URLhaus Database

You are currently viewing the URLhaus database entry for https://malatyasukacagi.net/gm-502/paclm/roDOghOblXi8e4HiXX/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:761843
URL: https://malatyasukacagi.net/gm-502/paclm/roDOghOblXi8e4HiXX/
URL Status:Offline
Host: malatyasukacagi.net
Date added:2020-10-28 17:44:05 UTC
Last online:2020-10-29 05:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-10-28 17:46:07 UTC to info{at}poyrazhosting[dot]com[dot]tr)
Takedown time:11 hours, 58 minutes Good (down since 2020-10-29 05:44:22 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-10-29UNTITLED 2020_10_29 798.docdoc 6dd8b8f7c8acd972e6fa7b0ebe0452b0f6ccb671e5c4ba12d156e8d376a542d2n/aHeodo
2020-10-294459G-20201029-WFN017.docdoc e197171c4d9b129dce5753855173cdd09a6318e1c30f4e80a4a902183a9b4321n/aHeodo
2020-10-29list 2020_10_29 C7758.docdoc 41ad376a9521ae341bd5a60e9084150f0745b92fb26a5b44001e11579d180316n/aHeodo
2020-10-29Doc_20201029_LE9153.docdoc 4651a840ce23c966bafea880bb08b5293365ec6eea71de68cff57961d6aea421n/aHeodo
2020-10-29arc-2020_10_29-OZ27188.docdoc b213e87540cb4152478d07f8211e8c5210925f974e403ec713ce5e5f9f4eadf1n/a Heodo
2020-10-29UNTITLED-20201029-0553.docdoc 192e7f20388641538ab4e7e243d6c81dfd520107bc8854005b2096b31981a624Virustotal results 34.92%Heodo
2020-10-29UNTITLED_20201029_I5013.docdoc b13effbff490d9ec0a85c36b8c02f2bfb17aacf39691fbf4d98839b32fabf044n/aHeodo
2020-10-29Attachment-20201029-Q681982.docdoc 5b3acebc6baeb90c5d7a614bce180548fc26753571e87577df3d4a42529bde4en/aHeodo
2020-10-29BY453 20201029 97580.docdoc 9a82999019fd20e3e31fabe6fd23e85218b9c833d75b08c3ab428710b9de9ff3Virustotal results 33.33%Heodo
2020-10-29Inf_20201029.docdoc 131c6bd5dfe6fa22b22ee9a089ef38bcbf255dfd62f14fd565acc4c2c65f5b85n/aHeodo
2020-10-29Attachments-2020_10_29-MUG84709.docdoc 0d72680f8031149a17316677a0247a82b13666f06e2508f5350bae8be8b8f85en/aHeodo
2020-10-29List-2020_10_29-IK929553.docdoc 947359baeda91df2475d551cd36248ccbc371bfab378fba634176d4fe1bc46c6n/aHeodo
2020-10-29inf-2020_10_29-WMW61948.docdoc 5cbb14d1979b0259be5131e9d92da0ea63751d263e0db5d2e3ddde47a74771c8Virustotal results 25.40%Heodo
2020-10-29BH6545_951.docdoc 697d945ff47046f421017a4ececab19494f8ec8b9d59abc54fd159fdaf1bfcafVirustotal results 25.40%Heodo
2020-10-29FILE_20201029_3687515.docdoc 9f69df62156f924a3ebb07f523ae55f5b4df5682fbb6a211b5b71efa94a8766an/aHeodo
2020-10-29J707_20201029_CJC575884.docdoc c59b1b726a72aa7b4df2f72a8eb97bca6345ce1d1400b6cbb7896bd8bf41a27cVirustotal results 26.67%Heodo
2020-10-28Rep 20201029 K9529.docdoc 5a6a4927f340368b10fa8089d2082279e5726513b1ccee1baac0516e5092a242n/aHeodo
2020-10-28Untitled-2020_10_29-4918787.docdoc 1d63cfd4eadc52c7da496f80f53327a27c43bd1eb9c1cb5143231d6b287ec934Virustotal results 25.81%Heodo
2020-10-285044396 20201029.docdoc 79144d6d13b065f90df03aa72c81e9b96492fb861b5e5a46228133dd3994d35bVirustotal results 25.40%Heodo
2020-10-28Untitled 20201029 LD09312.docdoc c47e2824a0c7956c6d3e86bc3b599b19f2eb9c2136949bda71de8e4a5009b49dn/aHeodo
2020-10-28Mes_785.docdoc 7b186e0ad6e521be2f711bf336ff752300505614522e0cd7b2865e6c3cffc611Virustotal results 23.81%Heodo
2020-10-28ARC_2020_10_29_3049067.docdoc 719b1a49ff1d13812a9e888638b0fb56a3b400ede4a73e446b00a06005a502d5n/aHeodo
2020-10-28ARC_2020_10_29_HC19678.docdoc 76029e7fcd2020aae7857b746d85ce4b9e91d196221d3b731060c7908f45bdd5n/aHeodo
2020-10-28doc_2020_10_28.docdoc c700f75dc812b1b29f541c88615349648e5386acf29f2f23448e9ac3f1262ba3n/aHeodo
2020-10-28INF 218335.docdoc bfdb8171decc8e7ad5149341f75743afdb39ade60e09e7afc3d3f8f4daa057bcVirustotal results 23.81%Heodo
2020-10-28File 20201028 M531574.docdoc bd17ceae08c87f45c042d5893ecd4547b333d49f07e732df28e2000b4b52c46bn/aHeodo
2020-10-28Untitled-99107.docdoc 8f43c8b43810e2ccbb80a555c115fbc81e758e2b687ab205b92ea93bb0544a51n/aHeodo
2020-10-28Attachment_2020_10_28_MVF886897.docdoc 716c112ebcee979e93345ccc79914c4b31d6067f2473cfddda1f8d265d479065n/aHeodo
2020-10-28REP-2020_10_28-544.docdoc c70212938d5d4390ba1af7a40fbc16bfe9632cfee0a075e88b4c98a80a3e0c54n/aHeodo
2020-10-28Doc-2020_10_28-RNT3107.docdoc 4099625585c58edcd07383d898ca0e64e51e6a7751c4b45cf9a52c02cf51c1a9Virustotal results 16.13%Heodo
2020-10-28INF-2020_10_28.docdoc 05d858c2ff48337c7c00448033117a912261cbf5eb10f14d68a91ac0fdec495dn/aHeodo
2020-10-28REP_1037272.docdoc 996ee4dd4b97188a5f14ce28fc3f8752d151af3647abd9e2fe7363e36ee79501n/aHeodo