URLhaus Database

You are currently viewing the URLhaus database entry for http://cozmicjet.info/wp-includes/esp/vzEVKhllJFgJiKT/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:765756
URL: http://cozmicjet.info/wp-includes/esp/vzEVKhllJFgJiKT/
URL Status:Offline
Host: cozmicjet.info
Date added:2020-10-29 15:23:11 UTC
Last online:2020-11-04 19:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-10-29 15:24:03 UTC to abuse{at}cdmon[dot]com)
Takedown time:6 days, 4 hours, 19 minutes Bad (down since 2020-11-04 19:44:01 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-10-31arc_20201031_Z4550.docdoc c2239c86191e6dbe4cb7a13e085fd47f5e4f9212cdeea61bfa295a9399bc4686Virustotal results 54.10%Heodo
2020-10-31Arc_20201031_475714.docdoc 1fd2374071aff82646df9f4184eebcdb5a6585285850f9788883ef93cf7b3415n/aHeodo
2020-10-31inf-2020_10_31-0773218.docdoc 3805d99f0a9cd93afea1aed25ad44a2a4790be2f24e7e349144bce477444bb36n/aHeodo
2020-10-31Attachments 20201031 B84297.docdoc 02ac5e50e2041552454275aba9a58d1a828a0177dcc51d15b2186d30be06dd3en/aHeodo
2020-10-311975ZLJ.docdoc 0bea7d4e5d34cd10ee4e8eb527d2609687031a9b8ddcaf59b8612440373e70b5n/aHeodo
2020-10-31File_2020_10_31_4708782.docdoc 9f7e678a0c9cee5d1eb08a82949a39169b43d10657e8652cc763f3170c229fe2n/aHeodo
2020-10-31INF 1191236.docdoc cfbf0977de1d103ac358f868b8fee2a7c6efc69be1ed0da77498a8f13f2d9bd1n/aHeodo
2020-10-31MES 20201031 SFP33935.docdoc 71d9875c0b0f5eb7e21f54a29ec6f15a2a260d95d927ef9b0241a8ebe7224296Virustotal results 50.00%Heodo
2020-10-31list_2020_10_31_5817.docdoc 7cd3f78ce8d586224296825a76895b52e275a9adef40a55045c7ddcd487182d4n/aHeodo
2020-10-31List-87757.docdoc 00417023b5ea01da1802c7c13dbee66598567d6202022cfa4cc80a3a3ff2ae2eVirustotal results 50.00%Heodo
2020-10-31Dat 2020_10_31 2962369.docdoc 58b4b01b27226f4c2fcf20dd17aac4604e04c0e736be3d8d1a8291dd0542f1dbn/aHeodo
2020-10-31doc_2020_10_31_39818.docdoc 8bd9939dabc1c57a46d596c9ae13646b5ca27f9a33e544c46ecfb58e729ceda4Virustotal results 50.00%Heodo
2020-10-31File_ZH510650.docdoc 1dee37d93dbf6791b8d6ddfc6baf8ff79af05747748e89bdde2d36b38ff02c14Virustotal results 50.00%Heodo
2020-10-31Attachments_2020_10_31_358060.docdoc b45049870966d3138b4fa4190b6daf3d5e170925279d7a81b7fcd19732838806n/aHeodo
2020-10-31list-SI30485.docdoc c0094a2537141700d89182a20e365fce3cd4f7a7c9a3924d0a5ef894c7a6aaafn/aHeodo
2020-10-31Attachment-2020_10_31-WS79743.docdoc 09d4f64286775cac084f70b33d843500d9372a3abcab48ce9e637d1aa3dbada6n/aHeodo
2020-10-30Dat_2020_10_31_K70033.docdoc 22aa99e5913ca582916ab712beb6f732cf922237b0dc80ff7085a2f601036533n/aHeodo
2020-10-30Attachments 791.docdoc d4bcb7f39013c15789d4355421a62c3fa9a2731065d35adc89bd345e332fefaan/aHeodo
2020-10-30203_20201031_0720726.docdoc e85c32ae68a655edf933be2fded9239c8cbc165e13aebaac456585df69ca4a10Virustotal results 48.44%Heodo
2020-10-30Rep.docdoc 35cb8bedd530c792d8b3cab49ba71c507f68d79348871c033ef9663c437b2aa1n/aHeodo
2020-10-30LIST-20201031.docdoc b42ec3154bf81b9db8b0aa9f3dbdaf4c02eaf40766ddcb5542779307674a532an/aHeodo
2020-10-30REP 2020_10_31 J90991.docdoc 6af7c087d281ec6713e1b1488d66ab4376fd8575b0eb76dcacd6c35f96b28cacn/aHeodo
2020-10-30doc-2020_10_31-OQ81677.docdoc 4d3647601b3522b69469db6fbe0101bd755f6f18b5becffccc20f506e21ac63cn/aHeodo
2020-10-30List 2020_10_31 UFC017.docdoc 6cf1ad2e8cde21b2ca0094f694477e85ab31e56dc6d3e50e5208f7eafe4e1d59n/aHeodo
2020-10-30Arc_20201031_H784.docdoc ba982e58bb118c4dacf2e471d230cb5c74c0f9f21dbcf610e15de9bd9651c3fan/aHeodo
2020-10-30doc_8740.docdoc 3faa49b82a8885d33ee4430223fd3b268e0b778326125f4f9dd6a7f0d3eb82f9n/aHeodo
2020-10-30FILE 20201030.docdoc 0e1e46ba3515694253b3f5f7e14717477b8f5a0569237cb4bc87a65b954b8026n/aHeodo
2020-10-30LIST-20201030-SNN953623.docdoc adfc78c63800a8c33b85e80e40f508c443d2930e3135b639bc79d39aa8f8f79an/aHeodo
2020-10-30MES 20201030 843.docdoc d8fdd8635cfa310552af008f672b947b971fee259691d3c1f629abaddd02e0fcn/aHeodo
2020-10-30DAT 20201030 M742.docdoc fd381117b2d836cce5e55ce31d9f05c26028783457ab22c7289b6b7185e37e61n/aHeodo
2020-10-30LIST 20201030 AQ321.docdoc 395264bd90b31a6048e4bc4591e133e47f6cf2e268b84b4c48213574b8f209fcn/aHeodo
2020-10-30Untitled 2020_10_30 Z40614.docdoc b6802ed0d67d436cb620790db9622265d1efe9facc3604a3866937838bd567e8Virustotal results 42.19%Heodo
2020-10-30dat 267413.docdoc c3f938d4cdecd6141a6463ac07615398d82ce521c1e86c0e5ed70d9a26eec354Virustotal results 32.26%Heodo
2020-10-30file 2020_10_30 084282.docdoc 3e936aea08be2a4ca5afd1e31a874f69a41f38992f51b6e28966e0bad6b863d7n/aHeodo
2020-10-30inf 20201030 Q40384.docdoc 764efa1decf3f9fcc6d949e33850218384b82c15efcd80e3296ad379893d39dbn/aHeodo
2020-10-30UNTITLED-E220.docdoc c82dcf3a275ece2328f53ba99df8d09b41acb398f7d334bae7f8fce66dcc8388n/aHeodo
2020-10-30File_2020_10_30_TDZ875.docdoc 94475692dcd80bc6c6c60a7fa254144bf115bad1ab83db49cb7e31adc04dc445n/aHeodo
2020-10-30inf-6619780.docdoc 230b1a207033b364d502d36c3e1b6d377b41ba1d4acc6430760d4adec476f2d7n/aHeodo
2020-10-30MES_1639177.docdoc 5c118adcf6a54455254fe724be510fdd3f2fbde2bc537a2f8cfe3e3c3b61b4ecn/aHeodo
2020-10-3074859-20201030-7607762.docdoc 3c27be9dc2e9b5c22f24958c7622a68278b2d1b21ce336dc334afd83e0bc67bbn/aHeodo
2020-10-30List_20201030.docdoc a5e1193ece43cd48b9511441e1db28305a6d41cef66fa35566debaa9d51637a8n/aHeodo
2020-10-3049169024_FQX3364.docdoc d8bfd4be9d542043d38192e58ac1118dded572fc34fe74683a4c1f9e7801d524n/aHeodo
2020-10-30ARC T5727.docdoc d3589ced3c46c385cd771bb537c25db297ff85dc5ebd364f5e3c556f7ea526e3Virustotal results 28.12%Heodo
2020-10-30Inf-2020_10_30-328.docdoc 6cd28a432954cc55b926c6bad6709ebd45378d95b768bda25d2a856aeefc4b97n/aHeodo
2020-10-30file-SRO1766.docdoc 9a00a9f78c2f3e3013f6ded2f841c3d6eb2326dc7e3f385ad159f10b4b1db588n/aHeodo
2020-10-30Mes 2020_10_30 750747.docdoc 3b51f89370d2552837e521d172d2b971481c37f6daaff03fe5c192067d630cd6Virustotal results 28.57%Heodo
2020-10-30BNL686_2020_10_30_X6864.docdoc 6efe01692ac62259e93f3d6b7772ef77e8d64d4925adfac77c6ae35ec8168c27n/aHeodo
2020-10-30DAT_2020_10_30_M802.docdoc 9f214933aad39c937e077e8949a585feb85e7e310e261ef6cf9eacdad19d2781n/aHeodo
2020-10-30DAT_2020_10_30_OGR16976.docdoc a26da939537a1c0f98c32fb4171e8d87d54406121f1926af237c4343f877cb3bn/aHeodo
2020-10-30ARC_1898832.docdoc 3e7cecd24a5a4f442e024c198f65a755fceb5eb0e72b385bb636695a37805c0bn/aHeodo
2020-10-30file-20201030-R46429.docdoc 38a2ee825fa1600afcf810bdc17461b4938156146e8ac42851e907f0f247bafbn/aHeodo
2020-10-30dat_20201030_0605.docdoc e917927e24c2b9cd23b8d500a0b604555fa82e4436515dcee191a3c2f4c69080n/aHeodo
2020-10-30Dat 0960.docdoc 98d1c2eec01fc9e0f9106bf41b1611884e74a45ab849644b9f01bcd4f7a42768n/aHeodo
2020-10-30Attachments_2020_10_30.docdoc 9b1d40456192d2959fc96b36323a642e7c860d3ac3fbfe453a978c1f87becdaan/aHeodo
2020-10-30Doc 20201030 44261.docdoc 612b66140b3b1ee1d77949fe254bb8348132d29b07fcbf108dcf5b85e98575b4n/aHeodo
2020-10-30Attachments_2020_10_30_YX3633.docdoc d2586bfe71887b55049e481ba9900cf860e8bd1247f93938a59519db3581f374n/aHeodo
2020-10-30FILE 36548.docdoc e4649f0ee5354ff5857c31cb9edb642663fffa6b960201a7a10ea3adb8e877deVirustotal results 26.23%Heodo
2020-10-30Mes-20201030-7555993.docdoc f122378ffb6c5fdc18baedfe8ea48918d23f9db6e46565bf61a58c00ab889379n/aHeodo
2020-10-30inf.docdoc f75c189b8a815089f824f8ee0fbce3901f2a998615e0bb273da49e24120b2675n/aHeodo
2020-10-30Arc-20201030-898.docdoc 49c26c43eb2d1a6902e08ac9fb28d01e2bbbb280158487ea75354dc80be59e31n/aHeodo
2020-10-30mes-20201030-264748.docdoc 091deed14b5bf12ed9363d9252ff12388eb3aaf331490520e462d12823c9019cn/aHeodo
2020-10-30Doc 2020_10_30 429.docdoc 78fe84159621fe170f653bd7901b42c6ab5834ee899fe2fe2660497c8445ed48Virustotal results 29.69%Heodo
2020-10-30MES.docdoc 21b03a75a5f8624dc73b7045c679c39af5b50c3d6c18f813b16f5f88cefb13f3n/aHeodo
2020-10-30Attachments-2020_10_30-5903.docdoc 6c3e28e9d3fc3e6192e4e5dfe110ca2aeb96794d8dbed234856cf5ae32ac846aVirustotal results 28.57%Heodo
2020-10-30404.docdoc 6b766925de9c4cda22bdd6c7da535788023c12dcd880a7ec02d40e69f63aca4an/aHeodo
2020-10-30REP-RD3161.docdoc 8c9ac44890b02ffbaea952b81add0bbbc5d847772b7d872371aeda70bc170f50n/aHeodo
2020-10-30File-2020_10_30-UNY77270.docdoc 17ad42be381daee731d661bbb69e4ee30d40efec56d85b18aedc6655b0e86159n/aHeodo
2020-10-30Untitled 20201030 535.docdoc 05b836813780375ab027f2424e9846c3026e6340b097f3a74929e9381fdafda7n/aHeodo
2020-10-30DAT-2020_10_30-081.docdoc b545e214876c467f0c8bfb4a8d398fb5d3703cc0926d54c97f16becd283fa548n/aHeodo
2020-10-30Dat-20201030.docdoc eb5e7b9d8554e92b57e2560655716ddcb3e4a10c2769af68df19681e80692bc6n/aHeodo
2020-10-30file-20201030-7412.docdoc 0959eb24414ed4905b9b3ae4892e1489673cb1dcfda78853f7cd12bb8506984en/aHeodo
2020-10-30Arc_20201030_6382185.docdoc 34ebdddd214c6abbd22fc74af04fdf1d1af2b6ad1563f85e1d2c63ddd5f4be05Virustotal results 29.03% 
2020-10-29Untitled-20201030-015.docdoc 39aac454150ec504ceb483a99e30bdcb29a3725664a6ef2e1a02c37f57569e91n/aHeodo
2020-10-29Attachments_2020_10_30_U40073.docdoc 04994a1c8ed2e114ae0ae3ace2037a957983121aa110568738e22db0f364bd03n/aHeodo
2020-10-29Doc-2020_10_30.docdoc 1c802678220f65ea3b50e82874a9888689aec3c069499e2941f3bfc7d001c726n/aHeodo
2020-10-29INF 38831.docdoc ab1677b6e3da1bbafc0938559b2a9731e7a126660dd10d5961abc1d4bb4a0905n/aHeodo
2020-10-29UNZ712_2020_10_30_R380168.docdoc f7859c423dab46818b45b25833fd584c16ed8e13e40c154fbf31c4266f11566cn/aHeodo
2020-10-29FILE ETZ590.docdoc 823d83a26c3b5351909a1a303cacf77c15ba7d435824834d15f1b043423e5779n/aHeodo
2020-10-29List 309833.docdoc 746e3fba6b3245e30f287a4a7420d1d2cc51d0fdf5e813f6fb3bdcc289adf893Virustotal results 26.56%Heodo
2020-10-29File-20201029-413575.docdoc 749a637bdf40f86a5743764dfcf9c1654d7c1943f00127bf4cdf440d04412f31n/aHeodo
2020-10-29file-2020_10_29-1761164.docdoc 71118241cefbb12d8ed23ed111176158875709ca3064e880a12a6dde1368af05n/aHeodo
2020-10-29doc_093058.docdoc a9adf996fc16c172ac4f9b304cd5bba6914adfff11025c697e9c0ade0193e353n/aHeodo
2020-10-2997762UH_20201029_525.docdoc e7edcfd6e273c238f6ffe139425160ade465ce821e62ece0fcedd76519369d32n/a 
2020-10-29UNTITLED-20201029-23917.docdoc 8d9d4d850d036b687ad9c840d4b9667d172fcdc5cb3e7d303b95bbff842ecf42n/a 
2020-10-29inf_V5266.docdoc 3ce86ebeb7522e05953bd5076f603c7937e47449bce8168d8ec536b1c388d54cn/aHeodo
2020-10-29REP 20201029.docdoc 17aad9f175247945c507373641edce9a099ed686ef9766f2440001c66f0d2dabn/aHeodo
2020-10-29Mes 20201029 32813.docdoc 3957af6bab72b10a46bb4661d6f6bef94195cfe1de6e298fa6305bf37021250cn/aHeodo
2020-10-29DAT 20201029.docdoc 36e86b29646738d8621d0a0a76a435b4dfd8bc508480bfe3cf0f7f10c345deb7n/aHeodo
2020-10-29Inf-8007.docdoc b6c6dbf739957462e2888c43c0f3380eba16593b2fe3bf0a587ad0a91a53785en/aHeodo
2020-10-29Dat 20201029 35218.docdoc 2b6bf06663b63251018866acf0a7fed5d2caa85b0c51bb12b7c63567dfb01cd8n/a Heodo
2020-10-298957ZHJ_LZ429.docdoc ce869158de875fbc33001bdbb7b68789e1eb568ea293d4f62d20382987e1566dn/aHeodo
2020-10-29mes-PI733.docdoc c02c3b41d264b63bdd748d8d823f0728bb81c4d0ac01380b7eb00901413513a9n/aHeodo
2020-10-29Rep-2020_10_29.docdoc 077be67005c8b39a0939b9b8cf2eb12455b8a5361a56f24fdca1d76554d537cfVirustotal results 20.31%Heodo
2020-10-29Dat-37906.docdoc 5b058e314ca3eea9e01e7991f6234e1ebf0239e38dbc62f38eb0dd7f85d0f390n/aHeodo
2020-10-2963148V 20201029 122024.docdoc 60c1c55c2284d0a4e2c49df31f704f0876b23a306fd984fd609ef27abcb71cf1n/aHeodo