URLhaus Database

You are currently viewing the URLhaus database entry for http://emmashop.sk/var/f2/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:936416
URL: http://emmashop.sk/var/f2/
URL Status:Offline
Host: emmashop.sk
Date added:2020-12-21 22:15:05 UTC
Last online:2021-02-26 18:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-12-21 22:16:24 UTC to google-cloud-compliance{at}google[dot]com)
Takedown time:2 months, 6 days, 20 hours, 35 minutes Bad (down since 2021-02-26 18:51:53 UTC)
Tags:doc emotet link epoch2 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-12-23KGJUNECOJ4.docdoc 9683cbca5d42c99f3b67ebfed13fc32aeca9480bfa9aff2d9dcfc70491eb78b6Virustotal results 30.16%Heodo
2020-12-23D1WWTQLX04DVAH50.docdoc 395efc9f98f81ccdcbfe6f9bffdd0e0ea5a2611e4542e43f1241c649713bf46dn/aHeodo
2020-12-230PVSCXA7BT2NV2CG.docdoc e2f1be59a592252d8ca4e2fa82196b97ccb8967f41f6a7fed224944af38fae1aVirustotal results 29.03%Heodo
2020-12-23234DU87NCUP6O.docdoc 2edf013ada24ea7a142b0844b980169d465e7f5aefdaf645b44ece962d10d74an/aHeodo
2020-12-2311NWSQ9.docdoc e9df17a69800a02dc5484a6fc60d1e9f19f7059ed8f0ef9c7847beecc39968a3Virustotal results 26.98%Heodo
2020-12-2370XBFJO6ZP7Y.docdoc 0149c806df64185dc66ee1fdc857e25ee93def1f7db847487674959d2b9306d1n/aHeodo
2020-12-23I6C2WYGNDIH48.docdoc a28b7c24587230e5ac5533afb0324572f1d1341d264eccba2aaf6b2a34e5ce81Virustotal results 25.40%Heodo
2020-12-23EAFEI37UIF08FAS.docdoc cb4f991bd4228ec60ab6af1bab6193e68f4fadf3a30b226e7ee9cdfe893113a0Virustotal results 23.81%Heodo
2020-12-2318O9BGJWW.docdoc 49f4475b4c4b63927d612bfcfc707d4a25237813c727333fbcb42fec441757dcVirustotal results 23.81%Heodo
2020-12-23M19AYUG.docdoc 8e6a0c5576e309e8d8bc23d6103bc9d355ac27c354d69992c7fe8650d39e10b2Virustotal results 22.95%Heodo
2020-12-23J9UZJV.docdoc 7e0f29831e6732a730d1b231a94cae3a27525976381cf6b97d15fe45c295f239Virustotal results 22.58%Heodo
2020-12-23V9EI8CULVXQW1.docdoc afca4fb94300e4d7cd65cf15d802e9a4e1e6fe20051f8c2428b3a821bb3c8cben/aHeodo
2020-12-23IB5ETP43GFY.docdoc f989bb90fd752549af52988b47a9cf55638f97c26ea723457efd21cdab409da5n/aHeodo
2020-12-23N1THWNY.docdoc 6083b405a5bfb099398dc2417486e1c2913bba82b96baff811a71ee6feb0884dn/aHeodo
2020-12-23EQKWM4FK.docdoc 87de984c9ce216b3c4c6ca196e51a042d9a5cd438c4968e8ae070b6053106556Virustotal results 20.63%Heodo
2020-12-23KBDUT8SWH6F6QOOR.docdoc f2c16e9517e4e5e59a8640d99cda01c3078c6e7720f68f7f47a8a4d7b422b72dVirustotal results 20.63%Heodo
2020-12-2311UTCB.docdoc cf2febee508b7992d107d1a46b3deb724fff5b3905e1b7208ed0b5106c2b63ban/aHeodo
2020-12-23QNADCN.docdoc 5a7b88efdd393de9fda81ff445cef38671de030ac35cba26f9b198481bfa29c7Virustotal results 42.86%Heodo
2020-12-23F4YRK5NL.docdoc e269c87f3edd655d2fa4f379bac4ddee2c652386ccd598daf260157b1b9c033cn/aHeodo
2020-12-23R8N6I88O.docdoc 47207dfadb642d35013dc02b38b9dbf49b10333f7447728b8471863fc9ca568fVirustotal results 39.68%Heodo
2020-12-23G9K7IVMKA0D.docdoc 5f5a9d7e2e333beb6d779e447aca446f5bf88a9e05585ef90b1be35599c57ca3Virustotal results 38.10%Heodo
2020-12-23PH4MEW77R00CA.docdoc e1624ae5f5ab385ff8468ca483e628d08be7ee14d23f030d3682a3f97d360c5cVirustotal results 36.07%Heodo
2020-12-23UTXF4LPVGNJ4TIL6.docdoc 74ca579457b696e80799f7acb8b3caa43a1a05be7c10a42fdfa94b1013490c07Virustotal results 32.26%Heodo
2020-12-23ZCC169FIIDND7EQ.docdoc 2cb1d46e5ca1af22841c4a613b16ee60be1c474065ae89053cc02c6d3740101bVirustotal results 32.26%Heodo
2020-12-23BXC0IX2K23E5P4.docdoc c80244df2388e37d8c799e9968c52c9ad8c72b789ad85a2a91c35f8c28b0afd3n/aHeodo
2020-12-23BE73YZ13IRP.docdoc e9c79c389f9e0132834f2da34cf19158e44330446302146e5636b0516d65ed51Virustotal results 30.65%Heodo
2020-12-234C3P3E3DF7Q.docdoc 6983d0de072547b29fe27502cd474096e7831a387d6980280fd1519c1cd86025n/aHeodo
2020-12-23BFVC13O1Y1.docdoc 168fe6ffe9e78f01a7f784833ba9306ef1edad3ccea334df35937424ef0220bcn/aHeodo
2020-12-23YRJC1M9.docdoc ba96b09e7eeac72b4363f7b0749f36b0f3b68ecb4b3c40462d0f9d426b4cb483Virustotal results 30.16%Heodo
2020-12-236EX1QJVE.docdoc e56e47b889fb43e8b9f183ee7abca3a349cede2826008e189de20df4b7bb481cn/aHeodo
2020-12-234DN94TCP14Y.docdoc 9a8b914d6bb8ae09a04b32fc897fdb9a9ffc073975b436b031ac837b7eeefb0bVirustotal results 26.98%Heodo
2020-12-23VY7YNEWSOHV0I.docdoc 47a492a3a0bfd3d8e0e6c5b72d0594fc8f387d657c457da34d5b7c097f8ab9deVirustotal results 26.98%Heodo
2020-12-23N4AZE82E2NFTL1.docdoc b1903f421885c0c1f5f9750dcdc985ec86a256298113e4c14360578feece4165Virustotal results 26.98%Heodo
2020-12-23H1K5TDWA0813.docdoc 64e04bddf27b3d535ea895f4dc08267a98a4c401edadc68e3caf7f6f850c4f64Virustotal results 25.40%Heodo
2020-12-22FCRQF54GALFJU.docdoc 000b049debe1595e96d46d2cb910795e269d9d3f1b3210bfa45901356b3b3b3aVirustotal results 25.81%Heodo
2020-12-22ZJWDVE4SMGOZZ.docdoc 32dbb92d892c9f50e99fc70db5b9f3efe0721a6464984a3f84e6592cda81684cVirustotal results 24.59%Heodo
2020-12-22NIMYHQ1DBO6NNE.docdoc 46935fc92d4e420a9f07c05550f0eb53c8ccff96b0f5fac35b1c8e716ed81ff5n/aHeodo
2020-12-22IMF8RGKWN6R3.docdoc bdfab9675a34c6da34487f2c70f297960002e6c3c2a8e6fdc60ae7edbe67101en/aHeodo
2020-12-22AYLW8EZKTOKUVEZE.docdoc 6420b73153baa8bc93494e5f2cac6f1248c102e7bfccb497d71bc67791603ca3Virustotal results 20.97%Heodo
2020-12-223C9K29LOG.docdoc ca5ed41e13462908c3e7441204044d8519693a667e88e9ffff1cc566247f915fVirustotal results 20.63%Heodo
2020-12-22Z6C5QINX.docdoc ac4a11a17747f0db974bbb343bdf32d636c82bc667c3223c23567faab4377eccVirustotal results 23.73%Heodo
2020-12-22BGJUI1KB86SLTO4W.docdoc 44b69ab822ea1d2cea11bde2cbf85cb033e753dcc8b5e30dc49cb042d3310aadVirustotal results 20.63%Heodo
2020-12-227WIHISRH50.docdoc 98ac350c9b7c510b5ebc70b57008f105b7c25a1db9f0b50390dae799a242f9b1n/aHeodo
2020-12-22XPL40FGCS6Y.docdoc cf9bc9b1442f38adb15e975a6ce0c8a12e5893516067ca74541f8c5aa26f4f75Virustotal results 17.74%Heodo
2020-12-221U4BVYMT.docdoc e50ca86a89c2be0f4e271feba71c17c73e846bfdfc1f3ebd69d442f098acc0a0n/aHeodo
2020-12-22EAECD5FOEUNY.docdoc 73132ef9149825650cd15e4cc30adc5672a95f12f241a676c2887d1af9d205ecn/aHeodo
2020-12-22KKSMYC4BWWIEHTL.docdoc c56452bc0ff9abfcda3df47210eba4e178e55a49d0673f42c9d192ce0234ca64n/aHeodo
2020-12-22D9RMLHXGNLXZZ.docdoc fabd2798310f1b90dc1321bffbfa1ee8c41695839459d40fd6e32618d3df7ccbVirustotal results 45.16%Heodo
2020-12-22WXLN9VE.docdoc 339e0730197932c60c9905a6ef13b72d5308cb38a9965cd3b4e5eb4a3999665an/aHeodo
2020-12-220CUCSWUAHNTP.docdoc f9cde2aedc4f7b8ed8a2795c97febd0fa0caf980946d9d19819e7ba870f2ac23Virustotal results 44.26%Heodo
2020-12-22OZBAUQQMFOM.docdoc 7f7cfdf40853bbfed2268dc75e4981abae04045ef5571e0de2bb61f69578991dn/aHeodo
2020-12-22O6WSMWOOLU2S3.docdoc c9167679e64cc007f5f7c42c046c9a36b51f62709a3e5b5350fed1fb8ce7dae9Virustotal results 42.86%Heodo
2020-12-22BMFSY6190T4CS8MA.docdoc 0529eb660d413f7804da233612e8bd55fae073a9f2af58b046f7f8a24a5a99beVirustotal results 41.94%Heodo
2020-12-2224DHEMH6TSZL.docdoc 0bf21df6643e15a9eadc034f6e7bb35aa9d1b1433bad331c1944fe60418e23b7n/aHeodo
2020-12-223RZPLTUF8V7SM.docdoc 14bd83ddc0151fe3a56edd4209b619cd49a7ec1d198bb98d31972295a7b0375an/aHeodo
2020-12-22DY5LW75E3AGY8B.docdoc b4c8d5a38d5092e1a4eeb1e2f9026fa956a251e0cca6351095aed595ecc4d8e2n/aHeodo
2020-12-224SEJUH3R48155Y7S.docdoc 92eeb996575411acdce1f055a93255e8261b6ad34b5e8bbdded8b2763b4673c5Virustotal results 35.48%Heodo
2020-12-22AYBXMVK5OHOFU5LX.docdoc b7bad120c0c3ba7ed2881c98fc26104cefee58148b7c5850ceb87b683595f2a8Virustotal results 34.92%Heodo
2020-12-22K3NDDYOWAOZ.docdoc d314d90e4d1d49a5c8c82aa438c7c5c4be663a4f68879244a87adfffe358f8b0Virustotal results 35.48%Heodo
2020-12-224AQ0RHTQXTTJT.docdoc 7ec200a834392208ae8521c4804d11ff669137b4265b732a17660527ccf3cf36Virustotal results 36.51%Heodo
2020-12-22SJ6M86GGX4FSWYX.docdoc bf71d36b2ba7d0198a2bebd6c351f932fba9da682a76a354de6b798db426a9e9n/aHeodo
2020-12-22AKYMTXITP1.docdoc 8d81a91518edb9064843167a920609e56978183e85642ee805484047d2629808Virustotal results 35.48%Heodo
2020-12-22RMC43ENCN8296.docdoc 0e67b99a7e91109c9be68c97620b8f63d5c572404114291b27c995cd5c11dacdVirustotal results 33.33%Heodo
2020-12-22KVBZE8A17C99.docdoc e48eb9cca61adb1998120f5444bee783433127651cae6b81024a94d30d219652Virustotal results 31.75%Heodo
2020-12-22ZW4B8W.docdoc 7b84062b282e976585eba365223c01dff9e42cf3351fe5c6e5df65cf22a2932en/aHeodo
2020-12-22Z4N15GJ6J8U.docdoc 10b2c41404b05b905ff8ca14da050e9a25a7c6297bddb80244d9cd437fca5072n/aHeodo
2020-12-22GXUICEJ.docdoc 562201ebef7e65ec5ed8ece1ee219e52ef2e52185d84ebdcd628ee7cfa29d3d9Virustotal results 31.15%Heodo
2020-12-22JV4CWV9DFKL9C.docdoc fed94c0a35c3aee2ff982f1f4001348cd2f048009efffc9676fcdb1ad6ebc374Virustotal results 30.65%Heodo
2020-12-226G7ATRVY0FA.docdoc 5678fb2398f8ae050763eeb8ef6b94b0c43560105c301b6db5c453c84c7e6aa0n/aHeodo
2020-12-22VCRD85N8TD4MSP.docdoc e832702bcd4a1bc593af89baf3e22083205d412a049797b164db2d6177678325Virustotal results 48.28%Heodo
2020-12-22PXYX63.docdoc 25eb015d9f19dc18f4c07b7ad294babedf1f3c0c62d698aea402c84ec09eedd1n/aHeodo
2020-12-22KXE4X9DZ056.docdoc 7f0db28f42defa949deca1a03ba0d33617c04b5e114e187e9b65b67639d750b7n/aHeodo
2020-12-2284DQFCFRWC.docdoc 99791db1cb487d25ca3160836589adcad5fc57a1dceecd3cdc82ecbee51716beVirustotal results 47.62%Heodo
2020-12-22SDK55OMW2MQ9RFFJ.docdoc bbab6187c511a9ba4756bd3c521c97474ced9d06588b917d285dd457b4f590d9Virustotal results 46.77%Heodo
2020-12-22ZO5NEPFZJVR.docdoc 131c12376698272b58eac7309a57016198b292bdf5b742e66c1ed352ff788736n/aHeodo
2020-12-22DOI1MAIX7T9.docdoc ba2bc32f4daa30fda2e05c5960a6a160167101889384e98690e6abbeff973434n/aHeodo
2020-12-22T0UU5M03U.docdoc 6adf12a084ccf2eb6dd19a35742a35f03bcba878416ef83b9c520e17d55ac329Virustotal results 50.00%Heodo
2020-12-22DJYX79U.docdoc 716592916c6f39ede3e673f03bfadfc09349bf29a45ad31bdd83faa58b0efc0aVirustotal results 50.79%Heodo
2020-12-22R2G3GXX.docdoc 2e9ec962d345ba4cd081dc1bd3c89f72f8e52fa86cc06152f1cab0ead72042b7Virustotal results 43.55%Heodo
2020-12-221HLJ5GQ2FM6T.docdoc 200414fe067c46610fc5739841fdbd2c50b2c19b65693fffa9e8999c094b45feVirustotal results 47.54% Heodo
2020-12-227CMAZXU0M14OORB2.docdoc 97f5f7f2c37a21e2f3934ceabe0df7eea42d7925f1b3a4e9a194fa005509dcc3Virustotal results 37.10%Heodo
2020-12-22M4BDOX6.docdoc 47d01951e8e4d0425373658359ab6e4e764c29adf9f0a674dc51fc859ee31719Virustotal results 38.10%Heodo
2020-12-22C2N1JCE5DPZWPY7.docdoc ce6fb78ce0ce59ac239eebb55984e0497f6f9616a5a4ab3fe28b63e8456f3e8aVirustotal results 45.16%Heodo
2020-12-22UYUG6061E.docdoc 36e30272eaee03a311d4a319756851478a523b1f106e67cde2cef69490fe3dc0n/aHeodo
2020-12-21UKW5JHAM2YE.docdoc 83e9ba22a2d674453b12f9150d400d11d35d268d6965b4082c08f070fadfa169Virustotal results 40.32%Heodo
2020-12-212R41UK.docdoc 6a7525a409509ac4ff33649e2dab4cc9580795c516cf135dc3a0b5fb5ad0003cVirustotal results 39.34%Heodo
2020-12-21H0YEV2U7IXLE723.docdoc 6b9afe970bb694103361869b06997d0fa20992aa4766075b64eaf4667d60a091n/aHeodo
2020-12-21OMS80EE8DB.docdoc 38a05045c1e8dd70252d43a09d6aaf12e75e21ee3f9a7153ad1c99101f28d933Virustotal results 38.10%Heodo