URLhaus Database

You are currently viewing the URLhaus database entry for https://hiclic.com/__MACOSX/docs/ze6KNlYVwGgcYBvUPHM/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:761658
URL: https://hiclic.com/__MACOSX/docs/ze6KNlYVwGgcYBvUPHM/
URL Status:Offline
Host: hiclic.com
Date added:2020-10-28 16:45:04 UTC
Last online:2020-10-29 03:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-10-28 16:46:02 UTC to abuse{at}privatesystems[dot]net)
Takedown time:10 hours, 43 minutes Good (down since 2020-10-29 03:29:31 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-10-2911680841-20201029-PVJ745.docdoc 01832091bf1c1ecee3623274c0a9d173d305fb1b0f1059cafa86eab41961f498n/aHeodo
2020-10-29file_ISW82127.docdoc 7ef43d002962412af376282a6cf98344219f97bc5ae5ab70b03204fdea131fc9n/aHeodo
2020-10-29arc_20201029_B863870.docdoc d14723eb50af0341b72c28a3c747940042ecd0795e40dd42a5a85ab0ac49ba7fn/aHeodo
2020-10-29221890 B12167.docdoc 1057624fd741f170fc4a05bb538ab9a3d863abf1ca31d713b1d13cd57a03e8c4Virustotal results 26.98%Heodo
2020-10-29ARC_2020_10_29_YP354.docdoc 697d945ff47046f421017a4ececab19494f8ec8b9d59abc54fd159fdaf1bfcafVirustotal results 25.40%Heodo
2020-10-29mes_2020_10_29_JCS337486.docdoc 9f69df62156f924a3ebb07f523ae55f5b4df5682fbb6a211b5b71efa94a8766an/aHeodo
2020-10-29dat-2020_10_29-07571.docdoc c59b1b726a72aa7b4df2f72a8eb97bca6345ce1d1400b6cbb7896bd8bf41a27cVirustotal results 26.67%Heodo
2020-10-28file-1743.docdoc 5a6a4927f340368b10fa8089d2082279e5726513b1ccee1baac0516e5092a242n/aHeodo
2020-10-28Mes-20201029-PZY996.docdoc c05fb70a40c0550356929b11d569b80527b930845a011f0e564e9b3f6bb03ffdn/aHeodo
2020-10-28File-3183670.docdoc 48a76d85d2eb93ee3fa58f3b1ef6a80e17e824cef265353c9cb804874809063an/aHeodo
2020-10-28Doc_2020_10_29_P64048.docdoc c47e2824a0c7956c6d3e86bc3b599b19f2eb9c2136949bda71de8e4a5009b49dn/aHeodo
2020-10-28Doc_20201029_J4951.docdoc 0141fc68f8d61f3c6ab01420927eb224eb83af6d701944e66d37f19898cf1b4en/aHeodo
2020-10-28MES 2020_10_29.docdoc 283e6d40d0814da95cb0ec7fe6dc4e4ccdfa1dcaaaf61646c01bc0f0250d62b1n/aHeodo
2020-10-28mes.docdoc 76029e7fcd2020aae7857b746d85ce4b9e91d196221d3b731060c7908f45bdd5n/aHeodo
2020-10-28DAT_2020_10_29_JX148738.docdoc 45b34d3ea4ae8a23f30f20ae157a3860942a0185a3f8132ce4b474da2f862997n/aHeodo
2020-10-28Doc-2020_10_28-2727580.docdoc bfdb8171decc8e7ad5149341f75743afdb39ade60e09e7afc3d3f8f4daa057bcVirustotal results 23.81%Heodo
2020-10-28054408_P976831.docdoc bd17ceae08c87f45c042d5893ecd4547b333d49f07e732df28e2000b4b52c46bn/aHeodo
2020-10-28rep 2020_10_28 91441.docdoc 8f43c8b43810e2ccbb80a555c115fbc81e758e2b687ab205b92ea93bb0544a51n/aHeodo
2020-10-28list_2020_10_28_599.docdoc e16ff7cfe983a96aa9baabd56c3f8ee53b910bfbcd8c69c062417cfad241e2ddn/aHeodo
2020-10-28HO616_PP5968.docdoc e3a9e508c613147446da86b994ce780c55edd7287415439f759ca4160071c17fn/aHeodo
2020-10-28T8206 2020_10_28 857.docdoc 1beec5bb24132a128d8578e0a58f3f03deebe026ca66c2066aa03d598ce48959n/a Heodo
2020-10-28INF_2020_10_28_867.docdoc c52d7a70e6ae1edec10a02951f1668f6442e8837619245733d206aa4f669bb2fVirustotal results 15.87%Heodo
2020-10-28inf_2020_10_28_858656.docdoc 8ff6258aa02f76f35f8a2a22164c938e0c28b2b8b906c2e1530d70d2675ce356Virustotal results 15.87%Heodo
2020-10-28REP_2020_10_28_01497.docdoc 996ee4dd4b97188a5f14ce28fc3f8752d151af3647abd9e2fe7363e36ee79501n/aHeodo
2020-10-28file_2020_10_28_BOB18146.docdoc 3d531db12abce6a6b59476d4c5816866bed03126306e1c2042a0406618ec2653Virustotal results 15.87%Heodo
2020-10-28FILE-1394.docdoc 4e3ea1f4f816b37d16d5c9ffec4e403b581d1582352586740f3e93e09d25ed56n/aHeodo
2020-10-28Arc_2020_10_28_61315.docdoc 1982b6c4036286ba47a27de309abefb7b8e542dafc43448ef6437f504191143cn/aHeodo