URLhaus Database

You are currently viewing the URLhaus database entry for http://egdelsur.es/wp-content/SfYjIPKeMcuwfCu/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:702528
URL: http://egdelsur.es/wp-content/SfYjIPKeMcuwfCu/
URL Status:Offline
Host: egdelsur.es
Date added:2020-10-16 15:25:06 UTC
Last online:2020-10-16 19:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-10-16 15:26:05 UTC to abuse{at}ovh[dot]net)
Takedown time:4 hours, 26 minutes Good (down since 2020-10-16 19:52:45 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-10-167101-20201016-188.docdoc 35359c56db6c6b554320c0f3f2f1ac6470ee849d0e7bdb20696c529df2a3336an/aHeodo
2020-10-16LSI79707_W76083.docdoc 0ec477654d5520def268531ea738a0d3bd64694440a9185716a92c79625e408cVirustotal results 51.67%Heodo
2020-10-16dat 2020_10_16 535313.docdoc f57355bd1efba81163d91947723bf0beb7e259ecb320963ccec0c38d46cbbbedn/aHeodo
2020-10-16Untitled-20201016-1479.docdoc b443088167d74ff3bc8ef184ca3771959b274954d6adb5263830985dbad709a4Virustotal results 48.39%Heodo
2020-10-16Inf 2020_10_16 5461.docdoc cbda1187a146072426536b9a4a18f43a11d4ae3fa405b9e59627019f1aa6c21fVirustotal results 48.33%Heodo
2020-10-16LIST 88414.docdoc 79a7aae47f57421a728bca4c6242de557c86752aa9e3b0174d32c8bce622caceVirustotal results 48.39%Heodo
2020-10-16List_2020_10_16_6810.docdoc 1393a509d3636597224811966d26db77105cf9e68c236f014ff603742fe1c610n/aHeodo
2020-10-16doc 2020_10_16 9857.docdoc fe7c4f9e403dbdcdb08d19ce1c330715e719da98e7e715a4e73d61aa45d69375n/aHeodo
2020-10-16mes_20201016_4116841.docdoc 2278a6affb021c01407640a3bdee3c0cdee192eb4b8326f90188c57e0e428856Virustotal results 45.16%Heodo
2020-10-16UNTITLED 20201016 659923.docdoc 7842eb6948556926ef51a42631d2dcf918c52a8b5a360e6f37ac1f3c8fe2dd87Virustotal results 45.16%Heodo