URLhaus Database

You are currently viewing the URLhaus database entry for https://www.laulikud.ee/wp-admin/OCT/7w3t7VzYtlZEjdEV0V7/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:753014
URL: https://www.laulikud.ee/wp-admin/OCT/7w3t7VzYtlZEjdEV0V7/
URL Status:Offline
Host: www.laulikud.ee
Date added:2020-10-26 19:15:07 UTC
Last online:2020-10-27 06:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-10-26 19:16:08 UTC to abuse{at}zone[dot]eu)
Takedown time:11 hours, 33 minutes Good (down since 2020-10-27 06:49:47 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-10-27Attachment.docdoc c8a26a6bf04fa1b4487e91652089536164904c9871390ff9384b964ab9ff8923n/aHeodo
2020-10-27Attachments_FQ202.docdoc 0faabd3dbd6164cf0dd2361ad5fba3999dc153c2765f8a398c8bac6bfb025c72Virustotal results 29.03%Heodo
2020-10-27Mes_20201027_5485.docdoc 25e2948ee6dea97044697955af64bb89205f75802bb417e426d6d3ab8dc908dcn/aHeodo
2020-10-275305677_20201027_WH780.docdoc ded2929bf9f71eaa6991ccb5a1329c6d1fbc2448144fff01a4721a9e947907e0n/aHeodo
2020-10-27MES_20201027_8861278.docdoc b2dd36198ab64fa72b4d6eaac45af4c16d8e108a6449b40ec93f42a177fa185dn/aHeodo
2020-10-27list 4629354.docdoc 2dc327126efe08f3afe94fdb775da75c1690e055a78879e2f310c939b105ad01n/aHeodo
2020-10-27doc-2020_10_27-LSH4071.docdoc 60880faa0f8f1236178dd99076e9bc3357db26aca7a0b7bbc216ead4d101b153n/aHeodo
2020-10-27Inf 20201027 P0910.docdoc f9cbf5e9736dff2700f0a73937e5143d63fb6d868ca8e5bcc0f0072b23a47889n/aHeodo
2020-10-27File_2020_10_27_6219902.docdoc b4ce9eb571c5888919d3cbd0edc05d6ac3c54b01756c91668aa09a6437ffadb6n/aHeodo
2020-10-27Dat_221407.docdoc 4a18ab940330fb73c1e289748a3cefa188091c8ea0d7babad686162c011b9cdcn/aHeodo
2020-10-27Doc_20201027_97134.docdoc b7fe83d54635a295f9b570b90148dc35a2b598a30e2cdeb6a47cefb94ff24317n/aHeodo
2020-10-27mes XMO4698.docdoc 7912010acd05d53592d8cc6439010e92826dfdd3444e7931ef7950d92eb42250Virustotal results 52.83%Heodo
2020-10-27MBF8860_2020_10_27.docdoc 2001d202bd375d7b755d168c2491c95c5615bce5bd11c4977bf0275ca66bd7f8n/aHeodo
2020-10-27arc.docdoc 6562c1ec0d60cdfb002adb4ed15dbbf2f2f3f717002fbe8151e35d3755eb4358n/aHeodo
2020-10-27UNTITLED_20201027_61176.docdoc d5fc142bfa2e0ab5cc22067cb316b2f73dbf3cceed7fe452a46028fe26c38610n/aHeodo
2020-10-27INF_2020_10_27.docdoc 39bc04da6b9d4faad7b5cae654c8f59ad7ac01b3fb70e293d8fbf1b5b6e15c61Virustotal results 51.61%Heodo
2020-10-27ARC_BA215.docdoc c34b033be6ccec716ff4925ce6e96a65872b23103b659fa24f079d99711963bcn/aHeodo
2020-10-27INF_Y14431.docdoc 82bc786b9af204285f0f89af1602a8e5e1b5df8a914084602d45eabc08922607Virustotal results 50.94%Heodo
2020-10-27arc-2020_10_27-2171.docdoc 34552d4adde7395abb5b114284e79a47c0aab68c0ab1fc62affe993b7373852en/a Heodo
2020-10-27doc.docdoc 7f3ad8f66409867f25e71e87520c6c5bef13981bf27cab43e285638a3681292bn/aHeodo
2020-10-26dat TT95730.docdoc 5af94d5b1e905c40d01805e011b493589549f37de4d6eb3e1b68044d47d8988cVirustotal results 41.27%Heodo
2020-10-26UNTITLED 201162.docdoc 3ab0e38ba83a5c38bf360f80849f9d1ef5ae83e0be4fdef0a2b71ad76efe4e89Virustotal results 41.27%Heodo
2020-10-26UNTITLED-HP6604.docdoc a5f3e8db8097e0528055b569e19bdda01a51fe0e1f03614930c5c428aa0e8b3en/aHeodo
2020-10-26REP_56820.docdoc 73d1b4c3fb5a035d592fd68fb3393cbfbd659c6fb165d4aebb3c1abd953aa593Virustotal results 40.74%Heodo
2020-10-2639941D_2020_10_27_A97400.docdoc 9624eca338cef03d8004d874cd0c774bf67ece67290d5a0022da8117345b11c6Virustotal results 39.68% Heodo
2020-10-26MES_2020_10_27_P28053.docdoc 4e166862bb4b0cd09fb6d5fde9004ac49c14d9ac11f8e9d37f551c815721128aVirustotal results 38.71%Heodo
2020-10-26inf-2020_10_27-OO290107.docdoc a6ac09dbb3459963822e353554b37779cfaca3dec0bf23c8005d6275fb3289b1n/a Heodo
2020-10-26MES_2020_10_27_Y73501.docdoc 1a1bb338ded170fc8b77be52d9031a89690c47a9cba2da74ddecd43d0fb4dde8Virustotal results 40.74% Heodo
2020-10-26TS9941.docdoc 80617da3c346c07e04f87ed19bcc561ea222ebb487366acf0200cb581aea89dbn/aHeodo
2020-10-26Rep-916561.docdoc 7e38fbea33118043c198749415914c8371c9eb7f7e95d037b71076fdbff8ed0fn/aHeodo
2020-10-26DAT-2020_10_27-W097553.docdoc 49763f91e6076006d04ab8fbf74278e52901c5b590a44c595b21718f96a6dda1Virustotal results 40.38%Heodo
2020-10-26List_2020_10_26_LC91163.docdoc 3b681b6b9ea3619f3b7b0d4d502932b37d4fdb03330faeecd6698cbf97164b05n/aHeodo
2020-10-26list_24007.docdoc ce8dacf49b269ce23357c9d8c1c859275e20349559df8516a4ac9954196233b7n/a Heodo
2020-10-26Inf_2020_10_26_9920.docdoc 2d3fbf8b677548c7e12554c3d9473c4798a04415d41c722f45913a7760e6f658Virustotal results 32.26%Heodo
2020-10-26UNTITLED-R240709.docdoc 58d9b03edf2664b1f5b319b5357772b522b22af59eabc3c9447ca692c617627bVirustotal results 33.96% Heodo
2020-10-26doc X018.docdoc fe217a2a06122f1210e422b6daf4013d4b74554082c6f786ff9eb93dc044ea3cVirustotal results 33.33% Heodo
2020-10-26mes.docdoc 2ab353b4f5f0ab68ccce5b36f9b6dfd09a8d88f5bde9eb7c8186ab1d5f7327e2Virustotal results 35.00%Heodo