URLhaus Database

You are currently viewing the URLhaus database entry for http://musaltogo.com/wp-includes/FILE/E4NYctdOrHR6nx/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:735232
URL: http://musaltogo.com/wp-includes/FILE/E4NYctdOrHR6nx/
URL Status:Offline
Host: musaltogo.com
Date added:2020-10-22 15:21:07 UTC
Last online:2020-10-24 09:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-10-22 15:22:34 UTC to abuse{at}ovh[dot]net)
Takedown time:1 day, 17 hours, 51 minutes Poor (down since 2020-10-24 09:13:40 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-10-23ARC 2020_10_23 993755.docdoc c201dc04bed84411f216935bcad9296fdb3e99daa909ead17006846758dc8346n/aHeodo
2020-10-23inf-652625.docdoc 0066b1d5dd24b167cf158ec3c464c0fb0a4601c4ceb91b64832e7cc48b0b7bcfn/aHeodo
2020-10-23Rep 11579.docdoc 8dd6f9470c3b3dc2cfd0895916a700d3ab5acae0a092e3b4113791cbac23d08bn/aHeodo
2020-10-23rep_20201023_HJ288.docdoc b9745ad5da055a585ba0ae73db8e019aedbccbe23904d104d0ba10bb4bbd2668n/aHeodo
2020-10-23FILE-2020_10_23-042.docdoc 55616b1a04e2397bceb215a3cd13e18eeddfe8e1d1a70e17bad4212e96189ac1n/aHeodo
2020-10-23mes 20201023 ID0059.docdoc de3075003dae7cc1d27219ef1a911edea409e0977960756eb9b7dcecc9862aa8n/aHeodo
2020-10-23Mes.docdoc b333f4edbcd85640a50a2cacf9a116caa96e2026f2d2089c90b9c1b72e929581n/aHeodo
2020-10-23arc 2020_10_23 610933.docdoc 185382e8a67536b4ee2d828ab8b2477fc82d6de13e085231dc28569b46329b9dn/aHeodo
2020-10-23DAT_4199760.docdoc 88ede93bbd015607192a96718235dc0b427a8f654bec3ea00739a51abf19e5e0n/aHeodo
2020-10-23list 20201023 00750.docdoc d81d19a33f0ac7b353c71ae0ee3bbc4fe3072d9ac384f22725e48503df8d8260Virustotal results 50.85%Heodo
2020-10-23Arc-235080.docdoc ff799dfe689af4b7f91327702adf9abbf48fdeeae9400493c012692c7bb07cebn/aHeodo
2020-10-23dat-2020_10_23-319.docdoc 31a65c0934f1ba04e9f8ff09dc95bd842b64d925bf09ee93fd20896f040b8c76n/aHeodo
2020-10-23Untitled-PD6989.docdoc 03290ac1a4a631b629b8ee0a0ccbe41e7e65fd76ce230251d8179173865e0e68n/aHeodo
2020-10-23dat_20201023.docdoc 70fa07241369935edadd1ce5eaf42bd68603d3e67d3c0a2e6ec052f44a37e449n/a Heodo
2020-10-23file.docdoc 0ffa03e1d13a9d92d4840fdbc9530e032e68446c2870ce96415cedd63a39e919Virustotal results 50.82%Heodo
2020-10-23DAT_2020_10_23.docdoc 9db5574575df7b99677cc046c4abdf4afe9f1f102500d53622bfdd7a0a862c7en/aHeodo
2020-10-23Attachment RB8175.docdoc 31a1196eff28cc5bc1abf437836a0f46235d224545bd9202c8d4e35743f5ece1n/aHeodo
2020-10-236568876 2020_10_23 R072.docdoc c08df1aaf320c5907f8fa026f4fb52764fde92489159d8793d79d4183af18380n/aHeodo
2020-10-23LIST.docdoc 4f47d35f875582f23b3901262ec4097e7d11df94dbafce009f1264ff100246c2n/aHeodo
2020-10-23Attachments 044489.docdoc e4375d0a2ba932718dec66682d272815c527e91c52f8fd834f2b13a199c60e95n/aHeodo
2020-10-23arc_20201023.docdoc 2df60a3a0b069c063741a94ff2a1c19bd0da7088ec932c4c12d7dcb186aabb06n/aHeodo
2020-10-22FILE_603.docdoc 74956b6fd8fb8af1c1cd21026338c5e52d19533087ce7d60541ec7180469db1dn/aHeodo
2020-10-22list_B60646.docdoc 02e690dbfd6ef074801125231bf4d4b402338b8103a7d35d43d223bf72fb3647n/aHeodo
2020-10-22rep 2020_10_23 Y494121.docdoc f0e2d518a6265cccb1883da48d48dc033fa310abe31ed3218a1c0a6509f7085an/aHeodo
2020-10-22inf-20201023-Z69512.docdoc ff00742ee2e924330820490dd85ef3ebae24558e2aea9bdf91cef583bb047cfdn/a Heodo
2020-10-22arc 2020_10_23.docdoc d87a93ae2eb91cfb925982e62a821b9798be7fd9fd307604af79f96c5810e156n/aHeodo
2020-10-22ARC_2020_10_23.docdoc 315c9581a0d39fd48edb9d1a4567590242a4046b0f3582b480a26d6a1d56fbffn/aHeodo
2020-10-22mes-2020_10_22-TDN10118.docdoc c34461394bb60cae8905373f5c68ad3e5df587723329161d1cfc4befe40b23c1n/a Heodo
2020-10-22LIST-2020_10_22-324826.docdoc d5474138a81425e37468ee96b8d51972e4f39cb3485625f90cedb9f9eec62e4cn/aHeodo
2020-10-228833 5792.docdoc d1dcedd7b80d448216607ca5831c042cac714ec9143424a7cbfff5dae30f9d1fn/aHeodo
2020-10-22Mes_2020_10_22_LOU389.docdoc cda96dde7e199b39538ccd57b5942933bb0483a8a3f9cae8b7a86b569594f8d2Virustotal results 40.74% Heodo
2020-10-22Inf-2020_10_22-5578834.docdoc e214c33ee3131fb88e3a03800a2c913e64eba9339e59c71b3cbcf17aa14e0509n/aHeodo
2020-10-22LIST-2020_10_22-4617.docdoc b7758be40eeb57934e1c9eb369fc6dac10dae365c63ae2627ba882425b1992a6n/aHeodo
2020-10-22arc 20201022 VCQ775.docdoc aba2852c2ede40d00712d4f0bf753af374f10fa332d165c7bf62b40803c6b393n/aHeodo
2020-10-22MES VNO175.docdoc b02a934a10f405b76ee0aaa46e19847d9ecf1718d49ef72233e83d4c5468a626Virustotal results 35.85%Heodo
2020-10-22List 20201022 2633.docdoc 7399fc6f61590ec699b38e20e9a8d38684ccd43941cd42f7c4d8fbc660de7736n/aHeodo
2020-10-22UNTITLED-A17447.docdoc 8cd1c27e31ede752faf38d915cb7ecc05fd8044e331cebed09ad28fad2cfb8b1n/aHeodo
2020-10-22MES_QSK80007.docdoc ed1aa667877338aa66e291884d7ea0531ab7668bc263424702edd2496c6505fcn/aHeodo
2020-10-22List_73000.docdoc a4d62fab68ef1d6b045a87b9ad2d4caa489869d665aba8129c7cd85333163fd3n/aHeodo
2020-10-22dat 2020_10_22 95710.docdoc 11c7d4455f5a8dc07436a9c20997b8c524642c2fc5f5697f5849f22b7222d6d7n/aHeodo