URLhaus Database

You are currently viewing the URLhaus database entry for http://tz004.com/ad_files/DOC/P69hLdPAOs/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:724075
URL: http://tz004.com/ad_files/DOC/P69hLdPAOs/
URL Status:Offline
Host: tz004.com
Date added:2020-10-20 14:56:05 UTC
Last online:2020-11-14 09:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-10-20 14:58:05 UTC to abuse{at}hopone[dot]net)
Takedown time:24 days, 18 hours, 25 minutes Bad (down since 2020-11-14 09:23:18 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-10-22File-20201022-KPZ259.docdoc 1486675598996187b3882520ef24879c30b9d90bf4052e85d9bad9f67db9ffb9n/aHeodo
2020-10-22FILE 2020_10_22 HYE281.docdoc a25344257babd179c56bc660bff618d3300aa4de550c84dba1e3e0a46ecafe13Virustotal results 47.17%Heodo
2020-10-22arc_20201022_K459415.docdoc 20ae475c458a9525a8fbf4ad077b47cf12bbcc7d4401a0fa2d8cb2c0340abfacn/aHeodo
2020-10-221188VB-ZY699244.docdoc 8982d65c66f1a925e76a653c8fcfeba4de1e3786f54f3f991edc5d8fcd508560n/aHeodo
2020-10-22arc_2020_10_22_6671.docdoc 546072464b8ee9b02eb89fbbbf549139a0543727442323913a1c7ce22110eaa3n/aHeodo
2020-10-22LIST-14822.docdoc 4a507ca333a9794d4b850d006a2c7df0441d54464ab35d11a28e7b5002bde8f7Virustotal results 39.53%Heodo
2020-10-22EJV4182-R7557.docdoc b3f83c130a7735c0f84427c69b07ff72e729af1010569bc9a93114f10cda0e15n/aHeodo
2020-10-22Attachments-081.docdoc 66b977424a823de14f80cbfbb5e6b30980374448a54c1ae75ec6a9d9c2b0bf90Virustotal results 43.55%Heodo
2020-10-22Inf_20201022_JCP7138.docdoc 5216b40ab431ee50f4904d8d52cf5a72d749418f6fbc6b0823bbd20a16f83e0bVirustotal results 45.16%Heodo
2020-10-22dat-2020_10_22-4087898.docdoc b48740ac3919ddfa5302fcd58e7884c4cd98992629d68a8b1ed03918a6941160Virustotal results 55.74%Heodo
2020-10-22Mes-20201022-I83447.docdoc f95182213ce7c6c1e585a1a0a4a11d9c9dd07358a8acef0539def794f40182fdVirustotal results 55.74%Heodo
2020-10-22INF 20201022 0555247.docdoc c138df3717eabe4e3b8f31305c146e55769867a71b4d5963c4938125fa584f2an/aHeodo
2020-10-22Attachments-BR846007.docdoc cdbf8419848b3e25541c5b07f18e858bfbf617cb2243f88043155b945098a90an/aHeodo
2020-10-22MES_RDY780.docdoc 624a776ecf3335ca75e6d84922925f0c24e3bd9c382e148ec031721415ce111en/aHeodo
2020-10-22doc 2020_10_22 ADS6560.docdoc e22adb293242bbe12e653ae5f927e75dccbeffda728053fc11b830c8197aa330n/aHeodo
2020-10-22ARC-2020_10_22-747.docdoc 97874f4b3e24d8afd368e2ddb1cc3618f8db1fd34e838412059a5f6e28a2e3ceVirustotal results 52.54%Heodo
2020-10-22Mes 2020_10_22 WF89557.docdoc 9087f71d3212d9993850675dbb49738d95935583898777aee073b8fb35cc3150n/aHeodo
2020-10-22LIST-2020_10_22-KZL85872.docdoc 563326eee20b3251ff62a67fb84eb55b9ff922ccb553db1842e0bda2b2b4df4bVirustotal results 54.72%Heodo
2020-10-22Inf_2020_10_22_647876.docdoc 1789852f3ddb4d213c5808af892d7c5d8585b400ed67fa5e0ce8e35f4fc293e2n/aHeodo
2020-10-22file_20201022_4729.docdoc 7512e266ad38f56ffe78e660347c98f0decf6bb495e53125976d71042800b3f4Virustotal results 50.82%Heodo
2020-10-227443_737.docdoc e67a507d777e002eee507ccec06969302b4e54c01e686bb88b3368c97fd09fa6Virustotal results 49.15%Heodo
2020-10-22file_2020_10_22_475.docdoc 87810aa6765f1c09d6d20ffb8a1d9384bd668189fe36938f7d9172d3f5ba4fe6Virustotal results 46.77%Heodo
2020-10-22DAT_20201022_OAR2487.docdoc b11d449feb9bb576a0898ee8729e3a722b4dbb269c08a0d46718cb3b853acbf2Virustotal results 47.54% Heodo
2020-10-21LIST-20201022-SYD66252.docdoc 12c68e1e99b281571fac81330a1178884fa80cd2487d5687440f1df72e8fe9f6Virustotal results 50.94%Heodo
2020-10-21Doc 20201022 527.docdoc d65ac49f3e3c26aa5a64eb44cd03e3d4e66f10dfc24adb8dba89260852589e14Virustotal results 44.83%Heodo
2020-10-21doc_20201022_3929787.docdoc 917994ccbabf6d6480a31a433491e371a63fc34f4de8fb8fb53fa5dc8fad5bc4Virustotal results 44.26%Heodo
2020-10-21Doc_2020_10_22.docdoc 31a8e7fe3832a5f55a12e17b8ff62219e9e27b9e69c4adb81d6a396fc09bf1b0Virustotal results 43.33%Heodo
2020-10-21Mes-2020_10_22-6676.docdoc c2f0f8e8d0fbfa48d0ac6cd1251964b6a14dd3b0956a1d293140bf7cb439e049Virustotal results 43.10%Heodo
2020-10-21file-2020_10_22-EL649122.docdoc 6477cae7caf3f4cecf4e4f17f4c6dd85d5bc5d7aa2517575063852656754b9a0Virustotal results 41.94% Heodo
2020-10-21FILE_2020_10_22_XOH876273.docdoc 083f93ee6b0c8f50e12bcf43b0dcdad01fdb91387920da97ad880f569077670bVirustotal results 44.23%Heodo
2020-10-21file-2020_10_21-I449095.docdoc 62b13b2b46266429dc16ef57510143aadc8b8d4c43363b03d787eb44a98cd410Virustotal results 43.33% Heodo
2020-10-21Attachments-2020_10_21-UUF397466.docdoc 58dd14b9873993e348c4ddb26836d43f01fd619f9d56f694f752a5a9db63aa60Virustotal results 41.94%Heodo
2020-10-21Mes 2020_10_21 59968.docdoc 7ab33cbffc50d460f8f0454d19c531767bd545aa9baf49ed14d191e4ee19db00n/a Heodo
2020-10-21INF 2020_10_21 UW61840.docdoc 6166977ed2093f4737ea6771eb5fa4298fe60000d3ea12a61966cc10c9e83d26Virustotal results 45.16%Heodo
2020-10-21file 2020_10_21 FM528440.docdoc 7c72a2b38416a8d0149f3d8e36d0bb7e6ee3fa3292230d3ccdf36ef0e530fea3n/aHeodo
2020-10-21FILE-FE88871.docdoc 7ec0bcab3c4c1cc91f37ed6bd4afcab8a5868e313ba41da59e242a45e0e7fa7cn/aHeodo
2020-10-21rep 2020_10_21 Z7584.docdoc 00ed59c9df48338ff3a5a699c8e8f21b57b36396088820dd0e3b51382a6e3016n/a Heodo
2020-10-21Untitled_2020_10_21_ANT551257.docdoc 9f892449d9dd2097e8a1fffc51fb03215b306bc4cd0d8a1399d936a0cf4477a2n/a Heodo
2020-10-2172405456 2020_10_21 130447.docdoc 4bff2adedcf0b91410da7c605c05ef454657edcf0d6ceecad7571f17f93032a8Virustotal results 38.46%Heodo
2020-10-21Attachments-20201021.docdoc 9108ca23d908dda4dec8fb03dc119e054b45ac8bef157933a4034f5992ca7ce7Virustotal results 29.51%Heodo
2020-10-2108709950 2020_10_21 Q060498.docdoc 2700e74dfec403cdd5306ded2adb5a78f8cee0aeb693b9ad6708383785a2fd1cn/aHeodo
2020-10-21doc-20201021-621148.docdoc 9bef99c8e12327ded16455d788af6804370777cf4cdf3d260f60e189cec14401Virustotal results 32.69%Heodo
2020-10-21967PZI-20201021-5631936.docdoc 15be5be4afec63a2c86195f7b5733fa641998ca2e269c2059104ece44f9fc883Virustotal results 30.51%Heodo
2020-10-21list 2020_10_21 053.docdoc edf554e5aeb28ebb63fed5c33e0bdbf9c41029ad8c0f5d8d53af19aa7b523f6bVirustotal results 31.03%Heodo
2020-10-21Dat_VYQ954522.docdoc d66507e04664bc245fc279c53f5be49bc10b2677f4a82db33eb921845d8000baVirustotal results 29.03%Heodo
2020-10-21INF_D029.docdoc 22ef4dbbe29239577c7904c9aa615b3dd0fcec7a93fce97d7230478dc1008361n/aHeodo
2020-10-21Untitled_20201021_IH49036.docdoc 1a248ae0b477a41ee1372e8b11e927e9eed3a23a1438c0b6e348ab9d724953dbn/aHeodo
2020-10-21doc_222.docdoc 0429da48f2a7712f9d48d30212b70720b93dbd7106a1f848b47eeb5765b3898eVirustotal results 29.03%Heodo
2020-10-21File 2020_10_21 1759241.docdoc 7b379e5dd60536e28d876fd99a019dbf070807482a1aa9e2f29ce9957914c93en/aHeodo
2020-10-21mes-SD87975.docdoc 93add3f9a6eb8a5206d09393a24640c68f0e49f34a92bd400d53af71bc0d5c32n/aHeodo
2020-10-21Dat 049.docdoc 3a1562e7ec3d071ad866476f63095e5c06e5b89ae90d4762c4348a993778f645n/aHeodo
2020-10-21REP 2020_10_21 2873435.docdoc 32711546cda865c69daaa804dc9494fa69c6177ad048321f340f77397da7757dVirustotal results 26.67%Heodo
2020-10-21list 20201021 299633.docdoc a495d84c58b2b130270804a0b6840b81578da34154f42c5223e3f34214daae0en/aHeodo
2020-10-21Attachment-20201021.docdoc 52fc822e8fa25ba3b00d846404ffc5c64a6cb186f20c325b1fb19de0dcde32d8Virustotal results 25.81%Heodo
2020-10-21dat_1936.docdoc bf3c126d26a853833f4eb4b0348fad5b636d2d6916700a4f4568c3aec3941ea7Virustotal results 30.00%Heodo
2020-10-21Untitled 20201021.docdoc 1924885ab53101752f2d462e884866c44923db9fa2abc8d6c779f614f2b5d615Virustotal results 30.19%Heodo
2020-10-21FILE-20201021-HBF467.docdoc ed40790670d9220e945eb6d5270dd8cdf674b2c9cd55da18096b9a7a91627e59Virustotal results 29.09%Heodo
2020-10-21Mes 20201021 5204.docdoc 51e5b175a3ae854fb025e7eb89ead4a7b465cb7bc6ff100dc065ffcf3a73c773Virustotal results 25.81%Heodo
2020-10-21list-20201021-944388.docdoc 06a4322e423330a9c7569485a3d4f5b5a606c8abfb8f18346e87790786035189Virustotal results 26.23%Heodo
2020-10-21DAT_2020_10_21.docdoc 1352305c9a2204057efd3947f80e983fc0740c4d172a271cec9f78191fc2caf3n/aHeodo
2020-10-2118976010_X4028.docdoc a886955819a431586bb94b3b3960c906f5cdf2246de18906fbd6b469f021bf91n/aHeodo
2020-10-21Inf 2020_10_21.docdoc 04d2d14956fbded096eecf36f6af427c0096f230240c0ed2ab6bdffa4c183f32n/aHeodo
2020-10-21DAT-2020_10_21-PQC369633.docdoc bcc4b6dd12c681e21f14ec6e0d79b4a74a6869536475fa61f8705c3a2a48efdbn/aHeodo
2020-10-2153204327-F400.docdoc 8413f8bbdb69008a6bf239909f32ac15b8d1666e0548a132ea9c731144270aean/aHeodo
2020-10-21inf-DPS488.docdoc 9d543da5eab2a9f1910e5d478545075f534d4666dbf6108fb5feb51c238d011an/aHeodo
2020-10-21Attachments-20201021-245984.docdoc d44b3c4852eacd4e0f3f74ee7ad98e9439b486312e5fd96d78c52922a35fd6d9n/aHeodo
2020-10-21File_20201021_281.docdoc 852c8d55772a4f7a0497ca1ecccd87961c0c25de156477c74fcb3c29003e352bn/aHeodo
2020-10-21Doc 2020_10_21 4510226.docdoc 9bedcc0b34dbbcab87baebe329c2dc66a4d01287e541da22b3f08a80d07e1501Virustotal results 42.59%Heodo
2020-10-21list.docdoc 2c343ce115f0677eaf8c26f14fa357c30131562c5a1c7f73da0adf5ce7b35b36n/aHeodo
2020-10-21Arc 20201021 206566.docdoc 2ca5f560d67437d266d4f24bfc29b108a29b963d3e5eff6e05f7be37513948d6n/aHeodo
2020-10-21inf-2020_10_21.docdoc cbfbc0c7880423211b4ca4e059bc216b66c042f58c5ec965086dca64e0d29c74n/aHeodo
2020-10-216110DXE-271740.docdoc f9fe25b8f33f0a31dd98d6d9835a3c3997842d4e3e0ecbf74172f5d88218cb39n/aHeodo
2020-10-21Untitled-558108.docdoc 943c1aaf58c254c5b80e28a1aa52e9706dc8a540a309f2d9afd0083510af7f8an/aHeodo
2020-10-207243D 2020_10_21 K91998.docdoc 9c354ca6b12c37f6883dbfd7400f0738f7cae56e489883468bd5faaca7321380Virustotal results 39.62% Heodo
2020-10-20INF_2020_10_21_659468.docdoc 28de9a545bff02be8a015ea386ce91d917b531e57f13d1d24522d2255f803b71n/aHeodo
2020-10-20ZD7527_2020_10_21_YED803.docdoc 59373a792aaaaec9f9a427dbb6b373e51fa49de08ac9404052262df4233679c9n/a Heodo
2020-10-209239-20201021.docdoc 5d39d6b0fc3acc2a4b3d0ae3e73ceb68a675be36995ca1391d7f5900059b7a1cn/a Heodo
2020-10-20MES_W89390.docdoc 7ab3c379ec8a0426d4730ace601e33598646beb25229f3a4a105f530dfcf6f7cn/aHeodo
2020-10-20Arc 20201021 48528.docdoc 55e3e313bfc52f339d047f6948f72aab7709da08e0378a993e392435eeb65274Virustotal results 41.94%Heodo
2020-10-20File-3957369.docdoc 97a5f5b6e3ece61dbc14fc1bc46e7712b37c38d7f20d2b1be271b53faa55c8b8n/aHeodo
2020-10-20EX12330_20201020_631.docdoc 3b5449224663f3406ef496200a1d856f3a714defa6b7d4e7b3636927a3f07015n/aHeodo
2020-10-2085912D-322.docdoc 19b5475b6e1cdcfc2488e7d96a3ab88a10768210ea168b7f86b5af686070f684n/a Heodo
2020-10-20Untitled 2020_10_20 K30520.docdoc 539444aba14a887e553cfc826b2de4f1b2e1bc1f0e2e0fdc4810dc17d0236154Virustotal results 33.87%Heodo
2020-10-20DAT 20201020 JJM287.docdoc 7c24ecbd3158a75c284d67df1b1e21fafc77cf6e30ff766138c97165ff448fa0n/aHeodo
2020-10-20ARC_2020_10_20_925163.docdoc 3990d3ddd544db77ec9f7db002a4003b3fadade6921d821f8fc41fb38c793e14n/aHeodo
2020-10-20FILE_20201020_3500.docdoc 1b69b581c4117e2c0a34be295451ec37741a692d464991e5556b2fdce3cca7b7n/aHeodo
2020-10-20mes F9446.docdoc 9491796ab21b9d5b01d7eb48194abb6c5be6003977803fd151f12a87d22b5cadn/aHeodo
2020-10-20arc-2020_10_20-AAU912.docdoc 40ddbb8558a12bb4dfb5cffb37e8a335f825fd392e47ff4c13c5a1fc275da77cVirustotal results 34.62%Heodo
2020-10-20FILE-848924.docdoc 3e6c5f430b82245a6dc68c07caea0e4b8e477e848a6c3834105fa4b913e2c1bbn/aHeodo
2020-10-20Arc_20201020.docdoc 312bfc526b9b6b7143f42c5b3bcf872bb0952a9589f5131e396e5f0d59a1a0abn/aHeodo
2020-10-20File-3064.docdoc 0a7d3b60f84a91cf712abde514f3eb1c37d053b5a988db0b77d652d5674087c1n/aHeodo
2020-10-20arc.docdoc 5fdf33108d1c18993c46032eda01b6f71879c523d22deb7bbdd1cfd453733097n/aHeodo
2020-10-20330Y_20201020_CA8588.docdoc 1a804013214398e31a2eaf751e834ef01b963ebf91691340edbd48037f7ee2a0n/aHeodo
2020-10-20Rep 7282.docdoc 524fe667d487a1f8b5b76b55ac0719de6e28e9720bd04a9a817aaf53c3aeea99Virustotal results 33.33%Heodo
2020-10-20ARC-KI484693.docdoc e54596a490fa6c0fca43b5a5c3af9c13d929b415cec408a78002a5e0394749d7n/aHeodo
2020-10-20REP-2020_10_20-620409.docdoc f09df05f20e834968ad1977d3a4b5a2d33e1bfb1c85da0bc95ada1dec9b2a140n/aHeodo