URLhaus Database

You are currently viewing the URLhaus database entry for http://www.szzlwx.cn/wp-admin/OCT/Me0Ji0IzVju/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:765471
URL: http://www.szzlwx.cn/wp-admin/OCT/Me0Ji0IzVju/
URL Status:Offline
Host: www.szzlwx.cn
Date added:2020-10-29 13:54:08 UTC
Last online:2020-11-22 13:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-10-29 13:56:03 UTC to anti-spam{at}ns[dot]chinanet[dot]cn[dot]net)
Takedown time:24 days, 0 hours, 2 minutes Bad (down since 2020-11-22 13:58:52 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-10-31LIST F251825.docdoc c2239c86191e6dbe4cb7a13e085fd47f5e4f9212cdeea61bfa295a9399bc4686n/aHeodo
2020-10-31MES-2020_10_31-835.docdoc b64f9d2cdc0c2e84301c1fc9dce4dab16a0a8013f6c7961ab0fc423d2b842a8fn/aHeodo
2020-10-31REP 20201031 669643.docdoc f02302761b9bea32d6ef774d20d52687208198e16db81a56741e7ae0feeaa5f6n/aHeodo
2020-10-31mes_2020_10_31_9775.docdoc d7eb20ea72492f475f45395692ea43bcb8549b46e739ef37613d4ceee88fbf5dn/aHeodo
2020-10-31LIST-20201031-956245.docdoc 070964b56766c554f2620b91a7a727647b1488afb3177bf025b1e9309ae56121n/aHeodo
2020-10-31UNTITLED_20201031.docdoc 11938da3e639a51c381760b52ff130c7739cc55ce44513cb71a1695bff359e7fVirustotal results 50.00%Heodo
2020-10-31arc-20201031-841.docdoc cfbf0977de1d103ac358f868b8fee2a7c6efc69be1ed0da77498a8f13f2d9bd1n/aHeodo
2020-10-31mes 20201031.docdoc 22610e4ec1dadecea8cf8bed9e0cc318877401a02d6f680dc520821c3fb8d716n/aHeodo
2020-10-31Attachment 2020_10_31 Z847.docdoc 7cd3f78ce8d586224296825a76895b52e275a9adef40a55045c7ddcd487182d4n/aHeodo
2020-10-31017634_20201031_7415968.docdoc 027653988b10a54eac9c807da7365912e03681639f67ed4fb4a9a75459bc6a53Virustotal results 50.00%Heodo
2020-10-31MES 20201031 5369663.docdoc 58b4b01b27226f4c2fcf20dd17aac4604e04c0e736be3d8d1a8291dd0542f1dbn/aHeodo
2020-10-31REP 462.docdoc 8bd9939dabc1c57a46d596c9ae13646b5ca27f9a33e544c46ecfb58e729ceda4n/aHeodo
2020-10-31MES_2020_10_31_M877276.docdoc 1dee37d93dbf6791b8d6ddfc6baf8ff79af05747748e89bdde2d36b38ff02c14Virustotal results 50.00%Heodo
2020-10-31Rep-41204.docdoc ece2b34c4325d63381dc959a42e9fd3bff2c79eacd15749f97da19d9fc631b7bn/aHeodo
2020-10-31REP-D190.docdoc 2f7d8bd75f2bfcc5d813ba0bede8a4658dfae77058bc976a60aa827f54cf7edfVirustotal results 48.44%Heodo
2020-10-31Rep_20201031_DL369401.docdoc aa0b4a67c3cb5337ff899285d2c7ed8aeb576eae5a0f428b38d1d70b0d54954fn/aHeodo
2020-10-30Attachment_2020_10_31_678083.docdoc 22aa99e5913ca582916ab712beb6f732cf922237b0dc80ff7085a2f601036533n/aHeodo
2020-10-30list-20201031-GP845.docdoc e97a94a4cfc7974e9f0c6b6733a7bcb4b8de1f79e441cbac9624c10448939ff1n/aHeodo
2020-10-30569 2020_10_31 6788.docdoc b595051d0d700b8f5c63feb13f5dab1a00915465c1043b5ad6f9d8d2ab1646dcVirustotal results 50.00%Heodo
2020-10-30file-2020_10_31-H313124.docdoc 35cb8bedd530c792d8b3cab49ba71c507f68d79348871c033ef9663c437b2aa1n/aHeodo
2020-10-30Inf 20201031 WRA501767.docdoc b42ec3154bf81b9db8b0aa9f3dbdaf4c02eaf40766ddcb5542779307674a532an/aHeodo
2020-10-30Untitled 20201031 303.docdoc 6af7c087d281ec6713e1b1488d66ab4376fd8575b0eb76dcacd6c35f96b28cacn/aHeodo
2020-10-30DAT-20201031-S479628.docdoc 56c04d1157505c5bf9aa0b7f66c7d41f195b606ea5feb14e4ff6a1130ba45cf6n/aHeodo
2020-10-30REP-2020_10_31-142285.docdoc bf12c3f37f0ca001687397eceb33c424cc49a285371a92fc3a3ced7e99570121n/aHeodo
2020-10-30dat_2020_10_31_65431.docdoc ba982e58bb118c4dacf2e471d230cb5c74c0f9f21dbcf610e15de9bd9651c3fan/aHeodo
2020-10-30Untitled_20201030.docdoc 3faa49b82a8885d33ee4430223fd3b268e0b778326125f4f9dd6a7f0d3eb82f9n/aHeodo
2020-10-30list 035.docdoc c8e72bdeeb6e62097bac2920b037450e19215cf8b49f5c614f5bfdae2d7d10d7n/aHeodo
2020-10-30Mes_20201030_842.docdoc b80748e5abff124c2e769811b6d07ee49b612be307a825ec4d6cb37f18ca1c24n/aHeodo
2020-10-30File-K207.docdoc d8fdd8635cfa310552af008f672b947b971fee259691d3c1f629abaddd02e0fcn/aHeodo
2020-10-30UNTITLED 20201030 D237594.docdoc 395264bd90b31a6048e4bc4591e133e47f6cf2e268b84b4c48213574b8f209fcn/aHeodo
2020-10-30file 2020_10_30 AC9983.docdoc b6802ed0d67d436cb620790db9622265d1efe9facc3604a3866937838bd567e8Virustotal results 42.19%Heodo
2020-10-30inf 2020_10_30.docdoc ef22fc4755de1490a2260de08ce44d95e880d59c4fd744860b4cf2f39b25d307n/aHeodo
2020-10-30Rep-2020_10_30-9448.docdoc 3e936aea08be2a4ca5afd1e31a874f69a41f38992f51b6e28966e0bad6b863d7n/aHeodo
2020-10-30File-20201030-5118.docdoc 572df435829b5e312b7d35c906a0849970e8bdb68316cbc0d9e18a8748520e01n/aHeodo
2020-10-30321 FYA120.docdoc d26616542bd1e48a280ee31aaa9021211f9f154ea45a256c2c9a9543c69eaebdn/aHeodo
2020-10-30LIST_20201030_6735236.docdoc 37c92b3679506322ef9a1dcc493339e2ebe849d64942f5f6f77310e38a40ff35n/aHeodo
2020-10-30doc 2020_10_30 S17052.docdoc 7ddaad676e2cad0f5aa0b7af862168d98171f03f7da12a7ec894d75faa88947an/aHeodo
2020-10-30list 20201030 AD052847.docdoc eec9c8997a14a18f28258778320aa0458fdfe3cd03fba6558b1ae424931ea570n/aHeodo
2020-10-30DAT-OSK3694.docdoc a6f503ee0f722522b9db959d0fbc8165be864a8a3451d48c9645e45ff53006c9n/aHeodo
2020-10-30Attachment 2020_10_30 VU519.docdoc db58c3c26f6f0bcd33796dd74a5f11dc1d4fff5a06804f59700bf91e86adf30fn/aHeodo
2020-10-30INF 7307.docdoc d8bfd4be9d542043d38192e58ac1118dded572fc34fe74683a4c1f9e7801d524n/aHeodo
2020-10-30File-20201030-6108791.docdoc fccb2d705dea3213ad114cccb819717b0be64264f06779e9084ec9b4e98dccd1n/aHeodo
2020-10-30LIST-20201030-L607788.docdoc a8f76d159fbf9389aa2965e3bcdcde3f20d5dc91dafd70450dda727272720f60n/aHeodo
2020-10-30inf_20201030_V864222.docdoc b542cc4b43329729dbf136b5dd9a372dbeaac7bd9ccb1c04e0003b1ae1067f00n/aHeodo
2020-10-30arc-20201030-2525150.docdoc 25e8c13c4b6c836295fc6e8041be76e87c719558d694234c8f2318216a656783n/aHeodo
2020-10-30Arc_445428.docdoc 1d2af5dd62e301948ff6c0865c7ab91cef421faefa69a645dc6e28a7d73d1509n/aHeodo
2020-10-30UNTITLED 2020_10_30 MZ295633.docdoc 3fb6ff0d8cd1bd26bc7271e2d75265227dd6bb7119965c72e3e3e7f8489fa765n/aHeodo
2020-10-30list-20201030-M4517.docdoc 3e7cecd24a5a4f442e024c198f65a755fceb5eb0e72b385bb636695a37805c0bn/aHeodo
2020-10-30Mes 2020_10_30.docdoc 58110e02a76d62c24b6b6b9e39e9a545debbd59c21af96362cf64dbc8b02dcc6n/aHeodo
2020-10-30ARC-2020_10_30-711.docdoc 38a2ee825fa1600afcf810bdc17461b4938156146e8ac42851e907f0f247bafbn/aHeodo
2020-10-30list 20201030 84345.docdoc e917927e24c2b9cd23b8d500a0b604555fa82e4436515dcee191a3c2f4c69080n/aHeodo
2020-10-30ARC_2020_10_30_750141.docdoc 9b1d40456192d2959fc96b36323a642e7c860d3ac3fbfe453a978c1f87becdaan/aHeodo
2020-10-30inf.docdoc f7582991e89add258b77fb235d0a3b00e3a51412a9c23cdfbf8dd2114915bd09n/aHeodo
2020-10-30File 2020_10_30 ZCJ12367.docdoc fbbe6a9112285c6511075644a37575be3f4b09df736f145ec048c94b7dedd72fn/aHeodo
2020-10-30inf.docdoc e4649f0ee5354ff5857c31cb9edb642663fffa6b960201a7a10ea3adb8e877deVirustotal results 26.23%Heodo
2020-10-30File 20201030 18218.docdoc f122378ffb6c5fdc18baedfe8ea48918d23f9db6e46565bf61a58c00ab889379n/aHeodo
2020-10-30DAT 2020_10_30.docdoc 7cebc56212904493aa409bd9d04980dc664c538e5795ef05836758e228709081n/aHeodo
2020-10-30Untitled-0595.docdoc 36ab685d59b95a817906982e4151ed46b9f64fabe9ffc9fbbaa3171f99e59ca8n/aHeodo
2020-10-30REP_20201030.docdoc d27766a05749a2ace32a892ef16b7bfe0e317951c1b92f8d9b7e67e93924949dn/aHeodo
2020-10-30list VN798.docdoc e2e6de43b6be5fddede5a4a3e017a0121e226df165b53021d13b45a2093bec34n/aHeodo
2020-10-30RZP23508-2020_10_30-146498.docdoc e97bde4648c0de16c94bd7421502842a8e9811009cf48a9402ad574e0e2093a2n/aHeodo
2020-10-30Mes_931.docdoc 5e85d638260191bd2081fa7d7c9f0e45ac098acd5b2080e7535ed59823864599n/aHeodo
2020-10-30rep_2020_10_30.docdoc 8c9ac44890b02ffbaea952b81add0bbbc5d847772b7d872371aeda70bc170f50Virustotal results 28.12%Heodo
2020-10-30LIST-8621143.docdoc f85dfdadc90127312e82fee2bec640f2f4a69cc0509f36337e0078bc603109e7n/aHeodo
2020-10-3023095P 50794.docdoc bbcefc8c00253b2f803fd51e84768525a6fbc85a48189ba3e23a6af208570f74Virustotal results 28.57%Heodo
2020-10-30Mes 20201030 29179.docdoc b545e214876c467f0c8bfb4a8d398fb5d3703cc0926d54c97f16becd283fa548n/aHeodo
2020-10-30mes-2020_10_30-700.docdoc eb5e7b9d8554e92b57e2560655716ddcb3e4a10c2769af68df19681e80692bc6n/aHeodo
2020-10-30LIST_2020_10_30_0071.docdoc 57209365f4fe0becb469a7ff5bb5701651c82c8b3d576f486ca86ff872654785n/aHeodo
2020-10-30List_20201030_32285.docdoc 517f08d7f1dd6fdb4045abe5a369441dc2a2a467f702407029ce57299ed754ebn/aHeodo
2020-10-29arc_20201030_97267.docdoc 39aac454150ec504ceb483a99e30bdcb29a3725664a6ef2e1a02c37f57569e91n/aHeodo
2020-10-294242FF-3642.docdoc 0bcb2d15b9f69c9aa0dd0ea633c1266ad343ab2b1080a11f1d02bfaa933e1a07n/a 
2020-10-294635268-2020_10_30-8935301.docdoc 1c802678220f65ea3b50e82874a9888689aec3c069499e2941f3bfc7d001c726Virustotal results 27.87%Heodo
2020-10-29Untitled O56826.docdoc f6ca4cdead1cf4c5890ad087e9e980fe7c3deba7f95e71e8d3011aa8a7a7904fVirustotal results 29.03% 
2020-10-29REP-20201030-9333874.docdoc 61fe1f318088e3606d51b60f09ebe1de5f1fa0b55fc2c2b3185b2f255400a5abVirustotal results 26.56% 
2020-10-29arc-20201030-6532373.docdoc 11b4592603903a4f6783a2c905e9f163ceb9b48f854fd1addc4b670505f4dd0fn/aHeodo
2020-10-29Rep 20201029.docdoc 746e3fba6b3245e30f287a4a7420d1d2cc51d0fdf5e813f6fb3bdcc289adf893Virustotal results 26.56%Heodo
2020-10-29Inf.docdoc 57ca70312f48ec1eebb7aed03d8d09be5ecf574828adfd77449ce63840fb6e9cn/a 
2020-10-29mes_20201029_943.docdoc 71118241cefbb12d8ed23ed111176158875709ca3064e880a12a6dde1368af05n/aHeodo
2020-10-29Attachments 2020_10_29 73813.docdoc 73940cdfc897c46fc59799c1d435f540a9283b197679e47435a37b0f52bbe782n/aHeodo
2020-10-29Rep-20201029-2258328.docdoc f452ebbb6a749f0cd58dd03de749ef6a2158119219902efa67d5f025461e96f3n/aHeodo
2020-10-29LIST-2020_10_29-626.docdoc da8ef6033ec73c8eb6649101e533c72f5ee07328ca98f1e9ad92956de9abaed8Virustotal results 26.56%Heodo
2020-10-29FILE 2020_10_29 PM04871.docdoc 2c6e4a74fc1b23c3c05b2e5717d495853be7408768a603493d3f7e104a3bc9c9Virustotal results 26.98% 
2020-10-29Dat_2020_10_29.docdoc 5c9357004aabdd59025b4e6cff228ddf6e9ef59b9bc97fffc36d36fe7ce8f421Virustotal results 26.98%Heodo
2020-10-29321_20201029_254.docdoc bd4e1ee4cec944043a73a2dbf8ecadaa88266da7f4390797a8df29d23f0503a7Virustotal results 26.56%Heodo
2020-10-29MES-20201029-59090.docdoc a88e04c2cad8d4caa52e7b111b9665c77a7917a19dc0fa9ca7ff2b0c8caf8492Virustotal results 25.00%Heodo
2020-10-29File_848571.docdoc 89308362523198ae44bc669e761fe90d2d5a35a5755ee1c43468447f0eeb92acVirustotal results 22.58% 
2020-10-29doc 2020_10_29 4144441.docdoc 2a3f825aab34137f80278d609cc6daf04d4f3b44095a9223c87e74dbc98baffen/aHeodo
2020-10-29mes M71080.docdoc c02c3b41d264b63bdd748d8d823f0728bb81c4d0ac01380b7eb00901413513a9n/aHeodo
2020-10-29Mes-2020_10_29-PF597.docdoc 7172aa8c32fc463776f462448e79bc00fb2844918653a5059930f99d9fb9529cn/aHeodo
2020-10-29Mes 20201029.docdoc 46d9e560db1a1d687d58d92ded82cd4ddc77a154a7c66bcc99d628f7386c97aeVirustotal results 20.31%Heodo
2020-10-29List 2020_10_29 D6346.docdoc 60c1c55c2284d0a4e2c49df31f704f0876b23a306fd984fd609ef27abcb71cf1Virustotal results 26.56%Heodo
2020-10-296780_2020_10_29_VU26785.docdoc b1a8a3e928824ed9a2a223c1fe05cbdce4ed84661b4407969b59304cbc193e4cn/aHeodo
2020-10-29Dat 2020_10_29 493225.docdoc 5ce496f13f2728db5457ef356b0cf73e9a390a8016dfb4df1b3d084ad7f0f991Virustotal results 26.98% Heodo
2020-10-29Untitled_926.docdoc 2a117f803129615a11fb51b03aa78464658c82e754b6140a4a01b2ef3bc13a69n/aHeodo
2020-10-29INF_20201029_722.docdoc 3400d3365c00f74da9c7e268a7467a4fb6df77e14095a274358b6646f084d1bfn/aHeodo