URLhaus Database

You are currently viewing the URLhaus database entry for https://pubgaz.com/wp-admin/INC/fWXT0dQ2sTydqmcwWNg/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:698446
URL: https://pubgaz.com/wp-admin/INC/fWXT0dQ2sTydqmcwWNg/
URL Status:Offline
Host: pubgaz.com
Date added:2020-10-15 20:22:03 UTC
Last online:2020-10-21 15:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-10-15 20:24:03 UTC to abuse{at}godaddy[dot]com)
Takedown time:5 days, 18 hours, 42 minutes Bad (down since 2020-10-21 15:06:05 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-10-17FILE-2020_10_17-LZ77814.docdoc 294c6f87d8514072c30988bd55dd643c5c018b9f9ae05b9db1a97d034b31e092n/aHeodo
2020-10-17Attachments 2020_10_17 QQ037.docdoc 0f4e937ecf4435c0d84956b70e83ca82c0cd15fe9184709e7616c8cc60512590n/aHeodo
2020-10-17Untitled.docdoc ea4cb3d56a4e049d8d0e7d1e30ff96c6b4fd216860a4c48ed248940702f3b7acn/aHeodo
2020-10-17672 DZN978.docdoc c8e0ee6566b5536ea46f25964313ce3c6d88ef6329133772236f4afe57bdacd4n/aHeodo
2020-10-17file_928.docdoc 1cee91ca2689e165e0a72614f98d0dc71da6671ecd0e7f32bb3d6d2710e8dd0dn/aHeodo
2020-10-17inf-2020_10_17-04391.docdoc 90e7a0a9f215c30d103034801a89e4b61554c48bff10a98df0d09257cfc716cen/aHeodo
2020-10-17rep_20201017.docdoc 4885a6fe3e6e3cf17f4b9c157b848115b2b51fc4b8e3e478650c6d8401062476Virustotal results 51.61%Heodo
2020-10-17ARC-20201017.docdoc 3fef345a1fa8f779f98589ca704dff21e59f8842175c3cdab8caeb16e5e61ad2Virustotal results 53.33%Heodo
2020-10-17DAT_203.docdoc a2694945dbd5fc7e3bc4801eea70491938e4e9426b60bd80625312d3f3a7962eVirustotal results 53.23%Heodo
2020-10-17List 800479.docdoc fca525a70cdbc09d5adb7e320849a4e9958f5edb129e2accce15281a340edf54Virustotal results 53.23%Heodo
2020-10-17rep-20201017-O531235.docdoc ac172c6a7fb2f8004f019c9dd8d7400f660d58187ed3adcf2502c5effc15271bVirustotal results 51.61%Heodo
2020-10-17file 20201017.docdoc 73a83fd3188295433015762cab772d1fc554aad7da08da7e0373ba66a0a9ba38n/aHeodo
2020-10-17FILE 2020_10_17 RIR99096.docdoc 1e52bc38ce5e8a3c4da25a7c7e4d8169a31fa22bfdd9e43759ff57d25b40db02Virustotal results 51.61%Heodo
2020-10-16Arc_20201017_JXY3237.docdoc f248106a010a23404bc680541ff725431478f2a3a368efc846d4bee707af6c22Virustotal results 51.61%Heodo
2020-10-16UNTITLED 2020_10_17 U4207.docdoc e6c583d968049b133209f01abf2a46bfb3fdb4abd68b5f0ef3e74881c438d1c5Virustotal results 52.46%Heodo
2020-10-16REP 20201017 1258.docdoc 5ee53916c491a77206e7a09eb75c02983fae90474ddcb7d0099a47113b4675acVirustotal results 50.85%Heodo
2020-10-16Inf 2020_10_17 WNX17046.docdoc c5480c5bcd7c9b06e744ebfca49ef98e45da1200c5e3762d6b47d9825189f3eaVirustotal results 51.61%Heodo
2020-10-16Doc-20201017-Q50017.docdoc 5c58c91ffdffd84690c6746f6afc2eaeacd03df2e4a83c6e662755624113cf5bVirustotal results 51.61%Heodo
2020-10-16ARC UJD061.docdoc 2ad3ea37b37feb3b6b0640be566089ddd917334bf3033b741f48bd508a252530Virustotal results 51.61%Heodo
2020-10-16Mes_2020_10_17_497.docdoc 49cdf52f6974aff3348c2c2ddb75be089f05da06c6dbc7f5b28fb6b5ee4cbdfdVirustotal results 51.61%Heodo
2020-10-162578296_N8371.docdoc e329b5a0bec19b8be7c318fff46735619fb207c0836b1143b676858a695ac352Virustotal results 51.61%Heodo
2020-10-16Attachment 20201016 CV5140.docdoc b015413e8bcf3517a1c413b7e32d1c689a414890a8158ac80e9d53b759cb488dn/aHeodo
2020-10-16551813-20201016-L5760.docdoc 5d7464a628237e351aefb990f56c4c205ceca5119aeae9e13b8d596d9236c451n/aHeodo
2020-10-16Attachments-EYY9284.docdoc 0f3f04ac85e78d80efbda9617f67a8790049ba50df890fc992c9b0ea0688cb96Virustotal results 51.61%Heodo
2020-10-16FILE 2020_10_16 VXP682676.docdoc de085b2aa71406dd284396b50a4931dc24c0648c58b6b5f8dc22b9d7b2d491d7n/aHeodo
2020-10-16Arc 648.docdoc 87955bd537228add4702cc4c61db1af1de1ecef23a67ab74fa37955d95b4e4f6n/aHeodo
2020-10-16File-20201016.docdoc 0ec477654d5520def268531ea738a0d3bd64694440a9185716a92c79625e408cVirustotal results 51.67%Heodo
2020-10-16PBO76101-2020_10_16-O40895.docdoc 0e044c945bad69533f1cc676a53ed59d287e4681c239be2a61e9e4c46775da4dn/aHeodo
2020-10-16Inf-0419562.docdoc cddaad4c09d5c497f3c53c286d7d3bef737c2e484a95701735a5b80175d92ee2n/aHeodo
2020-10-16mes 20201016 BB882.docdoc 99afed8fd21f68965ded2cd4051511265ad6e953154eb5c8cca034a58bcfef0bVirustotal results 48.21%Heodo
2020-10-16mes 2020_10_16 A166408.docdoc 976d1b0555a69b79a1a01dd58e80dd429dbfe59685a55280a005df0a62a8ba38n/aHeodo
2020-10-16UNTITLED_20201016_OO848.docdoc ed9fbd745299346780cd6f18eaa5f2e42927ae9d6b1271933ea06ec83d0b86baVirustotal results 44.26%Heodo
2020-10-16DAT-2020_10_16-BB771250.docdoc b458f12a6949fee524edefc720811a94bcdae2ba4403be20f0b1df513f4c7ac9Virustotal results 45.90%Heodo
2020-10-16UUV48480_20201016_7690.docdoc 0b2cba2268ae5c5aecf57b1733a8bb815b6ac5b458d68970cf408a8548fd07abVirustotal results 46.67%Heodo
2020-10-16FILE UA91343.docdoc c9590b8ccebf3eaca2e64fc27644c7e7a3966d001c3168c1f56c9e943bc18360Virustotal results 43.55%Heodo
2020-10-16file_20201016_142802.docdoc 58650f87223839221d663ceddbae556c28b9353be73c88903e9a69abbac437b6n/aHeodo
2020-10-16file-313.docdoc d287bff81c1feb3a430765d65da182c2e0e6bccf813e9fd933c4ccdbc4151645n/aHeodo
2020-10-16Attachment_20201016_QLK468347.docdoc a0280b173f8cf4f4c5ef7f47352415c416d82a17fecd5ad83e4e2e3db88e8c11n/aHeodo
2020-10-16INF.docdoc 37f1cc77866340d05866022da9d24b26a5823d5d559b9a19e421fabcc495c8c0n/aHeodo
2020-10-16arc_2020_10_16_UOD80703.docdoc ce8eeac08f63bcfb0fe4c6574a73f4cc03efd10f02317b4ea6a191b30a12f53fn/aHeodo
2020-10-16dat 2020_10_16 Q606763.docdoc bc96169f690600679633a5223fef5fef9760fe7531e3e555c2bbdfa6472336f0n/aHeodo
2020-10-16list_20201016_OO060.docdoc fd599aca746e2e35846653c92d10fb3ca09d419e9cc624a4641def19859c8c82n/aHeodo
2020-10-16592995_2020_10_16_EPR277.docdoc 108ba2d20137932ffdcb0fe50a0e4c7358b0972b565154ed5b8d661ba21f20b5n/aHeodo
2020-10-16Untitled.docdoc 9b09ea8a8e81f20dae59ea433945d803d0af60b3a74ccf6c04bf1a17e5abaec3n/aHeodo
2020-10-16DAT-2020_10_16-RN35102.docdoc ab8fb0a4b2361d2bdabb361b5b7a4850c03ccc50a3c83085ae3a3cb1cd617080n/aHeodo
2020-10-1677417LZ-20201016-HP0932.docdoc c6be8d125f6dccc62a17537a3a547063304f338cde4c9e36b1d612316e94798aVirustotal results 32.26%Heodo
2020-10-16mes_2020_10_16_819159.docdoc 482a9136d1dda15269085f5cfb180a08dd5f02bc4b744ceef7c6f3340929c6d1n/aHeodo
2020-10-16Mes 564.docdoc 4a62341e7eba55b8c1a9b126d220bff4b129035a3ac48b5d6987e41e41d3e9f5Virustotal results 32.26%Heodo
2020-10-16Q556_20201016_S766863.docdoc 02fc6d8ee6251ade9ddb856c406f96859d30822252102e91c13f0fbb9d2fc09fn/aHeodo
2020-10-16arc-2020_10_16.docdoc c5e7a769d554364fbf131980e6285aee1a4ef18fe11a28e97042d79c0422adccVirustotal results 32.79%Heodo
2020-10-16UNTITLED_2020_10_16_85572.docdoc 37c21f0f578d3c63515c63f95541e4b9415878dbcdd420e28a57ad221d118f2eVirustotal results 51.67%Heodo
2020-10-164927077 20201016 6636.docdoc ad29fba32bbfa20e1769369f3a121ce461433fc55e719db4c522855e858262a1n/aHeodo
2020-10-16FILE_2020_10_16_LWB951910.docdoc bdb0f1cdc421b438781b96c48d7679057728f3e3aa13191ed7e4190808678fben/aHeodo
2020-10-16Attachments 20201016 8049.docdoc 15c9b8c96805cb5eec520765084f122d2d992f581b1e885ec67341e7b7954006n/aHeodo
2020-10-16FILE_20201016_7834734.docdoc 8d55bfa88aac7102ed41f043d7266e85bfd3e83d0d8f7d298876419eb1bde683n/aHeodo
2020-10-16UNTITLED 20201016 FN7566.docdoc c85e897e957fa44b137c35917ea9886343ba4b8d4fbc13668515d382ed874555Virustotal results 46.77%Heodo
2020-10-16list_2020_10_16.docdoc a575516d48e96ddfbaa7108fdf2f06fe978074c0a71ff7162c8631b757b8cdc1n/aHeodo
2020-10-16ARC 346.docdoc 9254602e28d8cbcf21f9c2235f5dbb7deb8be9c6b331d735643b5892b2115cb9Virustotal results 41.94%Heodo
2020-10-16EVB519 2020_10_16 178.docdoc 878bb13d04d93f1209ba23990aef838329f86ff7fbd86d5bc6bd24da81dbf0f7n/aHeodo
2020-10-16mes 20201016 14700.docdoc 83448d68b30a338d342ea658d0e47016d9d48db83c7750caf277bc17f0a3f0f8Virustotal results 41.94%Heodo
2020-10-16UNTITLED 2020_10_16.docdoc e1fa8ab1bc95406a6ca6938a72337e0b9206e90dcd5517bdcf36c487c5a92bd0Virustotal results 41.94%Heodo
2020-10-16Attachment_PC52484.docdoc 40c27425399b1c51747bd4ecb6dbea00c530fdfc940f89bebc487d1cc2b810adVirustotal results 41.94%Heodo
2020-10-16Attachments_273252.docdoc 23da77ba922f1456341c04679f2fb38e73b253b7a6e8a2994471072e2029e5d6Virustotal results 41.94%Heodo
2020-10-16mes 2020_10_16 2208.docdoc 519a143d1332d1db35e19ba538eff942e18c6260c55f4fc634fcceecef9d3dc1Virustotal results 39.34% Heodo
2020-10-15LIST.docdoc b060160af00ceb90812eb219ac8e72258f487365866f64374c5786171cd6c947n/aHeodo
2020-10-15Attachment-20201016-1479125.docdoc 4be03f6e2d9d995b0c327a02bb5c0dd41b90691a3da98e256f2defb4695ef311n/aHeodo
2020-10-15UNTITLED_20201016_SLI8793.docdoc c18c4a8b5fe16fdf880fce5cb6e6d6fde0c9d494ac8edd7ba5c45a27c708ddbfVirustotal results 42.62%Heodo
2020-10-15REP 20201016.docdoc 47ce9bcd74cf07f1e9312e71da59c363eb8c6b91f592da4c37aada97a38318bfVirustotal results 38.71% Heodo
2020-10-15REP-20201016-K0989.docdoc 5ae6059ec64a9952d72dd06acc66b5a25a984f65a359ed2c2fbf70275f8f4204Virustotal results 38.71% Heodo
2020-10-15Arc-2020_10_16-KHD258.docdoc 90923af5471dd2510549874d9dee40644d43e8648cbb15123c877670ec80ca80Virustotal results 38.71%Heodo
2020-10-15Attachment.docdoc 17c3d1b520a527f0b3b908b6107db6d0fccac8f66a9c5308cfd02bda68d814fcVirustotal results 38.71% Heodo
2020-10-15LIST PN0544.docdoc ba684ebc48901ee996b66714e35477d733b515c3c30830ede0647c2d82f61780Virustotal results 40.00%Heodo
2020-10-15MES.docdoc be2d72ee1a4da699026d47683395cd063bc94662a384bc7352e9596f63f6c843Virustotal results 37.10%Heodo