URLhaus Database

You are currently viewing the URLhaus database entry for http://epoxi-pisos.com/sitemap/Document/gqlWUYeyxGou28KDPP/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:618071
URL: http://epoxi-pisos.com/sitemap/Document/gqlWUYeyxGou28KDPP/
URL Status:Offline
Host: epoxi-pisos.com
Date added:2020-09-28 17:36:09 UTC
Last online:2020-10-08 20:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-09-28 17:38:33 UTC to eig-abuse{at}endurance[dot]com)
Takedown time:10 days, 2 hours, 31 minutes Bad (down since 2020-10-08 20:10:30 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-09-30885127-2020_09_30-SX4753.docdoc fce9dd88327154889e459164ac4d29d0063315340b5ffd9690868ad5e46c352fn/aHeodo
2020-09-30doc_20200930.docdoc 9514f8559ebc3346ee2ad8a0dc066f680f456064bcb9dc07a2b528f14293d522Virustotal results 46.77%Heodo
2020-09-30File 2020_09_30 ZFN7435.docdoc 20d4e4818086e245bcd29d41820881f75fb76cad2a7d9c1430d408c8f308ec4cVirustotal results 45.16%Heodo
2020-09-30List_QL505.docdoc d21a659e131509501f27e12765fa2f8ea25eeed319cd31587ba7457738e3f06cVirustotal results 41.94%Heodo
2020-09-30Attachments-2020_09_30-8335641.docdoc 10294374734e4bb56cbf03eba2d257784ac87c057586d27a97c2b8b30f1f0f6dn/aHeodo
2020-09-30Inf_20200930_S7664.docdoc f337a65984d1b07d592fa829984e4cb8f3a51e2005d02c82dbe1573a33d1b72an/aHeodo
2020-09-30list-20200930-895.docdoc 329d9911d2004877126f938ba6875d9f348d33b31e1ccd880a2a62adb461d1a9Virustotal results 32.26%Heodo
2020-09-30Arc_2020_09_30_763932.docdoc 1d44cd8c3d04874dc41108bc844eb637f657064927fc28927f68c95fe596bcaaVirustotal results 32.79%Heodo
2020-09-30UNTITLED 2020_09_30 319911.docdoc a87836e6fbf70862d74980ad32f16b6dfe157bcea1172817e7235764aae0c4den/aHeodo
2020-09-30Arc_20200930_510.docdoc 541afbe8b457f589a760cae7ecbf5d520a7f1ecb81bf9d2e2f5ddf90cad8a418n/aHeodo
2020-09-3045377020 20200930 002.docdoc b89e3c01c95337c6976cfdbc20163b4375eb1a0a76a87335e891fcd932c361d1Virustotal results 30.00%Heodo
2020-09-29267SR_20200930_1009.docdoc dc873a463b8cbee41eb8683d98db5a331553402391ba1c16e664c7034eb1acafVirustotal results 30.65%Heodo
2020-09-29NB440-OX968.docdoc 44deee00b7451801d4a17c257ab6e48d119efdd78dcbed03daf5cfeb20a84b51Virustotal results 30.65%Heodo
2020-09-29doc_W506.docdoc 1d742e585ed7b4c237726a945da11795c46da01716e9da561d98fff100ee938fVirustotal results 31.15%Heodo
2020-09-29REP 20200930 OLO9506.docdoc 349dd2ac63132716ea7360223fd038575e1b7144925c60d87589880fbd488670Virustotal results 29.03% Heodo
2020-09-29Doc-22428.docdoc 983b893183f765c9cb504afa4937e5f72818641d7da81c106af480225799ec0bn/a Heodo
2020-09-29Rep 2020_09_30 JQK354.docdoc 7b65d8ab639b2e52bf89d1991cd330f6290b79269e2699b295b134f62689d29eVirustotal results 19.35%Heodo
2020-09-29Doc-20200929.docdoc 7b38b8806a5a362ee1e10b7798035408929bebc90e4977adceddcff61c4d2ac2Virustotal results 40.98%Heodo
2020-09-29list 20200929 QAB3929.docdoc 15915a01d4795b2cdd261061864a25011d8856f97865e6538890f9259958392eVirustotal results 40.98%Heodo
2020-09-28Mes-LL4370.docdoc 77b5804ca65e6e556bb46c4de77e34f32705f31b967c3d171afebb4bf54671edVirustotal results 30.65%Heodo
2020-09-28REP_2020_09_28_IEI966.docdoc c1b317a7d9409c3562857cba0d476809d144e24c1b77023f8f033327e8a98ae8Virustotal results 30.65%Heodo
2020-09-28FILE_2020_09_28.docdoc eeb4c9b11f481b21bbada3cabf7d3198edf259ccbec12c21c631a7770369809bVirustotal results 31.15%Heodo