URLhaus Database

You are currently viewing the URLhaus database entry for https://bahtiozina.info/wp-includes/Overview/lwxJPOo20PzN6o7aK/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:697096
URL: https://bahtiozina.info/wp-includes/Overview/lwxJPOo20PzN6o7aK/
URL Status:Offline
Host: bahtiozina.info
Date added:2020-10-15 09:15:05 UTC
Last online:2020-10-16 13:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-10-15 09:16:06 UTC to abuse{at}beget[dot]ru)
Takedown time:1 day, 4 hours, 6 minutes Poor (down since 2020-10-16 13:23:03 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-10-16Attachments 20201016 STK21668.docdoc 37f1cc77866340d05866022da9d24b26a5823d5d559b9a19e421fabcc495c8c0n/aHeodo
2020-10-16rep-2020_10_16.docdoc 2e281e2f968e91473b2544a55304f127a90912db19bf5912d4d5e76b7b088b2bn/aHeodo
2020-10-16382_2020_10_16_5711841.docdoc 69874c7feab365398b8a2342c45603cb063161bedcdcf1f58839bbfb7a6b0620n/aHeodo
2020-10-16UNTITLED_20201016.docdoc 0ef4619de5dcce5e63b32e29c2c6d996546c456c648048b5b5e064970f8bff59n/aHeodo
2020-10-16Inf_2020_10_16.docdoc 6a9fe9654b01f8adefb5b8869a82916c3ee7d7470eadf4f4a2fd8372163be119n/aHeodo
2020-10-16890_20201016_0714020.docdoc e070330805e94d235412c1d54a2c6a015bc8732679f996cc34fc03b0f9ae1bceVirustotal results 30.65%Heodo
2020-10-16UNTITLED-2020_10_16-W7192.docdoc b94b648b652abff57d8cabcb2221a3a5d9f6415b3e93d79c587d43b3118ebf76n/aHeodo
2020-10-16Doc_20201016_332976.docdoc 1bd4395a76b6ed6c809259f58a36266882c9a3f79e1064a5ba0277561ff8addbVirustotal results 32.26%Heodo
2020-10-16Dat_2020_10_16_HRL3679.docdoc 3858f819b8f0592d10bad163b692a1a85db0ae60bdfa91a1272c3d32f216f1efVirustotal results 32.26%Heodo
2020-10-1610892_2351164.docdoc 6a089a7df35eeb01c1847b3ea416d218facf9f0a2165aff4b4fbd265b64d20abn/aHeodo
2020-10-16DAT_2020_10_16_025.docdoc 2dcbeebedb0b14deca837e1a7f3b4f77103ad6f0c28e4bb94f5bb8d5d3c65940Virustotal results 32.26%Heodo
2020-10-16list_943249.docdoc 4af8ba6ab36a82d4a7f86ff80bd98152f6b8c7df507558dd21a833a1820dd328n/aHeodo
2020-10-1660117367-687.docdoc e52f2635e68a8f40c8e47ed31a932dbd89ca5e423bc8565b71df778c2c7c2eb7Virustotal results 50.00%Heodo
2020-10-16Rep.docdoc ad29fba32bbfa20e1769369f3a121ce461433fc55e719db4c522855e858262a1n/aHeodo
2020-10-166982-20201016-MUT8440.docdoc a6091d359b405ea83e58000e282b0bd40824c64d36b4546077d786ff19124be1Virustotal results 49.15%Heodo
2020-10-16INF 20201016 013.docdoc a47762c209b57d46904972127a1289ee6b304fad012783b113472df47b76d81fn/aHeodo
2020-10-16Dat-143529.docdoc 8d55bfa88aac7102ed41f043d7266e85bfd3e83d0d8f7d298876419eb1bde683Virustotal results 50.82%Heodo
2020-10-16Doc_2020_10_16_H210279.docdoc 33e9aa06794873710331ae9974a1df6d3d1529d39553dbd6a504a1181b05bbe1Virustotal results 46.77%Heodo
2020-10-16List ZD61046.docdoc 594458a8901ca25ac09d46ae9f0fc9a0ecd336da9af62a1a4f46940b80bad38bVirustotal results 46.77%Heodo
2020-10-16Inf.docdoc c85e897e957fa44b137c35917ea9886343ba4b8d4fbc13668515d382ed874555n/aHeodo
2020-10-16Dat 2020_10_16 C112143.docdoc 9254602e28d8cbcf21f9c2235f5dbb7deb8be9c6b331d735643b5892b2115cb9Virustotal results 41.94%Heodo
2020-10-16Attachments-2020_10_16-RXA763.docdoc 9347c2db740afe55d4fcd6c9346d63d399d3456bdfa1f8413ade5b083f64f0eeVirustotal results 40.98%Heodo
2020-10-16DAT_2020_10_16.docdoc eecadd7f746afdb1f94c964c104b0bb340a550b78887329ed6a982be9d4455f2n/aHeodo
2020-10-16MES 647.docdoc 8ca596c47a7c3f64989bdd6cd89f70123d1edd290b90213073d63af492531845Virustotal results 45.16%Heodo
2020-10-16inf 8037.docdoc f937a97bd6491ef93fb7aaf9ba74ab45293543764c0c47415bc01da8b23e9a70Virustotal results 41.67%Heodo
2020-10-16Untitled_20201016_5738837.docdoc da9a336d9317f48aed4cba7796f4910ab150a17642f0969e23d548e69d1b63cfVirustotal results 40.00%Heodo
2020-10-1544997 20201016 930.docdoc d1fea8b66cd1bf042820cc0c454cdbc6863c24dc54b90afec02b4b0c51394734Virustotal results 39.34%Heodo
2020-10-15929HER-20201016-536.docdoc 9ad0875a2102f3ee12801e8cbaa933ceb7837cb914ec2102841a5e40a0eaf5d2Virustotal results 38.71%Heodo
2020-10-15List-8419.docdoc c18c4a8b5fe16fdf880fce5cb6e6d6fde0c9d494ac8edd7ba5c45a27c708ddbfVirustotal results 42.62%Heodo
2020-10-15dat 2020_10_16 8739.docdoc 9224f06c0199e984b9bc5e2cfc12af8d8ea1d1022db475a557a1e93221030f76Virustotal results 39.34%Heodo
2020-10-15863LW 20201016 7337.docdoc 5ae6059ec64a9952d72dd06acc66b5a25a984f65a359ed2c2fbf70275f8f4204Virustotal results 38.71% Heodo
2020-10-15LIST 2020_10_16 37181.docdoc 90923af5471dd2510549874d9dee40644d43e8648cbb15123c877670ec80ca80Virustotal results 38.71%Heodo
2020-10-15mes 699323.docdoc 8103d04629a03039728f51f15d3b206bec5bb301efdcf69dadecbcee0c613b74Virustotal results 39.34% Heodo
2020-10-15Untitled 2020_10_16 912387.docdoc 3939a27a1020c30ca4c964869ab63dd1df1046bffbf5ec73b37c0d7928270655Virustotal results 39.34%Heodo
2020-10-15DAT_20201015_323568.docdoc ba684ebc48901ee996b66714e35477d733b515c3c30830ede0647c2d82f61780Virustotal results 40.00%Heodo
2020-10-15file 20201015 KL4519.docdoc be2d72ee1a4da699026d47683395cd063bc94662a384bc7352e9596f63f6c843Virustotal results 37.10%Heodo
2020-10-15Doc.docdoc f87aa36136250cba6491845979dbaf69e6d7527ad00380feddba160052d2e034Virustotal results 36.67%Heodo
2020-10-15UNTITLED 20201015 641100.docdoc 62e82b854fb3f416fe2563b4e5e4b41a2ea0e6eedc68b1189172b773b878c95dn/a Heodo
2020-10-15dat-44065.docdoc 34a67010c71f3b07afb6bdf9a146b76eed5428ede4afd7860045edaa7897bcb6Virustotal results 37.10%Heodo
2020-10-15INF_27152.docdoc f3c842ffba1a274c8760d22c355b836f2fb7e28a43ae083a3e7a6c63d2be86b2Virustotal results 35.48%Heodo
2020-10-15Untitled_2020_10_15_AB705.docdoc e5d3a3f4389a770eb7b9ab006a2fe821aa9922db09330c26a9666f584af4a39dVirustotal results 35.48%Heodo
2020-10-15Dat_FL251766.docdoc 8374be23b9b3080fd3452328d45484d328474c2b5ac04b9a6b659bec8d27fd29n/aHeodo
2020-10-15File SIL68791.docdoc 24cc90be58f321aff894407568bbd89255ab2f87c181fe01dd889e7da8af206en/aHeodo
2020-10-15UNTITLED-MJ783519.docdoc 794d67613ccc4702b88d7ae6c9cbf12ea243a45c429477f0056f60f26dec28a9n/aHeodo
2020-10-15Mes 20201015 WE99139.docdoc 0f01e6ff5e272a9779e8d5a25386a404086eac44b113e126c97015f86c261363n/aHeodo
2020-10-15File_20201015_EH676.docdoc a36a4609b3e7a521624701545cd78377641cb43b33bee52de77d11bd90bab906n/aHeodo
2020-10-15inf 2020_10_15 52264.docdoc 6d52566b89a5b92fa269622283544ea520f7c2b92f3afa5eade2cb849c473dddn/aHeodo
2020-10-15Mes-2020_10_15-C923312.docdoc 445aa00de9569c6c0b8cd07b67ae1c92ea0197c63e22086c6bf17c1bb6f0807aVirustotal results 32.26%Heodo
2020-10-15UNTITLED 5939.docdoc bb8a358385d883c807962614d4424111490b0e9f62ccae83f2aaa32245cb44een/a Heodo
2020-10-15List_407068.docdoc 494032b1774c669def75001fb4c471650fa21b3b6da826523ebb2ef28e039dc4Virustotal results 31.15%Heodo
2020-10-15Rep_20201015.docdoc 58c7ad2c4f4fc4e729bb3db15f5e982a396ab2f5e30ef5df395a50e811991cf1n/aHeodo
2020-10-15Rep 20201015 WDT396673.docdoc 6f5d6dc0a4e19472b570cfdc77f2a062155744143dac5ed173e95fbc194f4b8eVirustotal results 30.65%Heodo
2020-10-15List-20201015-P8408.docdoc 621533bc2bc623677cc1a56accac5406ad7f2e7b5f6ea41fe8acfb3de5345859n/aHeodo
2020-10-15Inf-729.docdoc 70a3803f79b8ca7e2cdd574cd862f5c1e332770aaa5cd66fb3f450faaffb31b8n/a Heodo
2020-10-15file-F506478.docdoc ab5ee4661ce2f18b5fabc2c64a3b04dc775d9878f11f86c717fca88ea1af03e5n/a Heodo
2020-10-15list_2020_10_15.docdoc 2e2dfc4ee174155fe2acf49b0685979e5177f332a89a0e87ffb4f5eea7367386n/aHeodo
2020-10-15List_20201015_JSJ125881.docdoc 513ba997945892e2afeb7ded912bd8bd7ad91ca99a4a785462f53700a9c65894n/aHeodo
2020-10-15R5899_20201015_VQY76286.docdoc 907a85cb99eb9025a2842d564fa5a3c47f4183916fa8f4aa5515c6742c1939adn/aHeodo
2020-10-15list 20201015 597384.docdoc 3b25a614c377a4b4bddb5ebfbe1461748aa879af31c76d9fc7134146ef47dd40n/aHeodo
2020-10-15Dat_20201015_554.docdoc 033c589ac743723497f9a1c4af0d6f494138e0c19e240d706032fabf521c5648Virustotal results 29.03%Heodo
2020-10-15List-2020_10_15-BCV8069.docdoc 49aa298f4b943ba70cbbaf1b826f8b8b7c8ec09f73f443f15c089e434578b539Virustotal results 27.42%Heodo