URLhaus Database

You are currently viewing the URLhaus database entry for http://uruzigango.com/less/FILE/E71fLTgL84NUc3s9x7Pk/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:625087
URL: http://uruzigango.com/less/FILE/E71fLTgL84NUc3s9x7Pk/
URL Status:Offline
Host: uruzigango.com
Date added:2020-09-29 21:22:05 UTC
Last online:2020-09-30 01:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-09-29 21:24:08 UTC to hostmaster{at}nic[dot]ad[dot]jp)
Takedown time:3 hours, 38 minutes Good (down since 2020-09-30 01:02:09 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-09-30doc-2020_09_30-C1740.docdoc 9d6a2742e7b189220132964cb3ecc21eb2bf93bf90143787ab21937cbb1b2e5fVirustotal results 32.26%Heodo
2020-09-30inf_2020_09_30_WR2424.docdoc 8b094b3853afcb79ef514333bfa570faac9b7996f06500f174020ce0e5a31751n/aHeodo
2020-09-29YX76744_20200930.docdoc e4deca4ef3c529f48c73898860d8b4922d67b934f7a168de5212f747a16ac0c1n/a Heodo
2020-09-29Doc 20200930 NZR330162.docdoc 9a24d61f24a1211065b986def505c02b66a94f2b1cbde8fc6ef868391c24d4f3n/aHeodo
2020-09-29TRT8799_20200930.docdoc 1d742e585ed7b4c237726a945da11795c46da01716e9da561d98fff100ee938fn/aHeodo
2020-09-29UNTITLED_2020_09_30_027.docdoc 349dd2ac63132716ea7360223fd038575e1b7144925c60d87589880fbd488670Virustotal results 29.03% Heodo
2020-09-2904240633 2922.docdoc 2e0fc31a6ff8f20507c6979fa9b5be9e11f13d424e2962ec30f1fc596c069898Virustotal results 19.67%Heodo
2020-09-29LIST 2020_09_30 518162.docdoc b6924c37febb8c64ef7ba11d8266e713aac4062636eb088d498cb095fb68010fVirustotal results 19.67%Heodo
2020-09-29Mes_20200930_017.docdoc 646da755fabbe5583ee805d29483d16e310418bd7543ad0d1a428508d17b728dn/aHeodo
2020-09-29DAT-2020_09_30-7225861.docdoc 4d320a36571c9892b7730fe7903d3eb8a96dd16575194e01c8b202f77930f86fn/aHeodo
2020-09-29File-T0692.docdoc e217a7b6b8d3730d1f902b14dce65e6146ed92bf808d911ff003e7dbb8f29a71n/aHeodo