URLhaus Database

You are currently viewing the URLhaus database entry for http://www.czetrade.com/bending/OCT/t4HJwQLxzIXdZ/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:700677
URL: http://www.czetrade.com/bending/OCT/t4HJwQLxzIXdZ/
URL Status:Offline
Host: www.czetrade.com
Date added:2020-10-16 09:45:06 UTC
Last online:2020-12-01 03:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-10-16 09:46:03 UTC to anti-spam{at}list[dot]alibaba-inc[dot]com)
Takedown time:1 month, 15 days, 17 hours, 34 minutes Bad (down since 2020-12-01 03:20:38 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-10-17Attachment 2020_10_17 BID593.docdoc 294c6f87d8514072c30988bd55dd643c5c018b9f9ae05b9db1a97d034b31e092n/aHeodo
2020-10-17list 20201017 FZ27811.docdoc cbabf68dbf69bbc9e13cf1c4decc549416db53379348b45da4b5fedff65152afn/aHeodo
2020-10-1752016ZH 20201017 B1292.docdoc c147f6f4d8e08ce92756aea055fb18dc3398e77ce2ba5a71bfa3d6eb5f3de750Virustotal results 53.23%Heodo
2020-10-17Attachment_2020_10_17_9535255.docdoc d9d1d86f914b8355d89051497be99bfa6c7ea7a57c53b22aab03d867c5e3a531n/aHeodo
2020-10-17FILE_2020_10_17_ZY689.docdoc 560cbfa962587b928c5ba13f5cce70b94a0a90991ee4f4db32f2a6c6a3936237n/aHeodo
2020-10-17list-508777.docdoc ccad29eac2b2a4c03fc1c9a9ac36544345fb0a5f454746c05dbb5f02d4d53210Virustotal results 53.23%Heodo
2020-10-17Rep_20201017_292.docdoc 971e189c279099a876618c3226ef35e5afc62b91daf3b8bde466a424fdfaa063n/aHeodo
2020-10-17Attachment 20201017 G6005.docdoc 203a54f8692f6554ad685a3d9e94ec1f3482366c3c455312540f744cbda4f479Virustotal results 53.23%Heodo
2020-10-17Inf_20201017_468.docdoc 78f2969b92269cd9a3e1cc7003b0949f47421d551c323dbeafa94ad0a836bf34n/aHeodo
2020-10-178484-B47380.docdoc fca525a70cdbc09d5adb7e320849a4e9958f5edb129e2accce15281a340edf54n/aHeodo
2020-10-17REP BEF01884.docdoc 4d8d65bde63051b5066a4f7aa37942fbd309a54311e5b0903febd4d1277be363Virustotal results 51.61%Heodo
2020-10-17Arc_2020_10_17_WPY524.docdoc c64264c7336d7e9f516999fa287be55be63b634b63f5ebbf1bab24e38ada5e8en/aHeodo
2020-10-17dat 20201017 ZN782510.docdoc 65fe5c36c465cfa1cc58f54aca29a2da9e56f3fa0b499ff8ae0b654338db114bn/aHeodo
2020-10-16Doc ZF589.docdoc ff58a7b1e34b5e2de40fa9fa020ecc46b3c1cf0eedd40653e719e2fba15ce05fVirustotal results 52.46%Heodo
2020-10-16arc 20201017 YX2997.docdoc e6c583d968049b133209f01abf2a46bfb3fdb4abd68b5f0ef3e74881c438d1c5Virustotal results 52.46%Heodo
2020-10-16Doc_20201017_AK874.docdoc 38a7276166183fb51e2c60c91165d139295de90105097cb4e24b077d3fa5d56fVirustotal results 51.61%Heodo
2020-10-16Attachments_8193544.docdoc 691b2fc6acbee6cf5fb93b6afad38eb2f61c4a211cb17cb3c617c2bdebd48f61Virustotal results 49.06%Heodo
2020-10-16List 2020_10_17 22973.docdoc 5c58c91ffdffd84690c6746f6afc2eaeacd03df2e4a83c6e662755624113cf5bVirustotal results 51.61%Heodo
2020-10-16O661 2020_10_17 A833476.docdoc 2ad3ea37b37feb3b6b0640be566089ddd917334bf3033b741f48bd508a252530Virustotal results 51.61%Heodo
2020-10-16Mes-342190.docdoc 10b0ede6060dd0c9b69d6519e93f211c940959e36b1e98a6dcc1ad9a4093c4acVirustotal results 51.61%Heodo
2020-10-16inf 20201017 179.docdoc 1d74d9c148d2a786425f0447d4415368184fd896521dc5054434c999fce03a31Virustotal results 52.46%Heodo
2020-10-16mes-2020_10_16-D0934.docdoc 0d613e3b8dd87abdca992787394ba93c986820dd46d13b63128699ff814aa6e7Virustotal results 52.46%Heodo
2020-10-16Attachment_2020_10_16_1655215.docdoc 6db73d3f7fc4ac1265b81af31cd04fb1ef63de503ea603a20b93daa896e18c11n/aHeodo
2020-10-16185 W8031.docdoc 0f3f04ac85e78d80efbda9617f67a8790049ba50df890fc992c9b0ea0688cb96Virustotal results 52.46%Heodo
2020-10-16dat_20201016_9917056.docdoc f4af9d4a8529e7b2cc1ffc59afc271f35f63fd2f0b043cecdc60553c2ff8259cn/aHeodo
2020-10-16inf JGC838.docdoc 946f2932db99a282d3ebdec264e3de1b8c260b12f95769381d8bc99433b66b93Virustotal results 50.82%Heodo
2020-10-16arc 20201016 FVU519.docdoc ff2225f50847fbfdff2af9e81b67fc82dc5a26f7c4a78edbe36d775f1c153c22Virustotal results 46.67%Heodo
2020-10-16Doc 2020_10_16 5569.docdoc 0e044c945bad69533f1cc676a53ed59d287e4681c239be2a61e9e4c46775da4dn/aHeodo
2020-10-16609620.docdoc 217af10e423fe71ef7b04ec7a00d4079ad70a2d15e79354835c5239e226c1985n/aHeodo
2020-10-16Dat_20201016_542.docdoc 3cc8c557bf3d2dd43a937e6a38d78f32dddf8e118a06663c5eb8f3dbb4bb9afcVirustotal results 48.39%Heodo
2020-10-16Dat_20201016_W91970.docdoc 1cc8ccaf21f72d5aee417cfcf2102f4b5bd1213bfd52198ea91e30db4995e85bVirustotal results 48.39%Heodo
2020-10-16INF_2020_10_16_WH6434.docdoc 9ff7369d53aef540548300b2c91f73a9f63e67396f0aa098801eff216c404dceVirustotal results 47.46%Heodo
2020-10-16MES-2020_10_16.docdoc 3d174288f7635774e7a13856af27d6b6893b4e387f3bf60e18b153cd31b25acfn/aHeodo
2020-10-16Rep_68543.docdoc c53f12dd4e72249838859cc93e6240a4a329860fea0678a5b2961457ee8b64c1n/aHeodo
2020-10-16Doc_2020_10_16_5033.docdoc 18f9f98dab8623a8b0c06b6d25747d727601b4551df382ffb88ff536f6df2762n/aHeodo
2020-10-16MES_20201016_C337332.docdoc 5cf97f17289db27b99a4ae010c63a92e0b1133d3799e7047c1ddf00a69d144c2n/aHeodo
2020-10-16MES.docdoc 1d2cd0ca96a56fed43de994ae2cc29cb330c9b815af03200a9ee1c88761e1c1aVirustotal results 43.55%Heodo
2020-10-16834_2020_10_16_1423871.docdoc 5479abb8e4379d71b1c4e5cc766966bc9e053aaacdc704bd346e23c4945be3c5n/aHeodo
2020-10-16FILE_20201016_6436.docdoc c128f199530c6206b5a3f96445e0e788255d13133f6730c28fda83124e41386fn/aHeodo
2020-10-16Mes-20201016-5664390.docdoc 2e281e2f968e91473b2544a55304f127a90912db19bf5912d4d5e76b7b088b2bn/aHeodo
2020-10-16Untitled_20201016_CB8004.docdoc bc96169f690600679633a5223fef5fef9760fe7531e3e555c2bbdfa6472336f0n/aHeodo
2020-10-16REP-NDU445.docdoc 9f5d167927ba6ed06861031bc9c84cb6714bdc6859ae77d99434e0b6759d8897n/aHeodo
2020-10-16list-20201016-32479.docdoc 5a7c0727bce9bda88cfda9cdf642a0d8e636d781c70576f32c983a9f48190bbbn/aHeodo