URLhaus Database

You are currently viewing the URLhaus database entry for https://al-mahroos.com/backup/Pages/5OhYC357Vt4Y5WtLvARB/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:750609
URL: https://al-mahroos.com/backup/Pages/5OhYC357Vt4Y5WtLvARB/
URL Status:Offline
Host: al-mahroos.com
Date added:2020-10-26 08:07:06 UTC
Last online:2020-10-26 10:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-10-26 08:08:10 UTC to abuse{at}softlayer[dot]com)
Takedown time:2 hours, 34 minutes Good (down since 2020-10-26 10:42:44 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-10-26UNTITLED-2020_10_26-G200858.docdoc 1a32f5102e4a3467e0e78810a114bad42f3d0e8a2eb6b270924cbc75b416fab1Virustotal results 26.98%Heodo
2020-10-26INF UQ61727.docdoc 6c73d0f17a9c1e3d6139834005569d2622fcb6c0b85c46b91e924b0377e9d997n/aHeodo
2020-10-26doc_20201026_Z004.docdoc ee5922fedb91e7b89b4f1589d57a626eb370fb451659b95c6cd1a028c0643f80n/aHeodo
2020-10-26DAT_20201026_WAZ661.docdoc 49dd6f21f8cee2e6425253934b4d4b3768a7caf12d99e55e4a35a9e7bf4e3080n/aHeodo
2020-10-26arc_JN99146.docdoc bb0bd4259f7a68fcbea33a17f5f1694bed9d55db4c224ce81cbdc771c2ef3b90n/aHeodo
2020-10-26arc_BCY790.docdoc 8542a5e52ae14d8e6a300a050aeeb74f0f349d563964e9cd06154dfbcc08e9c3n/a Heodo
2020-10-26INF-NE355.docdoc fd2a5bfcf5c92c62a07ff56b7922642757dc7eaba0cd58753f22c5c082c05d0dn/a Heodo
2020-10-26DAT_2020_10_26_6171.docdoc 2294bd5df328301d75b48a8fb719cb858733c0d3f67664985043ad6306d8ed16n/a Heodo
2020-10-26REP_N6584.docdoc 7e8b9e45990120967e6fe4eb2c9a5207d09b9e105aa05c4c236e53063b3c3e0cn/a Heodo
2020-10-26mes_2020_10_26_107.docdoc e11892b6455e22d40e0be60e2c1870ae68f04eec0345c2ad3d6b1f4d7c9c09f7n/a Heodo