URLhaus Database

You are currently viewing the URLhaus database entry for https://hmc-hygiene.com/cgi-bin/INC/KuZICxKHiV/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:623578
URL: https://hmc-hygiene.com/cgi-bin/INC/KuZICxKHiV/
URL Status:Offline
Host: hmc-hygiene.com
Date added:2020-09-29 15:08:04 UTC
Last online:2020-09-29 19:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-09-29 15:10:53 UTC to abuse{at}strato[dot]de)
Takedown time:4 hours, 13 minutes Good (down since 2020-09-29 19:24:00 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-09-29rep-2020_09_29-508947.docdoc 05b3edeba78db8bffd14a8c4cc8f60c6f9ca6958ad5ff519e410d5eef6a4c555n/aHeodo
2020-09-29ARC_2020_09_29_JS2140.docdoc f597bca2ebef9eaaf692c33d4b2e5aeb17867bb7748ffe9ee8699ead5521982an/aHeodo
2020-09-29Attachment_20200929_XB951754.docdoc 73610175404eca0912ed14988bc2019dcbdc0623dc7f780808798b0cde39bb87n/aHeodo
2020-09-29REP_2020_09_29.docdoc 3203c4486d366305fbf9764c203642efa21a522ad4ff60316270cd53c827c06dn/aHeodo
2020-09-29MES-20200929-NQJ9649.docdoc 3c9f99d632fd15d09efa2bbc00267cd524c3c8c3ee777ef5779b01afd49071b0Virustotal results 37.10% Heodo
2020-09-29Attachment_JPL9768.docdoc fe5b85ffcc08f811bce57d1eb2cca479c679cc8770a6991f857deb2f95278b88Virustotal results 37.10%Heodo
2020-09-29WVC7010 2020_09_29 7314.docdoc 06132db525f2d128efb9a6e0b0322a1c08e01cc5e431086b6b9d1531aaf23914Virustotal results 37.10%Heodo
2020-09-29INF_20200929_134850.docdoc 70be43689fc27aa0f064d7094d74a13f025c25c6174bce02f75c8953a39a661aVirustotal results 37.70%Heodo
2020-09-29DAT-QRQ199163.docdoc 3d3c974fda07fb52c167f4676aa57bc30728fb3aa245c3957fbad1f309fa7e6bVirustotal results 37.10%Heodo
2020-09-29file-20200929.docdoc 253cd8373b9fef7b344b345f38bd10c5c6cfa760b422b98092f01d3925a51b47n/aHeodo
2020-09-29Doc_2020_09_29_1737.docdoc 4730292036a58215d83a817af2dccfd57271fefb607c590ccb33a48b353c449fVirustotal results 32.79% Heodo