URLhaus Database

You are currently viewing the URLhaus database entry for https://cactus-eg.com/wp-content/Reporting/6PoDUQCqwoQ79v/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:752388
URL: https://cactus-eg.com/wp-content/Reporting/6PoDUQCqwoQ79v/
URL Status:Offline
Host: cactus-eg.com
Date added:2020-10-26 16:10:05 UTC
Last online:2020-10-27 20:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-10-26 16:12:14 UTC to abuse{at}hetzner[dot]com)
Takedown time:1 day, 4 hours, 6 minutes Poor (down since 2020-10-27 20:18:30 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-10-27DAT.docdoc 8c72d9b7308f430cf08a9a7355d3a006b9ac6e9c2b62c444fad04e2f9c4d95b8n/aHeodo
2020-10-27386-20201027-986.docdoc 3491d15a4889470e8356f7fa3a7047e89f667488fd1ea5abbff01b401b848338n/aHeodo
2020-10-27INF-2020_10_27.docdoc 2722f169bad27f3216510f5be45d6105045e19716d73f8bf6013008f8c54dba8n/a Heodo
2020-10-27Attachments 693.docdoc 35efa253e3dac2aa85604541651aa8ba6424fab68fb76962bf33eb787584ad58Virustotal results 33.33%Heodo
2020-10-27DAT-AMY9997.docdoc 82e423cadee5d375fd0c92cf0254f1e0998142f883353fbf9e7bef065904c4aeVirustotal results 35.00%Heodo
2020-10-27File_2020_10_27_1201258.docdoc c0508d0e377a5c387a3dada0c34296054a04be855453eb24e691a79e460acdc8n/a Heodo
2020-10-27List_20201027_U107.docdoc 04d3efa64d97fcae935802c5b3c4445db3c8026a5801c140224989f4e7dade46n/a Heodo
2020-10-27Untitled 0993.docdoc 99f180b5f078397a7dc5f8ceaeb590a3f0a3c0563f33ab32e3a552bfcddac010Virustotal results 37.04%Heodo
2020-10-27mes.docdoc 6d738e7149161a65b1fd7a8ff15be79577eb8662753c5c2d8bc4ba78732be44bVirustotal results 32.26%Heodo
2020-10-27Attachment WT2691.docdoc 9ba62df3ad72cc00fa33041ace73b541f0c3a9453baf46618b7b36c900e09a6an/aHeodo
2020-10-27522356 2020_10_27.docdoc 022c542c4f534efca7d03792999a8b9d8f46101a543cea780bef369ea4bbd9fan/aHeodo
2020-10-27List 702.docdoc 2b4308889b0e4dde94480b57c1e0fece9a13f302199c9261c761e7212ccefb01n/aHeodo
2020-10-27INF-20201027-QKJ184841.docdoc a86c55fe81b5fe7c38d8b7afea58ddd7a2ee0066c5b4856af5b06a223df9b09en/aHeodo
2020-10-27inf 20201027 9480628.docdoc 10f999bfe43ff0ddb339550f572cf7816a32c535a966b7f2a33b594d3874ee33n/aHeodo
2020-10-2736512R 2020_10_27 J852.docdoc f480c582b8238e989cd24ce196de764a0758a76c3024c49217c045d0ca22d9a3n/aHeodo
2020-10-2763767WBF IFH747234.docdoc 0375e1adf11a640a9f54f36215407418b33eda61e0c901c56507d354b8e5eb68n/aHeodo
2020-10-27REP-2020_10_27-N88929.docdoc 20ed4cfc85e05e6ea4e2cb9902508bdfb95106254edf148f6ba068130f2e1944n/aHeodo
2020-10-27File 824.docdoc 13779302ab4c5b1dc19de705cf23e5acc298373f9efbdded963db19b2528997bn/aHeodo
2020-10-27Attachments-0381541.docdoc 017ee1b49a436cfb928232681056da0f0270b7931014d28a00cdd4d6638496c8n/aHeodo
2020-10-27list F52733.docdoc ac5f4acb050ad3404850a540f57c0111efe52e30ea9460a935760f36310ae758n/aHeodo
2020-10-27Rep-2020_10_27-827.docdoc c8a26a6bf04fa1b4487e91652089536164904c9871390ff9384b964ab9ff8923n/aHeodo
2020-10-27mes 2020_10_27 680.docdoc 64010a9cd4548d4f1dbb52c6e83920053cf5e062fa5ce8b8f69989480acfbf3dn/aHeodo
2020-10-27Doc_2020_10_27_MS877.docdoc 25e2948ee6dea97044697955af64bb89205f75802bb417e426d6d3ab8dc908dcn/aHeodo
2020-10-27rep 2020_10_27 370514.docdoc fad3876dba63b039b011d17ca535f18ea1961cc3569c9ea39a813f1d887ab8b2n/aHeodo
2020-10-27INF-20201027-96984.docdoc a8840f17fcebae35a01b06a39594ac1c2ccb19adb7ccf4a174a67b0e11b42a68n/aHeodo
2020-10-272296HRG-20201027-2373.docdoc 1218dae61d7d72bd4387dbe5dba12a8ca87f4fe817fd909dcd856d0384717a72n/aHeodo
2020-10-27RUM0051-CSX6223.docdoc 60880faa0f8f1236178dd99076e9bc3357db26aca7a0b7bbc216ead4d101b153n/aHeodo
2020-10-27dat-572.docdoc f715e2571cf2bfd37aa823b2ddbe5462575a40ed082e3b039329ce574a2be700n/aHeodo
2020-10-27arc_2020_10_27.docdoc 9c8e29cf162bd43604573c0a82cc8375a4f728d790c0c5e9c090b23672e5e529n/aHeodo
2020-10-27mes.docdoc 4a18ab940330fb73c1e289748a3cefa188091c8ea0d7babad686162c011b9cdcn/aHeodo
2020-10-27DAT_2020_10_27_O926.docdoc 850d6c02cdf898bc72beada105c810692cb2bfdb8fab3b14e772c2076db9b99fn/aHeodo
2020-10-27File-20201027-2082735.docdoc 7912010acd05d53592d8cc6439010e92826dfdd3444e7931ef7950d92eb42250Virustotal results 52.83%Heodo
2020-10-27Arc_20201027_597.docdoc 2001d202bd375d7b755d168c2491c95c5615bce5bd11c4977bf0275ca66bd7f8n/aHeodo
2020-10-27LIST_2020_10_27.docdoc 6562c1ec0d60cdfb002adb4ed15dbbf2f2f3f717002fbe8151e35d3755eb4358Virustotal results 49.06%Heodo
2020-10-27Attachments-A3092.docdoc 63de45b66603ef77afff13bd0ba2dc21747b5f6d5b0f4aa2ab8d3d373d5c4b68Virustotal results 47.17%Heodo
2020-10-27inf_O160886.docdoc ba144b2c722855e58aea0bc21aafb2692d8b535dc920fa40677eee2de5baa662n/aHeodo
2020-10-27Rep-20201027-GXR505315.docdoc c34b033be6ccec716ff4925ce6e96a65872b23103b659fa24f079d99711963bcn/aHeodo
2020-10-27doc-20201027-WSO3072.docdoc 52d4dcd449517b101bb99988f9b270b9785a8987cc4edf558f18fa0bbd5bb438n/aHeodo
2020-10-27doc.docdoc eb65f0e6aa2ea3c51f5b818b947ea483c6a5db60e89a669640b2699e2c95d05eVirustotal results 50.00%Heodo
2020-10-27rep-2020_10_27-EZN593300.docdoc 7f3ad8f66409867f25e71e87520c6c5bef13981bf27cab43e285638a3681292bVirustotal results 50.91%Heodo
2020-10-27arc 2020_10_27 ATF725851.docdoc edf8d1c6eaf9fc29cd8dc065087f100ddc1e811bb4279f1650627028cd2a3c08Virustotal results 42.59%Heodo
2020-10-26Arc-20201027-8240.docdoc 3ab0e38ba83a5c38bf360f80849f9d1ef5ae83e0be4fdef0a2b71ad76efe4e89Virustotal results 41.27%Heodo
2020-10-26461230_2020_10_27_737040.docdoc f620c363a605c7c11abe0ed6c9f919168781361df2901e24752c0ebd428c4854Virustotal results 40.32%Heodo
2020-10-26MES 7136.docdoc bc23d2f73145ee8b7cb2c6599d33dfba5d95c4a49b2f8deab7fd2fe9f2530b9en/a Heodo
2020-10-26Inf-JFK5287.docdoc 9624eca338cef03d8004d874cd0c774bf67ece67290d5a0022da8117345b11c6n/a Heodo
2020-10-26dat_9481100.docdoc 300fe8a8206fc96bf8007311c265ecd86c75124818fc9b9f3424286f106da398Virustotal results 39.68% Heodo
2020-10-26Doc_2020_10_27_67576.docdoc 1a1bb338ded170fc8b77be52d9031a89690c47a9cba2da74ddecd43d0fb4dde8Virustotal results 40.74% Heodo
2020-10-26Rep-2020_10_27.docdoc 80617da3c346c07e04f87ed19bcc561ea222ebb487366acf0200cb581aea89dbVirustotal results 38.71%Heodo
2020-10-26file-2020_10_27-AN680.docdoc 599c7105a79ad339b973d5007b37475243cd05b61c4c74481adbcbe44243bebcVirustotal results 41.67% Heodo
2020-10-26Arc-2020_10_27-Y39967.docdoc 49763f91e6076006d04ab8fbf74278e52901c5b590a44c595b21718f96a6dda1Virustotal results 40.38%Heodo
2020-10-26Rep_20201026_ED1421.docdoc 3b681b6b9ea3619f3b7b0d4d502932b37d4fdb03330faeecd6698cbf97164b05Virustotal results 38.71%Heodo
2020-10-26File-2020_10_26-L484.docdoc 03c21b6bcbe5fa49917ab3be83b2d132ca4fed5fabfe944b25790964442b63e9n/aHeodo
2020-10-26file 2020_10_26 J44223.docdoc 2d3fbf8b677548c7e12554c3d9473c4798a04415d41c722f45913a7760e6f658Virustotal results 32.26%Heodo
2020-10-26Doc_2020_10_26_NM91563.docdoc bbf802f0d038f88d2f06c19409c8fb4a9df585645dd21c57509fc42b2c1a180dVirustotal results 35.85% Heodo
2020-10-26File_2020_10_26_F472732.docdoc 9b655fe8b0df1099ef9e74184b0b45251256de932117cf3180c672c0eee0efe8Virustotal results 33.33% Heodo
2020-10-26Inf-GZK45857.docdoc 6831fef11ac664e78ca3973a9e3974e8f485b1321b954f884f07bfd32f5dcceen/aHeodo
2020-10-26DAT_2020_10_26_B6757.docdoc 04037f4e2ab732c439b6b8ce26234e39466ea910ce94bb961dfb93c90c5f018cn/a Heodo
2020-10-26File_2020_10_26.docdoc 21ff8297338ccf90e549cbf9a9171e40ab01f8ecc28d2ee23f588e41b5e8f7c7n/aHeodo
2020-10-26REP.docdoc d90ed0030c1275bb1ddd893fd29e73bdcd9ba1321e78c8a7525f30e5786c4431n/aHeodo
2020-10-26doc_20201026_01818.docdoc cf10c7d0f84a73aa5df5e36396d655dd4c5aab34723e4465fc328187d7dae754n/aHeodo
2020-10-26LIST K64870.docdoc ff5007b5761e068b27ecde2c4c2a63d1ffa24ad25ea98ec266369b5ed35d8d17n/a Heodo
2020-10-26Attachments-JJ9654.docdoc e40119b79b78b7af1ed6f4baedd50ce50464d6676bd1622999b29ac56f867165Virustotal results 31.48% Heodo
2020-10-26FILE 2020_10_26 464.docdoc 1f097c478d1b75c6ecd03a620ea92bed94c200c6516ee91dd8f71aed9dd4e7dfVirustotal results 31.75% Heodo