URLhaus Database

You are currently viewing the URLhaus database entry for http://sharjahcd.ae/wp-includes/BhsaDpzsy/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:752402
URL: http://sharjahcd.ae/wp-includes/BhsaDpzsy/
URL Status:Offline
Host: sharjahcd.ae
Date added:2020-10-26 16:11:07 UTC
Last online:2020-10-28 18:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-10-26 16:12:27 UTC to abuse{at}a2hosting[dot]com)
Takedown time:2 days, 2 hours, 19 minutes Poor (down since 2020-10-28 18:31:58 UTC)
Tags:doc emotet link epoch2 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-10-27Mes_2867793648886645417.docdoc d2beeaf853221bea427e4b8e203deac4d7352b9c7f220804331709fc18bf0899Virustotal results 19.67%Heodo
2020-10-27Attachment_58401394.docdoc fc7ce8ff56832fc6cd1bdb013de966cae38ff1e593a06e22f0e9764e09528a01n/aHeodo
2020-10-27JTK_100120_HRL_102820.docdoc a99f2aea456cc18c69c4cfb2a2eda92fdeae784f7275e3ad000457fb02e614can/aHeodo
2020-10-27list_PO_10282020EX.docdoc 5880198ab029293ab55069d91c84173b25be8fc09339e6bfa684a3d69072d4beVirustotal results 19.05%Heodo
2020-10-27MES_43277276417702509206.docdoc c0b7364bc8b2a4ef21f805fa2085e3ad41e5ea6206b0274d6300d64305d4ec0fn/aHeodo
2020-10-27DOC_HLIH2BM3K.docdoc eff4ff103b1930c43c7f0ae267a43b853c4cc734db4c80473d028efff6e8f7f2n/aHeodo
2020-10-27ARC_28311047.docdoc c648fbdb326aab7ad03eb32dbe84421e283c66f1f7d21f8cf8a392332669b8faVirustotal results 44.44%Heodo
2020-10-27list_LAQ_100120_BKX_102720.docdoc b84e06b48e0596e8ea863ad6d7b92c046211642e81b197bf8d21bc9812a6cd21Virustotal results 44.44%Heodo
2020-10-27inf_PO_10272020EX.docdoc 94bb2eb0f0b8a0f61ff20360dbf6e4b89188c5157bc940f9d38dd4cb68a4539aVirustotal results 51.92%Heodo
2020-10-27arc_DCZS4JSAJ4SS3GHM.docdoc 8f9abf3adf4ba92dbc235bf4256b50c7a104f29cbd536d3739dea21b36d46105n/aHeodo
2020-10-27YGA_100120_HSZ_102720.docdoc 69c66278b808dbebfd0dbcd3869f502a33b285251e49e1fa7f9fb6fc7deff266Virustotal results 50.00%Heodo
2020-10-27DAT_2921935938781429781962379.docdoc 53dfce57e9c5c4d1fa5dbfde99dffd5cccf677f96b297a5a517d86f93cc81bbfn/aHeodo
2020-10-27dat_0084487758515.docdoc 3a6999a4a9e86c13cc7384d88715d7e2ba2f571b311c29c076b654a9d15aeb1fVirustotal results 46.55%Heodo
2020-10-27ARC_AZU_100120_RLZ_102720.docdoc e0d8252260d1c59a8cb22f97dce540a7f5272ed1052a3edbc71b265e175151aeVirustotal results 44.44%Heodo
2020-10-27REP_PO_10272020EX.docdoc 075ad3915034b09cca40f0ad72699dd72104a12ec16645aac558092604c8bbb6Virustotal results 45.90%Heodo
2020-10-27UNTITLED_3104974392689766584.docdoc 5ed7759274be901ba33c4f6edc3933a460141c8fd98a83304db9c6a344adecefn/aHeodo
2020-10-27mes_PO_10272020EX.docdoc 8e2379ffe37bd31c9d501b4fea3ae2e28b59f933520d89a5fae9580c3bfe9368n/aHeodo
2020-10-27MES_6UJITC0QF2V6UJP.docdoc 0d324b35e9e1354566e22c431eb9ee5f36c4ade28ed5acf57bbda93ff7c8c1edn/aHeodo
2020-10-27LIST_QP487ML.docdoc 46a3e3abecccb7dab19ff4c6940f0d2b503d409524a59b07bea431da55dac765n/aHeodo
2020-10-27PO_10272020EX.docdoc 22ac8237bc5e3f90f62a2b7fc69ed3ecc6bf52f767e8b8a52ebdee9e4e09d8a6n/aHeodo
2020-10-27JPK_86261473.docdoc 9c3e6f2a300a57f045aa4859965bd3edb909708068d7f0e752a9a7826950eb14Virustotal results 42.86%Heodo
2020-10-27dat_HZG_100120_DMO_102720.docdoc a29d51416449dfcb6f6252e85b3931f87b7902906dbd91e184440024ad0d19a3Virustotal results 33.33%Heodo
2020-10-27INF_PO_10272020EX.docdoc 6512da0f704fb89d4a8ce055a88d766ec48ec1131286d971fef1f708277351aan/aHeodo
2020-10-27MES_NQLROPE1JH.docdoc 53c15a0758065226ff440e2d77fd9566797ad3e8ab328de743a0fc0e63c54799Virustotal results 41.94%Heodo
2020-10-27Rep_90268685.docdoc 8e004c74c9c90236d751f1dad7ef43b36f40ddfc0aeb8c639fa0bba27c99e415Virustotal results 36.67%Heodo
2020-10-27Untitled_YJO_100120_YCJ_102720.docdoc 7c1d4014d5f038bcae31a98765f1206deb293bdca40c8776d00f3ff5c1831e84n/aHeodo
2020-10-27ARC_LM1996141558MO.docdoc e8f729ebca2fff6192e5223a96af260ff6d4ad3a3f6bdea9574317c0ac13f785n/aHeodo
2020-10-27Dat_PO_10272020EX.docdoc 9ef432b9526e75b9aa481ba043077d6ffefb4a706388c90fd002e320dac8520dVirustotal results 35.09%Heodo
2020-10-2762165512.docdoc 71c73b1d88d50e2982f5f633cf03be4da68db518fcf131f2f22787aa0cd54650n/aHeodo
2020-10-27UNTITLED_XVA_100120_JIR_102720.docdoc adfa83c658670b7c3aa3597f7124eab031ffc038977fd0ddf67b070552c55e2cn/aHeodo
2020-10-27List_687379047.docdoc c79b46a984ea1afac22430005586c7436a446b0285f52a8ac1e106872c7313een/aHeodo
2020-10-27Doc_PO_10272020EX.docdoc f08dcbd662346509dda32a750aef30760483bb319be71138d1973e4b3e98c98en/aHeodo
2020-10-27DOC_11645729.docdoc 738cae5e8c5b127eceb61ae86ded059ef5abab3d6c02649cb756cdbaa3470764n/aHeodo
2020-10-27list_Q83ZDHRLAW0T.docdoc 568a352a99c7d13f8738d6cda1e312b1d7788cf46a1b392755bf34ddcdea64dbVirustotal results 34.92%Heodo
2020-10-27LIST_PO_10272020EX.docdoc db8c10dd3ab28c896b921d720da5b91739c6f990bfef2f4026dce156e231fa0dn/aHeodo
2020-10-27REP_PO_10272020EX.docdoc cd1e0a22c855d17c145a7577ab2ade765735a6eb768de6b3445d724824388dcen/aHeodo
2020-10-27MES_83670518.docdoc 1775a89c8013b60f9d0c4049675feb67fc007e0995b58d5a7b8221d7a4efaa37Virustotal results 32.79%Heodo
2020-10-27FILE_96240471.docdoc e2118700994eb009d7d7ea74a0badb8bc07ad79b19b05f75f68c9030d29d966cn/aHeodo
2020-10-27arc_CJD_100120_XGW_102720.docdoc b15e644be48fe68c11500258266ea197f1250797de8c53b4e52a3ce84c27f4c0n/aHeodo
2020-10-27dat_SGP_100120_QNH_102720.docdoc ff22e77b88e0475f28d9a9b2dc4822b61b19e7f15738af59dfe973bc0bbedaa7n/aHeodo
2020-10-27rep_AB4159017969GT.docdoc e39636db1ca1665b04dc3b74b7598403e6152847cc90bb4472aa13bc93e70b62n/aHeodo
2020-10-27Mes_YPE_100120_NMO_102720.docdoc 4d55ddffa3d513e115000683cfa2fb1e2b738298d58e3b6dfaa8f66feb1351dcn/aHeodo
2020-10-27dat_51649070.docdoc 99dcbef73f8e02416896cdc9204b4ee7249131cea8de9baae8bd7f40985c7d5bVirustotal results 31.75%Heodo
2020-10-27rep_PO_10272020EX.docdoc 3d3018783ee56f8fe4b38d613ee7b96aa6424bdf12d3bd7c3dc618c6bb38dcdan/aHeodo
2020-10-27DAT_4899991402432.docdoc f4b63875c31bdacef07532c1f7546cd93069bbd5690c1f91458a76fba33b86b9Virustotal results 31.75%Heodo
2020-10-27FILE_WWG_100120_CRS_102720.docdoc 115c98911b958fcf8e3c9300eca7763548205c8fade900f66be4d241ed54c99fVirustotal results 31.75%Heodo
2020-10-27OCJ_100120_CQM_102720.docdoc 99963b0cf4f0151b67a5c757087ce3893cc46b3878d1f16991e38fcc63a3fd56Virustotal results 35.09%Heodo
2020-10-27INV_52447140182.docdoc 3f2106dcc33f45af5c7a6c178004672bf20d7a8166190570887e9f5c02c774efn/aHeodo
2020-10-27DOC_DK2217137235VP.docdoc 0bce545acd6f37453246cb2ce9c6ef9e85b7c6c02676fed1a2bfd42934be9c03Virustotal results 40.74%Heodo
2020-10-27INV_NLBNN6A.docdoc a9670ebc9a9410fd8afc7de53381f501601ca3566f19e9177a79ba8a1b6b93e6Virustotal results 55.93%Heodo
2020-10-27PO_10272020EX.docdoc b54246f7e156e673583d27bac3eedf9c6e97db4635d316ac47c599ba5baa1266Virustotal results 39.34%Heodo
2020-10-27RFJO_CYD_100120_GZN_102720.docdoc 402bcaa8f052d8cf5d7ebef47283ea79c68151fa78bfad0611e97530423d3b73Virustotal results 41.27%Heodo
2020-10-27K_EB6MLMI7X8M5O.docdoc dcac3f433bca625d1c831d29f00d254dcc6740ca1779ebf9f6483ab6fe431c21Virustotal results 40.98%Heodo
2020-10-27BAL_LKY2DX7P071.docdoc 1b90906d6146b886c419f1c0529e6a929d80d41ff661e6c9a5dcf28f6062a9e0Virustotal results 51.85%Heodo
2020-10-27XJZ_100120_CIS_102720.docdoc 59b0501c2684432b625387c70e6ba5db3ebd84b77d24b11c744db3b3c48d3561Virustotal results 38.89%Heodo
2020-10-27YIH_100120_QHH_102720.docdoc 4fb9d273bb087c7c0ff482f77af8b41047e57e10e452d9d4b873e89afcfb9624Virustotal results 38.89%Heodo
2020-10-27BAL_MAOC8XRUR3CN.docdoc 56672b95281d04830b996e84df9edadf1be30650c9e410f25dd4596927d71d7bVirustotal results 39.62%Heodo
2020-10-27BAL_T112YP0YEHTKV.docdoc 76afe2552588f38f318120b1778e8d66eff5ccef7e49ea2fa3c650aa573149aeVirustotal results 39.62%Heodo
2020-10-27OR7708554675SZ.docdoc e8caccd0e30b68aa3a338537f9164503821ec1089daf287db3acf97ec74e59f3Virustotal results 38.10%Heodo
2020-10-27FILE_PCYV6IIJ6OQBYQH.docdoc 9984eddfbc2dd95122946859d15907841ecc6834d8a87869837cd309180f03d4Virustotal results 38.33%Heodo
2020-10-2719199742349.docdoc b9efcf9bbdfee20efe56047ca5810ea88974d9e7b9ec968a57f814842c7946ecVirustotal results 39.62%Heodo
2020-10-27UFT_100120_QPZ_102720.docdoc 98bdd88b97a27caa11e39dd7dee4d2e510ba8b38e1e7e13e5efb7ca2fd538679Virustotal results 39.62%Heodo
2020-10-27DOC_TF9815887739IF.docdoc 9a5ff2d10eb6a49a82083f2f52e3daba519399794197d526ab76a68dd6849e69Virustotal results 39.62%Heodo
2020-10-27DOC_08567013.docdoc ada5eecfbbe470ecc1b1c434323530f141ac930ee6febd5c6e578dda073ccbecVirustotal results 38.89%Heodo
2020-10-27FILE_IHFNYPIMO993.docdoc fad47e8ab42aab56d8198f885e7943c5b9f9c86bd8983e3ddd4dcaaae8c36f2cVirustotal results 42.86%Heodo
2020-10-26ZDI_100120_KDL_102720.docdoc ac739c4d98aa46329d4ebe114bad66247375ddaf8d148446712f2a2b8006f300Virustotal results 38.46%Heodo
2020-10-26FILE_EWQ_100120_ZDG_102720.docdoc abfcd6342895929d5baf093e13140d0b37f8e97da0253480aa94ba5e78bcd1e1Virustotal results 37.04%Heodo
2020-10-26BAL_PO_10272020EX.docdoc c8ec858c06478f6261eadea96e71a453f5176eb9b07c801ad5d84bde75ccda10Virustotal results 37.04% Heodo
2020-10-26YZV_100120_NBF_102720.docdoc ced763c7a4e419e5fe3cc06d5ef0e01adfdbc0837028a48fef7f0d26db8566d4Virustotal results 37.04% Heodo
2020-10-26BAL_09914264799372.docdoc 161f1c79e3c1a32ec90c679b1fa99d722341c618031ea9a15a0e3f1eac9953dbn/aHeodo
2020-10-26FILE_BI2252512661VM.docdoc 395aa1cb5a6a567708e1a0d53eb1c21eeaf8973a53bf52baa2bbfb968525c351n/aHeodo
2020-10-2653697125.docdoc 73d86e2272fd2354897cf0ffea6273f56a56597f4a57587b435ac22f672208d0n/aHeodo
2020-10-2631666931.docdoc 5427634467eebd0455fc0de71aff6b4e3e2e35e5e8e1633d567fd18654a1c532Virustotal results 40.32%Heodo
2020-10-26FILE_85288358245772551.docdoc 2b6fbd4bae925ee51ad709cbfcf1ad28ad7a9dad8b3aa92f8b327a0f4ea392ean/aHeodo
2020-10-260OSRT5KW1IC8.docdoc 5a852301fc77705feb086249753d26f6b2b8cf5f8fedd64ef0fc246e842af909n/aHeodo
2020-10-26IHZ_DMNB1Q7W3WTN.docdoc 4c22a2bdba84f5c8604dec8bb09846167e68b70dac6ec6b641a70fc41de2c1d5Virustotal results 39.62%Heodo
2020-10-26G_52344577.docdoc f83783eda067f6e1b71d589e230f6aa844b2410c42ce2f20a60f9b32960852a6n/aHeodo
2020-10-26BAL_880016026476599.docdoc 63de7c82426f3d39479b3db8ea2de57da7ac73f6bfc19e1741f8ddcf3b23d837Virustotal results 38.89%Heodo
2020-10-26HU1916354504JK.docdoc f60367a56f63f15b4be7200e8bb78d410ba5408cd0615bf5fa390330b4aed1e6n/aHeodo
2020-10-268J2OC18Y31.docdoc f5831fd5a2bd8c3eaf0bbd799764d684f1c3a2528d5583013b438e6f2b4f4843Virustotal results 39.62%Heodo
2020-10-26A_OG8260461968BM.docdoc ed7748045b321a2e819fdb922995edf21e8b02996994aaebf64df519509d669eVirustotal results 39.62%Heodo
2020-10-26BAL_BVU_100120_GQS_102620.docdoc 9ba569c1504543ac41bb2308f0ed322542bdec567e0588185603e500cd37f68bVirustotal results 38.89%Heodo
2020-10-26INV_YJL_100120_DFE_102620.docdoc 5b2357476ae913debd4a8f8070c64177c73ae8d6791df39981393094316384c8Virustotal results 37.25%Heodo
2020-10-26REP_8651543745337320.docdoc 413e563b2050a7d58b673a726724cf85875316f6d36c526fbc5cd491aff7badbn/aHeodo
2020-10-26Z_62540382.docdoc b807ce9ed9d1e372670245436ff57d249dc8070e261507dc2cd6cf830606ada6n/a Heodo