URLhaus Database

You are currently viewing the URLhaus database entry for https://aws-studios.com/wp-content/Scan/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:733633
URL: https://aws-studios.com/wp-content/Scan/
URL Status:Offline
Host: aws-studios.com
Date added:2020-10-22 08:32:05 UTC
Last online:2020-10-26 05:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-10-22 08:34:04 UTC to google-cloud-compliance{at}google[dot]com)
Takedown time:3 days, 20 hours, 31 minutes Bad (down since 2020-10-26 05:05:46 UTC)
Tags:doc emotet link epoch2 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-10-22V_ZXQTKU1ER.docdoc 838408d31e494e72b257feeec73407a2f778e6ecc47754ae16af0290515dc9fdVirustotal results 42.00%Heodo
2020-10-22ZD2345244267HW.docdoc 43fdca763d6c5a29b37caa60b67219e78151ebfe7fda9129ad8dc96f91c1a990Virustotal results 43.33%Heodo
2020-10-22BAL_FW8575598099HZ.docdoc bac7b15c1cc9eedfd4670ffe4383b4c9562b04a5fb2cece968408833f933a765Virustotal results 44.26%Heodo
2020-10-22INV_78372726.docdoc 9e8cd8aebd32fb60f851df02991810fc8c258e778dd8557ca033bfe0c42fb5aen/aHeodo
2020-10-22FILE_NRQ_100120_BJF_102220.docdoc 892a53376594e2bdf65731771d6e7faa4d36e2d3b95340ac4984ec74536d3604Virustotal results 41.94%Heodo
2020-10-2214934881107021691102.docdoc a3a88e1d35a8217720e9e2f632e2cedf4d36418f73975906de221523e0755eccn/a Heodo
2020-10-22L_PO_10222020EX.docdoc d718bafb38535e5c1ca6fb484a744078d3ff431987ae87ce1682bd38f8aa350cVirustotal results 38.46%Heodo
2020-10-22REP_MT2569623803FV.docdoc 233293195713371d91629d3a13e13e0e665cd7f9907efda66c9aae76fc63a90cn/aHeodo
2020-10-22BAL_K1162477X.docdoc 28061fbdc60d3031a20e1c8f75d20d703307a03ba696fc87e507c3a356e0ae68Virustotal results 37.74%Heodo
2020-10-22DOC_07898049128877.docdoc f363c98ddbab25e6cd5cf325704c8a4fab2dab557a3a263c4416f0b580127b89Virustotal results 40.32%Heodo
2020-10-22DOC_9980332120141071129689052.docdoc a0c3617197a6bcd01ceb39b73663300421eb77c56391c866abab0deba5c94078Virustotal results 38.46%Heodo
2020-10-22FILE_CDHRBLZ.docdoc 4cbd537b728c17d400cade05f1fcf9810b723df76c9efb65e6a75648d59cf13bn/aHeodo
2020-10-22L_VF4079936578FQ.docdoc 7a2e6cd2e23620e7dd3ac4811e5b79b7532fb6d910e96109e46bd47b0b4b5c2bn/aHeodo
2020-10-22888312009.docdoc a6540f229c21ccaf245ddbce5fea77f216483b5dbd6ca26ed2fa92997426d6bcn/aHeodo
2020-10-22GHFW_792555144596842132117192.docdoc 4008f8c88281fb6c543244f1701fb930aa6d1411a3209fcaa2997ee26f977d80Virustotal results 47.54%Heodo
2020-10-227127599707240428479.docdoc 98a7403f2284947cdcc0c179ba703329edb0e717b26a20be473a2c606a8abab6n/aHeodo
2020-10-220B0X16IOI2A.docdoc 9a25e51de2a4b4280f7006a09e91ed7a4d3d2c9cf24fde4023b14e9d0801a52cVirustotal results 43.86%Heodo
2020-10-22B_8TVVUQGLI.docdoc 15617c0893da95a3d6a9ef0767194dcdba28768fb1cb5bdd12b8321f99f7b970n/aHeodo
2020-10-22WRY_27292245494329378146842.docdoc 6b40e4dbe404cb318f67b97e169ba8742307b6366d824567b5b76f81e355c04eVirustotal results 43.10%Heodo
2020-10-22WEK_WW2372531095IC.docdoc 86ef36a4a86d0844c160dfbf6782566fe6c8d99281d919454df54dff6fb5411aVirustotal results 48.39%Heodo
2020-10-22U_PO_10222020EX.docdoc ae5168eab14a38621615d44a35ff6af0052fabf8af421ef2c66f783169b808e8n/aHeodo
2020-10-22BAL_OD1593649241XX.docdoc 7eaf0df9dd2a33ee958384a9472366f58f1c0a204360efea6a7f8b0d298560d0Virustotal results 45.00%Heodo
2020-10-22PO_10222020EX.docdoc 4d47b00933264748db78cf195ca1f5e1c8b123664e286f42873e764ded7fcac4Virustotal results 48.15%Heodo
2020-10-22REP_69689526931512225289.docdoc a23a71fe2b845869e2dae7d48a5e35155dff172244d5ba0556d61d69255292b0Virustotal results 45.16%Heodo
2020-10-22TM6600670739TJ.docdoc 10fffc6d57e68b2224f5a7b35a28ed5e146334dff8d0f35d900451150058bb45n/aHeodo
2020-10-22INV_YCVHPZIZYSQJDXSM.docdoc 17fd95244a412f93eb10c00778ef49fe927af9a1575cef0e9fdc05e81578a6f9n/aHeodo
2020-10-22HY_3137466295104215.docdoc 3d37409bc0560c15a5641dc06d70f3eaefa42f6dd518a40ee05b1e0d37474b2bn/aHeodo
2020-10-22REP_PO_10222020EX.docdoc 756a41dbd5912d4c871d486b25958f188c2a32279f2b735e7ea9fb816fa13da8n/aHeodo
2020-10-22FILE_BJE_100120_ZBP_102220.docdoc c0936a09ea5471f2231fa2a66fff1dbb1c8f42f2a37d63e01ea45b4d40682d4eVirustotal results 47.17%Heodo
2020-10-22DOC_4771315181429904617066.docdoc 39f8421b6ac7a025203dfb27d7b193171c2b08644ff2d4521672875356541571n/aHeodo
2020-10-22FILE_TFL_100120_DTP_102220.docdoc a831fd83cedec11f7394898f70d92d520fbdf5e562fc5299cf83e36ebacd3ffcn/aHeodo