URLhaus Database

You are currently viewing the URLhaus database entry for https://erotikubi.net/wp-admin/eTrac/E19Sz60BKx75CJjBWcjc/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:752372
URL: https://erotikubi.net/wp-admin/eTrac/E19Sz60BKx75CJjBWcjc/
URL Status:Offline
Host: erotikubi.net
Date added:2020-10-26 16:06:06 UTC
Last online:2020-10-28 07:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-10-26 16:08:09 UTC to abuse{at}gmo[dot]jp)
Takedown time:1 day, 15 hours, 18 minutes Poor (down since 2020-10-28 07:26:16 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-10-27Attachment_2020_10_28_NS742.docdoc b8cc607a10a0426b69434b618daf89c6a18d97d84bc9332bd92db0cb39c03366Virustotal results 20.63%Heodo
2020-10-27REP 20201028 KGY959.docdoc 19edb720e222817dc696093f3000cbf44dc66691e3b3f096f395366f794c6ca2Virustotal results 20.75%Heodo
2020-10-277750_2020_10_27_28075.docdoc c760fe45f26d328ded7cc3fac92ee701e551cfc11a4c2b0cbde98423f6097dafVirustotal results 19.67%Heodo
2020-10-27Attachment.docdoc ad416b925e4aa45c9144ffb09541298b08067f86561509827fa141ecae649914Virustotal results 33.87%Heodo
2020-10-27Inf_MM842.docdoc 9b51ad5b6cfd673dfd89e0f723d704e0db19467b986021e99668598aa180ad7fVirustotal results 33.93%Heodo
2020-10-27File 2020_10_27 RHX21295.docdoc 9f2c651f45219213d5b582411db7948ab1c7cd7b67d8e8d2fba6d8929bd4c3b6Virustotal results 34.43%Heodo
2020-10-27file-835759.docdoc d42ce060b40d98bfa8a3be4e0ae8f858cdda9054b2f8179b959b42e5da48aec3Virustotal results 33.33%Heodo
2020-10-27List.docdoc 484388d782fd4a5477ed0fc44b40d2d5fd73d0ea7d3088d7c015d2b4ccc5ea93Virustotal results 33.33%Heodo
2020-10-27DAT_2020_10_27_OZV3903.docdoc 3eb93d821d1c9b0a68b8e224bb2be6214f993100c2f9887c120c149a241b0ba8n/aHeodo
2020-10-269807BJA_2020_10_27_256.docdoc e947aba5a62b0bcc74fccb2e459884e1c5dd51b022a380713e842ff39733d775Virustotal results 39.68%Heodo
2020-10-268936J_Q46755.docdoc a5f3e8db8097e0528055b569e19bdda01a51fe0e1f03614930c5c428aa0e8b3en/aHeodo
2020-10-26mes-185682.docdoc bc23d2f73145ee8b7cb2c6599d33dfba5d95c4a49b2f8deab7fd2fe9f2530b9en/a Heodo
2020-10-26dat EYD106234.docdoc 4e166862bb4b0cd09fb6d5fde9004ac49c14d9ac11f8e9d37f551c815721128aVirustotal results 38.71%Heodo
2020-10-26LIST-2020_10_27-10558.docdoc 300fe8a8206fc96bf8007311c265ecd86c75124818fc9b9f3424286f106da398n/a Heodo
2020-10-26MES_93687.docdoc 1a1bb338ded170fc8b77be52d9031a89690c47a9cba2da74ddecd43d0fb4dde8Virustotal results 40.74% Heodo
2020-10-2674121349_BZ4619.docdoc 9df7e80c74ca288cb8aa9caada230cab385c728c5adc1b56e7a3e6443df3f531Virustotal results 38.46% Heodo
2020-10-26UNTITLED 16353.docdoc 80617da3c346c07e04f87ed19bcc561ea222ebb487366acf0200cb581aea89dbVirustotal results 38.71%Heodo
2020-10-26file_20201027.docdoc 599c7105a79ad339b973d5007b37475243cd05b61c4c74481adbcbe44243bebcVirustotal results 41.67% Heodo
2020-10-26Dat-20201026-R085185.docdoc 86e39e69a9128cbdb6cc5c09dedf4af578b82cabc845909ec340be78a2699f51Virustotal results 39.34% Heodo
2020-10-26List_20201026_V8480.docdoc 3b681b6b9ea3619f3b7b0d4d502932b37d4fdb03330faeecd6698cbf97164b05n/aHeodo
2020-10-26dat 2020_10_26 820091.docdoc 03c21b6bcbe5fa49917ab3be83b2d132ca4fed5fabfe944b25790964442b63e9n/aHeodo
2020-10-26042 PET9684.docdoc aa98072a6252e4d67b430893acb0b04164844cae9cdff39a527a8b69a8702317n/aHeodo
2020-10-26FILE 20201026 OX291470.docdoc 170a9758c76a32bd4e24cee76623adf33c333d7d26762d04cc35e5f358ebbae5Virustotal results 35.19%Heodo
2020-10-26Attachments_2020_10_26_H198544.docdoc fe217a2a06122f1210e422b6daf4013d4b74554082c6f786ff9eb93dc044ea3cn/a Heodo
2020-10-26File-1722.docdoc d6d100bf0b55c917208c8e87a038cd89ccc183671077a2e14dc7a377c4831b19n/aHeodo
2020-10-263527_BP251.docdoc 04037f4e2ab732c439b6b8ce26234e39466ea910ce94bb961dfb93c90c5f018cn/a Heodo
2020-10-26DAT_B55789.docdoc 6cffcd0e36c9599da564a917fc81648334bd014dc1e0eefd9328399d2bdba6ddVirustotal results 34.55% Heodo
2020-10-26file-20201026.docdoc 1545e10b9b235f56e0e8dfede498dcb523cb5e063c0b053d89f5638d4b0afa6cn/aHeodo
2020-10-26list_2020_10_26_BL83540.docdoc 0bcba1d2f1cc355cd2d2313feb8d3496844c0a8f912b8d8c05b83cbf3a8e1690n/a Heodo
2020-10-26inf FH732.docdoc 9540b79f5c13487796235107eec3d092edc4334652235ca9e3e8756ccfeaf3d7n/aHeodo
2020-10-2614134-20201026-227.docdoc bfe30fc2a1bb47cbc7dc021040d152fa2cfbea8491ab4af7f8a560d51cee4fa1Virustotal results 33.33% Heodo
2020-10-26list 20201026 KC4359.docdoc df5d6c0b7ef035877b8bbe44e08f3bb1bd8ffdf2e52a2edf6dbc7f1ce88b2fbfn/a Heodo