URLhaus Database

You are currently viewing the URLhaus database entry for http://www.search.savenzer.in/img/Document/zEvBp9eCTvKysQeIhfZ/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:756942
URL: http://www.search.savenzer.in/img/Document/zEvBp9eCTvKysQeIhfZ/
URL Status:Offline
Host: www.search.savenzer.in
Date added:2020-10-27 15:39:04 UTC
Last online:2020-11-01 17:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-10-27 15:40:04 UTC to eig-abuse{at}endurance[dot]com)
Takedown time:5 days, 1 hours, 57 minutes Bad (down since 2020-11-01 17:37:14 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-10-29inf 2020_10_29 HF75021.docdoc 46d9e560db1a1d687d58d92ded82cd4ddc77a154a7c66bcc99d628f7386c97aeVirustotal results 20.31%Heodo
2020-10-29KK953.docdoc 9b07284911933292adaa09d5563e521c45cb793bb101bda59ff70675ba205632n/aHeodo
2020-10-29mes_2020_10_29_QJN573808.docdoc ef4c809d5fff1ade631c5c6458f00c553ce632200146b30843dce3b001958e6dVirustotal results 26.23%Heodo
2020-10-29Dat_20201029_RBP636397.docdoc f8151488522088cd446eab9728c3cb5d8b4d83f45d167799795d83eb7f4fbac7Virustotal results 27.42%Heodo
2020-10-29Rep-20201029-35478.docdoc 3400d3365c00f74da9c7e268a7467a4fb6df77e14095a274358b6646f084d1bfVirustotal results 25.00%Heodo
2020-10-29ARC 20201029 6543621.docdoc c4576ef3b6d4f5bc1728a25cfce9f3574e9fa60a5f6aa8874a625255ae74deecVirustotal results 26.67%Heodo
2020-10-29641K-20201029.docdoc 7aaa9a98edfbcbe126159992ba06f8c91ec5560f77e2d0052dd18df4f5bf843eVirustotal results 22.58%Heodo
2020-10-29mes_20201029_G99523.docdoc e13e1b5db38b6d366f7ab841db3b6a383d28d78df1fbcdba3754178064563746Virustotal results 20.31%Heodo
2020-10-29Attachment-735229.docdoc 7290f2718e2ac5b4b432725bbc6fcb2c21cf548fd7df795451ab3553afa66ca4Virustotal results 19.35%Heodo
2020-10-29UNTITLED.docdoc 40b5cfb07bfe07ef46227908b2100c029a89510b2163987903208888a7cb2b8cVirustotal results 18.75%Heodo
2020-10-29N732 20201029 7480630.docdoc 1603a595e89b60743bbe37ee91c749eaf567aa1396de9343d48330c513fe9736Virustotal results 17.19%Heodo
2020-10-29Dat-20201029-AS301701.docdoc 51e1904ea1245023e8308cae00addfe2bea2ad7b5946339b0072b1a445d2b6a5Virustotal results 17.19%Heodo
2020-10-29ARC 2020_10_29 JXN102.docdoc 118aebbf6a206f4d7438b0cce8282fd2e0b725fa1b2be9ce8c75d819606ff917Virustotal results 17.74%Heodo
2020-10-29rep.docdoc 14b06f918aa16432976899c05e5f1981b618348b9bdd66d5b05ad1aeff31d617Virustotal results 17.74%Heodo
2020-10-29ARC_2020_10_29_434.docdoc 73b50fadf718b2d073b51af2fc11b8a76e2ae9424ecfd37e0ae1518f6edf78d2Virustotal results 16.95%Heodo
2020-10-2990719238 2020_10_29 337.docdoc a0d8f88e55cc54083128e7f43494f76871f9f0483a97f1e68887bf224622d62cVirustotal results 17.46%Heodo
2020-10-29ARC 20201029 TP4875.docdoc fe2ba175ef90b019459e5cb17088fa708dea90a40fbe39c65a9d2660cf620611Virustotal results 16.13%Heodo
2020-10-29ARC 20201029 WFM0721.docdoc cc38bf1d80e4fb7d0e179a8f8fd7e8a2ac1275383f5e22be59bfa55b596de491n/aHeodo
2020-10-29Inf_20201029.docdoc 497ab48b3d0981762a9f50a4cbfb2de470181023650b4c3f705f7b0faad88aa9n/aHeodo
2020-10-29Mes_32455.docdoc 482e01258fe56544a34ace754fe03cbfa10a36d59d118b80c6ade1f29af308b7Virustotal results 15.87%Heodo
2020-10-29Arc-IY290.docdoc 8b60926cf9d5804b5b4c7900d12d19836729d506ea04601e39c1d72ef37eb703Virustotal results 15.87%Heodo
2020-10-29rep-2020_10_29-52220.docdoc 6f6ac4df5dc7b2becdee67c23b92c4f95ab01ac73b08db24c2b4b811a9cbe55cVirustotal results 38.10%Heodo
2020-10-29inf-20201029-701956.docdoc 5b3616526c1b12e0827b2566e2d6db0df97c7629c9e1dc92efc5b66e348c1b77n/aHeodo
2020-10-29list-2020_10_29-956.docdoc 45eaeab6349d63baf59ca14775c22f39885e6631b4d2f42722dfcd4ea44e1d76Virustotal results 38.71%Heodo
2020-10-29arc 74793.docdoc bb9b42355cd9c3b2448099c344e24ceab8f54de4c5e7f3e68ee997dc8e1bc678Virustotal results 38.10%Heodo
2020-10-29ARC.docdoc e197171c4d9b129dce5753855173cdd09a6318e1c30f4e80a4a902183a9b4321n/aHeodo
2020-10-29file 20201029 VWG331401.docdoc 29069c8ef4147aa42ee5cc01d2dcc4f0a5dd6d8116c4122852845a08f2e5fea2Virustotal results 35.48%Heodo
2020-10-28INF 20201029 IBX828.docdoc 6f0669385903d245dbc1e82d3a1789986d819bd5a754c3bcec91c29e9ad561d0Virustotal results 27.87% Heodo
2020-10-28LIST-2020_10_29-Y09414.docdoc 2373e849718b4f729d4cc542754b76cc7701b468389795a9e9cf7286135f6d17Virustotal results 23.81%Heodo
2020-10-28Rep 20201029.docdoc dfb997f9fdd6bce4a529d774cdc304bea58ee316f9f55fc2bc1606cd7ef4784fn/aHeodo
2020-10-28list-20201028-EJ049669.docdoc 2b74cc10b9d1104ffbb022bd3e5002deee804377152c38c405b55169104d5de3n/aHeodo
2020-10-28list_20201028_9550689.docdoc 4dd9ccbc69cc0fb1602f98fdca26e4640438a65c18e5810ffdc62cba2a636879Virustotal results 21.31% Heodo
2020-10-28FILE-20201028-LU3689.docdoc d2d159ebded0bf1265e6d5504c604640a052723ba24cd4893266b03659b569c1n/aHeodo
2020-10-28inf 2020_10_28 4561.docdoc 9e29ec412872484ab6b0a14d625d6bc7ff0f5205ee410912e6cd2abd82cf4b6cn/aHeodo
2020-10-28UNTITLED-2020_10_28-4902.docdoc 1292b7cf88c4839ed76efaa7e49790dfa69397c9114ea9673d6bee68204adc02Virustotal results 18.03%Heodo
2020-10-28709900_2020_10_28_JL5999.docdoc 201b12b414a3510541e84f4b6e1933588b01d83b8c6bc542c3e24db3a5fc2fa6n/aHeodo
2020-10-28Arc 20201028 B489.docdoc 6b4fb14750d0e1e1c3df56c0f68cb7fc5a6948fe55922a91b25268df8d3d19fbn/aHeodo
2020-10-28list 20201028 TB7786.docdoc 0944938a639d744e536297d618052d16d6640413e0b5a8e699eeffead71dfa10n/aHeodo
2020-10-28DAT-20201028-946.docdoc 78703ab7a422f6861a6e1d2af5d2553a692df56063e650ac60a70322b1550742n/aHeodo
2020-10-28arc-20201028-0797.docdoc b1969422efb7d375945e75f99075688228bbce9eaf7b3bb298b1832ea9f7a79bn/aHeodo
2020-10-28Arc_20201028_0117.docdoc be5b883d7b18e6cfb3489cf9082db03bcf41dc43e18440a0bc87f6a00fbdddfcn/aHeodo
2020-10-28DAT.docdoc 7d34fa4b3159340dc6f389fd81167fb0340e0ff28f65e1e4fbe7ab9da3b7b257n/aHeodo
2020-10-28dat_20201028.docdoc c3308829a284660d312505ca8f8cfea5a9f7453b63e7cbd0fd6fb615451eb2dcn/aHeodo
2020-10-28mes_20201028.docdoc 2e7a2fb86faffba53e36aaf0e0a1a3b6c9522748d439679d44c7e4adf06fba2bn/aHeodo
2020-10-28arc-UCV2736.docdoc d0407229837e16300869db2286f98ba2f503d302a76aa7f006e16190accc9115n/aHeodo
2020-10-28list-2020_10_28.docdoc 22c4f12b7643b56e99dd18190667094ea565b47aad5f254cea4a49868202bf07n/aHeodo
2020-10-28File_8186.docdoc 41df63441f779c2dbcc1f298638d0ac777c90fa3015f56c6111917d8975d53c1n/a Heodo
2020-10-28Mes-7385156.docdoc 5ba6a0db5fe221f32f4a9cd85cf69ab066cc4f6186d6e93b5669571a32a35d7an/aHeodo
2020-10-28Mes QJY6768.docdoc cfa7b0b510a2266be87eafb4820fd7c2168406cd0088d49bb69953c15c4c29den/aHeodo
2020-10-28SQK681_2020_10_28_JG379488.docdoc 0ba8722ac90d42b15c805f5c313354077a50f4ec57e1fbb5fcf6600c690b96efn/aHeodo
2020-10-28arc-20201028-084.docdoc ef4f0320bc9b1630b65794bd9002483b4befdb4cd786cc1e950fae7424d0d789n/aHeodo
2020-10-28Mes-2020_10_28-RIF431.docdoc e6634dfb115145a532b355b726aba5759dffd436d25c324d31557d1739bd6edcn/aHeodo
2020-10-28DAT_2020_10_28_FX76240.docdoc 36cbe71caa57540e30add2abd59a02d864c7e25a3a3cb8d288bf28f084bbbdeen/aHeodo
2020-10-28DAT-EB60058.docdoc 24ebcf996471396b752396e9fca71feaab4a6f384f7691b5932cf939f570beb1Virustotal results 41.94%Heodo
2020-10-28Rep_5638.docdoc cdba75792bcf44a350ab83ecd05679196648d93ea60f426ff3e28d4239bf1826n/aHeodo
2020-10-28Attachment-2020_10_28.docdoc 0b56d0c16488f468ecee2ca5cd49ad5641fc26dab54e1e9103e23d8602c51d90n/aHeodo
2020-10-28FILE_2020_10_28_VOQ636907.docdoc 6702852d6449cc2549b7987cc2fa0583a15fa2f831dc77cf8c8d428605912203n/aHeodo
2020-10-28FILE K12367.docdoc f3f544d1ebc8663d6d4d375f2fd7e749d0b34bfb3aeca33e3ce7c598f5748f3aVirustotal results 38.33%Heodo
2020-10-28REP_2020_10_28_98769.docdoc 58be97521b2bf7d1e21910c071a6871cbc6cfa32d57a5b1f6e6a872cfbac2f04n/aHeodo
2020-10-2810599084-S9789.docdoc 64cca5b412d07f17478431d16e387f38db07bed63b22f8e625c7168872cb9f78n/aHeodo
2020-10-28List_2020_10_28_P825456.docdoc 82b14aaf54efd2412c88df5b304fd6653cb8be0233060953772fe068c64e25aan/aHeodo
2020-10-28MES 2020_10_28.docdoc c09da99f44d060cc07412d7cd8f81d184f0530fe7a5b2e0e4e32e5e1be74fb5dn/aHeodo
2020-10-28Attachment-644046.docdoc 52d21414a206f853f6469fd112297a132aa6ff3dcca6b0a710e9cf642ecc1ad7n/aHeodo
2020-10-28dat L058.docdoc e319da870bd1d43344153ca31e8af91a4dbb0044cc3cbd2638189c655daa3e3an/aHeodo
2020-10-28089258-2020_10_28-240409.docdoc 49a9e653ecfad6200a5b9bfc90ca6a9c749b95aeb2fbe0ec38d2842b1de797a5Virustotal results 31.15%Heodo
2020-10-28rep-2020_10_28-1605461.docdoc df9332b5df7d249baa672ecc8ba2c26f5bcd43c25319c9ad09028aa389b5c31an/aHeodo
2020-10-28Dat 20201028 3168054.docdoc f1ae5f1b0254e4e6517e7e89de3a1a57b7666e9f931daa590b757fb3fb105727n/aHeodo
2020-10-28LIST-2020_10_28-708205.docdoc 7aa313a83da9a3e269370eb18a77eef94c65defec857e1f0bc9ba9cdc588c5c3Virustotal results 27.42%Heodo
2020-10-28Attachment_BI3823.docdoc bed5fa9f5076e8d4ac1560db74c286203b27441c28399bdae949b4f0155e21c8n/aHeodo
2020-10-28LIST_20201028_OG3993.docdoc 933899c854d4e9166cbfa37c763338c236faac01e87a8baba170ac0ee5f33a2dn/aHeodo
2020-10-28List-20201028-RT078803.docdoc 3a0c91d1af39d69f3f8da8e51e87d2e7e9f161385011a794b8b14db045ae3a97Virustotal results 26.98%Heodo
2020-10-28List-3193.docdoc 44bb11aa190e6709853da9eef79fabd0eeb621734d64202e6c134e8e8b9ac5dbn/aHeodo
2020-10-27MES_4976.docdoc 9768f4ad74f231794339cb3b22a411e463959ef76116f148db611989ab353f84n/aHeodo
2020-10-27FILE-X46514.docdoc 50e88bc6d83377ced68b131f8302b2a6230dab484f955b728584499d227ef75aVirustotal results 26.98%Heodo
2020-10-27REP_2020_10_28.docdoc c651101c619e07bbec5cf5a52967126141ba3782bdf7c3af4b53903d30704096n/aHeodo
2020-10-27Arc 20201028 BB382.docdoc 327e8500e75af53d90c9bf5cdafed973741b6820d916ea26a41e4bfcbe2b3e43n/aHeodo
2020-10-27arc 2020_10_28 7185.docdoc a97d0d9b4dc3721d627ef5df398f56c03281aacd47b15299f409a1f2a3c70fb1Virustotal results 28.30%Heodo
2020-10-27REP-0661276.docdoc bd181c855c937528fa710577c5debb5cb57967627423bb8b2c973139ff15042fn/aHeodo
2020-10-27Arc_2020_10_28_03057.docdoc aeccec42934a9750b091d5e65045ea9666b71067261ed4c53919afaf00ae7cdaVirustotal results 19.35%Heodo
2020-10-27Doc 2020_10_28 HRN686584.docdoc 9ed1cfc4096842be8b0aa8b650c02d5fc83fab11b27a2663e3192c7f89ae1e2cn/aHeodo
2020-10-27Untitled_20201028_QH1615.docdoc e7201b447e13cc180fda97543f1ef3e2216108b7178d98cf9dda32056d34378bn/aHeodo
2020-10-27arc E1320.docdoc c4478df05ea4d77b2886f04b1a0b8ab67fd66e0f90064c0fce17fdf1171aec22Virustotal results 18.33%Heodo
2020-10-27Inf-20201027.docdoc 65ca688afc9a4a3542b3f24aec0d15a23d4ff309adc0aec528c289ed1630fee2n/aHeodo
2020-10-27Inf 2020_10_27 003444.docdoc 52edea717fc9984acb356860d50f67fadbf8a2eba4d7bec924ce02213a042ed9n/aHeodo
2020-10-27Untitled-2020_10_27-JME286.docdoc 486838cbf31e36e048d22c4684c571196e1410811269ebbd7f7f33c640bd1838n/a Heodo
2020-10-27ZG74544_07934.docdoc cdc1427cf3a9f3846751e5ce98bbbf6ccf50da723831c6c5b6a976423d45a8a7n/aHeodo
2020-10-27mes 20201027 S72821.docdoc 4404fac35c28f7aff909e081a460c93972a6b1a174906fd4e9cd7fe20cbf5dfan/aHeodo
2020-10-27doc 20201027 PX71105.docdoc 95d6502baed7604d8057c1835f59629605748e13e17f51a8bb9a35dd55655feen/aHeodo
2020-10-27REP_2020_10_27_DQ395160.docdoc f8f047504577050366a1b44e5ba124fe511fa03a25a2232e94b2c86c82abe7c9n/aHeodo
2020-10-27Arc_N045.docdoc 789c0d57de38535643ee38b0e4fd94e4ff94baae07225e2d2f1e1ca9fc967ecbVirustotal results 33.33%Heodo
2020-10-27rep_9796969.docdoc 9addd2e4077d5a7c24bccc8a9108404f079a61f851615ab2e65deeeece42e424Virustotal results 34.43%Heodo
2020-10-27inf-20201027-27574.docdoc de9ed45fc90ae166716a1703044069bea57d72376086f43b0711dd7b35ffa18aVirustotal results 34.43%Heodo
2020-10-27Rep 20201027.docdoc 41fb558dbc7e100a8f612047f4942171b1daab30b7ebd7ef071b3a99d87df5fan/aHeodo
2020-10-27FILE_20201027_030.docdoc 56ea3d5db4eb0c842f6ffd51d225f3b420ba1187a6b8f7bc15bf333953b750e0n/aHeodo
2020-10-27mes-PSK6818.docdoc 541f859ac32cad287b78d2c974c701bfdc423e364b1887d596e0a65b33de30a5n/aHeodo
2020-10-27ARC-2020_10_27.docdoc e0cdf96812571b284a3020fa25032cb1e55574bc3903c7d56f21226daf864d95n/aHeodo