URLhaus Database

You are currently viewing the URLhaus database entry for https://www.afroozsazan.com/wp-includes/eTrac/SLxBwM92yED9GLIm5/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:756178
URL: https://www.afroozsazan.com/wp-includes/eTrac/SLxBwM92yED9GLIm5/
URL Status:Offline
Host: www.afroozsazan.com
Date added:2020-10-27 12:21:10 UTC
Last online:2020-10-27 20:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: WeNDoR
Abuse complaint sent (?): Yes (2020-10-27 12:22:28 UTC to abuse{at}hetzner[dot]com)
Takedown time:8 hours, 26 minutes Good (down since 2020-10-27 20:48:48 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-10-27Mes-928263.docdoc 138f306945c20e8dd813e43d036300dded2bdf97a71b4fc586989871a11a4fbdn/aHeodo
2020-10-27Rep_20201027_YJ72226.docdoc 65ca688afc9a4a3542b3f24aec0d15a23d4ff309adc0aec528c289ed1630fee2n/aHeodo
2020-10-27MES-2020_10_27.docdoc 52edea717fc9984acb356860d50f67fadbf8a2eba4d7bec924ce02213a042ed9n/aHeodo
2020-10-27dat_HKM749.docdoc cdc1427cf3a9f3846751e5ce98bbbf6ccf50da723831c6c5b6a976423d45a8a7n/aHeodo
2020-10-27GU61372_2020_10_27_LFY2925.docdoc 22dbd6df08e41fde302a14a96c115f4b65e89f399d1edc1a14a6504df407bdaen/aHeodo
2020-10-27Dat-075238.docdoc 13340c1f1c1a5c1c7b79416446aac284a50a0295df1097ba9aa5046ea25b4e0cn/aHeodo
2020-10-27INF_20201027_NCP321732.docdoc 95d6502baed7604d8057c1835f59629605748e13e17f51a8bb9a35dd55655feen/aHeodo
2020-10-27ARC 289.docdoc 86c0ac9f02673ffa7c091cc2fefd49bbd835c10feb6e9c3afe23bd6ef682d36an/aHeodo
2020-10-27Attachments_Q0831.docdoc 8a1b55c98e4946eec03ce1b525e3051f05f02a515b87b9c2b53888e52f8bb13an/a Heodo
2020-10-27Arc-2020_10_27-AU540700.docdoc cc2ba3f8ba300a39f4f61d38594c2166662401961dc8db1b57fa92ba4defee0en/aHeodo
2020-10-27935804_2020_10_27_SIW979.docdoc 06d0d9aa64d7b5c8ddda1388dbe3ffb081bf875ea2f961142dfe1dd3027e6e59n/aHeodo
2020-10-27571TZ 2020_10_27 334948.docdoc 4a6894fbfe3e963d774dabbe89a8bfddcfb7e2feea50050195178d73f3562336n/aHeodo
2020-10-27Arc QAN580806.docdoc d72d739e8e5011b13120f38f398f775116032ad0712d602780ff9370cfb0ddc8n/aHeodo
2020-10-27UNTITLED_2020_10_27_227.docdoc 8f9cc080f09d5612b9e1303538c5ed99565ab26d2512c3867e15ff353356d27an/aHeodo
2020-10-27File-20201027-KCX4233.docdoc cf46c634fc74ec5b9581b70faee4643e57cedc452341f1eb04e073af1fa42c47n/aHeodo
2020-10-27doc_2020_10_27.docdoc 76db981e79b1d69eb157f002b5c41736b4ccf58dec91a684e658f2e26dfe3677n/aHeodo
2020-10-27YCW9537 DOQ78049.docdoc 8ec2421fcede86da656d51271e5e5987a485c0ae19bbd7e385bf7029947da4dan/a Heodo
2020-10-27rep-2020_10_27-339457.docdoc 3a2b11cdee109e4d4be0909c51b07fa709838e0f4da50429b79bea4af3f30b6en/aHeodo
2020-10-27Inf-20201027-916.docdoc b82f7014c652b33958bc0399733289c82672fea84e83ce250fea7328aa28377bn/aHeodo
2020-10-27Doc 20201027 789.docdoc 771748c06f8fb85d2ff96fe6b210eafd43e3c84aa1cb971e7aa1db6e5b272439n/a Heodo
2020-10-27K0476_RJU899.docdoc 8c72d9b7308f430cf08a9a7355d3a006b9ac6e9c2b62c444fad04e2f9c4d95b8n/aHeodo
2020-10-27INF-FE794.docdoc d2ac9f3c4611c3c30c8a2bad8bee52f08ecf51e25b4a79774c50188c9b3f1defn/aHeodo
2020-10-27Mes-20201027-52818.docdoc 52cedbd473146069dfb53c24de3f7f8c373ba699a3031c1b85afa1416abef22fn/aHeodo
2020-10-27UNTITLED 20201027 1651950.docdoc e6c8a1d2eba8e4d282d75e299163844b8e5fa665800b8b09f1c500f108447fd8n/aHeodo
2020-10-27LIST_270.docdoc 33ea1c974e800552ee4937e289c1c363b2c6156838dddf872f58a6aa22bc0e82n/aHeodo