URLhaus Database

You are currently viewing the URLhaus database entry for https://prodvisor.pl/wp-includes/WCzyVjqQB6bFCOZ2j2L7dCeg2qxYqeBJRU/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:752045
URL: https://prodvisor.pl/wp-includes/WCzyVjqQB6bFCOZ2j2L7dCeg2qxYqeBJRU/
URL Status:Offline
Host: prodvisor.pl
Date added:2020-10-26 14:41:09 UTC
Last online:2020-10-28 10:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-10-26 14:42:42 UTC to abuse{at}home[dot]pl)
Takedown time:1 day, 19 hours, 22 minutes Poor (down since 2020-10-28 10:05:10 UTC)
Tags:doc emotet link epoch2 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-10-27LIST_2PF9I6AAQZBL5.docdoc 77e15f9522e48f36a7a6067a2288259f10f991917093606ae3c07b26a3ede823Virustotal results 19.35%Heodo
2020-10-27ARC_61845185006751500350.docdoc 444561d4fffc7ef6089bcd8ff849a9688f26c828917dc6f29ebc13ef1a813568n/aHeodo
2020-10-27List_BMZ_100120_ZVB_102820.docdoc a260910db0747bfef736fe491c9762f6651e7031b77914ab19fad50c63ef70fbVirustotal results 22.22%Heodo
2020-10-27REP_PO_10282020EX.docdoc adaa6cfe6f38da277ca461fdc4d6c81d643d1c91babe46515180b90cd041fc15Virustotal results 19.67%Heodo
2020-10-27Inf_HK9794761208VG.docdoc a3c05445fcb1e6c242295e16252d4fc5c64ad8857ca3356f4445217cd28746d9Virustotal results 50.00%Heodo
2020-10-27File_JU8827036894XC.docdoc 82304be765e94c28cde780b5f7e90c056ace4fd6e5aa3059ff05f9c4202a92dbVirustotal results 47.46%Heodo
2020-10-27Doc_GGJ_100120_WBW_102720.docdoc 1058744de415e325716999c39aa1a4e970532d196f5aca783d1628feacc20626Virustotal results 45.16%Heodo
2020-10-27MES_O5FZQZBU09JU.docdoc e2e08b8d13ee2f3b74b54ec4de5892a941e2a274e8c0117d86a7dda62c0dcdd8Virustotal results 45.16%Heodo
2020-10-27REP_TO0KZOILK71M5.docdoc 0d324b35e9e1354566e22c431eb9ee5f36c4ade28ed5acf57bbda93ff7c8c1edn/aHeodo
2020-10-27INF_ZJQ_100120_NDU_102720.docdoc 09244c423c3262527e5deda11a9ade5df8ec453d879c5fb6e6cb2afd3121ffccVirustotal results 50.94%Heodo
2020-10-27Inf_412934611223.docdoc 1a085300939d5afedf7de966fc70593f8abdaefad80639cc2153cb93450e1014Virustotal results 40.74%Heodo
2020-10-27Doc_DEN_100120_YUZ_102720.docdoc a0ef9fcda78c9700644ecd5b7f1088a2d3d69402f143c6d597d163ec8ec8f956Virustotal results 43.55%Heodo
2020-10-27Attachments_RWP2QYVN0PZ2.docdoc bf3caf1312e44d1c99fc185bee6d80d89ecbd308c5a1346d673c5790962eadc5Virustotal results 37.04%Heodo
2020-10-27REP_FPD_100120_QLD_102720.docdoc df6ec075b661ca498939b6b15933fe4822e9e1540863133b43a606b14f2f1f76Virustotal results 32.26%Heodo
2020-10-27MES_65600690.docdoc 6c430c25a4a93862cc380bbe358ff4521d28025a85292ce26620d37aa756118en/aHeodo
2020-10-27Doc_P33JM63F6KAMI.docdoc fc85d817147ea8b457799df22080f51ec80b5c05cfe99b55e04e8be095830702Virustotal results 33.33%Heodo
2020-10-27FILE_SR0090005477ZU.docdoc 68d00781fc22b716b418d2e1c68588695fd8122b12019ccbdb34f7b6ca28c1f6n/aHeodo
2020-10-27List_TJ0248565603JB.docdoc cd1e0a22c855d17c145a7577ab2ade765735a6eb768de6b3445d724824388dcen/aHeodo
2020-10-27rep_JX8612227650HH.docdoc 1775a89c8013b60f9d0c4049675feb67fc007e0995b58d5a7b8221d7a4efaa37Virustotal results 32.79%Heodo
2020-10-27rep_14683PFYW8G0K6U8.docdoc e2118700994eb009d7d7ea74a0badb8bc07ad79b19b05f75f68c9030d29d966cn/aHeodo
2020-10-27TOCGO1H22.docdoc 2c1771765e8e21c4067b414eff7986d87694fe6fcddb8f1d708213de0ae9f827Virustotal results 32.26%Heodo
2020-10-27List_P2452CS.docdoc 36178a3ed3f924fd1a1b08abb9f65e5adc5c7e46ecb8c927f993de6dbabbee47n/aHeodo
2020-10-27FILE_PHD_100120_GQU_102720.docdoc ff22e77b88e0475f28d9a9b2dc4822b61b19e7f15738af59dfe973bc0bbedaa7n/aHeodo
2020-10-27ARC_RF0516552248GJ.docdoc 31df94b9e288094e3f9106856f7d8180e8f927b4b8fe99f0aef1bb04089c673cVirustotal results 32.26%Heodo
2020-10-27List_PYP87S027.docdoc 4d55ddffa3d513e115000683cfa2fb1e2b738298d58e3b6dfaa8f66feb1351dcVirustotal results 35.19%Heodo
2020-10-27list_HEL3PGFJ0UHU.docdoc ba235b188fefca59d314bc49975aae3782c41fb2f35fc243bf8441bbad51c2cdn/aHeodo
2020-10-27FILE_23991537.docdoc 7691240314f7a2c8bb746a2d3177cd6854f21ffe7ce02228138b0c64a3346915Virustotal results 32.26%Heodo
2020-10-27UNTITLED_MTPVJ3K7ME40GCH.docdoc 115c98911b958fcf8e3c9300eca7763548205c8fade900f66be4d241ed54c99fVirustotal results 31.75%Heodo
2020-10-27FILE_UVB_100120_ETV_102720.docdoc e25c57f78caa61c0a27f7f7877e82bbd48ba6fc490aa904b851bbf4b7a42ac5bVirustotal results 31.75%Heodo
2020-10-27BAL_17558109.docdoc cd0b23d03029fe913a9d2f52d14b0703f4a6f6a4cbda6744a455fca3373d3ca2n/aHeodo
2020-10-27BAL_PO_10272020EX.docdoc a9670ebc9a9410fd8afc7de53381f501601ca3566f19e9177a79ba8a1b6b93e6Virustotal results 55.93%Heodo
2020-10-27N_PO_10272020EX.docdoc 402bcaa8f052d8cf5d7ebef47283ea79c68151fa78bfad0611e97530423d3b73Virustotal results 41.27%Heodo
2020-10-27REP_2FL4JMBMJUO.docdoc de751e95178762a5c0bbc3384a4b95002c87865e545df412b1334b52564fbb59Virustotal results 41.51%Heodo
2020-10-27GQ0554145423KF.docdoc 6f8789d6d5e2019e7ace4e5a165ab487c2bb1b99164c1b8a7c6f4d49187c4a05Virustotal results 39.62%Heodo
2020-10-27FILE_09OBRQ1R60CO1WF.docdoc 0f42df210cf372d884bd0cb9074d9760880bc0aa34168f889b8e28dc016b006cn/aHeodo
2020-10-27REP_WC5911304451RT.docdoc fef9e77f6d9e84345a020f567b892fb4718af268465b5a6d505a6f2bbfa19e92Virustotal results 50.00%Heodo
2020-10-27V_NRO_100120_YQK_102720.docdoc 63de7c82426f3d39479b3db8ea2de57da7ac73f6bfc19e1741f8ddcf3b23d837Virustotal results 50.00%Heodo
2020-10-2748181245.docdoc 26086ff8825a2c550cc802f2574dd9a8730c972ed3d1c704d863fc74e8dc082cVirustotal results 38.89%Heodo
2020-10-27DOC_YLG_100120_CGJ_102720.docdoc b9efcf9bbdfee20efe56047ca5810ea88974d9e7b9ec968a57f814842c7946ecVirustotal results 39.62%Heodo
2020-10-27REP_OLCB1ME9H.docdoc e955daa4404b745ed6c72a2e99899af5ad6b133c5b24f5665d4649cdcff05fe2Virustotal results 38.89%Heodo
2020-10-27REP_9M7L1LCKTFZP86WJ.docdoc 98bdd88b97a27caa11e39dd7dee4d2e510ba8b38e1e7e13e5efb7ca2fd538679Virustotal results 39.62%Heodo
2020-10-271E52PV68N.docdoc f5831fd5a2bd8c3eaf0bbd799764d684f1c3a2528d5583013b438e6f2b4f4843Virustotal results 39.62%Heodo
2020-10-27QG_17952162.docdoc d3cf19d985ba239666e0baf1a161de4dfc1f49327d23ec569370538e782ceebbVirustotal results 37.74%Heodo
2020-10-26INV_YQ0127280239FC.docdoc 99f4e6496067c7a7b9d8cd390470315cc63c4f3adb23c3d885b886f9d86786edVirustotal results 38.10% Heodo
2020-10-26FILE_PO_10272020EX.docdoc e00856eefd86441efa639a6675303e9ae04abe216e730a24429423b46f48426fVirustotal results 37.50% Heodo
2020-10-26PO_10272020EX.docdoc 9ba569c1504543ac41bb2308f0ed322542bdec567e0588185603e500cd37f68bVirustotal results 42.37%Heodo
2020-10-26IM0222296076EH.docdoc 5542c37ee5faeeea86b317db009b24a38f581860e468db0ae1d61b0850aa3463Virustotal results 35.48% Heodo
2020-10-26144308774858778328032936.docdoc 1876ecab19ee6802dac2e8774dfd625dcb2d4e00fb61f446caeabd26db1405a4Virustotal results 37.04%Heodo
2020-10-2612047809.docdoc 48df1578c3c2b51f6d6ef0169739bdb3d0554134865a52344c48380125a14219Virustotal results 42.86% Heodo
2020-10-26JYK_100120_ILM_102720.docdoc a98778c044d5a8ea62b40e8a5146d8e49dad781ad7c87d3c4d8a0931a1232ee7n/aHeodo
2020-10-26DOC_OFJXUDT1LW5.docdoc 73d86e2272fd2354897cf0ffea6273f56a56597f4a57587b435ac22f672208d0n/aHeodo
2020-10-2636434084.docdoc ea813f06f8ed168474ed17e131ffb614688217d51ca3449cea680500fb3cef23n/aHeodo
2020-10-2619649838.docdoc 51a7edeb598bd31f828123c81de11a15ad1029a6f994159b95f891dab28133c2n/aHeodo
2020-10-26INV_509747885301358.docdoc fd1ed1165259d49544da247f9fa6025087914113360a444c9a13aaaeab57a5b8n/aHeodo
2020-10-26REP_PO_10262020EX.docdoc f83783eda067f6e1b71d589e230f6aa844b2410c42ce2f20a60f9b32960852a6n/aHeodo
2020-10-26REP_54246433039768.docdoc 175f70e42ab1da776d956a78b3813c139a60bc27bcc82d52b292184499905fb4Virustotal results 38.89%Heodo
2020-10-26INV_XQJ_100120_GJE_102620.docdoc bef2cf86acbba45a17385614351f915491d344ba1d20e5936379853d0eb2b0a7n/aHeodo
2020-10-2675307745.docdoc c8b394c2d8b83573eba859ba30101e535e3795cc846b6f21a09c3653cae36981Virustotal results 38.89%Heodo
2020-10-26TA_PO66NAC0HSJL33J.docdoc 116159cae06790df3ca134b52e8a6ea44db0737400131f10067ed11842bedf92n/aHeodo
2020-10-26DOC_RS34IVD5DBI3YEQK.docdoc ed7748045b321a2e819fdb922995edf21e8b02996994aaebf64df519509d669eVirustotal results 39.62%Heodo
2020-10-26REP_PO_10262020EX.docdoc 071e87ed49b3bac25514270814dd2f066a3a9255226b419bf6a25da73a8a07ebn/aHeodo
2020-10-26BAL_PO_10262020EX.docdoc 763e55220b053aa780bf2d35a9e919fe3731635421402159a61bf5e030f2b0fdVirustotal results 35.85%Heodo
2020-10-26KRCM_PO_10262020EX.docdoc 3637ee656107858324b118fb320ffaaa6c845c684eaf3472966f555004ed69d9n/aHeodo