URLhaus Database

You are currently viewing the URLhaus database entry for http://veerassociates.com/wp-admin/attachments/b48Hp6IT8zWSJvqQ/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:630710
URL: http://veerassociates.com/wp-admin/attachments/b48Hp6IT8zWSJvqQ/
URL Status:Offline
Host: veerassociates.com
Date added:2020-09-30 16:36:05 UTC
Last online:2020-10-05 11:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-09-30 16:38:31 UTC to abuse{at}servercentral[dot]com)
Takedown time:4 days, 19 hours, 15 minutes Bad (down since 2020-10-05 11:53:44 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-10-01mes_2020_10_01_6152.docdoc fec01c1bae4abd3f9440381c855227b0f1482882e766d147e42f80cd257cab3aVirustotal results 40.32%Heodo
2020-09-30file_3777440.docdoc 7b2561cccd85d4a2dd4d7c8c873b6e498f1030c959b48a8899a4032502d0c4c4Virustotal results 26.23%Heodo
2020-09-30dat-2020_10_01-84659.docdoc fe188a82b959918eac4007d04f619ee4ad081730eaa6da718e8e4e0cd9d594a0Virustotal results 25.81%Heodo
2020-09-30file-20201001-9219412.docdoc 32a1991f3cccd7f0d787d1fd9ef745328cefd8d134d25a6a2e12d49808143952Virustotal results 25.81%Heodo
2020-09-30file-2020_09_30-6730518.docdoc b13ca68755e7a0843def774a16783e4950b03b081f103a91e4822436e22ab702n/aHeodo
2020-09-30Doc-2020_09_30.docdoc 6d73511e90ba7a3d92982c8e0a90ae100357f2bd248e7cf6fc58a16c084550c5Virustotal results 24.19%Heodo
2020-09-30Attachment-VVS844.docdoc c5c266188bf922f61bc261b0c17850c52d4be33b0dfbd25d1b9c59d3d52bc822n/aHeodo
2020-09-30Dat-2020_09_30-X72209.docdoc 129969ec1fec7a8fa24d98d2ae3abc6f93362f214ea4784c2e3ef5995868f8daVirustotal results 24.19%Heodo
2020-09-30REP_20200930.docdoc 29cf37c04f72ed5d56812624874e7e603b09fc8211174cfca2f1b43682ca54a6n/aHeodo
2020-09-30ARC.docdoc 5f1b7ea2789bf23bdbd87c87daded72bb53aad07fc776bd6622709482c002b33n/aHeodo
2020-09-30FILE 2020_09_30 J760.docdoc 2d9e75292b55b3da07fd07a437ba2963d5e46d7f2610cf07eb6c16fe9795bd99n/aHeodo
2020-09-30311254-2020_09_30-QVV83533.docdoc b45538a5c2f1eab20e6d8dab63909e18e7cbcf2e60b52c8546824233ad1a5f9dVirustotal results 24.19%Heodo
2020-09-30DAT 2020_09_30 SNV9836.docdoc b03527f06cf23a197a3ed8826c8e376391264fa6bbff6dac29b2ef9af6dfb8c1Virustotal results 24.19%Heodo
2020-09-30Rep_20200930.docdoc d0a97048219348ec76931080e884a4f1aeb2f72d454e5288b9c7393f49d1d752n/aHeodo
2020-09-30dat_889951.docdoc b808848ee2248193b0a608d6285ec7c1978405f2732a86fb5d05dabbc794fcf1n/aHeodo
2020-09-30mes_2020_09_30.docdoc 7783a01f4659fa35c499ce2c254283694b258a8e829b13cc83a58e060dcdc112n/aHeodo
2020-09-30mes-7008.docdoc 132dc9a0fe27ea8997feffee9f44cc94923d9bf3deea8f556a4e2c3b98501369n/aHeodo