URLhaus Database

You are currently viewing the URLhaus database entry for https://teestok.com/wp-content/sites/XG4W7Pklo1m1phEKnm/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:755682
URL: https://teestok.com/wp-content/sites/XG4W7Pklo1m1phEKnm/
URL Status:Offline
Host: teestok.com
Date added:2020-10-27 10:07:06 UTC
Last online:2020-10-30 15:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-10-27 10:08:35 UTC to dcundiff{at}a2hosting[dot]com)
Takedown time:3 days, 5 hours, 13 minutes Bad (down since 2020-10-30 15:21:55 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-10-29list-5847.docdoc dfaa310d7bc496dfbf4e407c13620aee429e24721f9c6c41ee196236b1e6c2a4Virustotal results 15.87%Heodo
2020-10-29dat_2020_10_29_2851519.docdoc 488b86e270cf098f41a0b89b3579be47078f05cdc10826c85fd1822460edaf35Virustotal results 16.67%Heodo
2020-10-29mes-2020_10_29-931.docdoc a9c95be3797f553821c94efe5e6d9b97999945ae8e2f3a49814a65b29c6c1e5cn/aHeodo
2020-10-29REP NUN53811.docdoc 863c32fe0e6573bed3a0771579c821d9b162d93cc0226b7600af2c9b60b8e26cVirustotal results 15.87%Heodo
2020-10-29INF-17327.docdoc 00564cade18b45c0bd49c05edc14b0c9c3d364d8472773f4347bb117ffdd8196Virustotal results 15.87%Heodo
2020-10-29doc_20201029_298747.docdoc 2f56e4b4e006d4a8f041d35ff77d86361d87edd52527268d2923a4c45b359174n/aHeodo
2020-10-29Attachments_20201029_188.docdoc 57fac90de363fe45e3b4e907b7b4a0801309db3222798204ce4ceaaf95c9c562Virustotal results 16.39%Heodo
2020-10-29Arc_2020_10_29_698280.docdoc 804d8a73caefdbeb69c3939a8a01531db4e813e85b3db18efd2e87cd58c132f0n/aHeodo
2020-10-29ARC_20201029_090.docdoc f1c071fe39dc7a067cef9011822e61a4b497a7a30b88ca9213104a6618b5e48dVirustotal results 38.10%Heodo
2020-10-2939009 20201029.docdoc 6f6ac4df5dc7b2becdee67c23b92c4f95ab01ac73b08db24c2b4b811a9cbe55cVirustotal results 38.10%Heodo
2020-10-29Dat-2020_10_29-4384.docdoc d06c24a09106daa1032a15c8cff9c4eb399881b463ccefee9a51744197fed53cVirustotal results 38.10%Heodo
2020-10-29REP 2020_10_29 F199.docdoc 71bc58101436a711833b7d8478b9481b6353079f89c0ff4b11760a64e6456afcVirustotal results 38.10%Heodo
2020-10-29inf_K251.docdoc bb9b42355cd9c3b2448099c344e24ceab8f54de4c5e7f3e68ee997dc8e1bc678Virustotal results 38.10%Heodo
2020-10-29Arc 20201029 5193212.docdoc 6838da271d0d1b3e87290168d3717f5b627a6021ececd73b0408522c0f5f3aaaVirustotal results 37.29%Heodo
2020-10-29Dat_20201029_47870.docdoc 29069c8ef4147aa42ee5cc01d2dcc4f0a5dd6d8116c4122852845a08f2e5fea2Virustotal results 35.48%Heodo
2020-10-296753884 2020_10_29 053.docdoc 230145518bd1bee6679f4ebc0546c94c0e1b45c47e78117a0e523ada0cf39ac5Virustotal results 33.87%Heodo
2020-10-29mes-SRS5494.docdoc 9a82999019fd20e3e31fabe6fd23e85218b9c833d75b08c3ab428710b9de9ff3Virustotal results 33.33%Heodo
2020-10-29arc-20201029-BZ7043.docdoc 337de8e0e40177373bdf5f53078961535f04a362d6d512a15bd5c33ef6fa9572Virustotal results 33.87%Heodo
2020-10-29doc-20201029-779282.docdoc 754b3e1caf1ff6a8d35d59b3ba921a8ac224f6118520865d02140c0277724a73Virustotal results 28.81%Heodo
2020-10-29file-6197942.docdoc baa7a5c8cd03cdbad3f018274a9ce821b056f2d7bbb6bdbd6285485e3b56338eVirustotal results 26.98%Heodo
2020-10-29INF_B903.docdoc 5cbb14d1979b0259be5131e9d92da0ea63751d263e0db5d2e3ddde47a74771c8Virustotal results 25.40%Heodo
2020-10-29DAT_2020_10_29_QU08952.docdoc 697d945ff47046f421017a4ececab19494f8ec8b9d59abc54fd159fdaf1bfcafVirustotal results 25.40%Heodo
2020-10-29inf 20201029 310041.docdoc 1720669c203eb51744cdf03c545a98532f1eee40938d99e806fb7a45ca9c6d8en/aHeodo
2020-10-29dat_20201029_GBX919.docdoc c59b1b726a72aa7b4df2f72a8eb97bca6345ce1d1400b6cbb7896bd8bf41a27cVirustotal results 26.67%Heodo
2020-10-28LIST_2020_10_29_IZ919.docdoc 04b243a2efe01d1aa2571e0e152e721d4bced5a7f0f115c64b84ed77f2c27be8n/aHeodo
2020-10-2847664UW_20201029_292774.docdoc 97f0a674f47ff4d4c21cce81b3a4d50ac0ac5c76c3c14fdc55a266e9d2845236Virustotal results 24.19%Heodo
2020-10-28Arc.docdoc 79144d6d13b065f90df03aa72c81e9b96492fb861b5e5a46228133dd3994d35bVirustotal results 25.40%Heodo
2020-10-28Untitled-20201029-OM419982.docdoc a5371e1aeb4a9cd992cb7701ead18e8443fbb575c273b54e83507e7c1ac5d9aan/aHeodo
2020-10-28Rep 20201029 874570.docdoc 7b186e0ad6e521be2f711bf336ff752300505614522e0cd7b2865e6c3cffc611Virustotal results 23.81%Heodo
2020-10-28Arc-DAH918122.docdoc 6f0669385903d245dbc1e82d3a1789986d819bd5a754c3bcec91c29e9ad561d0n/a Heodo
2020-10-287425123 2020_10_29 022.docdoc 2373e849718b4f729d4cc542754b76cc7701b468389795a9e9cf7286135f6d17Virustotal results 23.81%Heodo
2020-10-28Arc-20201029-B45865.docdoc 63e7ee325c79ea137e6cf1af5f7b56ef6767d20edf1d67283a46f0ec1dac902dVirustotal results 23.81%Heodo
2020-10-28INF 2020_10_28 HQ896253.docdoc 85679073310e9e6b9f5e274084e661d4947f4c5ab7042d40b9a204ba09447799Virustotal results 23.81%Heodo
2020-10-28INF-2020_10_28.docdoc fbf8f5b6e01b55760479e9f84ca46ccff6e1921814aefdc54ce0e550435a2090Virustotal results 21.31%Heodo
2020-10-28arc 20201028.docdoc bd17ceae08c87f45c042d5893ecd4547b333d49f07e732df28e2000b4b52c46bVirustotal results 22.22%Heodo
2020-10-28Doc-20201028-GU106340.docdoc 5f83b96224f9de6bbc1a455afb18dc39b53857a4e609d1d1d1a46ea47f6e5b6aVirustotal results 15.87% Heodo
2020-10-28Mes-2020_10_28-CNZ9691.docdoc 3dff9d17d10d5e398a8c8f611cfa179ea09383058451b0ef1f602969f79b5fd3n/aHeodo
2020-10-28INF 2020_10_28 SII5750.docdoc 1982b6c4036286ba47a27de309abefb7b8e542dafc43448ef6437f504191143cVirustotal results 15.25%Heodo
2020-10-28List 20201028 26726.docdoc 184badac13294e2c26c9e1ed1e966fcfceba94777218b25dec1c4e1e19ef05e2n/aHeodo
2020-10-28dat_IRZ65433.docdoc 0df95b70e69d52ea4e8a54b239aa9f4cebad05bb3536cca32668c7a6bc7c0e26Virustotal results 16.13%Heodo
2020-10-28inf 2020_10_28 93959.docdoc e7685f0f198129a74f92f5da4d49f1dfbc7d8e726c2ad293428a757a0c2dda86n/aHeodo
2020-10-28566XAY 895.docdoc 2ce0b1b64893c2e1bc8708ef881ff4d10eecb5ca1599b25d67e7f20f9cf64eb8n/aHeodo
2020-10-28REP 20201028 7745.docdoc 0a2dc11d95176b9aaf5668ba60308fb823187e808fb7955b9483459e7dcb7dacVirustotal results 16.13%Heodo
2020-10-28File PG109.docdoc 6e65227ec6f8979158ed3addae68568e01a0bfcd2bb560b92f218e8088a7c673n/aHeodo
2020-10-28INF-2020_10_28-FRZ9016.docdoc d67bac7dbe75fbb08f68108c847dd12d7061acf4ffb725a8bb61e0fe86f9432bn/aHeodo
2020-10-28List_2020_10_28.docdoc 0a0f920896176c798ee972d9e8f0455f8d39552c3304ed33f5b5a6776db0b6efn/aHeodo
2020-10-28DAP644_20201028_22537.docdoc 20e74d670b10c22727bc37f9737fef25a0acfaff19fe44e4c0f59870f26be78dn/aHeodo
2020-10-28Untitled-E844.docdoc 7139612e14675b595b820312f185fd3df1c7379c4712724137d9a47607749e93n/aHeodo
2020-10-28REP_2020_10_28_867731.docdoc ae3d650ba24dd80404c0a514f6455bb2a56e61df533ef1704cab33e46f41b1cbn/aHeodo
2020-10-28Mes-2020_10_28-247807.docdoc 549b6cebe4a821e1019fba53aa24e7cb51005f71242739907087af25f66a6862n/aHeodo
2020-10-28Attachment_2134.docdoc ae14a8bfd6863ef8c39e36774089e581aaed45e5e6cf5af493f18e676c4e6bd4Virustotal results 34.92%Heodo
2020-10-28DAT.docdoc 78703ab7a422f6861a6e1d2af5d2553a692df56063e650ac60a70322b1550742n/aHeodo
2020-10-2898663019.docdoc 9cf19ea11b0cac6b228db169371fe9a85edda0500ba269f8b18884c87f904585n/aHeodo
2020-10-28inf_20201028_CNV671453.docdoc e2861831be4344cd8c0fe40b847eed9c317fd5d1349d8aef2da8580c95219ff7n/aHeodo
2020-10-28arc_798762.docdoc 7d34fa4b3159340dc6f389fd81167fb0340e0ff28f65e1e4fbe7ab9da3b7b257n/aHeodo
2020-10-28DAT_2020_10_28_YG276.docdoc d3d10de392c0d61043b5786332ff0e306072886898429cd0f8285e76ec019daen/a Heodo
2020-10-28REP.docdoc f440f9758dd61ac185752b024897daf3b1ae6ac97407cff1f71d36cc6bfffc3fn/aHeodo
2020-10-28REP 20201028 372814.docdoc 04909a18166b609c0d5997946e9b397d0528ce9625f78c578d8d704a0606bba8n/aHeodo
2020-10-28578444_20201028_OXU767818.docdoc d2dd7c69254e917eb9a4a1ea68e7fe9e8eb22650a9dc3d0e9ad9f12eb64db60cn/aHeodo
2020-10-28Untitled 20201028 TQC260.docdoc 224027a40fc8549fb827b603ca18c5b89e551337c825015aae4c381c26c06db9Virustotal results 27.45%Heodo
2020-10-28VS90943_2020_10_28_1760.docdoc ca14c889210c0fd94300e06ca84b485d3d06adde745ab559254deb5cfa2e859an/aHeodo
2020-10-28file_20201028_4979676.docdoc e0149996d56095e6d280019c91eed5f60a27662ccbe25de1397e115c0cca4c65n/aHeodo
2020-10-28Untitled_KNX49104.docdoc 0d1b1abb174a0d844bca3ed5d58ad573622e243d7e1fec3bf2bbfcf78d53ed61n/aHeodo
2020-10-287442KI_989.docdoc 9a1ce249e8e683a86ee1e1e3eb72b03a64498ac7f623bd0e41194e964d732d74n/aHeodo
2020-10-287269113_20201028_C943.docdoc a1e19706a93e53e657ae474f58a7e0e0d452d2f95a832d25464a5e7509624aa8n/aHeodo
2020-10-28Untitled-20201028-T425.docdoc 933899c854d4e9166cbfa37c763338c236faac01e87a8baba170ac0ee5f33a2dn/aHeodo
2020-10-28JA216_20201028_608.docdoc 487e0a9b22ce11dec5c86491870bc84438e44e35382527d1b52f657b5695d3bcn/aHeodo
2020-10-28doc AW720.docdoc 44bb11aa190e6709853da9eef79fabd0eeb621734d64202e6c134e8e8b9ac5dbVirustotal results 30.19%Heodo
2020-10-27dat OR43979.docdoc 9768f4ad74f231794339cb3b22a411e463959ef76116f148db611989ab353f84n/aHeodo
2020-10-27Inf_220.docdoc c651101c619e07bbec5cf5a52967126141ba3782bdf7c3af4b53903d30704096n/aHeodo
2020-10-27doc 9846.docdoc a1cb746a234a5724731ed895cea6034aec2e589532190034c5d1520f7b40759dVirustotal results 28.57%Heodo
2020-10-27INF-20201028.docdoc 5c883b5095d6cfcf09860df73cd8d8df18b1387fe489b9041602167fefac2c71n/aHeodo
2020-10-27MES 2020_10_27 UP898.docdoc 19edb720e222817dc696093f3000cbf44dc66691e3b3f096f395366f794c6ca2Virustotal results 20.75%Heodo
2020-10-27Dat.docdoc a31ef31cf5c955fc7cd24d4212ee54045a6c21fd7e95612a8630dd5e629144b4n/aHeodo
2020-10-27Attachment_2020_10_27_1297558.docdoc 138f306945c20e8dd813e43d036300dded2bdf97a71b4fc586989871a11a4fbdn/aHeodo
2020-10-27list 20201027.docdoc a7e1f9d64652a74cbca86328a7acfd3bb739d8528077ac42522f8e5e024273b3n/a Heodo
2020-10-27file-20201027-XZY6146.docdoc 882bcc061c75ffecf676b125f0a6b158e37c86cad7fe3de21013be35af4caf3en/aHeodo
2020-10-27REP 2020_10_27 E834402.docdoc 84350d794ab71f13e5b73fa0731a06fa097fd3c727040e023d946f348b66a73fn/aHeodo
2020-10-27Mes-KLF920171.docdoc 9a665625762701ef94a2ebac83e7afc5fe24eeb05095df8655a980ba20f75343Virustotal results 19.35%Heodo
2020-10-27LIST-2020_10_27.docdoc c760fe45f26d328ded7cc3fac92ee701e551cfc11a4c2b0cbde98423f6097dafn/aHeodo
2020-10-27Mes_E7434.docdoc 672df5031e725bfac0c97e002d436bd64cd9be2565a07608954b264221464464n/aHeodo
2020-10-27Dat 20201027 3254073.docdoc 86c0ac9f02673ffa7c091cc2fefd49bbd835c10feb6e9c3afe23bd6ef682d36an/aHeodo
2020-10-27Dat-2020_10_27-049.docdoc 789c0d57de38535643ee38b0e4fd94e4ff94baae07225e2d2f1e1ca9fc967ecbVirustotal results 33.33%Heodo
2020-10-27INF-01437.docdoc 06d0d9aa64d7b5c8ddda1388dbe3ffb081bf875ea2f961142dfe1dd3027e6e59n/aHeodo
2020-10-27Dat-20201027-R85618.docdoc 3474063e6f75dad6d13132bd3a1892c04b65b561906d8ddc8ccc78335b1b0ee5n/aHeodo
2020-10-27arc_20201027_69071.docdoc d72d739e8e5011b13120f38f398f775116032ad0712d602780ff9370cfb0ddc8n/aHeodo
2020-10-27Attachment 20201027 25021.docdoc f4cd872a1e57acff73ad28968e9eabb9892fba1d5e5387a82b914b5c92f6bce7n/aHeodo
2020-10-27Attachments 577067.docdoc 484388d782fd4a5477ed0fc44b40d2d5fd73d0ea7d3088d7c015d2b4ccc5ea93Virustotal results 33.33%Heodo
2020-10-27MES 2020_10_27 69584.docdoc 3ab1bdabc6e56fdd15c905349a1c94b8031c74f3f5c673389c247377748aa3a0Virustotal results 38.00%Heodo
2020-10-27doc 20201027 WQV275.docdoc 8cc9cc4828957cafc6dea6a8b41228beb8fbf09079daab0a9bdb2b7b7e1f1988n/a Heodo
2020-10-27Inf-VW12171.docdoc 022c542c4f534efca7d03792999a8b9d8f46101a543cea780bef369ea4bbd9fan/aHeodo
2020-10-27File 837.docdoc bc9872776628a1915e2e9c078e5a813f7a316084c695d314e34181c0e09d49fan/aHeodo