URLhaus Database

You are currently viewing the URLhaus database entry for https://afroozsazan.com/wp-includes/eTrac/SLxBwM92yED9GLIm5/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:757375
URL: https://afroozsazan.com/wp-includes/eTrac/SLxBwM92yED9GLIm5/
URL Status:Offline
Host: afroozsazan.com
Date added:2020-10-27 17:37:13 UTC
Last online:2020-10-27 20:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-10-27 17:38:07 UTC to abuse{at}hetzner[dot]com)
Takedown time:3 hours, 7 minutes Good (down since 2020-10-27 20:45:47 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-10-27Untitled-20201027-65398.docdoc 2520d211b53e772f7a11ae07b43267f359a5a48ceac370084cbc4fa1197a268dn/aHeodo
2020-10-27REP-20201027-5218.docdoc a7e1f9d64652a74cbca86328a7acfd3bb739d8528077ac42522f8e5e024273b3n/a Heodo
2020-10-27dat-20201027.docdoc e8b19723225167f1b831cdfd075a80a02537306d5d73af68da53d7dd4fd27229Virustotal results 19.05%Heodo
2020-10-27REP-2020_10_27-0064076.docdoc 3e7da102b07bbaea5c74141f98f1f839361afcd88f5c1b108eceb3692f9b17fan/aHeodo
2020-10-27GU61372_2020_10_27_LFY2925.docdoc 22dbd6df08e41fde302a14a96c115f4b65e89f399d1edc1a14a6504df407bdaen/aHeodo
2020-10-27list_271.docdoc 3d8169eb16fa0973f3703c7888f5cb1606d226f0bd32f262ee332385c5dc4470Virustotal results 19.35%Heodo
2020-10-27Inf_20201027_2474.docdoc 014c6092529a2c8fcb1cec8bbd38eaa844a0dde7451752cefc4844dcfee2f647n/aHeodo
2020-10-27doc 2020_10_27.docdoc a0befbd5126d4660e42ef357002601c14c94c5e2b1f9c83097159362a590075dVirustotal results 34.43%Heodo
2020-10-27list-20201027-I87026.docdoc 9da429ab41ad163f2dd7a4f949c160d473aa786147a5088e86c4a7ba277b543bn/aHeodo