URLhaus Database

You are currently viewing the URLhaus database entry for http://dezineinnovation.com/wp-includes/attachments/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:729977
URL: http://dezineinnovation.com/wp-includes/attachments/
URL Status:Offline
Host: dezineinnovation.com
Date added:2020-10-21 15:50:12 UTC
Last online:2020-12-17 17:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-10-21 15:52:26 UTC to eig-abuse{at}endurance[dot]com)
Takedown time:1 month, 27 days, 1 hours, 56 minutes Bad (down since 2020-12-17 17:48:42 UTC)
Tags:doc emotet link epoch2 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-10-22PO_10232020EX.docdoc 838408d31e494e72b257feeec73407a2f778e6ecc47754ae16af0290515dc9fdVirustotal results 42.00%Heodo
2020-10-22BAL_QPCVLYJV.docdoc 43fdca763d6c5a29b37caa60b67219e78151ebfe7fda9129ad8dc96f91c1a990Virustotal results 43.33%Heodo
2020-10-22FILE_73601221.docdoc 7870bb6e747db99efe1cf3586ceffa06734408184572a3d7604608401ae9e2a7n/aHeodo
2020-10-22REP_WJ5819699270JA.docdoc a479d5df4923cf3d9c170aa218de43da798baeda6247d5f044fe539826c58cdeVirustotal results 39.62%Heodo
2020-10-22P_HVKCF11R4H9N.docdoc 09ca823f72332cc93ad72355e7aeb4e5349ff3b196300906051fc3b0335da612Virustotal results 43.55%Heodo
2020-10-22E_90740819.docdoc 7726801f846f3a79f073244ea0ffbfbed6ee847b498b4ae15f94a1dc09489fdcVirustotal results 39.62%Heodo
2020-10-22FILE_PO_10222020EX.docdoc 4cbf400ac380f9f7eacf85fc40e4445447d878ad4023e251f16769b44ff39a46n/aHeodo
2020-10-22Y_IB7S8YM.docdoc 1e2ce6f7d21745dfd29a2251a7cfc9aa29962b2aa4283e160c20ca2166e2f973Virustotal results 39.22%Heodo
2020-10-22INV_PO_10222020EX.docdoc ac0f321bf0c06b4983efc4726ccb54b8e31995d53ffef62f095057770c240829Virustotal results 37.74%Heodo
2020-10-22INV_8075979342537931508.docdoc 92a3496e0cd2170dd3e3a0f5dbe4a3ba772390ca8f139e3c742f2f3a9f006d2bVirustotal results 37.74%Heodo
2020-10-22REP_BL6250614208VA.docdoc 95b893f910c8291bc7f9bfdc79062c9dadcc155dca9459d12504fef14167aaf3Virustotal results 37.50%Heodo
2020-10-22W_76047534.docdoc 4840c4bc9a8675fc94f8331c5d47bb83bb56e35696dc11b7cf7be8147c0f0829n/aHeodo
2020-10-22DOC_356845887019811824.docdoc b56dbb47b8ccce583801528377d4979222c7ccdcc3bcab559a7fa6469fe02008Virustotal results 38.98%Heodo
2020-10-22PO_10222020EX.docdoc 2012a08768e19ce57c0229fe901f5710998a91d936f73c4ca838dab581c5010dn/aHeodo
2020-10-22BAL_BZZ_100120_YIM_102220.docdoc 98d0f2c55494aaf59e1235a59b639621f2ffc6764bca6a15450ff0374e3fae62Virustotal results 39.62%Heodo
2020-10-22PO_30335039.docdoc 27a2f3fc365f4d0624325a33456e529aa149ccc2488338c41ebe8971c1bead0aVirustotal results 57.41%Heodo
2020-10-2293023868.docdoc 98a7403f2284947cdcc0c179ba703329edb0e717b26a20be473a2c606a8abab6n/aHeodo
2020-10-22DOC_PO_10222020EX.docdoc f84f03da92518ba991641be1e7096fef4fa7914d858e207b1a645fbe7c2291eeVirustotal results 43.33%Heodo
2020-10-22MKDQ_WUX_100120_VLO_102220.docdoc 2c353218e1a20d8e435f57ae45682506c746562bae6f4761e2398d7caf09791bVirustotal results 49.18%Heodo
2020-10-22REP_V3CQRP9C1Z8UOM.docdoc 8fff54beb4262f2a56b898c4004613c1f1fd9933cdcd99c0f45ea1eafb125b48Virustotal results 50.00%Heodo
2020-10-22RUK6KRRFMDHY6YZ6.docdoc 7ed0141f0a2a5f88f9be5418ff02a2fcc1e18b7a11d58fb68581b21b99b5eba0Virustotal results 50.00%Heodo
2020-10-22MT6604796787KN.docdoc 7eaf0df9dd2a33ee958384a9472366f58f1c0a204360efea6a7f8b0d298560d0Virustotal results 45.00%Heodo
2020-10-22REP_R5ECOX8TYMVX.docdoc 7bfb9f41a2dc364df62a43b35f7df6f6ff2fd74302c713e8fe91e00a83100dbeVirustotal results 41.67%Heodo
2020-10-22PO_10222020EX.docdoc 2d750c754eeb0df583b0daf91ea2a674ecf074b4a8ae2a814169f7064f197621n/aHeodo
2020-10-22817643999324869800614070.docdoc 4d47b00933264748db78cf195ca1f5e1c8b123664e286f42873e764ded7fcac4Virustotal results 48.15%Heodo
2020-10-22BAL_HT5158020546BR.docdoc a23a71fe2b845869e2dae7d48a5e35155dff172244d5ba0556d61d69255292b0Virustotal results 45.16%Heodo
2020-10-22ZRK_100120_CHE_102220.docdoc fc523dab17f69be0ab6b14d0c02e81b083dd380e76e40267fbd6b1a56128c6ccVirustotal results 45.16%Heodo
2020-10-22ES0130342333LX.docdoc dd055276d1101a557a37395ac268b9bae8e80f89011d5c312f41d77128ac7898Virustotal results 45.16%Heodo
2020-10-22DOC_BU05PCTQW.docdoc 4f927bd188b87a47398f9e9fe9bc9d4ba4d56d813e1c3183c1b5818a82696076n/aHeodo
2020-10-22PO_10222020EX.docdoc 8d3f3a330ef15519bfb2e3f71de5f5893e321a5e1f09e7f0a7459bb2f27559ccVirustotal results 45.00%Heodo
2020-10-22FILE_61365010.docdoc 4b59c4db6b4d14e2dfe7730fe25ed0dc21bb251a5c1b053cdd70e28cfc195867Virustotal results 43.55%Heodo
2020-10-22INV_711278225936810610546127.docdoc 06b7e31dc559bea806d24d61738a77de70118de926adc81fcbcdac1468c2bc1bn/aHeodo
2020-10-22XFVGHZYGUHS5I98Z.docdoc bcaad78fdd62ee09e4609f883847cdbf5a41ccf0e537736277771c3f59eb810bVirustotal results 43.55%Heodo
2020-10-22REP_291951290.docdoc e01b2dd423d602c30905f88e9c829c72498492b0ebc8c6625f81b78ad77dcaa6Virustotal results 43.55%Heodo
2020-10-22FILE_YOH_100120_PTC_102220.docdoc a78a2682db9e96335294df8912a7cd0a843bc011ae898a7fc211f79aea919fa2Virustotal results 51.61%Heodo
2020-10-22INV_BLA_100120_VKV_102220.docdoc 0d59d407c6fca62823b5b9e4eacce7270e5b98640aa37b1852d5c298805319ddVirustotal results 48.33%Heodo
2020-10-22FILE_A9ONJFC.docdoc 2bfcddec3862fcbe053dd6a0d03d5987ccfa1942950e8c9bea56fa41f6fcaa5cn/aHeodo
2020-10-22X_05099975012350982558.docdoc ef3eda0a0ce827c44632df7b430f082bf54965ce02293734e942776bbfd2b1fcn/aHeodo
2020-10-22FILE_2031392879244990465.docdoc 6616b3f26c49b7d1211930f2b4c03fd7ee276ca4fdf8e59551fb747a76a3f659n/aHeodo
2020-10-223670537531804.docdoc 884d55db64ae38575a793fcfaf4f07a6b4f67a7ee84374571189cc4bdb485608Virustotal results 47.17%Heodo
2020-10-221628095191266.docdoc 974779809091abd8c5588e79c0ec1d34ab7f69c7c8da3120f35bda0ba1190deaVirustotal results 46.77%Heodo
2020-10-22REP_PO_10222020EX.docdoc a7b558ea557788c16a9c93a7aa0cac42b96b2fe92e02c26f4c5d17c1b1da0291Virustotal results 46.77%Heodo
2020-10-22REP_4302554949464.docdoc a1430eef6f6acc51cfc4215bd06407ebfc4f5ac126d9f05c27b3cf359dbb816eVirustotal results 46.55%Heodo
2020-10-22INV_PO_10222020EX.docdoc d6a01afe9b81e65f663d1e158125f608fabf18a1b663d705398cf817f9a95c21n/aHeodo
2020-10-22VPLR_60582138.docdoc 9b4d04d1dad15a8a798ceba5f12e03c81a04335dca8703f2e4790675688590aan/aHeodo
2020-10-22L_EGK_100120_BVQ_102220.docdoc ac34efa35d04bc35c3bc9eb52c130c25c9841995ed37b75e3f9e04d7c2599bb4Virustotal results 40.32%Heodo
2020-10-22FILE_EWCFY2YAC8V.docdoc c4453119ba010924fa6571eee7895d995ccd52dcc8380f3b65aaa2bb6508290dn/aHeodo
2020-10-21PO_10222020EX.docdoc c54cc066f4ec58fa457a0f6134fb83321e303ee18aa2e2f9e0e46187e2fb3a95Virustotal results 41.94%Heodo
2020-10-21R_PO_10212020EX.docdoc 890535144da2084ee8e9431e6521be9719100cc5bec7679a4d7bdce3763a692cVirustotal results 39.34%Heodo
2020-10-21PO_10212020EX.docdoc d9140a29ffca02355e8b885163a54d58bcc095fafb564a9d8a8689b4ffdfde4fn/aHeodo
2020-10-21BAL_KVT_100120_YGO_102120.docdoc 633b2b1963bd2dd467845e87a2d06ace1c22e9402d4dd3aee12618af8f0846a8n/aHeodo
2020-10-21INV_CNN0XSB0K.docdoc 7acda67964abfefe6dfc1755e75b418e82bae70cd18d73fb0686b0c1910a6320Virustotal results 33.90%Heodo
2020-10-21FILE_ION17NCN6OXMWC.docdoc cb128eb8a7e2118942b9dc0b429a21c8aa057dac01473ad072f487d02cc80849Virustotal results 33.33%Heodo
2020-10-21REP_BFO_100120_WIW_102120.docdoc 7ea2564f31750ad752cc8d364cc4eeb167fcb8ff1bbb49f96e3926c95f82f715n/aHeodo
2020-10-21PO_10212020EX.docdoc 4d2ca163c6d59789cde935b7d539ba3c8e4abd2beed45704fba11fe67fc983a2Virustotal results 30.19%Heodo
2020-10-21FILE_11510657.docdoc f99f175949bd5a0dd1daa81ebbba94b4c80534368ce0192f1886c0babde234d6Virustotal results 22.64%Heodo