URLhaus Database

You are currently viewing the URLhaus database entry for http://dygida.com/wp-content/1340885746928/26542468865711/tq9o7oj2ri-52081/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:726418
URL: http://dygida.com/wp-content/1340885746928/26542468865711/tq9o7oj2ri-52081/
URL Status:Offline
Host: dygida.com
Date added:2020-10-21 01:05:06 UTC
Last online:2020-10-23 04:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-10-21 01:06:40 UTC to abuse{at}doruk[dot]net[dot]tr)
Takedown time:2 days, 3 hours, 38 minutes Poor (down since 2020-10-23 04:45:04 UTC)
Tags:doc emotet link epoch3 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-10-2200812991.docdoc 59235980108e00a0011ebeca9348c5a39ef6d6ec0b052e15ddeb825e9c21e3d5Virustotal results 39.66%Heodo
2020-10-22invoices 9975 & 42926.docdoc eedc1f3d57d4274cbfc97e09ca0975f97fff204e89fe92574f9e3964a569c9d7Virustotal results 38.71% Heodo
2020-10-22001354561.docdoc c62002794ed88e1776376cf0144fdaa74155895bd71f5a69b781acf83818f56cVirustotal results 40.48% Heodo
2020-10-22TKP-100120 KNCP-102320.docdoc 8b5f6da01149406c0cd0e243ce84b34813ff8c9f09fcf645859516d085f9ae3bn/a Heodo
2020-10-22Copy invoice #70265.docdoc 0ffde0e4b91dd4178cf8bb09de58e8de279118d242b1fe487ee1451627d0ddbfn/a Heodo
2020-10-22Invoice 001725924.docdoc 2beec2edda2346042fdfa829caaa7403e7842e786b9b9e89baaf4cd5e45d189aVirustotal results 36.54%Heodo
2020-10-22Inv. 00757441.docdoc 69ffe894394d85585f7b58a501710dd783a3cece15ba7964b4080f3c0de17353Virustotal results 39.34% Heodo
2020-10-22PO# 10222020.docdoc d18c0e979f37984b270f0c13f5be14520443ccf55b445d68ffaf6c48b89cf5c6Virustotal results 39.62% Heodo
2020-10-22Invoice #0765.docdoc 9192adc6ad055a6e640fd17c385e4aa7e88fad75617119f2f64efcec5dc4da19Virustotal results 39.62% Heodo
2020-10-22Payment.docdoc 0dd7566d93fe470be42c3b43f89d10022539dd21c040c3af9f234f5cdf3f580eVirustotal results 36.07% Heodo
2020-10-22Electronic form.docdoc dfb6817c6e31d81f6a98945394150b500c04fb563d8fe9ae170733fc922f8421Virustotal results 40.38% Heodo
2020-10-22INV #873 FOR PO #54330995043.docdoc 2acac0803d5b5de2f17bb7d2c43af5ad438be8af04faec7bdb33b4cddda2a4d8Virustotal results 35.85% Heodo
2020-10-22Payment.docdoc 2f11fb391c4e5106c86f7af02261b1ce605f84877b62af40538177fc258c9e05Virustotal results 35.85% Heodo
2020-10-22Inv_736797.docdoc 9a666094b1345025d71c0b39d2adbd628fe43f2bc867345884787f6505777ce8Virustotal results 50.00% Heodo
2020-10-22BV7785236883IA.docdoc c997bba83eb4e15d19a871e5f4e7f506eb780772858f744dd12742b9c678e897Virustotal results 50.91% Heodo
2020-10-22CF40 invoicing.docdoc 0cbc8f1c920ee2d242a6ca5d19dfadee47264af9f96e500ffd59de43cc83bd0dVirustotal results 50.00% Heodo
2020-10-22Inv. 056351866238.docdoc 8c15a10ed4c619cdc9eefbb7d32596330ccb2dbc41b5e21841dd141fee55a85bVirustotal results 47.17% Heodo
2020-10-22Invoice 0028610.docdoc b25f82dbf33bc9cc154be6c8bef79aa2b570c84eba334f3fc27ae55681f6c154Virustotal results 52.63% Heodo
2020-10-22invoices 006 & 4250.docdoc 638b48f5106a07180e10d72cb0c0fdd9c3568b08e463ee480d66fae4ab87f029Virustotal results 49.06% Heodo
2020-10-22Electronic form.docdoc f22e043076e2cafc9155e8e740e5ab74406ed9e83d3f875772e3f82b69d8d93cVirustotal results 49.15% Heodo
2020-10-22invoice #674172.docdoc 3cea95fe241c36b02ffc90f1260df43c8fc77e7acde8d5804ba4a461203332d0n/a Heodo
2020-10-22INV_3681.docdoc 4c0eefb631af43ca75f18562817c8ac29361fdf7b5a528341efa855a8d1c6a6aVirustotal results 40.35% Heodo
2020-10-22Copy invoice #26666.docdoc 47024e56dc7cb9b1cb36ff764702c5105a0af0873104fd86e72d9f206c38ebacVirustotal results 42.62% Heodo
2020-10-226346775732VA.docdoc 3abe5cdbb82a1a48fb89ecf043e24351ffb466cb6112ea7316f6fb518244a289Virustotal results 47.06% Heodo
2020-10-22Invoice 0061807.docdoc 410f511f7ba84ffbd69fbabc0226828f52eec22c5b5db6759f60fb65ea20270aVirustotal results 42.62% Heodo
2020-10-22Inv. 073264.docdoc 948302725f3208d721629436cfe1abbf592c813da68627c3c158cc6547e1cadbVirustotal results 43.33% Heodo
2020-10-21W1674756780BG.docdoc 90828b96547b35641ebd76b91c0200f8f057974be00f528002acf24663c9991fVirustotal results 32.20%Heodo
2020-10-21Form.docdoc 2a603eb060abe8cf0ce5259b69da9cdd0e5c3015332a943828ef24212ae982e8n/aHeodo
2020-10-21UCR-100120 PUZC-102120.docdoc 846e5913124d7032c01dffc200b7250ef349a517df8653d0e92ba024b61de295n/aHeodo
2020-10-21form.docdoc 4d7508552733f0a42b7b2273bbd90b7e8135be0de22c160e89ceb830c00531een/a Heodo
2020-10-2108193203.docdoc e45c71c909dafaee0830088e9068e0cb0f2f99e5ab1ff7da592240e46ba6fa58Virustotal results 29.03% Heodo
2020-10-21Payment status.docdoc 9ae2a76f7986879c8240f676ae9dec6196bccba2a978f23adccca97489d1e33cVirustotal results 34.62% Heodo
2020-10-215149490796.docdoc cf82d0365de8c8bb9a11fe55d1c592563309c38f81dd2489d64320006b738393Virustotal results 28.07% Heodo
2020-10-21Payment status.docdoc 5c1807b2205a7fb8c1318d526c683f56587f78066afddc7a87a675da8e0fc99en/aHeodo
2020-10-21Inv_506824.docdoc 1905e599d724631809846d68e01d2fcfc9b1a4cb613d6899aa36dc519947e282Virustotal results 25.81%Heodo
2020-10-21INV_15952.docdoc db5fb70150903040a3e93dd5c87a0b442c28473d2dccb5ca3dc59c2957a243b7Virustotal results 26.23%Heodo
2020-10-21October Invoice.docdoc 4b091f47077d168f83c5f39f3ca6837c70c9fef749880418389cf07514420dc3Virustotal results 26.23% Heodo
2020-10-21Electronic form.docdoc a3b6842573584f704d6a8e14964f20811e162c91bcc4e3aa8b0eb7c7948db506Virustotal results 29.09%Heodo
2020-10-21VQ-100120 ZVBF-102120.docdoc 80dd2f61a2a94711168be21ce9680716bddfab9407a8064b42a59919806c8560Virustotal results 30.77%Heodo
2020-10-21PO# 10212020.docdoc d8e0f462d8d75918d376254506d8d9ca846f6fa1f33076a091cd9f61832efbc2Virustotal results 50.94%Heodo
2020-10-21Inv. 00371191.docdoc 7301eb52916c5b004b3f81ebf360c397e25aba900652108420b868313afce2aen/aHeodo
2020-10-21PO# 10212020.docdoc 19a709ff8ecb374af7e40714b3ff541cc7753c7e69a7f0250d797356cd4ccb59Virustotal results 45.16%Heodo
2020-10-21Payment.docdoc 33931df25bbfed2013a987a32738c165a5799d274381e76cbf534ba189be293en/aHeodo
2020-10-21Invoice 00882299.docdoc 58a681865ea454572eb661486c8e06854e90cc7cd2d5ab95ae331a724f5ce97dVirustotal results 45.90%Heodo
2020-10-21Payment.docdoc a83dce48be132b625d87853a68a56238720b2fad3e3bfb67c50bdf1d677a98ddVirustotal results 43.33%Heodo
2020-10-21Electronic form.docdoc 15680f3d4397a2ea2191e960421dd8650642415c14be15b1495f859bc6b9d7cfVirustotal results 40.98%Heodo
2020-10-21PO# 10212020.docdoc a4b9c8bd73e09cac4fa51d9601686766c566cc1afcba7986eb46da97f56449d5n/aHeodo