URLhaus Database

You are currently viewing the URLhaus database entry for http://massage4relax.com/cgi-bin/Pages/j75Y8NDTz0zk6Sa/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:618273
URL: http://massage4relax.com/cgi-bin/Pages/j75Y8NDTz0zk6Sa/
URL Status:Offline
Host: massage4relax.com
Date added:2020-09-28 18:15:13 UTC
Last online:2020-10-09 10:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-09-28 18:16:08 UTC to abuse{at}contabo[dot]de)
Takedown time:10 days, 16 hours, 38 minutes Bad (down since 2020-10-09 10:54:39 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-09-29dat 2020_09_29 SF92087.docdoc 9441c64607ce749604dff7e3f2080dc43eff5cf59ab51c17e8e276ae8f9a24d6Virustotal results 19.35%Heodo
2020-09-29Doc 11752.docdoc 140254a1f60e331ddaaa70ddd79ef03759dd73aa778c4e098be6ee6d8513c08an/aHeodo
2020-09-29rep S36736.docdoc 356a24ae493195e7f79abf0f60624c9a90112bad3593eb1b56bf8fe85d10b08an/aHeodo
2020-09-2957420124-20200929.docdoc 885cb015e8924282f5028218981fc2fa18f0632d756276439b9da9a64a36db29n/aHeodo
2020-09-29list-614.docdoc 05b3edeba78db8bffd14a8c4cc8f60c6f9ca6958ad5ff519e410d5eef6a4c555n/aHeodo
2020-09-29MES_20200929_H1203.docdoc 73610175404eca0912ed14988bc2019dcbdc0623dc7f780808798b0cde39bb87Virustotal results 17.74%Heodo
2020-09-292448VQN_GA007695.docdoc 054954c8adf177996d7b60d1f0f7490910c3d38ccfa915725432a3702b1fa6c7Virustotal results 36.07%Heodo
2020-09-29Attachment_2020_09_29_6662.docdoc 94664f71a4235a5be2e24ea979edb2133d68b3d4ddd2a3cad56741bedb13edc1n/aHeodo
2020-09-29Untitled_20200929_0516430.docdoc 3d11f0ce1e0d9d3b3dc261d73b4648a08c861d3111fde70b9bfd8a26dff339b9n/aHeodo
2020-09-29arc-20200929-9186.docdoc e2b6c3245253aec4451f597dcc9565daf7471d3f62b122f78a1c18af65aa3782Virustotal results 37.29%Heodo
2020-09-29Attachment 20200929 512.docdoc 580246219be347bf85db0a8d380f645d3c0642510d93a27dbe449a801d0b7025Virustotal results 37.10%Heodo
2020-09-29LIST_BR374465.docdoc 3d3c974fda07fb52c167f4676aa57bc30728fb3aa245c3957fbad1f309fa7e6bVirustotal results 37.10%Heodo
2020-09-29List XE42310.docdoc 0f8acdf59fc6974d8a19105939ef198a14f19b5341b618371759c603f7b0fe6bVirustotal results 37.10%Heodo
2020-09-29Untitled 20200929 171.docdoc a2983168d457ca0f8dcaa3646efbe123873003af21cc494c8171175df0e0a9ccn/aHeodo
2020-09-29arc-20200929-RB624.docdoc b9c59ca726a42938b8805f8ea4627b5e74d5311faa900d6281e185b7eb349bc3Virustotal results 37.10%Heodo
2020-09-29doc_2020_09_29_LJ555505.docdoc b3f65fb7bedf59f56ea0f69f44744cc21d6fe74cd07ce1c66a4acfc1e9267768n/aHeodo
2020-09-29Rep_2020_09_29_7348.docdoc 36363faaf4f9c78ef442d4f44ba04cf7e3f1bb1c65c1847492cdd10004395e19n/aHeodo
2020-09-29Arc-456.docdoc 76b5f9e5cb59fcac0d2e8109a019fc56b03e5a26b1a0406ffc15f63dbd6514ebn/aHeodo
2020-09-29list.docdoc c45e98d9c02f898d3f7f7f86e60bb708155c604c1125c3dac174e757bcfeb775Virustotal results 30.65%Heodo
2020-09-2967578129-2020_09_29-03758.docdoc f2aacc65e0ddbd8675ac16dea2a6da55e467167f162561a6a85125616684a431Virustotal results 30.65%Heodo
2020-09-29Untitled-HW82544.docdoc d0147b6f5c086e57ac825b58766d460a2ab5a539ade9ce0dd89949e61f1c77een/aHeodo
2020-09-29Doc 20200929 194.docdoc 0418247c7dfbc8ba73880608c948f3ae38510b9508c58d43c81d10f6dab119e3n/aHeodo
2020-09-29UNTITLED_2020_09_29_M5166.docdoc 1d628dd2fc18ed9459e1b461057b8f84abe9ce536721249edebb1ff5a8d59038Virustotal results 22.58%Heodo
2020-09-29File.docdoc 212c3f50968898aca48cd72bb7d9fb5dee45be187a58375479b5fa30e49f1725Virustotal results 22.58%Heodo
2020-09-2963971973_20200929_S880423.docdoc 61fa86d57f5bd8416845fdff78646dfb24b6c8e7da232d2e88d60190b629d366n/aHeodo
2020-09-29699-20200929-SK698065.docdoc 8f3f64a249482b0a6dd6361950555bb3bee2b9be6a613991d66eb5e221573bban/aHeodo
2020-09-29DAT-20200929-8934.docdoc 5f6f6797c37bee110a5304856e2cd815e090fb9b40e67a1392d3a4d7310661d9Virustotal results 24.19%Heodo
2020-09-29list.docdoc 537faf166e9635b27ed7122d94b71cfe50d7efa925cd39680f7ebdd7d74c1ac5n/aHeodo
2020-09-29REP_20200929_2731482.docdoc c30af86a2c97e573ed75fd01f26e2693eead6b08202632e784c6e8e8e68bf3b3Virustotal results 24.19%Heodo
2020-09-29C28992 Y783.docdoc 2b60e39dc259ecbf3fa7234814b9355b16a527c0d9ee927677b125a1a926514bn/aHeodo
2020-09-29List CU68819.docdoc 2a3f1606dff59a1aed0077676c39e10d432a1c36d244d4b4fb8e5d6fa7e68e57n/aHeodo
2020-09-29MES_09726.docdoc 4d091ba4a73f59285de8614c58ec636232663ec3cbefe997d048e7665cbee478Virustotal results 24.19%Heodo
2020-09-29Mes-20200929.docdoc 255250ddba5519be40f5b5e5e420c097f93d51c62a97ac3d48c8272f10cbb506n/aHeodo
2020-09-29file.docdoc 2c16fca27937e2766a07443bf96260808f79450a1e130e0a0fdc2649dd940d7bVirustotal results 40.32%Heodo
2020-09-29List 2020_09_29 L701.docdoc 2af6ee72c4fc0cd1ff72c28e91edb4b7f854dab317591ca48ff21589c7f65fe6n/aHeodo
2020-09-29Rep_H6809.docdoc 0543a908de650442eb28c0b24cca2680f9d81f997991401a6dfa4c00a5a0d27an/aHeodo
2020-09-29mes-20200929.docdoc d2c7f98bd9ddf170cc94395ee616eee8481b5484e7e1be8648984a357345b673Virustotal results 40.98%Heodo
2020-09-2922961N_2020_09_29_289663.docdoc 7b38b8806a5a362ee1e10b7798035408929bebc90e4977adceddcff61c4d2ac2Virustotal results 40.98%Heodo
2020-09-29File 2020_09_29 DEH471.docdoc 6393adce2e6fe6411ce0d55abdc750cf798b4d5e95ac789d82fa303e456ff200Virustotal results 40.32%Heodo
2020-09-29Doc_20200929_77803.docdoc 9b846ef76b8ce3b96e0caf773b9aa5af2decb8157a2eb2b3332f46336ed10ec8Virustotal results 40.32%Heodo
2020-09-29doc-20200929.docdoc b19337ff283d5e928eb6bc9b902fc02a47f506746ab9fc02955e02d7112f3be5Virustotal results 40.32%Heodo
2020-09-29Dat-2020_09_29-595719.docdoc 1340d8450093c4b10ffd24cd42262a4c1115b9f6e0a8a7c0bc184f9973cf8b6bn/aHeodo
2020-09-29Untitled-F7273.docdoc 20d036ecef1bdc268854cfbc558d4aa3536c41caf65312445a2c9e779ff04b9fn/aHeodo
2020-09-29DAT_20200929.docdoc 15e628ef0bab8fa7574005e71632246fa922e8aeabe4dec14dccfcfb2d87beden/aHeodo
2020-09-29arc 2020_09_29 831.docdoc bcc520a7c5542f305e98d2eddf75f362f4771597d4e51101ea9485aac97614e6Virustotal results 37.10%Heodo
2020-09-29906-NI085.docdoc cfd9a84a3da6e0d9517765f4c7a3e1fb0c86932fffdddcae62e0354e5a2dd882Virustotal results 35.48%Heodo
2020-09-29doc-2020_09_29-YS2584.docdoc 76625b162b7830d0e881fcc218b3a1a5e02876825b671ae1ea5234fa2c9863f8n/aHeodo
2020-09-29dat-2020_09_29-775991.docdoc 085bd44289d94c5a4c9f4b533a6c4c65d15d751153585af0272085401818dd04n/aHeodo
2020-09-29Doc_20200929_4548460.docdoc 6a4f1212417249a2a041859ef4fcb7c2968111ee6273aaf0fa840e06c7905b52n/aHeodo
2020-09-29INF 2020_09_29 68978.docdoc e56bc063733d1ff4a57a70fa7ba2925de15320cae5a623a2f04fdd771c879f43n/aHeodo
2020-09-29Inf-20200929-P02698.docdoc 852f47fbed9614eb0e23b991f99bb8169cc0a46a1d4d5907cf021c0f4c89e092Virustotal results 32.26%Heodo
2020-09-297588FR_478.docdoc c4d71bfae9a53000542d7ed153b108ab1e860f71a1d39584eebf0c19ed44de4dn/aHeodo
2020-09-29Mes_S41480.docdoc 2e9543a1d227bcf281180b6ba02d82d2f15a614155b1ff356b28602377b786d2Virustotal results 30.65%Heodo
2020-09-28MES.docdoc 355499f144efa41f21d80a9c65951bc118d0198a598fbe5c252c1fe5e64cde9aVirustotal results 29.03%Heodo
2020-09-28rep 2020_09_29 9863902.docdoc a17bed0f94dba79b546f9dac5dfa4743718e8471482a8f79f38bb57d3a38c3acVirustotal results 27.42%Heodo
2020-09-28Arc B1046.docdoc 203faceaea459744bcbda58dc7d1805054c4cbc185f4ffb562a9a24cf8a3f8ebVirustotal results 27.42%Heodo
2020-09-28Arc_2020_09_29_P591.docdoc ef60c376b444bdbb03ce39da019d3eae8dc37db20231dd815489a01b31d476a5Virustotal results 27.42%Heodo
2020-09-28List_20200929_7419.docdoc dadb16f08fe25c42bd7288b792eeb520d80dafb26c05bd0f61eba97663e01971Virustotal results 25.81%Heodo
2020-09-28INF 2020_09_29 MLE78940.docdoc 25ba07757eed7d8e7d07336a49141f5ee33fa19b03abf8e4dffdc67175f64b7bn/aHeodo
2020-09-28FILE.docdoc 2bd00c93683c862bb3172de25951bcc67b35b76bd38a02e2898bc62535102410n/aHeodo
2020-09-28list-076.docdoc f2f84cdcf00a1249c25d12a8fd12be745c6daddefdc26f665bf64b0699cf4bb9n/aHeodo
2020-09-28File_20200929_QI69283.docdoc e1e84b8873782b776e85615ca88eb3194ce071f5f62297712a84764abb259cbcVirustotal results 30.65%Heodo
2020-09-28ARC_TOD88481.docdoc 603f9f9fd45af9fd40303dce412330f7391c61306cb4426a1291b212d1fed068Virustotal results 30.65%Heodo
2020-09-28Doc_2020_09_29_NZO33100.docdoc 0537a8b60f70cff3524ae128de8c36be3e5c5d546657bc22795e8e8b2e1a02e8Virustotal results 30.65%Heodo
2020-09-28doc_20200928_JR22897.docdoc 5cf2cab29c6bf2d42b5b8cc8064c629e2700954c241dbb714c05d9309379cff7n/aHeodo
2020-09-28list Q90770.docdoc ed3abaa21cdc78324276aae5eeb696f7116b15d243ffc9e575c5dc98280b7e50Virustotal results 31.67%Heodo
2020-09-28mes-9374828.docdoc a554046f9441322716488b178a6f0d60e24d3bf9f11071067d2d6d74e0e922f0Virustotal results 30.65%Heodo
2020-09-28Rep 20200928 2879.docdoc 0a30286f2c6136992c19ec3d8b6d67aeb198133f5e4fd0fd477ffdbd1a3b2c5fVirustotal results 32.79%Heodo
2020-09-28list-BMN947526.docdoc c483ebb2a992e840375a7bcd385b986fb4cc09e32c5f7a9902f4666c56fbb052n/aHeodo
2020-09-28DAT-20200928-67375.docdoc 672bfbd35877ee7731d1c2044f08adc0c99bb5075a364f5cf2c92a27f1424dabVirustotal results 32.26%Heodo
2020-09-28REP_CK770.docdoc 9229b8aa910b6a3a82477341ff66c9e89779d37ee24826a7b4c370fbd0bf4e62n/aHeodo
2020-09-28G715-Y959.docdoc 71a38628c591821a166a062d506bc6b46796bf94f17b1bcc092bb41dec8c3ba1Virustotal results 32.26%Heodo
2020-09-28file ZIB696153.docdoc 6d246823a6c13ca1269075bbcc8d619785c260a0e5520a11b83e677083282d11Virustotal results 32.26%Heodo
2020-09-283880Q_JZJ29963.docdoc 0f885730f623d6c4138e7d2bb857e04ba8a3478341255ad547fce8d90fa04046n/aHeodo