URLhaus Database

You are currently viewing the URLhaus database entry for https://www.ayfira.com.tr/wp-content/attachments/R2NJTFqgLciY1/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:631014
URL: https://www.ayfira.com.tr/wp-content/attachments/R2NJTFqgLciY1/
URL Status:Offline
Host: www.ayfira.com.tr
Date added:2020-09-30 18:01:08 UTC
Last online:2020-10-04 00:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-09-30 18:02:03 UTC to abuse{at}hosthane[dot]com)
Takedown time:3 days, 6 hours, 8 minutes Bad (down since 2020-10-04 00:10:42 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-10-02Arc-881853.docdoc ef19c057c9240fe62b3f782f17cd1dea3c1e9879d0ce4aa8d80cd0e149f2a1a9n/aHeodo
2020-10-02file_FK385.docdoc e5b4f5951fc02c16d6f9485fa8ddb3be7611eea3c59ac9262092864de1b99568n/aHeodo
2020-10-02File-20201002-485710.docdoc 52b222374831f845dcf2ceb94ddf3a7e56ff1b2401ca994464a2cc99cbe60aecn/aHeodo
2020-10-02list 2020_10_02 OGO24909.docdoc 88ecb56265efc0943af4d9e630a5f419bb6cae0ef5725b71a94483701cfe1a81n/aHeodo
2020-10-02FILE_2020_10_02_488045.docdoc bbcabd13e4206b6a8576e29717581b931040a859e33b4ee3c624d47f7d65ad24n/aHeodo
2020-10-02REP_20201002_ZE9803.docdoc 077e3db1792330930229ad5bc04e5d526708897baeebe195f8afd183b23073afn/aHeodo
2020-10-02Dat.docdoc bf55578a83dca6ea7abc8deb8cff0db10a181b0e6131f44d790c8a976a57aea2n/aHeodo
2020-10-02Attachment-20201002.docdoc 3a5e4942495f35a108eba556abb5dfcd6b790b1b16f4af3efa3f29e0fa394906n/aHeodo
2020-10-02File_2020_10_02.docdoc ce0a2399e4a52440cac5533f8e449c6f0419b6603a069b7443c84f8df37013a5n/aHeodo
2020-10-02list-2020_10_02-352594.docdoc e9a17bf99883e4240932ef7326d2a222ef8a1d57aa8998e39050077acfb40a18n/aHeodo
2020-10-02Untitled-964.docdoc 78022b4a134b946874f2268457cf19e1dd6b1f83b02e009b0592afc9b82969d6n/aHeodo
2020-10-02file_J370.docdoc 7af2bfaffa94da58c073910166c0cdfc226d1a3e7009f248a0d86ddc27ceb1a2n/aHeodo
2020-10-02INF Y03445.docdoc 011da9ce80da4e79b555be49f03043613903d26b3928af2e32e16a8efdf5f4e8n/aHeodo
2020-10-02DAT-27330.docdoc 62bdd77f5ae3c5e622187c44006a843171135073b17e180fcc221c535a5ca192n/aHeodo
2020-10-029908_20201002_031.docdoc 595bf8c58b9b6b8f46cff1c7181c105f966687b3fec845525ed2594169014a76n/aHeodo
2020-10-02UNTITLED 2020_10_02.docdoc 79c4ef64a5bd86ea5330dbba8b204c4fa08923fb00364d7f312427db232c3ac1n/aHeodo
2020-10-02Dat_2020_10_02_7007214.docdoc e7c8719a1f599684cb0209e5302d543c67d8d18b1b7ad4683632c4b96f00dd34n/aHeodo
2020-10-02mes-VME7529.docdoc 54ceb4c8f3132c4be1b03494a294a4a7f622a2bc0d4b9e1944c2b6bd52a1b35dn/aHeodo
2020-10-02Doc-20201002-02809.docdoc 0199c4396441d1ac932041a01449a8e31d0bb69d6afffde010a72dabf679664an/aHeodo
2020-10-02LJ879_20201002_7137394.docdoc c21e709c890b54ed57e199c832e0726cd00b54dd75a3d99c6da062715de4fe59n/aHeodo
2020-10-0250942116_3016868.docdoc f4879ddade86aedc39294917c0f5ccbb46207f67f447edffc13b02adee1a3361n/a Heodo
2020-10-0238124ZGV-T6930.docdoc 3cac99f9669e7d178f34de86035ae0bee846de20b6fd541ed3cd1b3b01bae073n/aHeodo
2020-10-02Mes-20201002.docdoc 406c0c55a3635565dfc581d663c7d8bae8be051b2d5d3ad448d5a0003ec54952n/aHeodo
2020-10-02LIST PD929388.docdoc 758cc00409af95532b76772f6578dfbc57079b4f4cfe18db983748e2bc71adc1n/aHeodo
2020-10-02inf OXV775209.docdoc 7d52aea2071c0fc0d873fbb1f8857d33279c8acc607b332b3fe631163a460c42n/aHeodo
2020-10-02inf_20201002_HRJ623.docdoc 0ea01c57af4d22f1d642786b3fe78a388596d5767f68a9b07cf27e8fd918fe30n/aHeodo
2020-10-02Mes 20201002 B960130.docdoc 7e96d2ac54a4bcb0c8224ce5bb4949a1526c328162a88fb81ee85d50e6acffben/aHeodo
2020-10-02Attachment-2020_10_02-C664.docdoc e2ff3479a7c5f6fb605d1275d443caf45f5b3f1757e5c3a35eb3e47c2d533b18n/aHeodo
2020-10-02dat 20201002 BS517.docdoc a99c9ad593ce0d637ad4526f58ca7493d46ff5142d908d55ef9ee711deefb69bVirustotal results 31.67%Heodo
2020-10-02INF_20201002_25219.docdoc 35e34300ab10fbfe1170498fd9dfd74c724196f3a6c7e0c94b6c24246b6857d5n/aHeodo
2020-10-02Mes-2020_10_02-T4927.docdoc a3022d8bff7c8b26e0a2d78cbff43d0fb7d41f954a0700000328da5849a0c48en/aHeodo
2020-10-02UNTITLED_20201002.docdoc acb57db0f96b25ea0e76d612fb46f21a2b357cf165cdd87f8bfd30344af185bbn/aHeodo
2020-10-02FILE DFA396.docdoc 6a644949315e239f75d68341fcafa66bdba7d7d06c0caf8c9a52eae5a2e27072n/aHeodo
2020-10-02MES-YV972.docdoc 616f48f98250a6852000f85e5a053fc411470a3283bc35a09567c5458ed97f38n/aHeodo
2020-10-02Doc-20201002.docdoc e21603dbeb2669c9052bb6b6059d96ebfc14b2bc0d2d006b355085875cddb6a4n/aHeodo
2020-10-02Rep 2020_10_02 9437985.docdoc adef2cdcadba1050510f68c13ce7402dd906d006eb5c9cbb0b4a59ea8c64a511n/aHeodo
2020-10-02Arc-2020_10_02-NK80294.docdoc 47602cc207ff8ec0ce8f62b641bf6a6ed64a50e9b03e27a0ad26450c393ebba7n/aHeodo
2020-10-02list_2020_10_02_078707.docdoc 99d8c2410585186696f6681d40947f22e10be6e91b3bec3e9198221215535c9dn/aHeodo
2020-10-02Untitled.docdoc c91ab36cf7635a0b03d1f151c3917c8eeeadee4d2221003d02e074d065edb699n/aHeodo
2020-10-02MES 20201002 7140.docdoc 94a67f94d3834b57cac84e99894c73311e3c20e2370cbe66066aea79c2c61363n/aHeodo
2020-10-02REP_LZ5754.docdoc 2e0e591fded3770dfe0bf1d5d3dbdb04c8e66abe5ded5254d8116c2a18d7cb49n/aHeodo
2020-10-02Doc_8234.docdoc ebd9708691c87d11683ad554914a2ded2b8ff37f868f281d6ff471dc3946adecn/aHeodo
2020-10-01REP 20201002 5000534.docdoc 4c7eeddbf5dffc1fc13d5c13da0cebbfd7eeb858d0fd87d81c541e9ade235e98n/aHeodo
2020-10-01Mes_2020_10_02.docdoc 13c6b5f721451f98dc115ccd2220ba318d1ab222155ddb398a641a898be13ac1n/aHeodo
2020-10-01FILE-54870.docdoc 61d90b981c1823a18defd1fef8cf97a72c6dd8f9ec671b5d30579be1933d15d7Virustotal results 24.19%Heodo
2020-10-01arc_2020_10_02_781.docdoc 7f82ba74dc5ba479a58317e8a518793838a89c56489ea8341cfd3b66f43015b1n/aHeodo
2020-10-01Arc-20201002-ZQ3802.docdoc 179cbf578c9346ba1f910ca3fffceb4b8742fa9a14e22e8840f6aeb327d3d216n/aHeodo
2020-10-01470RKS-20201002-8131238.docdoc 6abc2d7240caf424804c664b0a1dd93ea28cbbc13c85990a392272d85b658eaan/aHeodo
2020-10-01UNTITLED 20201002 DCW373129.docdoc e792d898b596ba1b63d7e20d0472222df3df3e22802dce1f2af0dd786c80ee18n/aHeodo
2020-10-01UNTITLED_20201002_23812.docdoc c966bc69bcaa76d7d58b86481187c155764ddbc0e32464b23aaa47213969170en/aHeodo
2020-10-01list 2020_10_02 01612.docdoc 3ac64d465c524f381117d299271a31fc10b80cbb217788525e95f069d56a7ef5n/aHeodo
2020-10-01INF-1124967.docdoc d5e46afd51205158e17d48dbc6a1258485e157fc92dbc58ebca6ac825a1c1b17n/aHeodo
2020-10-01DAT-2020_10_01-5361242.docdoc 6e4cb329ac0f2f0317ec3335305c3902c9c36764bcf1213d8a86e8fb3085f665n/aHeodo
2020-10-01List_2020_10_01_052.docdoc e13be4efd86f1555d3f10abf16e8a16ec0ce0b8e98889d775b76bcc6c7f98c0bn/aHeodo
2020-10-01Attachment-20201001-256.docdoc b8ca2e5149c065934a80646e5181f9a797f68fc5bf9614904eb5d2f1d7bfbf03n/aHeodo
2020-10-01DAT_2020_10_01_A9325.docdoc f62e983e1977d2713fc38fb56fbff002fade36a76fa5b54111378bbb70e0f691n/aHeodo
2020-10-01FILE 20201001.docdoc 40221abe560080243497513ad209ccc44547a051839b9fbf63f90d06e60d01c1n/aHeodo
2020-10-01Attachments-5460369.docdoc cab6a3abd333a820c6f111a00fe8c9e3d396da6eafca746949ee5534717c65f1n/aHeodo
2020-10-01mes-H6307.docdoc d69c55c3fd6ac15d34a268863676ba3c6ab5432022fadb56a326e19d6c194c97n/aHeodo
2020-10-01dat_UOY9409.docdoc 0b0e98c5728fc357c3cf405f786733bf6b371b19345e5fc2c19f8d0f4c9577adn/aHeodo
2020-10-01Doc-2020_10_01.docdoc cb9f83d8cd746634cbcbaf11873ecd44da95b323967c4955b27a946dde4ea9b8n/aHeodo
2020-10-01inf 2020_10_01 597981.docdoc 429640344ceeb02f20848b6aa0881bb97191972235419d97859adf9e6762369bn/aHeodo
2020-10-01Doc_20201001.docdoc 517d64927e73ef9a34ef801b52fd6e7c35e1b546838415f2c54a155135312cc4n/aHeodo
2020-10-01Dat_20201001_3770945.docdoc a87705e522dc57d703fd4d90ad62e5d52eb15947e6a04c11f3602342e183ecd3n/aHeodo
2020-10-01Rep_20201001_MX324189.docdoc d5618e9d3e616ad7e4d495a6451f542ef2c48ddabdf4a13ef17983f090364012n/aHeodo
2020-10-01INF 2020_10_01 PQO801.docdoc cd0d08d5c91567255c7fcbd8b8730006f7fa676aa2afbd78680fdca966352b08n/aHeodo
2020-10-01GQ5465 LM594.docdoc a7134dc9561f5091c02db461b27ad58cad2ba199d2dcc5d7b921e6b4a7e38ce1n/aHeodo
2020-10-01Arc_2020_10_01_8623399.docdoc acf9006377d078f51fdd046458027c9bcb0943dbf79a90dd279dc3f15645c1d4n/aHeodo
2020-10-01Untitled 20201001.docdoc 7c4dd30338d7f65f40c72f5d1309980fe7818ab3404a94b35774831c60291f2an/aHeodo
2020-10-01Inf_NR742.docdoc 9f2f98ebf7bf12c474b23ba8b69faca93b274e6a614ddf61640c56058c7e7ce8n/aHeodo
2020-10-01Arc 8399305.docdoc e0f75fd1da01c160ddd7d2e17d64c51d2d04ea2979f26e35f7e7c7493a7b08cfVirustotal results 30.00%Heodo
2020-10-016364338-616.docdoc f451603abc6fd180aebc1ae5d854c05256f64db8010139d10f5c7ee1ffe68531Virustotal results 29.03%Heodo
2020-10-01DAT_2020_10_01.docdoc c22c630bccc355598f8a992e640e0ad20e81dba56b0dfc2a38a3ae1bfc0e767dn/aHeodo
2020-10-01file-2020_10_01-FA613713.docdoc e713951a9882bb42e8cf38a1ef6df6903585faf2bfff9727d8be281218c1d14an/aHeodo
2020-10-01inf F56650.docdoc f9a2c035b1b044de880b93f5656846750bbb7710042f746070a78d7c63f543bfn/aHeodo
2020-10-01List 2020_10_01.docdoc da961f67e8a061149fff2af056060324ca08a2cb272708f64aa3f6c71244e23cn/aHeodo
2020-10-018966670_20201001_069.docdoc 602a79979cdc4b3dc2ddc23f86d53efc957725ad8f3f6f0e34151f87fba33766n/aHeodo
2020-10-01file_SV43694.docdoc 1814c453e6a32fbb4d97199797d48c76710a83a26c77f4975fb9504635f2ad38n/aHeodo
2020-10-01List 27106.docdoc d715bda5d2e632bfb25580ae2bdb209385eb4a96696b866967545a958542c3d8n/aHeodo
2020-10-010272AA-5050.docdoc 50babb8a95b3669cd17c0eab628d864f70dcb33c9faad4d86eb12cfc4b092397n/aHeodo
2020-10-01Inf_20201001.docdoc efdfaa29531b1f2c7e687bf972dc15262d36e962727cd92e51f97839a4dc722en/aHeodo
2020-10-01ARC-V213675.docdoc 33ae552bfec33fe70cf9ad77e96a4cd86ab0b6e5d217b98f2a6ae23cadb10f8bVirustotal results 29.03%Heodo
2020-10-01Rep-2020_10_01-5649.docdoc 84dfd6f333e5d662e14f69dac5adab6bd6eb7f272c4a4cb48609c3a16061a1bbn/aHeodo
2020-10-015356U 2020_10_01.docdoc ed8d96e49e322899a605481c69a8abb22cfc08ef0ad07c8da740f354b154f0f0n/aHeodo
2020-10-01Mes_2020_10_01_0142.docdoc d9438be0f59419eba96b4dbf40c05780a139926e79524dcd3fd80b2988694530n/aHeodo
2020-10-016782QMW 20201001 485.docdoc 969194e274b5cb496b8ad0c40cf036c6c0a8a4bc4de73599cd2b8020284cfdc4n/aHeodo
2020-10-01list-26375.docdoc 43a75fd5d2eae7754332c77450cde25a440f61b9ff5329a07b8b964f608429c6n/aHeodo
2020-10-01FILE 20201001 9302.docdoc 4e29f93d23065a600d39a4f1db754b951bd6a38706c145d990df65d6ebf5b6dfn/aHeodo
2020-10-01Rep_679.docdoc 033fa28cdbf40b41870947400cf8607c9cde669b8fcf25abe947f276b062205cVirustotal results 37.10%Heodo
2020-10-01Attachment-20201001-7601473.docdoc 14086c7d40516a5e11471a163fc4c4d594adfd1c5965e0ae0ea7ddcd013252e1n/aHeodo
2020-10-01DAT-20201001-771421.docdoc f4aeb1fb3ee7a1e47154bd3b5b2209626b73ca9812072ce7597fd191cc384e93n/aHeodo
2020-10-01UNTITLED-OTE3981.docdoc d09def23b85e52761ab948f8a0a73e9d2f43f1a06c27f35973dcedbc87954564n/aHeodo
2020-10-01UNTITLED_F00810.docdoc bde7001edeb6f299d49c1bd80bfa2368ed58033c8a6f3da6fc35e3b77b6fb79dn/aHeodo
2020-10-01REP 20201001 FV1590.docdoc dd67f6c4d25192a01c4c15b73cce5e5387ea5e256f83c8f36b5b9eeb64296410n/aHeodo
2020-10-01List-M023155.docdoc c37536624e100c6928618bde49c7c002a4795fe400199b57806f7e5a6bfb1c4en/aHeodo
2020-10-01216KU 2020_10_01 56079.docdoc 86dbb41d6058264e118fb00ad05407dbef472020460a4c9f0de0ada45e794935Virustotal results 37.10%Heodo
2020-10-01inf_2020_10_01_N600590.docdoc 2316491908b1b0175a9782d21fef85f16d29b5dd05d72c00c8dc943ee110afb4Virustotal results 35.48%Heodo
2020-10-01Doc-20201001-8760422.docdoc 85226bf4b5aae875eb53ec867bf5e5349c57c45cca5e2077e05eb090328c4d61Virustotal results 35.00%Heodo
2020-10-0186987 648961.docdoc 34bce035f84a22c00827f1722c2caaedd1f3d7ea059b4a4a695e8867874de5b9Virustotal results 35.48%Heodo
2020-10-01Attachments-ERN476.docdoc 6ffe1f1e0b366f49f5644ef9775e58ea1aa808bdfea4ced1aa367e2e44cded16Virustotal results 31.15%Heodo
2020-10-01rep-2020_10_01-653.docdoc d382a8d884d288f590e7382d6f5a50924269e1098dbeff15c664104aece75dden/aHeodo
2020-10-01rep 0940.docdoc 2236eced769acbff98e98c0f0f46643a46d2411d661697211da7a01b9ed7eb2cVirustotal results 29.51%Heodo
2020-10-01ARC 2020_10_01 16769.docdoc 5ad115d91c8d255bfc8162408ec267d672db69e95bb393c54e0055136e7fc148n/aHeodo
2020-10-0145121 2020_10_01.docdoc f599f04651361e4298bea8b9c219e4588d021a8cbf00802660a69c92584446d8n/aHeodo
2020-10-01rep 20201001.docdoc e79f250400c358da91a7a87f73902980819c94e0b51c91323cb3b3b77fcd4283Virustotal results 27.87%Heodo
2020-09-30doc 20201001 6157390.docdoc f7454110fc14b94a8de1a15f118873db33d5dff0040b860e7a74775a986c8196n/aHeodo
2020-09-30File-2020_10_01-QSE299.docdoc 06c7dc1301836c796492d6ca99e8461840a031969bfcaacde4cba2113ac79069Virustotal results 27.42%Heodo
2020-09-30arc 495190.docdoc 24a4f7d8cf601311928b7d9c78fd6067e4b6e6a47c641fbdc86703b0dd3f1ee7Virustotal results 27.42%Heodo
2020-09-30List-2020_10_01-XZ254699.docdoc 8e47a77404dc1b06dfd5021c2deb7c2a7bc7ef7c212f643659615772497a98dbVirustotal results 27.42%Heodo
2020-09-30MES 2020_10_01 PUZ793.docdoc 111272b4f9fa36b17efc27ee4685f0300764cbf2aa0f028174a6d6f249393844n/aHeodo
2020-09-30Inf 20201001 12759.docdoc 59218dd633aa6e55d901c1a8227ace241e21d80c34af6fbd4dd99400832ef122Virustotal results 25.81%Heodo
2020-09-30rep_20201001_W990.docdoc 7b2561cccd85d4a2dd4d7c8c873b6e498f1030c959b48a8899a4032502d0c4c4Virustotal results 26.23%Heodo
2020-09-30dat_2020_10_01_C872818.docdoc 024d41e6829c4934db673c8c999026101957149432f935a6f24412fd9d6e52d7Virustotal results 25.81%Heodo
2020-09-30Attachment_20201001_EC9026.docdoc 32a1991f3cccd7f0d787d1fd9ef745328cefd8d134d25a6a2e12d49808143952Virustotal results 25.81%Heodo
2020-09-30ARC 2020_09_30 3402.docdoc 7894db05f1e0bf0341427a40ee7bac8f5ef35bc7acac378caa332c08586b9514n/aHeodo
2020-09-30inf_2020_09_30.docdoc ddf8988ebd5fa555488322ed3fe2302ded38b89794abacdfd52a46ee6b1f0ddcVirustotal results 24.59%Heodo
2020-09-30REP_2020_09_30_A055.docdoc 9bd5e78a295d861307808771659e53c1312461fb22f61de2b49e870ff1d7ce81n/aHeodo
2020-09-30INF-9907229.docdoc 9e2da6097114ea5381a7a596fa3ec710047368b9d81a72b1685682c20766a748n/aHeodo
2020-09-30Arc_106213.docdoc 3a32e39ed3b9c84dfecee400132af0b2b351401106e37ce1ba7a050f016560e8n/aHeodo
2020-09-30Arc-20200930-7732329.docdoc db58a47589968fc0aaeaca53d1f70a4e1eda3577ef1304fdba9745809989804bn/aHeodo
2020-09-30INF_20200930_H620065.docdoc dc681f3d1933c88a3830910384602c5c5b3f2f3c0fce741e5becebf377a6ad03n/aHeodo
2020-09-30Attachment-ZFS71055.docdoc e2b24fbb416a982a127d5345f349e7b8c4f1ed8ef78c4dee5bfa98fb7d957fa7n/aHeodo