URLhaus Database

You are currently viewing the URLhaus database entry for http://www.nb-sangbad.com/eSzjRTDXxKKDUPGE/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:761851
URL: http://www.nb-sangbad.com/eSzjRTDXxKKDUPGE/
URL Status:Offline
Host: www.nb-sangbad.com
Date added:2020-10-28 17:47:09 UTC
Last online:2020-11-03 10:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-10-28 17:48:03 UTC to abuse{at}alpha[dot]net[dot]bd)
Takedown time:5 days, 16 hours, 19 minutes Bad (down since 2020-11-03 10:07:58 UTC)
Tags:doc emotet link epoch2 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-10-28Untitled_PO_10282020EX.docdoc cbdad95e70675a32092409e3e9fc5e8afc9a1844bfda99ad00943433da36e4fdVirustotal results 26.32%Heodo
2020-10-28INF_1595831515.docdoc 0a8f0b82ac6ca359057a79405255027ce1c2e1de5493d655a55b0374727e32baVirustotal results 22.58%Heodo
2020-10-28Attachments_IOB7G0LU0C9H3.docdoc 81c78e098a3815757ed038c5f386d54156fe5ea85eeea2bc5baceff398d35a3aVirustotal results 19.05%Heodo
2020-10-28FILE_39781926.docdoc 9faf7ecca19101cc477bc73594fa79ead2d3224625802b67251f80a757242ae7Virustotal results 19.35%Heodo
2020-10-28mes_17318529.docdoc 03cee0e4bd76ec300e6e09d41fb6cfc6e24346ed58c3aec95bc6a8dae7838a69Virustotal results 17.46%Heodo
2020-10-28FILE_PO_10282020EX.docdoc c0a2014dfca67b622a9a96e4d169601563264a29bb55b9e9b8f1934d610183bcVirustotal results 17.74% Heodo
2020-10-28Rep_XQ9508033644UT.docdoc d91ac6b289bd863b217db0a852a8283c9964ffe543f3cfccd63951b76e7761cdVirustotal results 17.46%Heodo
2020-10-28file_947967147.docdoc 93d882200983e8ea91da547916ade52e52c5f684c19434eb8e3312b4d4251bb1Virustotal results 17.46%Heodo
2020-10-28MES_LB1298837303OL.docdoc b764a906f404eacb88f0ea963d1c2a00402af7f29a340c7aa95b911892be6b30Virustotal results 17.46%Heodo