URLhaus Database

You are currently viewing the URLhaus database entry for http://jesprition.com/wp-admin/vszcrb/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:730116
URL: http://jesprition.com/wp-admin/vszcrb/
URL Status:Offline
Host: jesprition.com
Date added:2020-10-21 16:16:05 UTC
Last online:2020-11-23 18:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-10-21 16:16:07 UTC to eig-abuse{at}endurance[dot]com)
Takedown time:1 month, 3 days, 2 hours, 23 minutes Bad (down since 2020-11-23 18:40:00 UTC)
Tags:doc emotet link epoch2 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-10-24678013912959.docdoc 140f99b8c86ce2cbf27556e78284f685e2cd53ff2e50838f444b115a6a04920bVirustotal results 66.13%Heodo
2020-10-21FILE_NPV9JC59ZW4B8.docdoc 2b7d9ef7d6b56a86f2a182683da404a4f463386f1fca26f49d9a930f72d298a6Virustotal results 39.34%Heodo
2020-10-21REP_16203334.docdoc 5603b9a3314a6d1e9220de7c0d42d8fae17921bf022ea4a8be18d5615989848cn/aHeodo
2020-10-21INV_29284084.docdoc c3caf9f914df7b8d90ac3dd35fd1ad24ec34a4d1af94293e9002a9f8f943703en/aHeodo
2020-10-21DOC_TMB_100120_EVU_102120.docdoc 0f850282e2508eb5472f9cbae697cfca8675a66d6581f269509f5db6a9f30e53n/aHeodo
2020-10-21J_06OOV7V.docdoc 8ce534c1cab5a87f1d3b7962eca1fc801060b44f8e8869701afc0c011604d317n/aHeodo
2020-10-21B1531OTAIGTC2J5I.docdoc 531d1d064f737970146db0b913689fea7de8eaa7553297f5a3691ca633da5380n/aHeodo
2020-10-21EE68YCV4AOG.docdoc 7949b4d0968d00fc2389b53de17b02be73ad571b4c985f95e0105cd6b39bbc33n/aHeodo