URLhaus Database

You are currently viewing the URLhaus database entry for https://sardargroupofcompanies.com/wp-includes/parts_service/sf7znj01qii/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:718484
URL: https://sardargroupofcompanies.com/wp-includes/parts_service/sf7znj01qii/
URL Status:Offline
Host: sardargroupofcompanies.com
Date added:2020-10-19 15:31:05 UTC
Last online:2020-10-20 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-10-19 15:32:03 UTC to abuse{at}limestonenetworks[dot]com)
Takedown time:1 day, 6 hours, 6 minutes Poor (down since 2020-10-20 21:38:26 UTC)
Tags:doc emotet link epoch2 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-10-2008897024.docdoc 8cadf5fc31643a1acc9b991d110e039e7e0520e94783c61d9caf5ccb2481915eVirustotal results 44.64%Heodo
2020-10-2083657882512078.docdoc 567ba38a28a58a94c3ee0111ca3531ea0ff35854d5ce0d234a5a0aebf70d05f6Virustotal results 45.16%Heodo
2020-10-20EAL_BV9558307003AO.docdoc 07bdea9c73c53c4d65c9cf2061b9a303e8f05180736729fe54c17c6953e66184Virustotal results 41.67%Heodo
2020-10-20DOC_BOE_100120_CUI_102020.docdoc 23a9e81e5c9457c32d731feaf07be0b1d576fb91bca54fa944bf0f935fc2e277Virustotal results 42.59%Heodo
2020-10-20D_08172455.docdoc 73fee094af28a164510ef4a3fb7af33aace675c2c0c2f043d2dcd918e42f54b5Virustotal results 40.74%Heodo
2020-10-20REP_1974502278410.docdoc 621a14c4ff1196a5f40b5abd1aa47738a2855dcb1ac4f16c7e577d6f53935c08Virustotal results 39.62%Heodo
2020-10-20FILE_SFXYQ2V.docdoc 3081bcd26aaeb3650d17ed0bdd49f56f0b06c3a114424a031a27e889e431114fVirustotal results 38.60%Heodo
2020-10-20BAL_7344937499524.docdoc 61ca1d40fe8296c91b24a6165828d7969c6ea511374bce1ac3613a9aa9fd379fn/aHeodo
2020-10-20HL7470756078NV.docdoc 6b0ece604bfbf0535b0a74c0781e484692e06279e3052e698775c07b56bac622Virustotal results 37.04%Heodo
2020-10-20LNN_100120_LUG_102020.docdoc c968430d2daa7d9cc5014d3a44e3297632920f5482e3e5097671a94bbfd3a21dVirustotal results 40.32%Heodo
2020-10-20BAL_74384082730443386.docdoc bde9db94a28b975ca2e31fd872e074b7a91ac5ee16d1a2534eeb911b83234415Virustotal results 39.62%Heodo
2020-10-20FILE_PO_10202020EX.docdoc dc5f20efe5aed77fd6068af54bfd5d3182c935aaa3c825308f2b0152118a4ffdVirustotal results 40.32%Heodo
2020-10-20INV_L3YOX5AWO.docdoc e0b1bc7ae2ab93ab68ecc603b67bf124c72d2aab047c0a5280afc1c7b50c0600Virustotal results 40.32%Heodo
2020-10-205937928668605943364497792.docdoc 6bddc1611da881817b34a7b39326c7a591ff84dad63af3f5865ef4a3a8d189c8Virustotal results 40.68%Heodo
2020-10-20FILE_150737238827.docdoc 943ba466bee9645b393afdac0a4154367b09e8dfe025142f072b4e16673b4643Virustotal results 40.00%Heodo
2020-10-2076168439.docdoc 08057a9df9d17da8a860ee860efc60fef7c46b9cc8bf15ffceeb7ed05480b01aVirustotal results 33.87%Heodo
2020-10-20DOC_QKW_100120_GBL_102020.docdoc 7f06faf1bbfa2f11015ac90187295cd3de0a5dd5ce8e4c9765ed5be616fbc35bVirustotal results 39.34%Heodo
2020-10-20C_030304507650503728265540.docdoc aec70c8b5a7b8868a095ff2fb70741ad4fb204eeaf4b64d0c3663979d867753fVirustotal results 32.26%Heodo
2020-10-20QTE_100120_GES_102020.docdoc dc2bf19b8783e823415f8820060f32660a8aa7077eac281739eb380f7168886fVirustotal results 34.43%Heodo
2020-10-20BAL_SM7026051368GU.docdoc 4ad0c747113a4ab5f1b3fed246b0e01e41b2254e259fca4eac3c7b5273b659b3Virustotal results 37.10%Heodo
2020-10-20YBK_005591931516750373.docdoc e839ad79ebc64c9a9f35e974ee0331fb9e05f62ce04e2d5a7a75082ccea2613bVirustotal results 35.48%Heodo
2020-10-20DOC_PO_10202020EX.docdoc 22a08e921522b7b56f4261092dec540748b8c855bac34eda0eda926efce0ecb1Virustotal results 50.00%Heodo
2020-10-20GGGMGNH0ML.docdoc 7b664501734d9f55316f7ffbd0178031b2b0501610f3065ada226a0a04e4e014n/aHeodo
2020-10-20IPH_KH1698601981MS.docdoc 4a9bdef24eed1deb564eebabf43f1296dc75f336b8cedf58f1e531a1a9e69e95n/aHeodo
2020-10-20L_14929904.docdoc 53c1252c0885c089eb36636229eca05a2a5554cf3c5070d87b716e86ff6729daVirustotal results 50.00%Heodo
2020-10-20FILE_58638351005.docdoc e36bc6b0623c073b12645d86357cf4c79da086350ff11a54329b22a71c906c29Virustotal results 49.18%Heodo
2020-10-20DOC_70484336.docdoc ef9406839a74cc5ac27a63abb6f01b5775fd1ccd525cc35244f2ef56569b0fefVirustotal results 50.00%Heodo
2020-10-20RW_TH6005587735ZZ.docdoc 5777f3b00923d9fc75d3056c48893c21a5cbbf79988ed3cec76f7c7bbe3fc885Virustotal results 50.00%Heodo
2020-10-20INV_06467736.docdoc 2f5f911119edd3b215647b74686ffd1c8130e36f7ad19ea88bad1329dbbd5bb4n/aHeodo
2020-10-20DOC_PO_10202020EX.docdoc 6034c3f10da662027ef2a9cb8754ae7c41fc080aa19c9f3218a50c744750cc19n/aHeodo
2020-10-20DOC_48935212.docdoc 529117d0294d9326b40b4b6d9aa5f717f93c21d8b2c9a30989f2ac9eb3dc180cn/aHeodo
2020-10-20PO_10202020EX.docdoc 5cb6d2ac7c0048a18397fbd75effd392d58835e1f50e4f17400ae73dbd25f3f5Virustotal results 50.00%Heodo
2020-10-20DOC_VE0790831156UI.docdoc e1cf1e09c722a6e4f4686663171c251e8d0a67c8718c3bf78a5431ac4e536d73Virustotal results 50.00%Heodo
2020-10-20BAL_DH3342295974HM.docdoc ec39e004ef14f474ced7f74ce59c61608efa32032ab88212132c908688db4402Virustotal results 49.18%Heodo
2020-10-20L_9AOBRLOG.docdoc a0e469d08ee726ce9fae3096bae0d3140afb1489feba6034d9eb67e59f84b1c2Virustotal results 48.39%Heodo
2020-10-20F_ER9872203604VK.docdoc 1fe5797eb39c945c15dae36a4b51973d7f142e7bfa1a39a4a99c1d498c87fa42Virustotal results 48.39%Heodo
2020-10-20H_68THY0I3XRE9AP.docdoc fd7065b3cbad0a3703b31dea8f30aeb4cd451a7d1a584ace2cb8226d02d5c8can/aHeodo
2020-10-20DBX5Z944LBDLY.docdoc 325d15836a3948692d4f2b68f9830932e758173c0f5e78bf261cfb7002a2f6d1n/aHeodo
2020-10-20OU3716162727EV.docdoc 83c06efc736a9bcb18d36092a16ef484ea9b44a9f759ce63f5f1e5edf09330c3n/aHeodo
2020-10-20NORR_0665307018197482.docdoc 886ff49a670a583572de65190cb27ccf2b32e875d56ccec77c6dbe0ce9883824n/aHeodo
2020-10-20REP_UD518C7D2GC9T.docdoc b115c55302deeae4e7e088c8dd801349c25089e867dc300251bb75936f96260fVirustotal results 43.33%Heodo
2020-10-20REP_021OD9YSM2.docdoc f491c5ef9ef55bfa5e464c3810f3124a7ea7785d71482df6a500ab343391e69aVirustotal results 41.94%Heodo
2020-10-20INV_0520983999928.docdoc f74c9faf99869bbd9b3f65657d504b69796b45c4bd1427bd6a9a83dc2cd3b611n/aHeodo
2020-10-20FILE_87687291143833.docdoc bcfc76295fd5ab5b017402035d604facabb641cb2db84dbabc36923bc8b576f8n/aHeodo
2020-10-20PO_10202020EX.docdoc 5ee7fbe582e7e187c61eee1b5d66f665d3623c90a7ad3197cbde16c4d210f536n/aHeodo
2020-10-20FILE_UYE_100120_XTW_102020.docdoc fcee7dbc5b468506c17395baa69a4ecf7efc61dc1994fc1f563c27cdd9792cd8Virustotal results 37.10%Heodo
2020-10-19DOC_Y7TRJ9FP7UDU.docdoc 319f3bc0835158bc9ec5a351ae5e72d6f1e9f12a173caa968e5554716b39dd71Virustotal results 40.32%Heodo
2020-10-19BAL_JMQ_100120_NGU_102020.docdoc 11a66c2f072fee7555919f55b2c48097db14cc1a757bac80867b69da1dc575cdVirustotal results 37.70%Heodo
2020-10-19ZOU_100120_KVW_102020.docdoc 3ff8617732a305df8388b310d1848742bffcf5481aa9dc832a5c6b2e30cdeb1aVirustotal results 37.10% Heodo
2020-10-19M_78036222.docdoc 54e6978ce999a46d71e4e74d2681bdcce12e64871595e0a4bdbb50d3c4266997n/aHeodo
2020-10-1972898935.docdoc 5a3a9a56661d12f1650cebe5f4a3cab2135efc8c3113959a28415186f0ec7148n/a Heodo
2020-10-19ZUJ_100120_QDQ_102020.docdoc 9a1400c87eb903c4fa8bf92ef429307203a804d6e4a589f6472ea7b00c4b75fdn/a Heodo
2020-10-19BAL_4611254008107247394319455.docdoc 47c8f3f7a043772a6b2c14665b43e993671b77adc6014c2b58c06a56e52910e0Virustotal results 37.10%Heodo
2020-10-19FILE_LAF_100120_ZWD_102020.docdoc 24aa0b76e29bbdca3ce724f547c7cd8ecffbd973e9c800a142a172abea94a44cn/aHeodo
2020-10-19T_QLU_100120_WXS_101920.docdoc cfb29199ec6bb6dd95821e0506b52df13f7ac0f2a4579534454d7d6b025cdbc5n/a Heodo
2020-10-19VV2384351967WV.docdoc 4bbadeaae01931e41d070850ce958a3559207e70eb0340e9e5cf477676d4d367n/aHeodo
2020-10-19RMBLL2CTA.docdoc 844f5a0d32b339d2753996642cac6fa99aea871aadc4438c081469e5f6b42979n/a Heodo
2020-10-19P_16RPDPUN6OOP8WGW.docdoc 6c67c435c6894c0ec992d34794f68a497c5c55778a4ea811b322b9c1f539841bn/a Heodo
2020-10-19833642263496.docdoc d5e6df882693ba24cbb481a68b77af8d2b2e601d8e59e43fe5e94b1f8c5ed04fn/aHeodo
2020-10-19DOC_PO_10192020EX.docdoc c7b747cd1c60fa173fa3466e99337863d3e4552c315e3b2a1f284f6293bc8e46n/aHeodo
2020-10-19C_66773530.docdoc 2381e204a9cc635b37ddc61e910b65f0d3d1f88e5d4de3e221d344df7b965c16Virustotal results 37.70%Heodo
2020-10-19INV_UJK2N4Z.docdoc 3837c3b95db5756f21d9920809ccbad0909eac42344076a4c12582f61acfcd6dVirustotal results 35.00%Heodo
2020-10-19INV_PO_10192020EX.docdoc 0b6de50fa10e06b241e0fa529ab9feed05faa58ae77d888e9084c66743240a43Virustotal results 32.79%Heodo
2020-10-19MSLW_KYZ_100120_VHH_101920.docdoc 0f285c8cec726ec8916046cfaf44c2d719e8cfa93755432761f93f101b81d10cVirustotal results 33.87%Heodo
2020-10-19DOC_QQN4AJ1T5F4R7FVL.docdoc d95cf2e0e51389df6e97878b1c041fd79f3e61abafc8ff61bcfb691562625e5bn/aHeodo