URLhaus Database

You are currently viewing the URLhaus database entry for http://doozyblankets.com/sitepage/lm/AlgCFo7LsaQZK2Y7lhR/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:757271
URL: http://doozyblankets.com/sitepage/lm/AlgCFo7LsaQZK2Y7lhR/
URL Status:Offline
Host: doozyblankets.com
Date added:2020-10-27 17:10:06 UTC
Last online:2020-11-12 23:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-10-27 17:12:04 UTC to abuse{at}hostinger[dot]com)
Takedown time:16 days, 5 hours, 52 minutes Bad (down since 2020-11-12 23:04:04 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-10-29ARC-20201029-849798.docdoc c5fb6da467aa03871b3d49d8bc5808b6b8e051dca7bd1aa57b58324d9b9a97aeVirustotal results 21.88%Heodo
2020-10-29Dat-20201029-8007051.docdoc 7b34d2cab76c7751570f264cd306892fb006fd5e274c8dbe36687bafc63dfba8Virustotal results 20.63%Heodo
2020-10-29mes-20201029-CPX41566.docdoc 09b8d65b64218ad504489c3b2bc0e3cd74300774ddc3e908c0628f95234fc3beVirustotal results 20.63%Heodo
2020-10-2992897DT 20201029 463234.docdoc 4410bd2b796f285461c4e99679439c45c772b1905f7b0cfa1e370b022524f9ceVirustotal results 17.46%Heodo
2020-10-28mes_20201028.docdoc 694b0629f5e0d7e62b4b5c15c4e49ff1be51d9f8e6a8657dca67e6d1df1e0f85Virustotal results 21.31%Heodo
2020-10-28Mes_20201028_507320.docdoc d2d159ebded0bf1265e6d5504c604640a052723ba24cd4893266b03659b569c1n/aHeodo
2020-10-28inf DI363329.docdoc 0c05edcbcff5c7a8318e6a88ee296271fe70723b9f1163a04f65c6a00ee087d0Virustotal results 16.13%Heodo
2020-10-28Dat P8969.docdoc e6bb4b2e5f64a9731c9bcdc71588f88a8a7859bcb6c7660ed8dfeec07f866de0n/aHeodo
2020-10-27LIST 20201028 18896.docdoc 26eead61c6edbde1e06d00ecf89571be284ba247df2081239f5bcb0632b4c1dfVirustotal results 29.63%Heodo
2020-10-27file 20201028 BOV27788.docdoc 5c883b5095d6cfcf09860df73cd8d8df18b1387fe489b9041602167fefac2c71n/aHeodo
2020-10-27MES 2020_10_27 74693.docdoc 19edb720e222817dc696093f3000cbf44dc66691e3b3f096f395366f794c6ca2Virustotal results 20.75%Heodo
2020-10-27FILE 2020_10_27 PY3282.docdoc 4404fac35c28f7aff909e081a460c93972a6b1a174906fd4e9cd7fe20cbf5dfaVirustotal results 19.67%Heodo
2020-10-27LIST 20201027 3839.docdoc 9b51ad5b6cfd673dfd89e0f723d704e0db19467b986021e99668598aa180ad7fVirustotal results 33.93%Heodo