URLhaus Database

You are currently viewing the URLhaus database entry for https://www.cupgel.com/__MACOSX/Document/DYQzH1qNr9/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:731328
URL: https://www.cupgel.com/__MACOSX/Document/DYQzH1qNr9/
URL Status:Offline
Host: www.cupgel.com
Date added:2020-10-21 22:14:04 UTC
Last online:2020-11-02 16:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-10-21 22:16:05 UTC to onur{at}voyar[dot]net)
Takedown time:11 days, 18 hours, 41 minutes Bad (down since 2020-11-02 16:57:24 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-10-23FILE-2020_10_23.docdoc c201dc04bed84411f216935bcad9296fdb3e99daa909ead17006846758dc8346n/aHeodo
2020-10-23DAT 073810.docdoc dc449047057bb16de95db4e34192d9da2711671aae299bc381e7a5ab2f37cce3n/aHeodo
2020-10-23list 20201023 XV306.docdoc 46d9c9d847993e2e7597f024b146002bab578f6a595487fe1468cc1664515517n/aHeodo
2020-10-23Doc-20201023-EA68529.docdoc 02e4ce0981c521bd6a8ca1170e5d7ea8ea35c973d2692d1709b8ecf1db394384n/aHeodo
2020-10-23rep_20201023_890959.docdoc b9745ad5da055a585ba0ae73db8e019aedbccbe23904d104d0ba10bb4bbd2668n/aHeodo
2020-10-23Untitled_20201023_UFB306404.docdoc a129d723a80571d6c9f4402118e7a138d3ce0439cefeb6718c1e34d246586d51n/aHeodo
2020-10-23INF 2020_10_23 901.docdoc de3075003dae7cc1d27219ef1a911edea409e0977960756eb9b7dcecc9862aa8Virustotal results 53.85%Heodo
2020-10-23Arc 20201023 KXA2645.docdoc 286987c28f0d788f2fdefde039f8caaa05640879b5a7681f886fd263caa3e620n/aHeodo
2020-10-23Arc-2020_10_23-6844.docdoc 623493fea7d7d2f6e25e4e0c6d64d8bc684086cf8258e543f4a859b5e2080eabVirustotal results 54.72%Heodo
2020-10-23dat_20201023_MH770.docdoc 88ede93bbd015607192a96718235dc0b427a8f654bec3ea00739a51abf19e5e0n/aHeodo
2020-10-23Dat 2020_10_23.docdoc 79756d922c1f4aeb494ec62b223c6a92ead333f7bca46e8754bb183dee9ddde8n/aHeodo
2020-10-23arc 20201023 004.docdoc e4b62f41a4c63c57f172234a14c6f2f6598c4dce4bfd84896cb88b4eb9c1106cVirustotal results 54.24%Heodo
2020-10-23doc_2020_10_23.docdoc ff799dfe689af4b7f91327702adf9abbf48fdeeae9400493c012692c7bb07cebn/aHeodo
2020-10-23UNTITLED_20201023_7312.docdoc 31a65c0934f1ba04e9f8ff09dc95bd842b64d925bf09ee93fd20896f040b8c76Virustotal results 54.72%Heodo
2020-10-23mes_0671752.docdoc 70fa07241369935edadd1ce5eaf42bd68603d3e67d3c0a2e6ec052f44a37e449n/a Heodo
2020-10-23A724-20201023.docdoc 0ffa03e1d13a9d92d4840fdbc9530e032e68446c2870ce96415cedd63a39e919Virustotal results 50.82%Heodo
2020-10-23511YT-20201023-GJ142.docdoc 0d4c32de2a17f33ad0504b5ff2bf0cd32123f1cca11d58dda141b0929a266837n/aHeodo
2020-10-23LIST 20201023 FQP1660.docdoc 7df71a638ddb96143a97778fcc28b8a4730001b82ef2c0ba7eff33a580b58023n/aHeodo
2020-10-23Untitled 20201023 0351.docdoc c08df1aaf320c5907f8fa026f4fb52764fde92489159d8793d79d4183af18380n/aHeodo
2020-10-23DAT_406186.docdoc 0c55dae4a75373696f7af6d0a7db5092fbe4f15c3c92d8dc9433949837b5db92n/aHeodo
2020-10-23list_20201023_RX431282.docdoc c9babc044bb0a01c4400bd20a0fa2beb0f170477285b53f5590f52e7d5206e11n/aHeodo
2020-10-23inf 2020_10_23.docdoc 2df60a3a0b069c063741a94ff2a1c19bd0da7088ec932c4c12d7dcb186aabb06n/aHeodo
2020-10-22UNTITLED_20201023.docdoc 765c9628736a6dcf02ee14fab94211112d2362de15508df277f81825727a3085n/aHeodo
2020-10-22INF_20201023.docdoc 26d7685602eb095c34ab91bbf5b63480114c8a5168221cfb42b530c964ddd50an/aHeodo
2020-10-22FILE.docdoc 5dbc67d9b88e0dd44bf600661d17c5726d09f83034d0d8c55dd65aac85569d11n/a Heodo
2020-10-22MES-20201023-YU300742.docdoc bf5aca74ec441467c5936928f2e58be49eccb72333a01b1cd294fce69eb1e453Virustotal results 38.46%Heodo
2020-10-22Doc 2020_10_23 XQE218.docdoc d87a93ae2eb91cfb925982e62a821b9798be7fd9fd307604af79f96c5810e156n/aHeodo
2020-10-22Inf-2020_10_22-W6571.docdoc 9b1126a7dcaab56164020fba3bff26f128ad35ad6b3afd288479b18850668535n/aHeodo
2020-10-22DAT 2020_10_22.docdoc 36e059b5f4bde3f8c2f468e51824e89335c5665953b44b797435ef2bd7caafbcVirustotal results 40.38%Heodo
2020-10-22Arc 2020_10_22 4278291.docdoc d5474138a81425e37468ee96b8d51972e4f39cb3485625f90cedb9f9eec62e4cn/aHeodo
2020-10-22ARC 2020_10_22 I14140.docdoc 19b866171a1a8ec46f883e290659844274177390ff0ecc04b65e56d4f5ff190aVirustotal results 41.67%Heodo
2020-10-22List-20201022-9563.docdoc 744510232f86ddaa90402827ce8b9d806fff2827c08f1b27cfa01e9ec5787d7en/aHeodo
2020-10-22Rep_20201022_797.docdoc 83d33594e6308d08e4dabe95a4fe33bc47bbfa6f09219a045c6d42b5a9c99abcVirustotal results 35.48%Heodo
2020-10-220840-20201022-721.docdoc dc9b5ae32262f697360bc1b92f520a8211cfc0360bcebec5a1155bbed03f9ccen/a Heodo
2020-10-22260_9894.docdoc 9ba251b5dc945ddf16170c88b0c54d965a8d6de7c55566a9f1078a20aeb4c324n/a Heodo
2020-10-22rep_20201022_50972.docdoc 9473776ba71d7fb4c1ce5c3d5d0b87d00fc361ae37fd75fd5b7375f30b9c3107n/aHeodo
2020-10-22625IGP 20201022 2452329.docdoc 710cb3bf0290d6e0bba3c153f50d8bcd4a9e57a5a8ecce9f44a4c6395a41ea0bn/aHeodo
2020-10-22ARC 20201022 E2362.docdoc 5f899d6ba79a78bc6e85428be8ba9150ce5bdad6dc475b35c61156ff8f21550dn/aHeodo
2020-10-22ARC T26154.docdoc ea9805f9723659f50487de76e4fc122b369f76a771cb6d06ff42cc6649485380n/aHeodo
2020-10-22Mes_NTV292.docdoc 995844ce9bd711bc028686f4bb4082d547081a2e28ac5c1f030dd2beb38ac73dVirustotal results 37.74%Heodo
2020-10-2233723B 20201022 6018.docdoc a4d62fab68ef1d6b045a87b9ad2d4caa489869d665aba8129c7cd85333163fd3Virustotal results 39.62%Heodo
2020-10-22IHV4371 964581.docdoc 85177e9fdb0245b4bf82bacf584df357798f47c9cb8da3c5d7d2dc29b26137dbn/aHeodo
2020-10-22Inf-20201022-MF249223.docdoc ca834d2082d01bcd776f4caf9891c752708e6e5169d37c98480dd73cc13f461dn/aHeodo
2020-10-22Doc-2020_10_22-409951.docdoc a0ab0bae8c63f96d8ce5b8462f2fd9d174cdacbeab207876e7b695290a1fa82en/a Heodo
2020-10-22MES 2020_10_22.docdoc f866bfe66ec6e3cc8be75c57bc75b4ee56e8b16ed1804ad9ac89337a3548fd71n/aHeodo
2020-10-22REP_419.docdoc 0e4e1bfaa0e58a742133e06d03d05462dc66388a69794a34ce16c3a232439f86n/aHeodo
2020-10-22Doc-CPG5771.docdoc ad4fb1c8e8b100dfa938f632bd3a23e0f116ca361ca1750f885949eab7d9b698n/aHeodo
2020-10-22inf.docdoc 8a689f2d19b100a22054241d81fd818a9a397a60701cf7af99f559f7049ef87dn/aHeodo
2020-10-22doc 30487.docdoc 13fdfbfa4a634d846ecdd3435c3425161bbc8e7af03cad6d15e16104a13c8a2bn/aHeodo
2020-10-22ARC 20201022 JP4486.docdoc fcf21fb79189cfaf8f42e9a2764d68c2f9940ce3c5c79a0868d4de633e6d476en/aHeodo
2020-10-22INF 2020_10_22 JSC85656.docdoc e1ed3c3f815aa1e73e275b805c64fe923c41a8fcf0a83ef0d10c29ebaa2e072bn/aHeodo
2020-10-22INF-2020_10_22-4914520.docdoc 2d96f098de1372838b0cabcc1375e662ed16929253a23e9ffbf60dfeaf4be3e0n/aHeodo
2020-10-22INF 2020_10_22 955973.docdoc 6a583c49df1bbfeac2d052c73abed4664082145c645a51025c0db0673bf2fc3dn/aHeodo
2020-10-2284980AM-570483.docdoc d6faa481aa47eb3edf82303d95a98a40431ec2b288e11fe34587d4b8ef28b236n/aHeodo
2020-10-22doc-20201022-052.docdoc bfc9797acaa5c291ca5ae325f7e30c17943114bf6fd2c485cf4a2c5df7eb68d1n/aHeodo
2020-10-22FILE 2020_10_22 HJV70438.docdoc 8c23e578f16b2d703020b370b1baf6a954bdb081411b4195a07acd937e31f879n/aHeodo
2020-10-22File-2020_10_22-766171.docdoc b1fcbe229b501258adfd4f698dc2a2bc801431066c82f50eef41dc4315265b08n/aHeodo
2020-10-22INF UVD4617.docdoc 051445a7b1b9b0f6f20f835fe8986c838a361380fe4b78f774869d8a77b3a192n/aHeodo
2020-10-22FILE 20201022 3920.docdoc 16c3cfe1d57d913c326c72bc65e0476284bc3063d2027cc711612cdb8e4d5c42n/a Heodo
2020-10-22list_LBM396.docdoc e611734004857badf3ba63f84f76604db2dc2394cb1e5a74d83442e580b6d1fcn/aHeodo
2020-10-228013031.docdoc c53ffb4639e68722e714385b3296c8ad388a6f6004e2905dd2f7a86f3e2f59d0n/aHeodo
2020-10-22mes_20201022_5561.docdoc b48740ac3919ddfa5302fcd58e7884c4cd98992629d68a8b1ed03918a6941160n/aHeodo
2020-10-22rep-245.docdoc 44825c2bae3d56eabd7956d7f042f944a78988f626e43a3e94204ace8c69cbden/aHeodo
2020-10-22W972_20201022_29653.docdoc 4fd05f115fa19fb83772d3774cbca589e514557731f2a46ac032052ab63e3cbfn/aHeodo
2020-10-22Rep 2020_10_22.docdoc 1f40906719f7a39d0bd677996a0798795bbe9c729ebd3b87966ce7c36e01fb3bn/aHeodo
2020-10-22Doc-20201022-8274282.docdoc 90aeee97e0274703c7aaaebf22decaa0c4c4e1c626f2bb0713892ee662256842Virustotal results 53.70%Heodo
2020-10-22MES-2020_10_22-MOX35965.docdoc 6468266c5994c400937bb96f344756a764ad1fcf5b00cc3135183b89bc60eb4dVirustotal results 49.18%Heodo
2020-10-22ARC 2020_10_22.docdoc 605694ee757245ee98eda85068e6c58c327f8e7d2c139299cb86ed537f3e979dVirustotal results 54.55%Heodo
2020-10-22inf-106375.docdoc 4383bf7294fdb4566c7926a8f3c514bc052b8c345d1a69db6bc9b03f502537a8n/aHeodo
2020-10-22mes-20201022-N697481.docdoc 916610eecd9e0faf3813f4af060d636722a3a3d148e16373514ba8ef022ac631Virustotal results 52.83%Heodo
2020-10-22ARC_2020_10_22_8884321.docdoc 1866b19498cdc839b6b01746deccdbd4fb5ee2689ea7b5dd49d2af60d6b4d620n/aHeodo
2020-10-22Arc_2020_10_22_565.docdoc ccda7e2a1aa2d6ecff5cfbf3878c3146d9116ef8a288f4ad6e2763ea9f7c46bdn/aHeodo
2020-10-22List-H05595.docdoc e67a507d777e002eee507ccec06969302b4e54c01e686bb88b3368c97fd09fa6Virustotal results 49.15%Heodo
2020-10-22doc_2020_10_22_MOK7781.docdoc 4533627b4348507c5c05eb7090b96e31e60b845f30f585af35267657efd11cf5n/aHeodo
2020-10-22file-P10961.docdoc b11d449feb9bb576a0898ee8729e3a722b4dbb269c08a0d46718cb3b853acbf2Virustotal results 46.77% Heodo
2020-10-21list 294.docdoc 12c68e1e99b281571fac81330a1178884fa80cd2487d5687440f1df72e8fe9f6n/aHeodo
2020-10-21INF 20201022 XUD7096.docdoc a6a0435d980b4a2f75c95757aa7d6b7810c901e612b8d6414f8dee775adc4dc0n/a Heodo
2020-10-21INF KGI751.docdoc aa388c2278d9ca8c8841bb81441797821169bd089f2550c1ff77fc08394914f1n/aHeodo
2020-10-21list-20201022-5458277.docdoc d9bd69f241ea307af694ae3010651af65a9fdd62cef9dcde429d8ce6fdb9ecfaVirustotal results 44.26% Heodo