URLhaus Database

You are currently viewing the URLhaus database entry for http://www.szzlwx.cn/wp-admin/6ko9QPLwZQKQ7GCQIDCgxbrOvJAzzXSnF97Cto/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:757055
URL: http://www.szzlwx.cn/wp-admin/6ko9QPLwZQKQ7GCQIDCgxbrOvJAzzXSnF97Cto/
URL Status:Offline
Host: www.szzlwx.cn
Date added:2020-10-27 16:14:23 UTC
Last online:2020-11-22 12:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-10-27 16:16:09 UTC to anti-spam{at}ns[dot]chinanet[dot]cn[dot]net)
Takedown time:25 days, 20 hours, 43 minutes Bad (down since 2020-11-22 12:59:53 UTC)
Tags:doc emotet link epoch2 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-10-29Untitled_DPTJIJGL.docdoc 0cacb466a5cd54765f2b551a75b8b0880cd991d16fd662402d00efc578060da7Virustotal results 20.31%Heodo
2020-10-29DOC_6673673024720857773.docdoc 3a1dd7ec119b96ea68facb223082a398ff4c038e58e7d166c80d7a7d4a3758abVirustotal results 20.97%Heodo
2020-10-29B4DR9NSK3UNW4.docdoc c3c4c3d1a892c0244bc5d4911ad7533990556a3ed4a4561eaaf58379a82b3295Virustotal results 20.31%Heodo
2020-10-29Attachment_0345117778933003280003500.docdoc 4b5407d72985ea26f81abd0c5e3d3d309cdaea79e724b4678d5dc0c151280da1Virustotal results 42.86%Heodo
2020-10-29P_13050934.docdoc a68e38ba80539aaa99e4624f37df31a53410de47b3a76df0fbced21744a74d0bVirustotal results 40.32%Heodo
2020-10-29dat_A4K2CBE5RTHP8.docdoc 6cff316da0b26621e5b1fc3d5a85c6931a68a90fde20acf702195a175fb4ce44Virustotal results 41.27%Heodo
2020-10-29INF_TLD_100120_FUF_102920.docdoc 203c3fd643e932d50df0ccb5aa112bf49bbf44dd16e722b4bdc67551bf3fb133Virustotal results 41.27%Heodo
2020-10-29LIST_PO_10292020EX.docdoc 316d4d608dd006d9abc0d3530dd84b38bf4b22bec80a8f5821f795c9b52f2cadVirustotal results 43.55%Heodo
2020-10-29file_QQ5499612319BO.docdoc 8d2d6adef59a01ef18694e5a3d506ce951137f27e28405c64bb16fbb915266d2Virustotal results 41.27%Heodo
2020-10-29ARC_PO_10292020EX.docdoc 4a64cdcef15cb3314d81486a5c6c1fc590e6579da756365b73c08c8adae77b95n/aHeodo
2020-10-29LIST_PO_10292020EX.docdoc 1baeed811a902b926b7e18dca28f8eb0f73a98a4b06b396119ac5532f0a6d9edVirustotal results 38.10%Heodo
2020-10-29Doc_MEF_100120_HYM_102920.docdoc d82100bdd4168d98cf565f1b0d002d3c2c480cc6e350b09dd8484507384aef75Virustotal results 38.10%Heodo
2020-10-29Doc_BDE_100120_STG_102920.docdoc 1053508dba9607d8d25a553d3059249c8ff3fc0f143ea47103c1842a20098c2cVirustotal results 38.10%Heodo
2020-10-29inf_NT1928174779XK.docdoc 2bdfb721e168f6ffb5c4608463d3426b3637d3e4af4dc8716ac401e7ab3f4efbVirustotal results 38.10%Heodo
2020-10-29arc_HQH_100120_KYW_102920.docdoc f54166916a8e40e0d024df928029c9f35e013fb4b7a39eeb0554e8dc2820dc9cVirustotal results 40.74%Heodo
2020-10-29Mes_SIV_100120_GTJ_102920.docdoc 33922102764c4b2609240638de815d4e2ebbc1334d9cf6b1b9609c89bb8a9c0aVirustotal results 34.92%Heodo
2020-10-29list_71292533.docdoc 17d6d17702d158eda616b2096600e47fe0808914ae353ec5009763a5de5fffe7Virustotal results 36.51%Heodo
2020-10-28Untitled_JIN_100120_NMI_102920.docdoc 2a7fa7333c9651955476107db7c4fabaa333b34c5c6938bfad143ae443d94dd7Virustotal results 25.81%Heodo
2020-10-28Dat_04654860.docdoc 558f9ea460d8f9e9babcc477c01c40ba377d80607e6dec6640f78b0f12794bd1n/aHeodo
2020-10-28ZRRH9Y5Q8H46UO75.docdoc fc6ba0089f3355775a62f986bcdebe3bf7d58d1934d524e952f9279bb82cce68Virustotal results 26.98%Heodo
2020-10-28File_TRZ_100120_VWF_102820.docdoc eb056d51f99a6aeefbd8db271b24784e988b456f939812f40b9b6108a4805941Virustotal results 22.58%Heodo
2020-10-28Doc_XQ2897747331JU.docdoc a9003ab0c42daf42d53d1661cab1ee2ac09b3e58da393f79d593736cc30d6aafVirustotal results 24.19%Heodo
2020-10-28UNTITLED_OFB_100120_UGR_102820.docdoc 7384af9684329dd3916fa070ae356428bfb6f43d3ca6aa725f92d696dea83f41n/aHeodo
2020-10-28Arc_PO_10282020EX.docdoc aa4fa922d7e80e83494ebc5639c0549754860e3de9ffd6b8f4f455a8ef6f8a2fVirustotal results 19.35%Heodo
2020-10-28mes_T9LQEYJ0AOMMCX.docdoc ad112b9ed4b1078a7142b24121c402ec49a036e33bf0e514f8bdc5b720c216deVirustotal results 17.74%Heodo
2020-10-28List_PO_10282020EX.docdoc 87591b36ad962f6009043a5af2f6ab3d515e7fd18b199f2da448d2eeabe8e83cVirustotal results 17.46%Heodo
2020-10-28Mes_KTJ_100120_JQT_102820.docdoc 72bb45f25da9afa46d5e326089675c0a79d3ffe30eade356cd8114e74b2e58e9Virustotal results 17.46%Heodo
2020-10-28Untitled_RE160CODGW4VMQXW.docdoc 78e751cac2d36740d34f5137f239e1966d34a62e63cb14bf6d6fb1ad7fe5deecVirustotal results 17.74%Heodo
2020-10-28RBUW_GZL_100120_NOW_102820.docdoc 6c0cb9fa14216686237503039df79f6ee1a2766d5878c2e3ab77c9ace4204c11Virustotal results 16.13%Heodo
2020-10-28Rep_8N496ZD7KXGXCPI.docdoc 6db32dbb0eafc0f691a50a4632adf82b9e0206663e1b82259542e8eecdfae00aVirustotal results 17.74%Heodo
2020-10-28Mes_MWS_100120_EGD_102820.docdoc 8964a2fc0ce0fce0521fe84f28938ca5c30adb42bfd9ab75b4ef0509786410a2Virustotal results 17.46%Heodo
2020-10-28LIST_CD8490868878PX.docdoc 1d9d2d513d2906aa7b8400819aece2cd5e80976226792618b60a507a2daa906bn/aHeodo
2020-10-28inf_PO_10282020EX.docdoc abb10d6a4ffa25a8f41ba0adf71c4afb7cb81cc2f6e0f603ca29da9ba9dbcc95Virustotal results 22.03%Heodo
2020-10-28Attachment_27272837408906128.docdoc dac1189124e8ab688ce2381053958114e981ce05558b088fdb5ee651e107ecf3Virustotal results 22.58%Heodo
2020-10-28LIST_22090467.docdoc e3f985d78f34ecba84d0385e8f3eb538aef89ae24be739e98166ce3c3422b236Virustotal results 19.35%Heodo
2020-10-28LIST_PO_10282020EX.docdoc 558c61e9709e06aa045d7ba7933b35b9fb9c125734e3c4e8955a573a31cba52eVirustotal results 16.39%Heodo
2020-10-28Attachment_2854455168392294517362771.docdoc e9fe736c7aebf19a2dd114a50c120a97eb0e9d4763a5167325791cb703f37d93Virustotal results 17.74%Heodo
2020-10-28B_S7BPIMM38PT3XO.docdoc 3d35425c0243bcacb09bd4a67640d70e492da4f0a81abc46dc0af3d6bb4c2818n/aHeodo
2020-10-28Arc_OCY_100120_KEJ_102820.docdoc 7c5cba3f361edbd305005728464aa36e44d98db05cc52860a979780b6036fac6n/aHeodo
2020-10-28FILE_UVM_100120_PFJ_102820.docdoc 4c8c238793080292318a1698f8e3bb506d63d0e1335171fb6ba9ce1369c5daeeVirustotal results 17.46%Heodo
2020-10-28TO_GUE_100120_NUN_102820.docdoc 320e1d251976122a8a99eb8cea6215aff119aaa931d99ff58c30e220a062044fn/aHeodo
2020-10-28DOC_XOV_100120_OTG_102820.docdoc cb10354a6aff051fe7ae1c2cfb38b40e5ed1c8fd1a4c4b1a35724efed4885995Virustotal results 17.46%Heodo
2020-10-28MES_N77752NEW9T.docdoc f557390768f97bbb354c11917ec9e1ae3447832fbc09b34625656d8cb3db0931Virustotal results 14.75%Heodo
2020-10-28Dat_AM8319192476YM.docdoc e84f10ffcf5fd10005895d655f0d56f42e4a2ca26671d6da455d742fd10a76e7Virustotal results 26.67%Heodo
2020-10-28List_SI0812678384HZ.docdoc 2ed9663048bfe1c969ee302588f17bbee321277d16204ebc6fcc3a626d03addbn/aHeodo
2020-10-28Untitled_HM6870937376KW.docdoc a2b3de3e6d67d8b984e20da13e2338fb10bb97088378f08537ed93228f6850e1Virustotal results 28.57%Heodo
2020-10-28FYO_100120_OHI_102820.docdoc 971349194e2895c67d792f09a40990e6754e2ce4fa00b738c17c34cbb88cc6e2n/aHeodo
2020-10-28doc_LA5MYG49FQEPUMA.docdoc 0fdb302c3db79d7ed89244d7adf4c56d5cc9e4643c3e5bac39c3e82cff3834e7n/aHeodo
2020-10-28DOC_580298100493227960668.docdoc 783e3178de387969ad58cadd83de2b88c6cffa406063d2f66e5ee8b67db11b4aVirustotal results 32.08%Heodo
2020-10-28Inf_KDB_100120_YMX_102820.docdoc 5ba908ce4fc8c334b9efded7c651c7d17c6191e885fae127cd1be8d98566b5a1Virustotal results 28.57%Heodo
2020-10-28arc_OR23NA1QJPTLGL.docdoc f10a2b9719d2cd6b88deefff1b2c61c214527041c7097ccd16d96c80c577f58cVirustotal results 28.57%Heodo
2020-10-28Mes_JA8529828052SA.docdoc 43f4b38dc2240818e174dc1351b7e7237a95f782d2f39578ed29bae1a18cf373Virustotal results 32.08%Heodo
2020-10-28Doc_75180678.docdoc a67871eaa10790dfc0459026fe390127f88e0e7ef794ca29ca3ef501bf0bbc98Virustotal results 29.03%Heodo
2020-10-28Untitled_PO_10282020EX.docdoc 499af6e46284239845d6e547823d8f197a8c92a084b2aecf1123e44d44a764e6n/aHeodo
2020-10-28rep_CJH_100120_IKQ_102820.docdoc 68cb170125b6d8fe85e4573f3324f27ca595e8a2a2f0d624742c817590b42765Virustotal results 29.51%Heodo
2020-10-28PO_10282020EX.docdoc 923249c0d4dcc2113d70d2a97c0f28d9667690185c9e5a0d9161408d5277acf5Virustotal results 38.46%Heodo
2020-10-28INF_NCZ1MEA0Z6TG.docdoc 101fcc93c33f4a28332bd09291db3501b3d13ef433719cbf7750e9f6a73b88f2n/aHeodo
2020-10-28UNTITLED_SV1405487694OX.docdoc f605f4309f21e3797ba0f7b9440dbd45fb913a363be8a0e774040e92e05418fdn/aHeodo
2020-10-28W96UR5E.docdoc 0b62b154422aa927a6906a75fdc8edfd4c143365e4b5e4a8ffd58badd6fdb0d4Virustotal results 38.89%Heodo
2020-10-28ARC_UBVBSYWNL7OO.docdoc 2a87dc4a8eb48efe3380d6d3fa99507c81bb9356c90ea39b1156d82f32396c18n/aHeodo
2020-10-28Inf_OR5825892293MP.docdoc fe13971c49c4731ae4fdc32c49bbb6796383a27db3ca2340642ed9d0c1753880n/aHeodo
2020-10-28arc_X6HM8R5D0M.docdoc 2ff2d2fe253a47fbc4e9580ec37c3989ea365bf7b0475b19e6cb580942dd1630Virustotal results 23.81%Heodo
2020-10-28dat_PO_10282020EX.docdoc d3e4041b0325e0794fe6a1b0a78783b8c05b595f0631c24d7d8e11c53fa5e8e4n/aHeodo
2020-10-28Mes_DK4409216049VQ.docdoc 1a8d6c536b01f518f7452d34e6b3e890102da582e2978424e26beeae7b4e8e10n/aHeodo
2020-10-28Mes_55766936.docdoc 25578de149cb4dddcde0db6ab49f1ef760faf659fee06a0b86d0fe095cc438e6Virustotal results 27.78%Heodo
2020-10-28rep_3602190647690791569.docdoc cf6945d684eb6962274cca88159c3f88a0a5291a81ac0d8831d9f6496b005c33Virustotal results 27.78%Heodo
2020-10-2823803908448231648927866.docdoc bc8fc695c99b9f0fca7e18ca67adb66451f6b6b408ba6767bd86db835466f292Virustotal results 24.19%Heodo
2020-10-28X_WAK_100120_GXN_102820.docdoc 43159cae0059060554e0c283a577d48c0b825e44856b3afcf24ac2f6ef831334Virustotal results 28.30%Heodo
2020-10-28mes_95496826.docdoc 09a4d7f3bbc95dc5b795441093b4f44943d384f0b9087a71ddaf1b55eda16ec6Virustotal results 26.67%Heodo
2020-10-28Attachment_DQL_100120_OYF_102820.docdoc 176e68686c8b9f4fd451378d2515712d6b00a0870c518d0c530d020d13bb3052n/aHeodo
2020-10-28Arc_2723448162339906824852.docdoc b1667802a4201e50d756b921bd73789dabdc6e0ead93ccde248f9634cef63d6aVirustotal results 22.22%Heodo
2020-10-28arc_HIIAV806.docdoc a30d2b343e3646a2a05e98c5b7f976a1f67e12574ecb880a2a460bec35735f6fn/aHeodo
2020-10-28DOC_WVP_100120_FTG_102820.docdoc 0c874ea74e47b55d95a88c84aabb2e74dc3938824474937df34da0971b59f4c7Virustotal results 22.22%Heodo
2020-10-28DOC_81095545.docdoc 5b5139dd7a1ffc7d31ef829c6f23afb23a459dc8aa0a8f900970875ecd254e39n/aHeodo
2020-10-28Attachments_PO_10282020EX.docdoc e6e605ad811f416df52bdd27b76218c84b0f27c3ce272e28b373c86440fb089dVirustotal results 22.95%Heodo
2020-10-27DOC_UC0158282209YK.docdoc 90f1f20d90c0a5c6c32d6eca01833ff1db7b1325a5db427d7c5871fe3d5096f3n/aHeodo
2020-10-27Untitled_AQX_100120_JQX_102820.docdoc 47a36aa6f44f68488681fb4c7eef56b83e5003f35562442d29e744354581e8f0n/aHeodo
2020-10-27file_0FL41ME73UI.docdoc 51dc9e5a948487f714ef9600e3188b99aaebca09db45c0cd628d561945767476n/aHeodo
2020-10-27DAT_68426907.docdoc 0543f2a79034d979e274c82c77ba11ec29704960d1f21ce51dbb3d9982ba832eVirustotal results 20.00%Heodo
2020-10-27MES_371640863441.docdoc 7aa10dde15927ea374516ecf0c02332c44d93290a94510cbd83a4eea88cd43ebn/aHeodo
2020-10-27Dat_17806579.docdoc 786139fdf387d3068d18ba7eb1f55806ca956cd8834e1bbc350196ede6433fddn/aHeodo
2020-10-27L_PO_10282020EX.docdoc 65a3d9acca772189823848387ec25a5bcbc6c05bf5acac4e213d3458f7c256e8n/aHeodo
2020-10-27U_YUI_100120_MMJ_102820.docdoc b01b01566c73b1c2ecfd4f04bda6c7cc3c1c12646562ae1f615733fb1cc89b37n/aHeodo
2020-10-27Mes_QBI_100120_GDJ_102820.docdoc f0cfa5e0da830c64b718ca4ef0e2a826727e13e6f59321d4bd07c41f1ce888d7n/aHeodo
2020-10-27arc_VUZG8S1OIYDS86SB.docdoc c0b7364bc8b2a4ef21f805fa2085e3ad41e5ea6206b0274d6300d64305d4ec0fn/aHeodo
2020-10-27ARC_JX5631828728DI.docdoc cc6e22fb47f246a8619f5e98b3078e0e9d99026df12daa5dbe90bf64e9e3694fn/aHeodo
2020-10-27Attachment_81273600.docdoc affba7e7949c06840bb7887c8373003434c8755505fd274c8274210b5c8a2961n/aHeodo
2020-10-27Untitled_SJ09M18.docdoc cb505678e0c2debe5c5b4647af5940e08ffbb2d7a1c73de09136d64560cc0696Virustotal results 50.00%Heodo
2020-10-27list_WNU_100120_XHO_102720.docdoc 671b36dbe3b4d202630e0c232f08bfdc0e0fc5ef4787edfe93604f793cd0ba19n/a Heodo
2020-10-27List_0473582049.docdoc ae384ef3ae1439be7fd5e225e356f5869d208e2bde0bce02a81e75d56239d985n/aHeodo
2020-10-27XF2228129543KB.docdoc 755114dfd81340951d25507db37f9a1b272113a63182ebe3b595977db5d41cedn/aHeodo
2020-10-27dat_8026075890.docdoc 82304be765e94c28cde780b5f7e90c056ace4fd6e5aa3059ff05f9c4202a92dbn/aHeodo
2020-10-27list_PO_10272020EX.docdoc 89cb35ed3b6648fb9fd0542fb512693bd9af34ca63e5d61a4b0d5902377132afn/aHeodo
2020-10-27FILE_4853711465557777076.docdoc e0d8252260d1c59a8cb22f97dce540a7f5272ed1052a3edbc71b265e175151aeVirustotal results 44.44%Heodo
2020-10-27ARC_06774992.docdoc b5af6d7f4fb7ae66fbaa6bec875c3445c56507a2307d92800e26f08d169adfd9n/aHeodo
2020-10-27DOC_KG5827409865ES.docdoc e2e08b8d13ee2f3b74b54ec4de5892a941e2a274e8c0117d86a7dda62c0dcdd8Virustotal results 45.16%Heodo
2020-10-27inf_PO_10272020EX.docdoc 2fcbe5dbdb069526a9daacc2996b8e3d328162b29e0b31e68ef631603c7dd445Virustotal results 44.44%Heodo
2020-10-27Attachments_51087422.docdoc 85e10f7c54a4de77db7e25f711b82baf1f238ebd57a4cf772519f9086f97cbc6Virustotal results 44.44%Heodo
2020-10-27MES_TVE_100120_DGC_102720.docdoc 88c3d6cac3e781e9e7c07099efe0a5920b3da23acbd2ac4240b7495c923c7ce2Virustotal results 42.86%Heodo