URLhaus Database

You are currently viewing the URLhaus database entry for http://geekdeer.co.za/wp-admin/browse/UNoqKfbGOF0apv9t/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:758721
URL: http://geekdeer.co.za/wp-admin/browse/UNoqKfbGOF0apv9t/
URL Status:Offline
Host: geekdeer.co.za
Date added:2020-10-28 00:55:06 UTC
Last online:2021-02-11 07:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-10-28 00:56:09 UTC to abusepoc{at}afrinic[dot]net)
Takedown time:3 months, 16 days, 6 hours, 6 minutes Bad (down since 2021-02-11 07:03:06 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-10-28DAT_2020_10_28_827.docdoc 1029a93c4312651001128b1973e428ac1a6de1dd4b3ed70391fa7f308743abbbn/aHeodo
2020-10-28List_2020_10_28_9846027.docdoc 34031f5f46e6201cbd665c4737396e5ec06467bda423ea1a3d86b88f7fa96e7cn/aHeodo
2020-10-28dat_Q32930.docdoc 5f83b96224f9de6bbc1a455afb18dc39b53857a4e609d1d1d1a46ea47f6e5b6aVirustotal results 15.87% Heodo
2020-10-28DAT-20201028-0369.docdoc b5113713ed75f8184e3021ac2f1dcfdb473954c6e917c1107e38bd9d6939b868n/aHeodo
2020-10-28INF 65256.docdoc 16f0266ccac907e9f205a522d178057ca1ec615598162b1683fb3df7ede0c556n/aHeodo
2020-10-28rep-20201028-052.docdoc 27a735b7d1868b5f31d6ca26f68607186658cec95ffdf97e8319127b037dd873Virustotal results 15.87%Heodo
2020-10-28inf 20201028 UR27064.docdoc 54b10fa227b16f12caace4571d3133dd38b2ff759faf34a4237c487e9aedf6dbn/aHeodo
2020-10-28rep-2020_10_28-4558768.docdoc 6e6bceb8bc4327af841e4038ee8894aa72f45c78a59b8bbac28b353b0ed4c508Virustotal results 15.87%Heodo
2020-10-28Untitled 20201028 N80085.docdoc bc4a34aee5cd8390d24c478ba575a4479fb71346f98800969f55586c745a6221n/aHeodo
2020-10-289331366.docdoc 2d5220a30ebb6a737f6b0b5622f7fe68238d39bd2a66a6bca4591b96160c1ed4n/aHeodo
2020-10-28rep-2020_10_28-CC0924.docdoc 0a0f920896176c798ee972d9e8f0455f8d39552c3304ed33f5b5a6776db0b6efn/aHeodo
2020-10-2834020073.docdoc fc7b874ee322b22028918d9deb7cba9d087061a1939d9534e72b82c7fc79a0f3n/aHeodo
2020-10-28Mes-WL317.docdoc 7139612e14675b595b820312f185fd3df1c7379c4712724137d9a47607749e93n/aHeodo
2020-10-28REP-7077349.docdoc 0108480ef1a0e359c99960286066e2b2f294e5ccc5634ada46ffa0efed4321b7n/aHeodo
2020-10-28file-2020_10_28-3673.docdoc 0944938a639d744e536297d618052d16d6640413e0b5a8e699eeffead71dfa10Virustotal results 17.46%Heodo
2020-10-28FILE_20201028_1082.docdoc ae14a8bfd6863ef8c39e36774089e581aaed45e5e6cf5af493f18e676c4e6bd4Virustotal results 34.92%Heodo
2020-10-28Rep_N6697.docdoc 76f9fd95516f2170f2a2b98d549bd1a7acfb32b14b68e37d3179f1b26c540a55Virustotal results 33.33%Heodo
2020-10-280837 20201028 TN25985.docdoc be5b883d7b18e6cfb3489cf9082db03bcf41dc43e18440a0bc87f6a00fbdddfcn/aHeodo
2020-10-28Attachments_20201028_Y244291.docdoc 09ab13ed5cc26d51e726e1121895e9887d1d2b3ac02edc6e7d86c73ada3ecf40n/aHeodo
2020-10-28Rep_20201028_O84519.docdoc d3d10de392c0d61043b5786332ff0e306072886898429cd0f8285e76ec019daen/a Heodo
2020-10-28file_2020_10_28.docdoc 6cfa4bc9d98411218a03a8a0227df17da83335f49beab3784ef3ccbfe0f2e0dcn/aHeodo
2020-10-28840375_20201028_1569.docdoc 072751c1432883b1d8eedc16c5af25355d8e49aa2207b3ebf401b5641ecec311n/aHeodo
2020-10-28File KZN2598.docdoc d0407229837e16300869db2286f98ba2f503d302a76aa7f006e16190accc9115n/aHeodo
2020-10-28Untitled QRJ499.docdoc 2cf3d4913e94c3a564e5c9e16a395ed68e8d693a91818fbe5f2fed1a86ce6b0fn/aHeodo
2020-10-28Inf-20201028-678.docdoc 41df63441f779c2dbcc1f298638d0ac777c90fa3015f56c6111917d8975d53c1n/a Heodo
2020-10-28REP 2020_10_28 J3459.docdoc 1736f509165e604f7f58184b16d9aca99de74f3ddfe9e65f8c95f089b0722decn/aHeodo
2020-10-28list 20201028 S515.docdoc f289fe1aa7062da67e7201277de66c29292036422f8889341568ef7f6bb50dfdVirustotal results 29.51%Heodo
2020-10-28Attachment_2020_10_28_G876297.docdoc 3de930132db31231f7e9bfd6bfc17b2df526c48c5614f5b05e157732692ece8cn/aHeodo
2020-10-2870754BLW 20201028 P3368.docdoc ef4f0320bc9b1630b65794bd9002483b4befdb4cd786cc1e950fae7424d0d789n/aHeodo
2020-10-285933WE MXR067.docdoc 0594b095b292eb215e9a2794dc8167980b98b8e65042641637a81b193e2d2339n/aHeodo
2020-10-28MES 2020_10_28 XEV6234.docdoc ca14c889210c0fd94300e06ca84b485d3d06adde745ab559254deb5cfa2e859an/aHeodo
2020-10-28UNTITLED-2020_10_28-333.docdoc 24ebcf996471396b752396e9fca71feaab4a6f384f7691b5932cf939f570beb1Virustotal results 41.94%Heodo
2020-10-28inf-2020_10_28-HLW9763.docdoc ad5b3185d42023dd4f845ed7671baaada0a2e4687de4db140a324798cbdcc240n/aHeodo
2020-10-28List_96658.docdoc 8c04391d0a311e35b7ab76044cd603cb29ce05a6c9f47f45a377b2fc6b057d25n/aHeodo
2020-10-28FILE-2020_10_28-CFH249176.docdoc 6702852d6449cc2549b7987cc2fa0583a15fa2f831dc77cf8c8d428605912203n/aHeodo
2020-10-28List_2020_10_28_K2279.docdoc 9a1ce249e8e683a86ee1e1e3eb72b03a64498ac7f623bd0e41194e964d732d74n/aHeodo
2020-10-28MES.docdoc 64b7e5242a5c60c2b2031129ad5ff53540b70c43ac2530d09a627c3f8d4f4c43Virustotal results 35.19%Heodo
2020-10-28File-20201028-6042.docdoc bf48a449d6878a8a6776ab0062d4878c02b393d5590758b78c6aea5436e33579n/aHeodo
2020-10-28DAT.docdoc f0c1677fe438fd6ffe9e4d5236396062d106d01fabce19561b919795cbaf7f18n/aHeodo
2020-10-28Doc-20201028-872578.docdoc 80a191cc38404a967426611154ef6e37c584a8690f6ba474f2ff4cab5bf05dd6n/aHeodo
2020-10-28Mes_252.docdoc 9ca8226ef71916dee3526b14cb6e112f6d9c12c2365d5bf4ef43eabfa3c844d3n/aHeodo
2020-10-28Rep-2020_10_28-RT9822.docdoc 49a9e653ecfad6200a5b9bfc90ca6a9c749b95aeb2fbe0ec38d2842b1de797a5Virustotal results 31.15%Heodo
2020-10-28Untitled MXV362055.docdoc 3480287d7c3c6e1edff8e974cf8f0bab25db84ae708d710be34f48aa6ea31850n/aHeodo
2020-10-28File 20201028 653.docdoc bb767a987c3bb38d105c55a5e17fe4bec3ce116f87235dce04be1f03c3ba6fccn/aHeodo
2020-10-28File-2020_10_28-6285237.docdoc 7862369f401d84f41b94003a00d8fe6b36e51c435f35a8e996138a0f52fa1893Virustotal results 27.42%Heodo
2020-10-28LIST_2020_10_28.docdoc a1e19706a93e53e657ae474f58a7e0e0d452d2f95a832d25464a5e7509624aa8n/aHeodo
2020-10-28MES-2020_10_28.docdoc 933899c854d4e9166cbfa37c763338c236faac01e87a8baba170ac0ee5f33a2dn/aHeodo