URLhaus Database

You are currently viewing the URLhaus database entry for http://simply-glamour.com/wp-includes/sites/4ak64i8mk/3ruayf/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:720881
URL: http://simply-glamour.com/wp-includes/sites/4ak64i8mk/3ruayf/
URL Status:Offline
Host: simply-glamour.com
Date added:2020-10-20 01:20:10 UTC
Last online:2020-10-20 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-10-20 01:22:58 UTC to abuse{at}a2hosting[dot]com)
Takedown time:20 hours, 9 minutes Good (down since 2020-10-20 21:32:53 UTC)
Tags:doc emotet link epoch2 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-10-20DOC_07417563076436.docdoc 8cadf5fc31643a1acc9b991d110e039e7e0520e94783c61d9caf5ccb2481915eVirustotal results 44.64%Heodo
2020-10-2064517199.docdoc a22833c512c589e2bd324e3f7287dbb7f27538e8344cac7ec47568883b61bcd5Virustotal results 42.86%Heodo
2020-10-20B_78184577.docdoc 8ebe3eb8f2fc91787e217da76d31b3108744220f6cd2a5b74fc6b57c9c681317Virustotal results 43.40%Heodo
2020-10-2087633971.docdoc 0cc0e53f93e28f521e6741dd09848e105ecaa03babb51229e44c7bf9bf6676e7Virustotal results 41.94%Heodo
2020-10-20FQ5750800567JI.docdoc ab211d004eaaa6ba8bbff9513b8260b7f7e03bec07bd245280926817fd1c31beVirustotal results 40.00% Heodo
2020-10-20FYG_100120_KXQ_102020.docdoc 164a5f81da246ddcc51e8c5902b47c7c000b8210eba8ac783a5ef45aafe22aaan/aHeodo
2020-10-20DOC_1933978005726.docdoc ab0f780d3717e6b5be76ac64376d1d82b1b0e1b5da173cf7e602e60d0a9d1f9bVirustotal results 37.93%Heodo
2020-10-20INV_ND1253520219WH.docdoc b3367c32b211d1a338b9739a2a47b98efaaa7b8eecee17b0483558f7c1eccd61Virustotal results 40.32%Heodo
2020-10-20FILE_8YC9JVNAUHV0L9BK.docdoc 1c8e7401a41b022fdd5b02a9e8f6c4b2f28453f77fc97675de400be7359b72a9n/aHeodo
2020-10-20C_AET_100120_KUB_102020.docdoc dc4424c660cc882687e934977d90d1e7725602d1d702466653d1968d2ac1a066Virustotal results 38.98%Heodo
2020-10-20J_41439727.docdoc 53d96a7a8d56f1e2d064c677509dbaa14fdbbb01054bb25349290a7a959fd920Virustotal results 40.98%Heodo
2020-10-2030SXV200A2FB2W41.docdoc 5b1dc64f14bdc5acd69143527ffdb3809ac03de2773652c13278a55a84693079Virustotal results 39.62%Heodo
2020-10-20BAL_XK2977212363QT.docdoc 534d9419df41c2350d681ec677b6673e97f1177d08bd6650094fc6dfd010ad6fn/aHeodo
2020-10-20INV_PO_10202020EX.docdoc 312691c3e5c6b2bf2bd50d27f73bf47e5ac8c9d5cc25a672ee43ae578dae49a8Virustotal results 37.74%Heodo
2020-10-20DOC_PO_10202020EX.docdoc 5562a5a261dc5ec8d9d05ae9ecd2b4b15bcecd35d648906f0c1ffc2e85a5d1f9Virustotal results 40.32%Heodo
2020-10-20FILE_MU5783765077EF.docdoc 11d4b39a1fe81a2b511d2ee03994ad823b81bbad147c8b60dcfa1fcab9e7df84Virustotal results 32.26%Heodo
2020-10-20FILE_LKD_100120_OQF_102020.docdoc 717d8cbfd8b6e490d31d7e4650d8ab128397cd69b31470fd4d873a903337c58eVirustotal results 32.26%Heodo
2020-10-20REP_KMT_100120_EQK_102020.docdoc dc2bf19b8783e823415f8820060f32660a8aa7077eac281739eb380f7168886fVirustotal results 34.43%Heodo
2020-10-20PO_10202020EX.docdoc 206afb4d34398274d77c9e75979b864ea700413248b072dd721bdc67268e12c8Virustotal results 34.00%Heodo
2020-10-20DOC_36710032473404.docdoc e839ad79ebc64c9a9f35e974ee0331fb9e05f62ce04e2d5a7a75082ccea2613bn/aHeodo
2020-10-20DOC_35282003799855515761963.docdoc 731c494ee06a5fe125c88bd6c5962d440734d6237fd8dd68d3fae0950cdb153dVirustotal results 50.00%Heodo
2020-10-20FILE_FOE_100120_EYN_102020.docdoc 79121c5e523eeef2ed23da5881213eaca54c63d5733cc951ea4376e8cfbd41ffVirustotal results 50.82%Heodo
2020-10-20NSOWSK0KTOR.docdoc e2e51a231e8012ef72f1ee4b4bafd8fbfbc6eba2520b75b3f09e8b5ab5b1347cn/aHeodo
2020-10-20PO_10202020EX.docdoc dfde9cc85916bd77dd4bd0cec6b988c49597cfde37839cf29f966bf8142b9b2fVirustotal results 49.18%Heodo
2020-10-20DOC_YZJMZMBRN8.docdoc 49795d33d7c679a6a191590c742647402c2dcc89598c51f466f5e7a50d64f027n/aHeodo
2020-10-20INV_678438585621285.docdoc 3224f8ffc0e8bd8b76b65bfe60dba30ce2f51e2ff5aa038c890b2a11e4d4b16cn/aHeodo
2020-10-20REP_CK0956424033WB.docdoc 1707593938e446bad3b6d2852be7c32e2bb1a2a376371ca2d3be41b80a089694n/aHeodo
2020-10-20INV_PO_10202020EX.docdoc 731f9c60c47914b2dcc22536d709f5bf0aae0176c27bde61e5428e9a1afdc602Virustotal results 50.00%Heodo
2020-10-20HSA_100120_DHK_102020.docdoc 605fc6a63644a9b21ca08a28b3f2ca4c33fcd65ec73ae6a382779f9f88322be0n/aHeodo
2020-10-20INV_94746234.docdoc 84859856982d458b9e52bb7a34605e77f0445b30c1a8ac04191514aebf325393Virustotal results 49.06%Heodo
2020-10-20Y_62D81LFK528INYFY.docdoc 56089345642352de4d58ee77f62457946a127b7d69ad8dd5e519f447bc23f52en/aHeodo
2020-10-20INV_OD5008984913YY.docdoc 5cb6d2ac7c0048a18397fbd75effd392d58835e1f50e4f17400ae73dbd25f3f5Virustotal results 50.00%Heodo
2020-10-20Z_PO_10202020EX.docdoc 369ec98daf629fb7a9b10d83025aa7dc69a00048e7b10f0038011248d6675ad7n/aHeodo
2020-10-20BAL_QPK_100120_KYF_102020.docdoc 43daabd9b8ed1b9583cd3f14a3817f29bfbc447f9e0fbb513884fc702d0103d7n/aHeodo
2020-10-20DAAX_RVN_100120_CMJ_102020.docdoc 59b186ec1a7a44f2392d9a8b893b49e651376de7a32901836a7833d10ec53035Virustotal results 48.39%Heodo
2020-10-20REP_HNN_100120_DSP_102020.docdoc fd7065b3cbad0a3703b31dea8f30aeb4cd451a7d1a584ace2cb8226d02d5c8can/aHeodo
2020-10-20AKCOGA46HUT.docdoc 891db149e70aebaf792f646fa2474cb330a992ba1bf5b6c8720f2170336a745en/aHeodo
2020-10-20T_PO_10202020EX.docdoc 12395d945a2f439da85fa00c03e6bd689bf8af0911c5a372c3c78a2d685103afn/aHeodo
2020-10-20Z_PO_10202020EX.docdoc af4cc06abbc809d10b17b2ca3f1a49333e04f48c1cbdf3d439985b7c4350ccb3n/aHeodo
2020-10-20DOC_59983126.docdoc b115c55302deeae4e7e088c8dd801349c25089e867dc300251bb75936f96260fVirustotal results 38.33%Heodo
2020-10-20INV_34158456.docdoc f74c9faf99869bbd9b3f65657d504b69796b45c4bd1427bd6a9a83dc2cd3b611n/aHeodo