URLhaus Database

You are currently viewing the URLhaus database entry for http://spiritualisticmastery.com/wp-includes/lm/NdLz8fFLR8HLR7kS4X3/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:730478
URL: http://spiritualisticmastery.com/wp-includes/lm/NdLz8fFLR8HLR7kS4X3/
URL Status:Offline
Host: spiritualisticmastery.com
Date added:2020-10-21 18:05:06 UTC
Last online:2020-10-23 11:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?):mail Yes (Ticket DCU003026370 created on 2020-10-21 18:08:10 UTC)
Takedown time:1 day, 17 hours, 37 minutes Poor (down since 2020-10-23 11:46:04 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-10-23file 2020_10_22 15890.docdoc c169510f02360921eba830fdd4cc4558b520eed16d652ca0fd6f8476a2961f9dVirustotal results 66.67%Heodo
2020-10-21file A1852.docdoc d9bd69f241ea307af694ae3010651af65a9fdd62cef9dcde429d8ce6fdb9ecfan/a Heodo
2020-10-21mes_4086419.docdoc 31a8e7fe3832a5f55a12e17b8ff62219e9e27b9e69c4adb81d6a396fc09bf1b0n/aHeodo
2020-10-21Rep 20201022 ZD738.docdoc 42538e931722bfc76683ba8032a3f9771599b561326a105c20053210ee28d4c2Virustotal results 44.44%Heodo
2020-10-21REP-2020_10_21.docdoc 62b13b2b46266429dc16ef57510143aadc8b8d4c43363b03d787eb44a98cd410n/a Heodo
2020-10-21Attachments_2020_10_21_P1500.docdoc 74c87529363b4abfb536c94df924723c6d3a0e119f4ed159c5fe95ab3e7d0349n/aHeodo
2020-10-212780567 20201021 185375.docdoc a6eea83d7fab009cc5bf69ff232eec13d0b06e8db76df67d40843391f0f6579cn/a Heodo
2020-10-21MES 20201021 AOL8325.docdoc 16dab6417b0e7d1c239ab1da4a440cd337131e881935898f35a1bf1bcde61744n/a Heodo
2020-10-21File_X042.docdoc 1cbfe4acb45540cc1c03e93696d3c85a5ce3162e105d69cbc2c24f6b468fba90n/aHeodo
2020-10-21MES-2020_10_21-843.docdoc 4cfd922ccbd3d6027a2ebbb689c57aef09cd59c0b24825098d1b51868e989ec7Virustotal results 37.70% Heodo