URLhaus Database

You are currently viewing the URLhaus database entry for http://test2.cyber.shn-host.ru/wp-content/attachments/eObm7XWgQ9rfE3ouKG/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:762096
URL: http://test2.cyber.shn-host.ru/wp-content/attachments/eObm7XWgQ9rfE3ouKG/
URL Status:Offline
Host: test2.cyber.shn-host.ru
Date added:2020-10-28 18:54:10 UTC
Last online:2020-10-30 08:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-10-28 18:56:13 UTC to abuse{at}s-host[dot]com[dot]ua,eugene{at}s-host[dot]com[dot]ua)
Takedown time:1 day, 13 hours, 22 minutes Poor (down since 2020-10-30 08:19:00 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-10-30UNTITLED_2020_10_30_22001.docdoc b7e2227a55be6cc52bd93e486031843a9fb77927a7d07b70944fa326da7d7b38n/aHeodo
2020-10-30dat-8072603.docdoc 2adeef9341b1b21a0379f81a1216feb5d2f742aa44ad90692982419dcdf68661n/aHeodo
2020-10-3003214937.docdoc fbfd2528d920b4394d3df7f1e56f1fce101bcc715bd0d6201614e95c1a42dc82Virustotal results 28.57%Heodo
2020-10-30rep_20201030_83908.docdoc 6d0a8c70e1b65951bb1ca947a4b0ec574992b0e1596d88586fe390ec076ad1d6Virustotal results 29.03%Heodo
2020-10-30REP_20201030_05569.docdoc daa815f5c1ae1d3d8ac88d1b3cca4e505af9882245f70ef326204b77fb66e492n/aHeodo
2020-10-30Untitled 2020_10_30 747.docdoc 36ab685d59b95a817906982e4151ed46b9f64fabe9ffc9fbbaa3171f99e59ca8n/aHeodo
2020-10-30Mes.docdoc 2527fdb5a964a6f8f9d27a25bed9c60092a9e563a5c916d22bbf950fb6a52dc1Virustotal results 29.69%Heodo
2020-10-30UNTITLED 2020_10_30 IQT075.docdoc 6f982323ebbee2d1dd34d9712ffd26cc99b3080b50d596d3da9ea7154c202958n/aHeodo
2020-10-30mes-2020_10_30-ZJZ909126.docdoc e2e6de43b6be5fddede5a4a3e017a0121e226df165b53021d13b45a2093bec34n/aHeodo
2020-10-30LIST.docdoc a2bf8d5a7361b5e31066653eb6522f5c2995e7407290bfe2a74296abe2914ff0Virustotal results 30.16%Heodo
2020-10-30FILE-20201030.docdoc 6c3e28e9d3fc3e6192e4e5dfe110ca2aeb96794d8dbed234856cf5ae32ac846aVirustotal results 28.57%Heodo
2020-10-30Doc 20201030 RN79852.docdoc b4395769c86f697ac3e7793897e7da62e10e448d7f37338ef82dba7b36b1c6ccn/aHeodo
2020-10-30Inf-20201030.docdoc 491808f80c7325dc185a42e1438b9fb0176566c67ed40ce43e771122822007ccVirustotal results 28.12%Heodo
2020-10-30File-2020_10_30-0527964.docdoc 62b438f1aa3f77084e934f91334751fa1ec4e661d03cdc927e0ea7343fb53a1bVirustotal results 28.12%Heodo
2020-10-30409526 UB494.docdoc 05b836813780375ab027f2424e9846c3026e6340b097f3a74929e9381fdafda7n/aHeodo
2020-10-30Attachments-SSB8936.docdoc 3407fbd416d6c637eee3972fd3c1f7444488d18862e846dbf1d9e68a9e5d0727Virustotal results 28.12%Heodo
2020-10-30mes-53819.docdoc eb5e7b9d8554e92b57e2560655716ddcb3e4a10c2769af68df19681e80692bc6n/aHeodo
2020-10-30File 2020_10_30 19739.docdoc 1a2bd0b855e35b6df3f20d22bbd67d1e7986012008d45194ed15359822eaf7f7n/aHeodo
2020-10-30Mes_20201030_FY460.docdoc 01da00cc0b4c5615bbf69d19e0e888164cc90378c96b711f4b4edd555957a9c2n/aHeodo
2020-10-30059B-J32301.docdoc 538ecba125327445286cd475bdd8e127668b28cf8cf6aa03ec12857650cb003aVirustotal results 28.57%Heodo
2020-10-29arc-20201030-HCB765361.docdoc f0560fe5e04420d7665dc216a6e034ed86b3f265475b2dacbec5257b95cf59a2n/aHeodo
2020-10-29DAT 4108.docdoc b259d446961f8e221ea21da155dc5a16bf3f4baeb15bf4e443f776608e5b74cfVirustotal results 28.57%Heodo
2020-10-29Inf_836.docdoc c08b98414e2b7a40fd6d51fd8f672669cf4cb667e078fda42550586d0779919dn/aHeodo
2020-10-29Mes-20201030.docdoc 4845da7cb9aeaf0bc23f9ff4869669d088ec6b529643ed2dc4fb492ed652a659Virustotal results 28.57%Heodo
2020-10-29UNTITLED-2020_10_30-7978701.docdoc f7859c423dab46818b45b25833fd584c16ed8e13e40c154fbf31c4266f11566cVirustotal results 26.56%Heodo
2020-10-29FILE-20201030-860.docdoc 823d83a26c3b5351909a1a303cacf77c15ba7d435824834d15f1b043423e5779n/aHeodo
2020-10-29doc-2020_10_30-LEO6336.docdoc 7d0c55cebdf8bd8b64ba720554bba314c54f8bc5c66c375fa99748b7976910b2n/a 
2020-10-29list 62511.docdoc e02b928ac606904119090d82059880092f46e34b880b569e657a116c8ddc13a1n/a 
2020-10-29Mes-GVB574085.docdoc 3f5d15e7dbcddd1368eb0c4b12da2e5c41802585fef0f305e66824dbf751d788n/aHeodo
2020-10-29Attachments 20201029 A2443.docdoc ad1f4779a93e3bbfa4a51fce8f6797a5f10867a4c1029c87f88e5c59aec93a33n/aHeodo
2020-10-29Attachments-C408527.docdoc f7f73b1df964eaa08268266ba33451fee8b0403f5815941ce56c1dd5e96f8a25n/aHeodo
2020-10-29dat_2020_10_29_82604.docdoc 3ce86ebeb7522e05953bd5076f603c7937e47449bce8168d8ec536b1c388d54cn/aHeodo
2020-10-29List 7439.docdoc 13c8aafede5863190a5ffe2887197639b798982799f231be73c2978e534e35deVirustotal results 26.98%Heodo
2020-10-29Untitled 20201029 77765.docdoc e56ce71cd11831871d470d63b846971ea3cd48800a5bf5f0a787765828f408b9Virustotal results 25.81%Heodo
2020-10-291180-183546.docdoc 36e86b29646738d8621d0a0a76a435b4dfd8bc508480bfe3cf0f7f10c345deb7n/aHeodo
2020-10-29MES_52286.docdoc f05eab6d981a4919d9782a275bbbe85a79c904a3cad417cfe7137d20c30aee63n/aHeodo
2020-10-29REP 20201029 60102.docdoc 12785e4d508a88f8ba6bbf31b2e115fa181f62e19a0a6fcaf9f61f5e41b0c806n/aHeodo
2020-10-29Attachment-2020_10_29.docdoc bdf349fc3180f524a63fdff70a26cb706d3ccf903d84cb87b3ecf05b95c6183en/aHeodo
2020-10-29rep_2020_10_29_097493.docdoc c5fb6da467aa03871b3d49d8bc5808b6b8e051dca7bd1aa57b58324d9b9a97aeVirustotal results 21.88%Heodo
2020-10-29inf-W809.docdoc 7172aa8c32fc463776f462448e79bc00fb2844918653a5059930f99d9fb9529cVirustotal results 20.63%Heodo
2020-10-29Attachments-714.docdoc 46d9e560db1a1d687d58d92ded82cd4ddc77a154a7c66bcc99d628f7386c97aeVirustotal results 20.31%Heodo
2020-10-29DAT-OTM5001.docdoc cfb52c66e67292539d9721550fd073880b1b437d5224e6f92704db503db8d2b2n/aHeodo
2020-10-2950844910_20201029_655.docdoc 71eb7b3776bb1678142bbf5db788ef2f6b687ddfb40b703857f5b89b1c82bd90Virustotal results 26.56%Heodo
2020-10-29file 20201029 T170230.docdoc 28bac98a17d0c41c279c0e1869b2027e4c0f12c18f2cf2cd1ea9b48e1bbd3adaVirustotal results 27.42%Heodo
2020-10-29doc-20201029-HA688.docdoc 2083b1ce0a0ae65ec471455888921c5ff308281eb598004c4b6cdf8702a69b76Virustotal results 25.00%Heodo
2020-10-29Rep_2020_10_29_QAK964073.docdoc 0c88c83925738334cf06cde70d1887aa2c6dab7e63cc6860d3d58357a47cafd6n/aHeodo
2020-10-29UNTITLED 20201029 221180.docdoc c639ec18eb060e72b5377a99575d50eaf280703d4d8027c1e133c13aeb663507Virustotal results 25.40%Heodo
2020-10-29Inf 2020_10_29 T932.docdoc e13e1b5db38b6d366f7ab841db3b6a383d28d78df1fbcdba3754178064563746Virustotal results 20.31%Heodo
2020-10-29Rep-20201029-983285.docdoc acf8f0958861f638caf265028426240804d2c3d90bfd008fad6a1b5a937f42a1Virustotal results 19.05%Heodo
2020-10-29doc 2020_10_29 69436.docdoc a51d388f6ae39ba6f4a899462c350ceecf71ab5e4c4d53cfdce159f8918d4896n/aHeodo
2020-10-29INF UU6028.docdoc 7290f2718e2ac5b4b432725bbc6fcb2c21cf548fd7df795451ab3553afa66ca4n/aHeodo
2020-10-29arc-20201029-8067455.docdoc 0e8b556a602f4d26532259ddd10eccca21792e58c74acf5a91c2835b53248f24n/aHeodo
2020-10-29Untitled_20201029_721514.docdoc 057ed5706fd71541b56c5e62a9bf9d0cbcef9138b26db689f40d599ba7c16cd4Virustotal results 17.19%Heodo
2020-10-29rep-20201029-816.docdoc 984473c63ce979671f89a4cba67e41d45803aae51ecb5a47e54d83e62c6aa448n/aHeodo
2020-10-29Attachments_2020_10_29_TV937197.docdoc dce51d790dc49f7793cd69276a7b5751266d5e3fa69a71432b97156ee0a4751fn/aHeodo
2020-10-29Attachments-20201029-42643.docdoc 73b50fadf718b2d073b51af2fc11b8a76e2ae9424ecfd37e0ae1518f6edf78d2n/aHeodo
2020-10-29Attachment_20201029.docdoc 55eb0e02ebab771718cafeb48d612d669d8abedd11fc9162a97450bef6b3d66fn/aHeodo
2020-10-29dat_0453.docdoc fae885910713e877e3bc35d598867cc34558f009724f5777e84dab81d52c4484n/aHeodo
2020-10-29mes_20201029.docdoc 863c32fe0e6573bed3a0771579c821d9b162d93cc0226b7600af2c9b60b8e26cVirustotal results 15.87%Heodo
2020-10-29774177-2020_10_29.docdoc 01d84b7211fb5762ddbd83c32fcb2aaccd5f527d672d9ea691f7b20a1da343b4n/aHeodo
2020-10-29REP 2020_10_29 1294916.docdoc 7436e8b33a6c2f46e5aadf8ccdbb9e93d725ffdc2ba7e23a043c8a32b1e1fa22n/aHeodo
2020-10-29inf_2020_10_29_5433881.docdoc 482e01258fe56544a34ace754fe03cbfa10a36d59d118b80c6ade1f29af308b7Virustotal results 15.87%Heodo
2020-10-29Rep 4795.docdoc 94e08e3932fdbf68dce59492d22219b9afc8c0effe79517e9d9ea943a40b369an/aHeodo
2020-10-29Doc 2020_10_29 075196.docdoc 6f6ac4df5dc7b2becdee67c23b92c4f95ab01ac73b08db24c2b4b811a9cbe55cn/aHeodo
2020-10-29Rep-20201029.docdoc 2459f003d4b784c960c6fbf68be74cdd02277d11ded9f0a6be0f969c3061d54dn/aHeodo
2020-10-29DAT_2020_10_29_05536.docdoc 45eaeab6349d63baf59ca14775c22f39885e6631b4d2f42722dfcd4ea44e1d76Virustotal results 38.71%Heodo
2020-10-29File-20201029-977.docdoc 579fc26628f7ca7ec4e9eba537765755680cd5efd646becf39e12c1533b60fb6Virustotal results 35.48%Heodo
2020-10-29LIST 20201029 JF757903.docdoc e197171c4d9b129dce5753855173cdd09a6318e1c30f4e80a4a902183a9b4321n/aHeodo
2020-10-29inf_2020_10_29_7108.docdoc 41ad376a9521ae341bd5a60e9084150f0745b92fb26a5b44001e11579d180316n/aHeodo
2020-10-29file-2020_10_29-V213620.docdoc b9275b6099be967ff38eaab7ab232ce6ec1f903fc98fda4de1f2c057d3f85f70n/aHeodo
2020-10-29arc 671363.docdoc b213e87540cb4152478d07f8211e8c5210925f974e403ec713ce5e5f9f4eadf1n/a Heodo
2020-10-29inf 2020_10_29.docdoc 192e7f20388641538ab4e7e243d6c81dfd520107bc8854005b2096b31981a624n/aHeodo
2020-10-29DAT_RZ04706.docdoc b13effbff490d9ec0a85c36b8c02f2bfb17aacf39691fbf4d98839b32fabf044n/aHeodo
2020-10-29ARC 2020_10_29 QLV767473.docdoc 230145518bd1bee6679f4ebc0546c94c0e1b45c47e78117a0e523ada0cf39ac5Virustotal results 33.87%Heodo
2020-10-29DAT_20201029_71301.docdoc 99db7a0e3b100982f31ffee540f8fd2418200a74e24ae05dcbbd1974be87525en/aHeodo
2020-10-29Attachment-20201029-Z552.docdoc 01832091bf1c1ecee3623274c0a9d173d305fb1b0f1059cafa86eab41961f498n/aHeodo
2020-10-29Arc 2020_10_29.docdoc 7ef43d002962412af376282a6cf98344219f97bc5ae5ab70b03204fdea131fc9n/aHeodo
2020-10-299138150-6290249.docdoc 947359baeda91df2475d551cd36248ccbc371bfab378fba634176d4fe1bc46c6n/aHeodo
2020-10-29REP 20201029 DT641.docdoc 5cbb14d1979b0259be5131e9d92da0ea63751d263e0db5d2e3ddde47a74771c8Virustotal results 25.40%Heodo
2020-10-29Untitled_7095.docdoc 697d945ff47046f421017a4ececab19494f8ec8b9d59abc54fd159fdaf1bfcafn/aHeodo
2020-10-29arc_RK904.docdoc f8b55420ef4b3052e8b71f5a228e16219e3f6372d19e8c3e175e8fac7482824en/aHeodo
2020-10-29Untitled.docdoc c59b1b726a72aa7b4df2f72a8eb97bca6345ce1d1400b6cbb7896bd8bf41a27cVirustotal results 26.67%Heodo
2020-10-28list 2020_10_29 UV525806.docdoc d465b5e81ff8cc58d781ba58f2359e6668797d044d4f6144ebd5f738331e402en/aHeodo
2020-10-28Attachment 20201029 P110773.docdoc 1d63cfd4eadc52c7da496f80f53327a27c43bd1eb9c1cb5143231d6b287ec934n/aHeodo
2020-10-28Dat_20201029_326.docdoc 79144d6d13b065f90df03aa72c81e9b96492fb861b5e5a46228133dd3994d35bVirustotal results 25.40%Heodo
2020-10-28Untitled 20201029 WFA2498.docdoc a5371e1aeb4a9cd992cb7701ead18e8443fbb575c273b54e83507e7c1ac5d9aan/aHeodo
2020-10-28INF_20201029_0535.docdoc 0141fc68f8d61f3c6ab01420927eb224eb83af6d701944e66d37f19898cf1b4eVirustotal results 24.19%Heodo
2020-10-28Rep 2020_10_29 Z51960.docdoc 719b1a49ff1d13812a9e888638b0fb56a3b400ede4a73e446b00a06005a502d5n/aHeodo
2020-10-28UNTITLED 20201029 R234855.docdoc dfb997f9fdd6bce4a529d774cdc304bea58ee316f9f55fc2bc1606cd7ef4784fn/aHeodo
2020-10-28Rep-2020_10_29-RZZ084184.docdoc deca82582311d3d0f6c7bedcd61f0156c5c9243afcec413f2a3df3d7695cdce2Virustotal results 23.81%Heodo
2020-10-28Untitled-20201028-DCI2939.docdoc bfdb8171decc8e7ad5149341f75743afdb39ade60e09e7afc3d3f8f4daa057bcVirustotal results 23.81%Heodo
2020-10-28inf-2020_10_28-6108915.docdoc f8737856e31ea2ffdca500aac02bbc42ddfaa94bc5f2e1676be6dfb42092413fn/aHeodo
2020-10-28Attachment 2020_10_28.docdoc e7128da1bc0a8c8b0e4a29972b3c1141acf5b7d6f14a7dc7e27aa352e58365efn/aHeodo
2020-10-28Dat-910021.docdoc f8929ee8b0c6d8fcc69f12561d07945cb82dabdea454326b92d7b89045018f92n/aHeodo
2020-10-28Attachment 6185132.docdoc 0b4686326341aa6170756e22822c138bc6d813412182af4238dd97fc39ea37acn/aHeodo