URLhaus Database

You are currently viewing the URLhaus database entry for https://techgym.jp/wp-admin/INC/haQRDhdHZVL4ujklhj5q/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:752596
URL: https://techgym.jp/wp-admin/INC/haQRDhdHZVL4ujklhj5q/
URL Status:Offline
Host: techgym.jp
Date added:2020-10-26 17:08:06 UTC
Last online:2020-10-27 22:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-10-26 17:10:04 UTC to abuse{at}gmo[dot]jp)
Takedown time:1 day, 4 hours, 51 minutes Poor (down since 2020-10-27 22:01:28 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-10-27Dat 2020_10_28 YR0756.docdoc 19edb720e222817dc696093f3000cbf44dc66691e3b3f096f395366f794c6ca2Virustotal results 20.75%Heodo
2020-10-27DAT_MY75026.docdoc 440710866f2af5dec3a2fb47d43a20a8d599fadce987787c6772a857b926669dn/aHeodo
2020-10-27INF_253.docdoc 06d0d9aa64d7b5c8ddda1388dbe3ffb081bf875ea2f961142dfe1dd3027e6e59n/aHeodo
2020-10-27list_2020_10_27_5230064.docdoc d72d739e8e5011b13120f38f398f775116032ad0712d602780ff9370cfb0ddc8n/aHeodo
2020-10-27rep_2020_10_27_03765.docdoc d42ce060b40d98bfa8a3be4e0ae8f858cdda9054b2f8179b959b42e5da48aec3Virustotal results 33.33%Heodo
2020-10-27list_OO652.docdoc 484388d782fd4a5477ed0fc44b40d2d5fd73d0ea7d3088d7c015d2b4ccc5ea93Virustotal results 33.33%Heodo
2020-10-27arc-20201027-4299732.docdoc 303cdcd85a6295f4839ac8406c15873c56c6db045d02f16605a495f6fd952261n/aHeodo
2020-10-26Untitled-804572.docdoc f620c363a605c7c11abe0ed6c9f919168781361df2901e24752c0ebd428c4854Virustotal results 40.32%Heodo
2020-10-26UNTITLED-Y080383.docdoc 73d1b4c3fb5a035d592fd68fb3393cbfbd659c6fb165d4aebb3c1abd953aa593Virustotal results 40.74%Heodo
2020-10-26dat.docdoc 9624eca338cef03d8004d874cd0c774bf67ece67290d5a0022da8117345b11c6n/a Heodo
2020-10-26INF-2020_10_27-7871101.docdoc 4e166862bb4b0cd09fb6d5fde9004ac49c14d9ac11f8e9d37f551c815721128an/aHeodo
2020-10-26File.docdoc 39cdff523db7ead8f113ec36242d69a4a4d674da8a8da8f44a115d32dff4955fVirustotal results 40.74%Heodo
2020-10-26UNTITLED_3013.docdoc 9df7e80c74ca288cb8aa9caada230cab385c728c5adc1b56e7a3e6443df3f531Virustotal results 38.46% Heodo
2020-10-26REP-20201027-78642.docdoc 599c7105a79ad339b973d5007b37475243cd05b61c4c74481adbcbe44243bebcVirustotal results 41.67% Heodo
2020-10-26Dat-YYX696046.docdoc de04a20487db8ec538e7b52ee91ffc4046e92748e3b3ba2684cf3a807f502d66n/aHeodo
2020-10-26file 20201026 0964117.docdoc 9cf56a7784e96327856d334a095beb3b92568462ede5fe91ba11b2d2fd4e2443n/a Heodo
2020-10-26Attachment_2020_10_26_E442413.docdoc 34dd1f15065490ad0f9a972d6f684e0236da911b32611fe1e6424bf9b01cea7an/a Heodo
2020-10-26Inf_940804.docdoc 2d3fbf8b677548c7e12554c3d9473c4798a04415d41c722f45913a7760e6f658Virustotal results 32.26%Heodo
2020-10-26dat_3788466.docdoc 58d9b03edf2664b1f5b319b5357772b522b22af59eabc3c9447ca692c617627bVirustotal results 33.96% Heodo
2020-10-26File_20201026.docdoc 5369fae3eee921b1fd6ea820a171f8f50eaef5e7d347d0ea9085495f429e08d5n/aHeodo
2020-10-26Attachments 20201026 PV598491.docdoc 3cc9e57cc5347c2a9a5cdbf57cf1be1d9b8cfd4eb100878461864acb6de2a3f5Virustotal results 33.87% Heodo
2020-10-26Mes-364.docdoc 77ea55e276e20c9ac8b46bbfe2bcb9807fec78b3853f7ab4be255ded7f32bb56n/a Heodo
2020-10-26List_2020_10_26_207.docdoc 21ff8297338ccf90e549cbf9a9171e40ab01f8ecc28d2ee23f588e41b5e8f7c7n/aHeodo
2020-10-26V257_809817.docdoc d90ed0030c1275bb1ddd893fd29e73bdcd9ba1321e78c8a7525f30e5786c4431n/aHeodo
2020-10-26Inf_2020_10_26_EP6874.docdoc 2dfb161d05f8b5a2c478a805de7b3440bc33f2f9e9373d4686a85ac5e9c6ff46n/a Heodo
2020-10-26Inf-20201026-900422.docdoc 104f8caf7d235f4c0d5c3c921a0928ea99bbddb7ad994ef3e77a545570de6459n/a Heodo