133033c0dfn/aHeodo
2020-09-25dat_L1492.docdoc ad772a9d4c398f2a599736732c0531b03e18fe8a558bc33c29ef956922c2c243Virustotal results 27.87%Heodo
2020-09-25Rep 2020_09_25.docdoc cf58e5bbf98015c40d7a94d69fe21c835345c50fe12e09c28e25b3a1d3b23a98Virustotal results 28.33%Heodo
2020-09-25FILE_2020_09_25_489863.docdoc 84850efb7ef99e4faee35e1f4711edc0e528daa445edfc24aec1217e3ae6f26dVirustotal results 27.87%Heodo
2020-09-25197 20200925 87329.docdoc 6119c776a665ceeae14b6c41f368a0c8fc38c84de92a8908012785d47cba3585Virustotal results 25.81%Heodo
2020-09-25File_20200925_125.docdoc 55ac5280a7142fc79c894cdc890d3a3b76a4eaed03f0b938b355e07b95316e17n/aHeodo
2020-09-25INF-602.docdoc 35b20290035a4adc02a158303d41cc5f9f0b3c5342ca320c17d838edea2b7736Virustotal results 27.42%Heodo
2020-09-25INF-2020_09_25-G0265.docdoc a498490c2d2082417852e61a598fa2606f70d6a8fd7fd5f6ae72ac00b1276126Virustotal results 35.48%Heodo
2020-09-25REP 2020_09_25 20828.docdoc 0f674723c07c5218324a68f25f78d92f4f7f8e4662c3856380643e948187a4can/aHeodo
2020-09-25Inf 20200925 P02398.docdoc 799239097be0a3a692e597b412d6fc8bf4f1ed02f1f5fe601f3cc314c6220031Virustotal results 36.07%Heodo
2020-09-25Rep-20200925.docdoc e979e5d62f7d4071c132262078d292902fab0efa9947de49d89e30ea28c01f87n/aHeodo
2020-09-25Doc 799.docdoc 1b4bdeafbb09007e953a6160fe436d4804b6edb5069a03724183c8299f6e5ac5Virustotal results 32.26%Heodo
2020-09-25UNTITLED.docdoc c371ff9b42817e104cecdece97a45a92dbc996cc6630dedb60387b6d2cf3eef7Virustotal results 32.26%Heodo
2020-09-25doc_2020_09_25_6081951.docdoc a5d07fac1fd1f74e00644c183bfe972d95582bb06c0f8a16e3a0f58cab1152e3Virustotal results 32.26%Heodo
2020-09-25Rep P06877.docdoc b87c4ca399ee45fd85c5ce0258a8cbb2085f12e3f30928730ad2ed2221ed6cc1Virustotal results 32.26%Heodo
2020-09-25DAT 93712.docdoc e3e75a9fd546642652ff675e41bee9686f2bd9812e6cfb36db83ff8e08c67bc8n/aHeodo
2020-09-25FILE_2020_09_25_W259.docdoc ccdea9cce81a446140e0d879ca8aa9a94abc087dc40e758a648cbd5cafeddf93Virustotal results 32.26%Heodo
2020-09-25Attachment-2020_09_25.docdoc f3e4a5469d7a04109e3b462ae519198b845978938294d7b0b5f43139a332b649Virustotal results 32.26%Heodo
2020-09-25REP 20200925 360.docdoc 3155aee94b5f26a27b523fe5df878a43d7d7ba601989219c94d61199dfa016a1Virustotal results 32.79%Heodo
2020-09-25File_4049027.docdoc 69165cd9c129bd60fccb936744427651093153871bf0b5f61530461a10add533Virustotal results 32.79%Heodo
2020-09-2528123_20200925.docdoc 15220c43248046fa93074c3c80521f9773803510ac48a42f7de5b5c28c97eafaVirustotal results 32.79%Heodo
2020-09-25mes-20200925-U595.docdoc 94d380a28caf7c118d2094401bf9c5185e70eb854cb6f7c01f6739d265ddcde8Virustotal results 30.65%Heodo
2020-09-25arc_82395.docdoc a138b244d11022bc107b10ac8bba5574f75ebc1f2d7fe82d50c1b1927868faa1n/aHeodo
2020-09-25DAT 20200925.docdoc 98dbf4dffc10dd183a60e1fc7f89ada397f31f8bf1af4205ed10b45bbc8475d4n/aHeodo
2020-09-25INF-M557739.docdoc baa36c365e82f61b5dca40e37836ffc2cba8b31e09be0ae520b89596897a499aVirustotal results 30.65%Heodo
2020-09-25REP-2020_09_25-LYA350184.docdoc d43898cf94cf620939c31e9850e566223e334b4298ce958a1d59841dbbd99b12n/aHeodo
2020-09-25Rep 2020_09_25 TEE925.docdoc dfdd6e33cdcbefd5800f6e68d63cca0c0d542750c206f4b583f9b1dee47ca307Virustotal results 30.65%Heodo
2020-09-25Rep_2020_09_25_V1754.docdoc 9c89759e237878a95c83cded3d21a6adc6f8d4ed97c3d955138c7dfd1b713334Virustotal results 30.65%Heodo
2020-09-25Mes_20200925_5561.docdoc cebd7c93a666d0a79cff9edb88403e8a8318dcaf5cc86c52c65fe834fc87e995Virustotal results 30.65%Heodo
2020-09-25List_20200925_YDP3604.docdoc 338374311ec35dc25851d78e8010631a9916964ac819276eedd10d43abc31f85n/a Heodo
2020-09-256303 2020_09_25 76364.docdoc bd497f91d1b3471692be59bc55fb9a4bcd885d680ba65087f99431f0be67d62fVirustotal results 31.15%Heodo
2020-09-25047VC-20200925-RN28368.docdoc 84dfa573291310a15b9a67c8643b77e36306ffeaccb56637c4be40b776558d80Virustotal results 30.65%Heodo
2020-09-24inf_20200925_DEF3242.docdoc a7bf6cee3dca01f25d30af7e184981a1d239058da20311b95129408827f2d98bVirustotal results 30.65%Heodo
2020-09-24File-20200925-755621.docdoc c8e79fc0288a89ec2d815e21d6d7f396bdbd52530a889df128b23b14a212f602n/aHeodo
2020-09-24Untitled-ID0602.docdoc ee29c6519be6129b6f6b9e8f79be395cc82bf36cdf6c1b8c5e9764217bffc8f7Virustotal results 27.42%Heodo
2020-09-24DAT-20200925-GIN56468.docdoc 57374a1ff11ced7ada0485939fac0097fed707df6f0d3f248ed63c199ebd0fdbVirustotal results 27.42%Heodo
2020-09-24MML3397_2020_09_25_H702002.docdoc ebaa30a2c8ad119dd582d5c0dabf5d156ec19c6b11707b1796322ae4ec6555b2Virustotal results 27.42%Heodo
2020-09-24DAT_20200925_EZ892724.docdoc 294308e4126c97816ce6f96e921b335cf45bf0906b1ca94d1b1c4f5ba9feeab5n/aHeodo
2020-09-24REP_8787.docdoc 06a653b04e53699e0bac02dbe61bdb1f7e6510d7121a48bbee16cd6dc6c43ddfVirustotal results 25.81%Heodo
2020-09-24Arc-35219.docdoc 8cfab9712cea12da9721200bd60d891ad5868d173a31260497d0dfac7919104dVirustotal results 25.81%Heodo
2020-09-24Inf 2020_09_25 AUI2488.docdoc c4d712fcbfdcbac3196fc983a57b6a12c98a8c0159e5dbb273caf4b86ee387fan/aHeodo
2020-09-24MES_HUH4688.docdoc 71e6fbfc302988b9d47402e544949794407ab97087ddc0ccbfa34db2385f86b2n/aHeodo
2020-09-24Inf 2020_09_25.docdoc 02e90a20f8f565208e5d5723be87378e2c83733654b73e88667fcbed0c61ceabn/aHeodo
2020-09-24file_2020_09_25_686077.docdoc 2f7a6f37a7a19e9da53854546cecd329d172d98e27dd512d348a384638f227b6n/aHeodo
2020-09-24dat_20200924_5216.docdoc 6a205d4b4325fbf7c157353573657c65e446aa4a321aa503441adf432a53bce5Virustotal results 29.03%Heodo
2020-09-24mes 20200924 Z0959.docdoc c8610bfc395c0df7be8885b0b52319b7f39ccb478e3d3d90758ed63552f94a52n/aHeodo
2020-09-24Attachment 20200924 3260.docdoc 4815d589849d7746ef065299605ec3253455d8b1f58f3c08f57a323a45912ff2Virustotal results 29.51%Heodo
2020-09-24FILE_20200924_VID383347.docdoc 03132700d6022d6b66ef5cc19e6eb3155d66fe1e9b256425e2e3bc30c3baaedcVirustotal results 29.03%Heodo
2020-09-24Rep-20200924.docdoc 79d2bc5dfbd06aa3a4c4836e6d69ecea6627d98b1ed0093afe0e2874b2478512n/aHeodo
2020-09-24Rep_916.docdoc ef16ca7f98838032f77c4ce37274671438e7f500526a91c22a2ca6c1e2bcff62Virustotal results 27.42%Heodo
2020-09-24Untitled-2020_09_24.docdoc 4bf4fd8fbc2393d9f481cabefe7bce1b95a3b389d0240ac379990028255e46f5n/aHeodo
2020-09-24Mes 20200924 16491.docdoc e3af55b57c1e2be4a1ad2c43968fdfe5fdbc3041ffe3bba2971183e5cb7b23adVirustotal results 24.19%Heodo
2020-09-24mes-20200924-SLP504135.docdoc dcf292651785e92dd7dade637c73c2253b38a94b3a3f9668c21676f6a38a74e3Virustotal results 24.19%Heodo
2020-09-24Rep_2020_09_24_DA513.docdoc 89ded50342eb28a7fc35290e00a5aff5ab236c8958f4fd406bfb95f7184d90d7Virustotal results 24.19%Heodo
2020-09-24dat-20200924-954633.docdoc d5496150a225e2950b4d68c44020e8bf9b30d640ffbf2d72046c3adbd2584818Virustotal results 24.19%Heodo
2020-09-24Attachments-2020_09_24-N07837.docdoc 60bd12b32ea4d28ec43c02a394f2ddfcaa21c0820cbdff6e37debb55c1673fb0n/aHeodo
2020-09-24DAT-20200924-PT570.docdoc 7b5378ce13af3f6931afc6d5c872969bbc5a7a238e8f0e09125a8597db0d0d83n/aHeodo
2020-09-24file-2020_09_24-F6348.docdoc 441ad457e4ddfaca677155904b89ca29985e8a97d7b9477c7629d7e3acbcbd43Virustotal results 22.58%Heodo
2020-09-24Mes-2020_09_24.docdoc 275e3d43a39d79cba33fd4980e129e93e26b5b03b9a9089433a3ea67fe8c57ceVirustotal results 22.58%Heodo
2020-09-24Arc 20200924 MGD693588.docdoc 963ac9c75f4684b43800ebc6cc5e1b94d27f2d8087cb41741025b4d20e66d92fVirustotal results 22.58%Heodo
2020-09-24Attachments-2020_09_24-2039142.docdoc baac09a30d626467916ed21abd6522e80bd2b584d89ebbfaf9cbbbd31e0fc49cVirustotal results 32.79%Heodo
2020-09-24INF_BQ84541.docdoc a480137b781966afdb9faf717461bdfa384061fd21da898b447d924801063c60Virustotal results 31.03%Heodo
2020-09-24807092_2020_09_24_Z9565.docdoc fd9bb0c16419fd87e7d7dcb84e3969d4480b8dfd441706cf8a2050770a84b76aVirustotal results 32.79%Heodo
2020-09-24mes 2020_09_24 S072219.docdoc e33a7022f227773caaf93fa97ec67a0cde691d611b35c1c10af0d1b55fa6843dVirustotal results 32.26%Heodo
2020-09-24Dat-2020_09_24-H9584.docdoc edeac6b6b86c18650d2a2f8b7d9737c558892f5dd76da6be7b771e5e010bb244Virustotal results 30.65%Heodo
2020-09-24Rep_20200924_X20731.docdoc 2fe4e9919d3d2d0de9d1e31743d619d9f697d7e0d32fcf2cb3810e357f5dde3eVirustotal results 31.67%Heodo
2020-09-24Dat-2020_09_24-07183.docdoc d2f8727ea7e9cc981e1ba473128565b91230257d4e402038d2e03ef9661dee7fVirustotal results 31.15%Heodo
2020-09-24File 20200924.docdoc 2677eca82d20e819b49e10849f94803b189d30af9526a146a14aa65b8393a944Virustotal results 30.16%Heodo
2020-09-24inf 2020_09_24 QI8523.docdoc 3fb816f543774a47a4b929d85b7330f765546b7a5d463882d0c4d3d528fe0883n/aHeodo
2020-09-24Attachment.docdoc 3315cc9ca6fecf8628572bff212b1a3d8306dcd377de6f319c8530af1d7f8588Virustotal results 27.42%Heodo
2020-09-24Attachment 273775.docdoc 035e659d05acb9a53616292d7d331fc86c3f656b2e12becc2ca65ef6e402992cn/aHeodo
2020-09-24REP 20200924 5721.docdoc ba70c35fa9fe6c659211cb57c37743fcbfa7c18cd4904cd8da6963aa573b65e9n/aHeodo
2020-09-24FILE_2020_09_24_7651660.docdoc 439df4997262d2db8e015f7449a8b33c9bf2c8db09f8b184d69c7ad6fe968c92n/aHeodo
2020-09-24mes-20200924-3057.docdoc f2e3feb41565cc844a3bb072dbb0d54fb53d4f1cc44860f23dc3d8c4f4c470edVirustotal results 19.67%Heodo
2020-09-24doc 2020_09_24 YI55681.docdoc 95e31a3e395df581e9ebb7234ab5fea6d36b6a03dc9d51e6b14fc59d23a6d4c7n/aHeodo
2020-09-24Untitled-20200924.docdoc 424142c72a5f651cfc78a656b87c861ac6e4ad7b676e2fd65308442098e9ae81n/aHeodo
2020-09-24LIST.docdoc 6093c4cfb002d365f8ed7749c339b75a92ae859f23a5989378d8096481daa5caVirustotal results 43.55%Heodo
2020-09-24doc-2406737.docdoc 9c73f265f8eb72d356d419aa625d2771eef70cf83a3dcea8afddd57ae216d4afn/aHeodo
2020-09-24Mes 2020_09_24 974831.docdoc 24e031fb985e7f9a012366503ac58c163c138850f5707b5029a5793b27857ba5n/aHeodo
2020-09-24Attachments 2020_09_24.docdoc 7e1702f3524958efa4f4593977306fbc177c3bdef1bc8c04b3e900cd4aa2c5e9Virustotal results 38.71%Heodo
2020-09-24DAT_981.docdoc 884432de11d0670a7d8007ef1fe5d877b72e7ebbe678ac2cac3bc08708a723aan/aHeodo
2020-09-24file-20200924-7183532.docdoc f936c9284d2c66663fbc538babb06de38024bfe3272f41be52eec3fb8025bc6an/aHeodo
2020-09-24list 2020_09_24 595952.docdoc 452a5769e0ee8f5698e793518a7272414d747287e82494b62ee4db46f2101f18Virustotal results 35.48%Heodo
2020-09-24inf-486784.docdoc 48523dc1483cef07ef0bca44fe8f6629de0a7ab7e89899640b66568d4816c54aVirustotal results 33.87%Heodo
2020-09-24Attachment_2020_09_24_VL125178.docdoc 9b6ddc314258dd07193fca458631855ec60eaf598557379f4bfb34cf178a0d41n/aHeodo
2020-09-24doc 20200924 207.docdoc 459d111095342d54bfb487028848de4425f55b76dd86c33da107f3f09edfc4a0n/aHeodo
2020-09-24mes 2020_09_24 438228.docdoc 6e613f281a3af3a8d773be9013d997281a8af57e592e2f7fbec463c15550304eVirustotal results 32.79%Heodo
2020-09-24doc 2020_09_24.docdoc 1f5a248a7fed3080327c72e34d85898e21d55cfa67d12d4ddad538f86492573bn/aHeodo
2020-09-24file-LH33153.docdoc d7bc2bab7f33b749c58f25edb93fc2b032a41f112b80e69d310fb818f109d3ean/aHeodo
2020-09-24REP 2020_09_24.docdoc 1deb4e6a6641ebc64dead1bca39705a6df4d32fd478c574303dd3a17370cd84fVirustotal results 29.03%Heodo
2020-09-24INF 20200924 78427.docdoc 5cbc632d9e8bdf2c957c7d6864fab56e5106c110bf14838a440449dc0fd40926n/aHeodo
2020-09-24UNTITLED 639.docdoc 723d382c65591be516dc0f62f769cd79b42fffef91a244bf773da31d1478f631Virustotal results 29.51%Heodo
2020-09-24mes_2020_09_24_849943.docdoc a94c2c5af432da438e746e9cf551dd6b3c7645af7a509a8bd8a7b4cdfc76ad96Virustotal results 30.00%Heodo
2020-09-24file 2020_09_24 560.docdoc e5393bee26b731a4036fdd9744d6b4f51d3d3ce1387b402ba4d69f2e6662d58bn/aHeodo
2020-09-23Arc-2020_09_24-K5322.docdoc bf610aa108a8cdb11b895e0c49cbad7b781810f1c4b95a051d0a75ad830563baVirustotal results 29.03%Heodo
2020-09-23file 2020_09_24 6161422.docdoc c934c4297e9c14a09a9aa27d736c11db96cbd3782049de5e8319988206375c92n/aHeodo
2020-09-235857NP_XY86811.docdoc 1ffeb45aff1c0f5aa29bae90eae313b09ddbf7345bd6be0e2d8c1daee921b873Virustotal results 29.03%Heodo
2020-09-23Inf 2020_09_24 TK80939.docdoc 8034f804eb73d852e44f3747467758493a197f329723f30b0ab6da31d8e40acfVirustotal results 29.03%Heodo
2020-09-23Attachments 20200924 1179040.docdoc f82b28e208e15a7b4719e1a889c93c0d0374ad8d7c3f64b31a9dea9f4b3739d1Virustotal results 26.67%Heodo