URLhaus Database

You are currently viewing the URLhaus database entry for https://jorko.tk/report/2l8y1fq4df-05693/Scan/Ly5q7cickSpB/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:719261
URL: https://jorko.tk/report/2l8y1fq4df-05693/Scan/Ly5q7cickSpB/
URL Status:Offline
Host: jorko.tk
Date added:2020-10-19 18:25:23 UTC
Last online:2020-11-09 15:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-10-19 18:26:07 UTC to RIPE[dot]Abuse{at}mobiltel[dot]bg)
Takedown time:20 days, 21 hours, 23 minutes Bad (down since 2020-11-09 15:50:06 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-10-20arc_7997757.docdoc 6b0720f74545087c277ae287138f2a1c5aaab67e851bf4fb6e69c3ed5ef18d04Virustotal results 32.26%Heodo
2020-10-20dat_20201020_23543.docdoc 380f5312cfb29a6bad4233d53ed904931f3651ef07c948b7a58e0fa194a0f4e7Virustotal results 32.26%Heodo
2020-10-20Rep 2020_10_20 1231.docdoc dc96ddabfd3f1213f7ee69ef80a111a67b3addf58bbd7e76518419f909e44aa1Virustotal results 29.51%Heodo
2020-10-20rep-2020_10_20.docdoc 420fc6dc7bb2ad0cf210f5f6a170426b11907f26d2dc02f091dc58223a77d5feVirustotal results 30.65%Heodo
2020-10-20Inf U5824.docdoc 86fcc48111c6e12b9d0c6057b457f8459ff54d306a578ce23673c0c8529a9bc6Virustotal results 30.65%Heodo
2020-10-204012O_2020_10_20_CP4611.docdoc 380ce3ace72784b8c33d60d1c012e291f20a96a8669707634b45ca07a35d5c57Virustotal results 33.96%Heodo
2020-10-20LIST-2020_10_20-WY929.docdoc 8ba4a55821ab5c4ace72ff6864e380be096da53fc6fafae9b434e70cfb7b6fb6n/aHeodo
2020-10-20618UA_20201020_LEQ43434.docdoc 9307d9bd15043c65523e54ca1ddf8ded39b63db6ef1a33900af062bdc01c40e6Virustotal results 35.29%Heodo
2020-10-2028244147 7672767.docdoc 1dc9d9c96259e23a7654f8fe1a2f186fc2c035c4c46a85daff8f1660fa95580en/aHeodo
2020-10-203891CM 2020_10_20 21417.docdoc f3f2d33d141caf7097e4d64cdadca451b48a896da2e0495e833dd200b13dcaa2n/aHeodo
2020-10-20rep 75534.docdoc e815064edd4d9b2ec2f1214e71684b097b806f01d0e589878b0401cecbd210d8Virustotal results 32.79%Heodo
2020-10-20INF J749217.docdoc f3308fdb893cd8fd95f05e217d4f1adb6ed284bb7833ef5d5d92eef8d5b04a7bn/aHeodo
2020-10-20Attachment-2020_10_20-185666.docdoc d3d4d84e3a65c176379d77480626309e1d9ab1436be744a5bcb59bb6e17e9763n/aHeodo
2020-10-20arc_2020_10_20_WKT139158.docdoc 9fa23e7bdcaa378dc4c515ca09f6ab664fa5e32c7ec857baef39a7425281535dn/aHeodo
2020-10-20MR9661 221.docdoc d0e1f8621980227b8293b9c8c52aeae9743b9ffefe8adab468cae79c72bd2d71n/aHeodo
2020-10-20369VSU-20201020.docdoc a305a0d1bc9e9768e247b2596cd9cd12dc76caddab1682164dd45460d83253c1Virustotal results 50.00%Heodo
2020-10-20doc-J610994.docdoc 193df1dc2f0c0e1a9f636ebe31c7e5f6c1a9f2187aeb7f7aa815e7ba3a2e5188Virustotal results 47.46%Heodo
2020-10-20Untitled 2547.docdoc 4d7b7e3f966e9c61fa57d5d9fca513ffd348f8e0127ae7d177c075110fad122eVirustotal results 48.39%Heodo
2020-10-20UNTITLED 2489.docdoc 6783474a069d2db04f9da74026d3380f66a2b303770d491f3c0def5bcc0ea0f9Virustotal results 48.39%Heodo
2020-10-20Doc_2020_10_20.docdoc 0c409567dc61d2b2cf73591346bd7b4c5093e44649c17075c07e1605c4617d7dn/aHeodo
2020-10-20List-EL11876.docdoc b548be3fe343498e82f9fb62fe50ccb099b09df567f62a6a557a14f5d3773fbeVirustotal results 43.33%Heodo
2020-10-20rep.docdoc 6327b738dd471b615dda7803b2acd8c9deb49008c8fbd7c5503be35492eea5c1Virustotal results 42.37%Heodo
2020-10-20List 20201020 IQ8921.docdoc 87a7289961845b4c5d06554d318aa51a1e4fc5aeb580d9dea164398d968caf14Virustotal results 43.33%Heodo
2020-10-20ARC-20201020-RF988.docdoc ea889debae5f58200c593fb982a145b972caa5228a56f674e21fbd99629df79cVirustotal results 45.16%Heodo
2020-10-20020G 20201020 C00934.docdoc 639663610cca6441a36141da55733332d7cc089dad3fb409b8857db78e0e6ac0n/a Heodo
2020-10-20Inf_2020_10_20.docdoc 5bc31794601b4088311bf33225005d0f3be38cd991a2de34690fb2dbfb79fe32n/a Heodo
2020-10-19INF-HT5989.docdoc 38b035b1b37f64ed891730cfd77f781c442987e5bbe372cdf43473bffaa58195n/aHeodo
2020-10-19Attachment.docdoc 3b15710a3ff2b8f40af56ef3f69de2a7d1bc5f6213ed69d4c26e8362ac7e8a68Virustotal results 37.10% Heodo
2020-10-19UNTITLED KY615.docdoc f20ae55887630c0152d93851005ecc79dd5be55e7d50db99e2e81c799c841d37Virustotal results 38.33% Heodo
2020-10-19Mes_20201020_4885582.docdoc 27e44663219563e7600f8b9da77ab67915fe6f480b27cf6ef50da02c475ea10bVirustotal results 37.10%Heodo
2020-10-19arc 5080004.docdoc 690a4efeaba7d8fb29ee6f9d39381c4f7ac5f540bd5e6ee68505e61e3969d07cVirustotal results 37.10%Heodo
2020-10-19rep_SB134781.docdoc 979236f4d2d99e9272c6abef5b246723ac02e7bba9dc2aee883c4c907fe4b362Virustotal results 37.70%Heodo
2020-10-19JD262_20201020_971.docdoc 71e4ec3e11f734f0ce73a46fcbe3079f4418154382d6389da01859b9ad74bd99Virustotal results 37.10% Heodo
2020-10-19Mes 2020_10_19 T5034.docdoc 2da0ef0ca6c372248db1c0649512c63d840327ce42f58c710711ac7d7f5c32dbVirustotal results 37.10% Heodo
2020-10-19Doc_20201019_S7554.docdoc d6fc8acb0c1a4b38f100335349e71cfca14003134259cd7798a9d50fe45735een/a Heodo
2020-10-19DAT_2020_10_19_718340.docdoc 31c64f6a21d4a14319fdcafa6eb86d6668b5968e832b79b5dead97973eb7b006n/aHeodo
2020-10-19rep 1548.docdoc 3ec46abbbe0a436821be33ba6874de56d1be6fa545437f4098500832a872cd9en/aHeodo
2020-10-19ARC.docdoc 0741cfd29e5f65b1aa4109ef4a59d28a73671f4ccd35cf80c3df2928ecf39a03Virustotal results 38.33%Heodo
2020-10-19Attachments 20201019 90465.docdoc db4de33f5649b0b2710e3d5287c27a02fb0f3150af75ba7c6a5957514cbcf421Virustotal results 37.10%Heodo