URLhaus Database

You are currently viewing the URLhaus database entry for https://sharjahcd.ae/wp-includes/BhsaDpzsy/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:752400
URL: https://sharjahcd.ae/wp-includes/BhsaDpzsy/
URL Status:Offline
Host: sharjahcd.ae
Date added:2020-10-26 16:11:06 UTC
Last online:2020-10-28 18:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-10-26 16:12:27 UTC to abuse{at}a2hosting[dot]com)
Takedown time:2 days, 2 hours, 19 minutes Poor (down since 2020-10-28 18:32:12 UTC)
Tags:doc emotet link epoch2 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-10-27Mes_2867793648886645417.docdoc d2beeaf853221bea427e4b8e203deac4d7352b9c7f220804331709fc18bf0899Virustotal results 19.67%Heodo
2020-10-277388104333966.docdoc d6a6701bc63354fa0f34492bdbe6c22bfee5f624d5714b329a8795508ff5b6e4n/aHeodo
2020-10-27list_PO_10282020EX.docdoc 5880198ab029293ab55069d91c84173b25be8fc09339e6bfa684a3d69072d4beVirustotal results 19.05%Heodo
2020-10-27list_PO_10282020EX.docdoc ef29a8422b09e506af3affcef90be9236f769d51ce6a686df8fb8dfc6fcd1284n/aHeodo
2020-10-27dat_020189561340975415.docdoc eff4ff103b1930c43c7f0ae267a43b853c4cc734db4c80473d028efff6e8f7f2n/aHeodo
2020-10-27Attachments_PYO_100120_FNE_102720.docdoc c648fbdb326aab7ad03eb32dbe84421e283c66f1f7d21f8cf8a392332669b8faVirustotal results 50.00%Heodo
2020-10-27Arc_080888315308211.docdoc cb505678e0c2debe5c5b4647af5940e08ffbb2d7a1c73de09136d64560cc0696Virustotal results 50.00%Heodo
2020-10-27Untitled_PO_10272020EX.docdoc 9b5f8753c937ea4030e201c1706d87f696d7a5fe2814de5d06f5c5cb622b4d31Virustotal results 44.44%Heodo
2020-10-27arc_DCZS4JSAJ4SS3GHM.docdoc 8f9abf3adf4ba92dbc235bf4256b50c7a104f29cbd536d3739dea21b36d46105n/aHeodo
2020-10-27mes_VOPRHQX94SE.docdoc cf1755db847790e09d27102e42e4de72525a7430fb714314809577906196589dVirustotal results 49.06%Heodo
2020-10-27Arc_TVQYYI2Q.docdoc 7a543f0215796af850eed509dd0ee5fe9afd2a01385880fe2876945c189f6eedVirustotal results 45.90%Heodo
2020-10-27List_LAHOFD37E.docdoc 8d2d00b851dd74708e5e2f6c4858dfd28cbbee583526d5cfdfef4b00f44077c4Virustotal results 50.00%Heodo
2020-10-27LXV0JBWR5215YB4.docdoc e370ea4609a4c900d20fd7b455fa80fddc7c91996b6ee181eafa2b4a2f518202Virustotal results 44.44%Heodo
2020-10-27REP_PO_10272020EX.docdoc 075ad3915034b09cca40f0ad72699dd72104a12ec16645aac558092604c8bbb6Virustotal results 45.90%Heodo
2020-10-27A_750960147186399894.docdoc 16b99f7444f5e97d0fce8d7730fb1437f62f71827293d7d94965735f45ad9334n/aHeodo
2020-10-27LIST_FF1115903387IS.docdoc 09244c423c3262527e5deda11a9ade5df8ec453d879c5fb6e6cb2afd3121ffccn/aHeodo
2020-10-27MES_4333319641412104.docdoc 1a085300939d5afedf7de966fc70593f8abdaefad80639cc2153cb93450e1014Virustotal results 40.74%Heodo
2020-10-27JPK_86261473.docdoc 9c3e6f2a300a57f045aa4859965bd3edb909708068d7f0e752a9a7826950eb14Virustotal results 42.86%Heodo
2020-10-27dat_VA8596034509TH.docdoc e9ed0e2383e743b2c64d4c7a9dfa27ef8352ca6b03cbc8b606f72368c42c0196n/aHeodo
2020-10-27INF_PO_10272020EX.docdoc 6512da0f704fb89d4a8ce055a88d766ec48ec1131286d971fef1f708277351aan/aHeodo
2020-10-27List_15644453.docdoc b0565d5c17e97824b8361ee962e7d8f532cb55148ddb10f5eef97b203c14b205Virustotal results 33.33%Heodo
2020-10-27Rep_90268685.docdoc 8e004c74c9c90236d751f1dad7ef43b36f40ddfc0aeb8c639fa0bba27c99e415Virustotal results 36.67%Heodo
2020-10-27FILE_6RPCDSJWJSZSIH5B.docdoc f31140483a61bc5bd7a5d3040838aee934eefc7cc47842ef5b55881d29820b62n/aHeodo
2020-10-27Doc_806646369.docdoc 39e60430550edba1fbe6da455accea7d2394d8a0b921d4747fdd365442519b76Virustotal results 33.87%Heodo
2020-10-2762165512.docdoc 71c73b1d88d50e2982f5f633cf03be4da68db518fcf131f2f22787aa0cd54650n/aHeodo
2020-10-27UNTITLED_XVA_100120_JIR_102720.docdoc adfa83c658670b7c3aa3597f7124eab031ffc038977fd0ddf67b070552c55e2cn/aHeodo
2020-10-27arc_PO_10272020EX.docdoc 56c2cef0eede6803ac93b690989ddfe5728039f73ee3f2667128ff8812054a6an/aHeodo
2020-10-27ROEEXA63F3.docdoc bf3caf1312e44d1c99fc185bee6d80d89ecbd308c5a1346d673c5790962eadc5Virustotal results 37.04%Heodo
2020-10-27A_PO_10272020EX.docdoc df6ec075b661ca498939b6b15933fe4822e9e1540863133b43a606b14f2f1f76Virustotal results 32.26%Heodo
2020-10-27list_Q83ZDHRLAW0T.docdoc 568a352a99c7d13f8738d6cda1e312b1d7788cf46a1b392755bf34ddcdea64dbVirustotal results 34.92%Heodo
2020-10-27REP_TU8766619711QQ.docdoc e4527d560cd4686420f59af761956425e12c91652dd75544c29db4c730095ce2n/aHeodo
2020-10-27REP_PO_10272020EX.docdoc cd1e0a22c855d17c145a7577ab2ade765735a6eb768de6b3445d724824388dceVirustotal results 36.51%Heodo
2020-10-27MES_83670518.docdoc 1775a89c8013b60f9d0c4049675feb67fc007e0995b58d5a7b8221d7a4efaa37Virustotal results 32.79%Heodo
2020-10-27inf_16457875.docdoc 8eb78a6d84b494376442dae40df3e3e3096faab3dd0c02a3d78441cf6ab4522cn/aHeodo
2020-10-27arc_CJD_100120_XGW_102720.docdoc b15e644be48fe68c11500258266ea197f1250797de8c53b4e52a3ce84c27f4c0n/aHeodo
2020-10-27dat_SGP_100120_QNH_102720.docdoc ff22e77b88e0475f28d9a9b2dc4822b61b19e7f15738af59dfe973bc0bbedaa7n/aHeodo
2020-10-27FILE_79280404.docdoc f95e9c63ad284616cdcac76b2ab2f36683182c46d5640fc2293906ea99cf7b21Virustotal results 35.85%Heodo
2020-10-27File_XE3319208899QX.docdoc e39636db1ca1665b04dc3b74b7598403e6152847cc90bb4472aa13bc93e70b62n/aHeodo
2020-10-27Mes_YPE_100120_NMO_102720.docdoc 4d55ddffa3d513e115000683cfa2fb1e2b738298d58e3b6dfaa8f66feb1351dcVirustotal results 35.19%Heodo
2020-10-27file_49800209684.docdoc 5d94aca8f05d80a4609eb7e74da9d74ad368236647ef082d1c0d4a6b8e9534e0n/aHeodo
2020-10-27DAT_4899991402432.docdoc f4b63875c31bdacef07532c1f7546cd93069bbd5690c1f91458a76fba33b86b9Virustotal results 35.85%Heodo
2020-10-27FILE_WWG_100120_CRS_102720.docdoc 115c98911b958fcf8e3c9300eca7763548205c8fade900f66be4d241ed54c99fVirustotal results 31.75%Heodo
2020-10-27FILE_PO_10272020EX.docdoc e25c57f78caa61c0a27f7f7877e82bbd48ba6fc490aa904b851bbf4b7a42ac5bVirustotal results 31.75%Heodo
2020-10-27INV_RM5884751732IN.docdoc 9585baa7e3cea40736c5c909141cab11285345fa112ea2ca8438dda57091a96dn/aHeodo
2020-10-27CVRV_PO_10272020EX.docdoc 7e2498c2125b196f853bab661649d81424c604a5506801229b8b4128d3cf5a4bVirustotal results 53.70%Heodo
2020-10-27QM7125428792BL.docdoc 58dd20d9c3e38a8115434572a1975f207290cb2340b203ffaa6d3b08fa95da9fVirustotal results 38.71%Heodo
2020-10-27PO_10272020EX.docdoc b54246f7e156e673583d27bac3eedf9c6e97db4635d316ac47c599ba5baa1266Virustotal results 39.34%Heodo
2020-10-2710137647.docdoc 3fdc33083e4013b835f32c8870989125fe433607c29000ea8c994f0105ac07f0Virustotal results 43.55%Heodo
2020-10-27INV_CGMDGA0U0CPU7.docdoc dcac3f433bca625d1c831d29f00d254dcc6740ca1779ebf9f6483ab6fe431c21Virustotal results 40.98%Heodo
2020-10-27DOC_PO_10272020EX.docdoc 6f039a653dd4edef8c16347acc26f36a9b283bdeb9c8fb6ce48faabd9f67f5e2Virustotal results 43.14%Heodo
2020-10-27JP8736344588XT.docdoc 59b0501c2684432b625387c70e6ba5db3ebd84b77d24b11c744db3b3c48d3561Virustotal results 38.89%Heodo
2020-10-27DOC_PO_10272020EX.docdoc fd1ed1165259d49544da247f9fa6025087914113360a444c9a13aaaeab57a5b8Virustotal results 51.85%Heodo
2020-10-2721128677.docdoc 2960dd68c371680d27dc0f404b13568b2274901eb683c0a4cfa8b74510d5a74eVirustotal results 50.94%Heodo
2020-10-27554317313924455794.docdoc 44193d99f4f6240603cde0c68693a415a4ada0d769001572a4b84f503df3569eVirustotal results 42.59%Heodo
2020-10-27FILE_FQ0746413842FE.docdoc e8caccd0e30b68aa3a338537f9164503821ec1089daf287db3acf97ec74e59f3Virustotal results 38.10%Heodo
2020-10-27FILE_PCYV6IIJ6OQBYQH.docdoc 9984eddfbc2dd95122946859d15907841ecc6834d8a87869837cd309180f03d4Virustotal results 38.33%Heodo
2020-10-27BAL_I7NTQUQFDXP.docdoc ebfca25ac5a8d600e73ba0523100c430e2b6072247e42a91c12ba2e1d718c4f4Virustotal results 39.62%Heodo
2020-10-27UFT_100120_QPZ_102720.docdoc 98bdd88b97a27caa11e39dd7dee4d2e510ba8b38e1e7e13e5efb7ca2fd538679Virustotal results 39.62%Heodo
2020-10-27HQ_UV0404442485XM.docdoc c8b394c2d8b83573eba859ba30101e535e3795cc846b6f21a09c3653cae36981Virustotal results 38.89%Heodo
2020-10-27DOC_TF9815887739IF.docdoc 9a5ff2d10eb6a49a82083f2f52e3daba519399794197d526ab76a68dd6849e69Virustotal results 39.62%Heodo
2020-10-27IL1927199477LT.docdoc 0779c9b1561c39e278910257e807a233b3545da40dd442a26906c0ffa6e199fbVirustotal results 36.07%Heodo
2020-10-27FILE_IHFNYPIMO993.docdoc fad47e8ab42aab56d8198f885e7943c5b9f9c86bd8983e3ddd4dcaaae8c36f2cVirustotal results 46.67%Heodo
2020-10-26ZDI_100120_KDL_102720.docdoc ac739c4d98aa46329d4ebe114bad66247375ddaf8d148446712f2a2b8006f300Virustotal results 38.46%Heodo
2020-10-2697803224980049307336728.docdoc 7569ec933b0114593361c66c86f8317cdb131aece55945e0634987155a0d0ddeVirustotal results 37.10%Heodo
2020-10-26OV_PO_10272020EX.docdoc 5542c37ee5faeeea86b317db009b24a38f581860e468db0ae1d61b0850aa3463Virustotal results 35.48% Heodo
2020-10-26DOC_PO_10272020EX.docdoc f51707649a7c81b2a2411150c7bd604994d0e0b18169253293ebf171150d5830Virustotal results 36.51%Heodo
2020-10-26YZV_100120_NBF_102720.docdoc ced763c7a4e419e5fe3cc06d5ef0e01adfdbc0837028a48fef7f0d26db8566d4Virustotal results 37.04% Heodo
2020-10-26FILE_BI2252512661VM.docdoc 395aa1cb5a6a567708e1a0d53eb1c21eeaf8973a53bf52baa2bbfb968525c351n/aHeodo
2020-10-2653697125.docdoc 73d86e2272fd2354897cf0ffea6273f56a56597f4a57587b435ac22f672208d0n/aHeodo
2020-10-2631666931.docdoc 5427634467eebd0455fc0de71aff6b4e3e2e35e5e8e1633d567fd18654a1c532Virustotal results 40.32%Heodo
2020-10-26XQ2884207201UR.docdoc 1b90906d6146b886c419f1c0529e6a929d80d41ff661e6c9a5dcf28f6062a9e0n/aHeodo
2020-10-26DOC_PO_10262020EX.docdoc bf04be287615bd3af69a5f056b49c8022660833f42e354c39c808061f1b2b7fcn/aHeodo
2020-10-26S_PO_10262020EX.docdoc 0f42df210cf372d884bd0cb9074d9760880bc0aa34168f889b8e28dc016b006cn/aHeodo
2020-10-26T_3223414441773761.docdoc 26086ff8825a2c550cc802f2574dd9a8730c972ed3d1c704d863fc74e8dc082cn/aHeodo
2020-10-26INV_UB1997702001VS.docdoc 5015b3d571a67fc015e9ae62b064f6a8357b86db998aa2fc1eafe6bfd053ee44Virustotal results 39.66%Heodo
2020-10-2659239285.docdoc eb65d8e85cc0adb029a282fca04eb78d8357cca6c390691c383a7e2bbf0e39c0n/aHeodo
2020-10-268J2OC18Y31.docdoc f5831fd5a2bd8c3eaf0bbd799764d684f1c3a2528d5583013b438e6f2b4f4843Virustotal results 39.62%Heodo
2020-10-26DOC_HV7HFYG5IP7.docdoc ada5eecfbbe470ecc1b1c434323530f141ac930ee6febd5c6e578dda073ccbecn/aHeodo
2020-10-26INV_LI9665325541EF.docdoc 071e87ed49b3bac25514270814dd2f066a3a9255226b419bf6a25da73a8a07ebn/aHeodo
2020-10-26C_LPA9QU7.docdoc 350f692b235ca80d3ca12562b2b358bf46423ddee94c82c3d2b510dc024f8925n/a Heodo
2020-10-26INV_YJL_100120_DFE_102620.docdoc 5b2357476ae913debd4a8f8070c64177c73ae8d6791df39981393094316384c8Virustotal results 38.89%Heodo
2020-10-26BOT_100120_IIG_102620.docdoc 9211a4ea3e412e28d474f71d5fb57f3aa264b934ea19d9728a1b2ea6cc715e77Virustotal results 38.98%Heodo
2020-10-26Z_62540382.docdoc b807ce9ed9d1e372670245436ff57d249dc8070e261507dc2cd6cf830606ada6n/a Heodo