URLhaus Database

You are currently viewing the URLhaus database entry for http://chargeu.com.ua/one-click/FILE/WmvCc6p4IT5su0udvO/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:704158
URL: http://chargeu.com.ua/one-click/FILE/WmvCc6p4IT5su0udvO/
URL Status:Offline
Host: chargeu.com.ua
Date added:2020-10-16 21:44:04 UTC
Last online:2020-10-20 17:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-10-16 21:44:06 UTC to abuse{at}cloudflare[dot]com)
Takedown time:3 days, 20 hours, 14 minutes Bad (down since 2020-10-20 17:58:49 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-10-17inf-OM51452.docdoc 294c6f87d8514072c30988bd55dd643c5c018b9f9ae05b9db1a97d034b31e092Virustotal results 55.00%Heodo
2020-10-17Arc-KS28717.docdoc 73c8e321733773d7413efd1447245567bceaac2f4f85447e1196884a898cbea2n/aHeodo
2020-10-17Doc_2020_10_17_VQQ618815.docdoc c8e0ee6566b5536ea46f25964313ce3c6d88ef6329133772236f4afe57bdacd4n/aHeodo
2020-10-17Attachment-UK095744.docdoc 560cbfa962587b928c5ba13f5cce70b94a0a90991ee4f4db32f2a6c6a3936237n/aHeodo
2020-10-17Rep 2020_10_17 WO598.docdoc ccad29eac2b2a4c03fc1c9a9ac36544345fb0a5f454746c05dbb5f02d4d53210Virustotal results 53.23%Heodo
2020-10-17Arc-1130232.docdoc bf49014159c593f5f2cf87f3a240cb41dfb19400169039b8530fb844a82b722cn/aHeodo
2020-10-17doc-2020_10_17-7971038.docdoc 3b4872190aebbf74f2d47fcc2d043a4715838ec3148f56fdc7034c991b73949an/aHeodo
2020-10-17UNTITLED 55210.docdoc befa6f4547d62ddc7afc683400abc3c8f3ba9e791e407bc67bcee730dc315b3en/aHeodo
2020-10-17dat 2020_10_17 292204.docdoc a2694945dbd5fc7e3bc4801eea70491938e4e9426b60bd80625312d3f3a7962en/aHeodo
2020-10-17inf.docdoc ac172c6a7fb2f8004f019c9dd8d7400f660d58187ed3adcf2502c5effc15271bVirustotal results 51.61%Heodo
2020-10-17Attachment_6965.docdoc 4d8d65bde63051b5066a4f7aa37942fbd309a54311e5b0903febd4d1277be363Virustotal results 51.61%Heodo
2020-10-17Attachments_2020_10_17_B84348.docdoc c64264c7336d7e9f516999fa287be55be63b634b63f5ebbf1bab24e38ada5e8en/aHeodo
2020-10-17LIST 20201017 FF126802.docdoc 1e59616d8d30b5c30b132e96368fd13723b10d8111db17a2c7aded6d311983e5Virustotal results 52.46%Heodo
2020-10-177778_20201017_X380.docdoc 64791e6b0eec05add1dc9e363173e850e7d26305d1f3940a7f966c42544b2147Virustotal results 51.61%Heodo
2020-10-16Attachments_2020_10_17_975.docdoc 39319e4e0e23653363b81024b93090dbf717424cc2dcc3c0291e6e56e3328ed2Virustotal results 51.61%Heodo
2020-10-16Doc_2020_10_17_MB533398.docdoc 38a7276166183fb51e2c60c91165d139295de90105097cb4e24b077d3fa5d56fVirustotal results 51.61%Heodo
2020-10-16INF_20201017_657413.docdoc 691b2fc6acbee6cf5fb93b6afad38eb2f61c4a211cb17cb3c617c2bdebd48f61Virustotal results 49.06%Heodo
2020-10-16List-Z097375.docdoc 5c58c91ffdffd84690c6746f6afc2eaeacd03df2e4a83c6e662755624113cf5bVirustotal results 51.61%Heodo
2020-10-16MES-20201017-46805.docdoc 4773da38da0ba3154bbb3b813c803bd6e1f9ab3bad1888f1402f7b17073620ecVirustotal results 51.61%Heodo