URLhaus Database

You are currently viewing the URLhaus database entry for http://berassociates.com/wp-admin/DOC/U2VuBXzZ8JpN6oo8SoD/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:755761
URL: http://berassociates.com/wp-admin/DOC/U2VuBXzZ8JpN6oo8SoD/
URL Status:Offline
Host: berassociates.com
Date added:2020-10-27 10:30:05 UTC
Last online:2020-10-28 17:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-10-27 10:32:04 UTC to netops{at}singlehop[dot]com)
Takedown time:1 day, 6 hours, 52 minutes Poor (down since 2020-10-28 17:24:38 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-10-28J49848.docdoc 1982b6c4036286ba47a27de309abefb7b8e542dafc43448ef6437f504191143cn/aHeodo
2020-10-2885376398 20201028 9706.docdoc 5889f2806952698235cfc4c29fcaec44f4f9bf6aab0dac87de568fc928e6665cn/aHeodo
2020-10-28MES-773448.docdoc 8af9a86eb9ab51cc0b8573be09e864402827cd0ca098c3a780627880963edb39n/aHeodo
2020-10-28dat-2020_10_28.docdoc e7685f0f198129a74f92f5da4d49f1dfbc7d8e726c2ad293428a757a0c2dda86n/aHeodo
2020-10-28rep 2020_10_28 35522.docdoc d0f4e7dc356c7d37666d84595bf2a5f6b16ad92b9858b4e921534269d460d1bdn/aHeodo
2020-10-28Doc_2020_10_28.docdoc d958b18460062a7c092fb01b823897ce1067784a05a9133211a740517411ea8cn/aHeodo
2020-10-28doc.docdoc fadb9f507214862924f94fe92c13282054a2522a4b0776d5ecd2fcb203c05a38n/aHeodo
2020-10-28inf_9526.docdoc 2d5220a30ebb6a737f6b0b5622f7fe68238d39bd2a66a6bca4591b96160c1ed4n/aHeodo
2020-10-28UNTITLED_20201028_R370792.docdoc a79ed88ce252564921e5aa6796d11daf79e6cb971c331787b0326bdbf108ff57n/aHeodo
2020-10-28rep-20201028-U063261.docdoc 1292b7cf88c4839ed76efaa7e49790dfa69397c9114ea9673d6bee68204adc02n/aHeodo
2020-10-28869S_2020_10_28_DJA035.docdoc 0108480ef1a0e359c99960286066e2b2f294e5ccc5634ada46ffa0efed4321b7Virustotal results 18.33%Heodo
2020-10-28file-2020_10_28-AD90301.docdoc 549b6cebe4a821e1019fba53aa24e7cb51005f71242739907087af25f66a6862n/aHeodo
2020-10-28Arc_2020_10_28_1991.docdoc ae14a8bfd6863ef8c39e36774089e581aaed45e5e6cf5af493f18e676c4e6bd4Virustotal results 34.92%Heodo
2020-10-28doc.docdoc 78703ab7a422f6861a6e1d2af5d2553a692df56063e650ac60a70322b1550742n/aHeodo
2020-10-28arc_060896.docdoc cce46e9e2d57327823f9114470df8550c4685dd3c3a5c39c6e637f67e108ef47n/aHeodo
2020-10-28List-20201028-KT2750.docdoc 834164f09524e1047ca4a6b52986daea07d0543b62142d49d6758deb6108a789n/aHeodo
2020-10-28list_JMT3981.docdoc 0302e1c09d05b4e53df9ec6f066569b8988af7dd1e75a8a05a834d552893e1d5Virustotal results 29.03%Heodo
2020-10-28File 20201028 8345.docdoc cde3f24e3a03e486fa9200cf8434dedf62fa5c6803d9c6cfaacc20feeb0a6956n/aHeodo
2020-10-28Mes 20201028 VFY80225.docdoc 0a5c124b976df79f06f8502dd41b406d6a78ea861e4c31c4a390af5910c334ecn/aHeodo
2020-10-28INF G131.docdoc 725479031a1841ff35c48819a6a922cfeddd8eeee44650e238f2ff0361c601ccn/aHeodo
2020-10-28File 2020_10_28.docdoc 22c4f12b7643b56e99dd18190667094ea565b47aad5f254cea4a49868202bf07n/aHeodo
2020-10-28doc-ZU66628.docdoc 41df63441f779c2dbcc1f298638d0ac777c90fa3015f56c6111917d8975d53c1n/a Heodo
2020-10-28arc 973.docdoc 1736f509165e604f7f58184b16d9aca99de74f3ddfe9e65f8c95f089b0722decn/aHeodo
2020-10-28MES-2020_10_28-RCA0244.docdoc 8af284158bfddc68be67a7c597b263d77ae61927f51f17c8018834417676453fn/aHeodo
2020-10-28REP 20201028.docdoc 53fffa1d2b04904727032f955d050fcb057ea2f6d67077c001bed40e68b5a74en/aHeodo
2020-10-28INF-6895805.docdoc ef4f0320bc9b1630b65794bd9002483b4befdb4cd786cc1e950fae7424d0d789n/aHeodo
2020-10-28List_2020_10_28_5598092.docdoc d9c33488bc2920aaf07247d086d4334a87dba1db83f260272efea3354cc54fffn/aHeodo
2020-10-28UNTITLED-9004753.docdoc ca14c889210c0fd94300e06ca84b485d3d06adde745ab559254deb5cfa2e859an/aHeodo
2020-10-2875908M-2020_10_28.docdoc 24ebcf996471396b752396e9fca71feaab4a6f384f7691b5932cf939f570beb1Virustotal results 41.94%Heodo
2020-10-28inf_20201028_RR607.docdoc bdfdd232b2595883bee70d5bc1310e4eda72350e0c92f7ad4ec6c7bd9a1e5761n/aHeodo
2020-10-28Mes 2020_10_28 Q017.docdoc 8c04391d0a311e35b7ab76044cd603cb29ce05a6c9f47f45a377b2fc6b057d25n/aHeodo
2020-10-28847_2020_10_28_XI4761.docdoc b7d97ac0c5f85d598f7d35cada41a79f6df1a2d59cac47a0cef13b36794f4d82n/aHeodo
2020-10-28list-2020_10_28-8870579.docdoc 0d1b1abb174a0d844bca3ed5d58ad573622e243d7e1fec3bf2bbfcf78d53ed61n/aHeodo
2020-10-28mes-2020_10_28-8106490.docdoc a67bf712a2e748a6b180aed40e4e07fbf99dc3f20bc8fd8fa3d8d52f48788838n/aHeodo
2020-10-28File_20201028_QL3438.docdoc 1a688e85920b95de77aa630e9ad2b7333a95b89ece9a2caddf3478b13c873961n/aHeodo
2020-10-28Mes-OW230657.docdoc 13578189ba67b1b728017c0e96a3708199a8c879f2be7531e35e6570b09f31ban/aHeodo
2020-10-28dat-20201028-994346.docdoc f0c1677fe438fd6ffe9e4d5236396062d106d01fabce19561b919795cbaf7f18n/aHeodo
2020-10-28REP 2020_10_28 959520.docdoc 52d21414a206f853f6469fd112297a132aa6ff3dcca6b0a710e9cf642ecc1ad7n/aHeodo
2020-10-28INF-20201028-JU730.docdoc 9ca8226ef71916dee3526b14cb6e112f6d9c12c2365d5bf4ef43eabfa3c844d3n/aHeodo
2020-10-28Attachment-2020_10_28.docdoc 6d31a92d5a682c250c92f5f41cbacd685697e662f5ced5145c76a0cc0044eb56n/aHeodo
2020-10-28arc 61798.docdoc 88a224c66bc34bf992821c58b6790906b8048d27fb20dd123ea5379ede510dacVirustotal results 31.48%Heodo
2020-10-28List_2020_10_28.docdoc f1ae5f1b0254e4e6517e7e89de3a1a57b7666e9f931daa590b757fb3fb105727n/aHeodo
2020-10-28Doc_2020_10_28.docdoc 7862369f401d84f41b94003a00d8fe6b36e51c435f35a8e996138a0f52fa1893Virustotal results 27.42%Heodo
2020-10-28Arc 32678.docdoc a1e19706a93e53e657ae474f58a7e0e0d452d2f95a832d25464a5e7509624aa8n/aHeodo
2020-10-28File-V14952.docdoc 933899c854d4e9166cbfa37c763338c236faac01e87a8baba170ac0ee5f33a2dn/aHeodo
2020-10-2825375423 2020_10_28 87730.docdoc 5bafcb869ad1c89b92e8d0cf06c05c51bbc54f713743a5e7e4638fd6153b5d03n/aHeodo
2020-10-28file_2020_10_28_DHB261.docdoc 44bb11aa190e6709853da9eef79fabd0eeb621734d64202e6c134e8e8b9ac5dbVirustotal results 30.19%Heodo
2020-10-28965_2020_10_28.docdoc 7e04c986b4db0e23baaf1d60b136a6c899833dc934d309596ea62bc4e460eb46n/aHeodo
2020-10-27File-2020_10_28-649672.docdoc 13dc41a09ac500a00ec0a4a9843017260672fdaaed428508c6307ff3341c3e95n/aHeodo
2020-10-27DAT 20201028.docdoc 26eead61c6edbde1e06d00ecf89571be284ba247df2081239f5bcb0632b4c1dfn/aHeodo
2020-10-27Mes-20201028-XG351.docdoc d80ff33e646826234e65956e93aaa92568ccb1bfcc3185f97032c6e68392109fVirustotal results 27.12%Heodo
2020-10-27Doc_20201028_Z6801.docdoc bad7a9f75fe1cf3849d271174881f6385280f49d40cc824bd882b8c0f1d68b51n/aHeodo
2020-10-27Mes-2020_10_28-339.docdoc fd2a04a6020ad46af1efe6a2d5de26fd35808ec873c72debbceab5d89ea8b94cVirustotal results 22.22%Heodo
2020-10-27inf-20201028-R184752.docdoc 3f2fcb39ab59404b406f3cf830473811a4686337ed3e3bee2701a96ce07e4e14n/aHeodo
2020-10-27LIST 635703.docdoc ef0f8adbe044b90fda85ccfcfb7ce57ee106f835c82e5ddf4ffd7a79b9a40200n/aHeodo
2020-10-27arc_20201028_CO34694.docdoc 8db742a5d40812d9f9324e4a00305210957fb14ef36e038895070b73c3fdb398n/aHeodo
2020-10-27Dat-20201028-IN622679.docdoc 4a85964172bb7b3971c47929b9bdb5e54b312ddcf539fa7036e5cf18db89e07en/aHeodo
2020-10-27file_2020_10_27_03303.docdoc a31ef31cf5c955fc7cd24d4212ee54045a6c21fd7e95612a8630dd5e629144b4n/aHeodo
2020-10-27list_2020_10_27_G510.docdoc c4478df05ea4d77b2886f04b1a0b8ab67fd66e0f90064c0fce17fdf1171aec22n/aHeodo
2020-10-27026Q 20201027 RC8432.docdoc f27078443916b33d73acafebf8fa87e79e02c00cfe801bedccc81cbfcc0ce5ffn/aHeodo
2020-10-27158349-72464.docdoc 52edea717fc9984acb356860d50f67fadbf8a2eba4d7bec924ce02213a042ed9Virustotal results 19.30%Heodo
2020-10-27LIST_20201027_AQ192.docdoc 84350d794ab71f13e5b73fa0731a06fa097fd3c727040e023d946f348b66a73fVirustotal results 22.22%Heodo
2020-10-27File 2020_10_27 287297.docdoc 22dbd6df08e41fde302a14a96c115f4b65e89f399d1edc1a14a6504df407bdaen/aHeodo
2020-10-27File 0767.docdoc 3d8169eb16fa0973f3703c7888f5cb1606d226f0bd32f262ee332385c5dc4470n/aHeodo
2020-10-27Dat_20201027.docdoc 672df5031e725bfac0c97e002d436bd64cd9be2565a07608954b264221464464Virustotal results 22.22%Heodo
2020-10-27Mes-20201027.docdoc 86c0ac9f02673ffa7c091cc2fefd49bbd835c10feb6e9c3afe23bd6ef682d36an/aHeodo
2020-10-27REP-S533.docdoc 6b8d6c13903e403b9335c3b3616d6cae062ba53dd2c386c44af6a50b069d57b1n/aHeodo
2020-10-275374-20201027-7363.docdoc cc2ba3f8ba300a39f4f61d38594c2166662401961dc8db1b57fa92ba4defee0en/aHeodo
2020-10-27File_ZY9554.docdoc 0733e953ba1f52bb87d8be9fa084223ad405b556d65ff73351ad83e6550c9517n/aHeodo
2020-10-27Attachment_20201027_2629.docdoc c7e578b275cae29568c0c3a7f31f1d7a6c9b1ef5b9e089876954d5df9dc492d5n/aHeodo
2020-10-27List_7718091.docdoc 9b51ad5b6cfd673dfd89e0f723d704e0db19467b986021e99668598aa180ad7fn/aHeodo
2020-10-27dat-137123.docdoc f4cd872a1e57acff73ad28968e9eabb9892fba1d5e5387a82b914b5c92f6bce7n/aHeodo
2020-10-270307JRF 20201027 E03944.docdoc d42ce060b40d98bfa8a3be4e0ae8f858cdda9054b2f8179b959b42e5da48aec3n/aHeodo
2020-10-27Attachment_2020_10_27_2448752.docdoc 63ba733a424e0e8faca60800df859696e15df38315049068bc30c559f9230b5bn/aHeodo
2020-10-27762250-S4198.docdoc d49b0e90fc3a7c0ab23a13938ec39f57656395a2311421dbf72093ef4f790c04n/aHeodo
2020-10-27INF.docdoc 7288d0d782e47ee06bc27a14c5ac13996e4ecd7a94fa0658a67a2f433b433f3dn/aHeodo
2020-10-27Doc 394830.docdoc b82f7014c652b33958bc0399733289c82672fea84e83ce250fea7328aa28377bn/aHeodo
2020-10-27Mes_CFJ9432.docdoc 53178d852c4dd09083ca2da7336fc4067a32dacbb529f76b05d4b127a287c01cn/aHeodo
2020-10-27dat.docdoc 771179cd9433568cd9fa5162c351f2f753d685b6645514e85e897c0f78fc8ca8n/aHeodo
2020-10-270098RD-2020_10_27-2905.docdoc d2ac9f3c4611c3c30c8a2bad8bee52f08ecf51e25b4a79774c50188c9b3f1defn/aHeodo
2020-10-27doc_20201027_151362.docdoc 8b75e4e9788ae77388f81d27eb72f2b8d2cde397b64574cf6286af017fea37aen/aHeodo
2020-10-272207_2020_10_27_WO252.docdoc c9b48a2eaa1fe1cac12fe4ff2fe7ae9be3436749ce7bc05129e96953bb7b3494Virustotal results 33.33%Heodo
2020-10-27list-2020_10_27-909.docdoc dcaf45ccbdbfbce15aa5336344a83cd971545a936fea7c15ac0bf49bf93a5286n/aHeodo
2020-10-27OF54053-2020_10_27-2235.docdoc ac2d682f7339ed4a56d468128194a5d4ec19b4e2277066bb429621f6dfe9a741n/aHeodo
2020-10-27Dat 20201027.docdoc f0ddf6595fb046d552802e33121ec9ce57fe2bce70a7d9fc1fc3b3c7433ed38bVirustotal results 33.33% Heodo
2020-10-27list 20201027 904107.docdoc 8cc9cc4828957cafc6dea6a8b41228beb8fbf09079daab0a9bdb2b7b7e1f1988n/a Heodo
2020-10-27LIST_20201027_54863.docdoc 569d02ef02eb74f77d7912980372d6711dfa30bfbcb6eaa487a8c370f64a1e25Virustotal results 30.65%Heodo