URLhaus Database

You are currently viewing the URLhaus database entry for http://upinsmokebatonrouge.com/var/kZKk4S0XnGUwc0OKsia1/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:936733
URL: http://upinsmokebatonrouge.com/var/kZKk4S0XnGUwc0OKsia1/
URL Status:Offline
Host: upinsmokebatonrouge.com
Date added:2020-12-22 00:27:08 UTC
Last online:2020-12-24 12:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?):mail Yes (Ticket DCU003188180 created on 2020-12-22 00:28:19 UTC)
Takedown time:2 days, 11 hours, 52 minutes Poor (down since 2020-12-24 12:20:49 UTC)
Tags:doc emotet link epoch2 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-12-23POT7LZHPII0WYCJ.docdoc 768f3c029cc79ae21d7c732487da93f0e8c7d19a83737f9ce7e107e3adc9054cVirustotal results 43.55%Heodo
2020-12-23Y2PJ8C2VTXZE.docdoc 66e2a898e0b029a13f3091ffd91aa453888cf996011f8ecaf3b4a4439b68d413n/aHeodo
2020-12-23WSSWR3AUBNY1P.docdoc 6ed5539e92f43fcde23dc6343c4f41a93050576180fad637adc5014a49ed38aaVirustotal results 41.94%Heodo
2020-12-23J70WDBNZ1.docdoc e706341bc37bf712b1c9cde4133f7a479e41cb8e6f4b9e9fdd3e3eaa8dcb91c1Virustotal results 41.94%Heodo
2020-12-2334LWCB7IOQK2H.docdoc 3e9a6799e7ba70727573d5d792394849b0d94f95a6d0d51e46c3a3340314f764Virustotal results 41.94%Heodo
2020-12-2337647HCAGXU6K5L.docdoc 23c7b6514694abdd61ab7f466352e211d87cc2086939a3efcc14c94251842cc9Virustotal results 40.98%Heodo
2020-12-23CEAWTNBG2TZ.docdoc 460e772fe33a8f6054329997f77e044e08d85f72b2cb3c8d122096c879176eb4Virustotal results 41.27%Heodo
2020-12-23NFX2JXS1C7BXQ5Q.docdoc 883f2d94856edd7ee7d9ddefb4cb9c49b0300ad23fad3aa88f3c020d166b771en/aHeodo
2020-12-238X3LWXECJV.docdoc 53607b62fc227216a0de7e569922ef170b8d25443b8839f2a77717fddeb43e38n/aHeodo
2020-12-23A21B2KQCX.docdoc 94d804683ab1c9195ece193461e872d75b4835c2ee0fc73886dcca02a89463edn/aHeodo
2020-12-23MXTDWG4.docdoc 381a05910438bfbe38d8cde701cbbf020f0e303a1be1a9825df6087a8071b37cn/aHeodo
2020-12-23J2I4WT3.docdoc f8863f5eb2872b1d2fa17f58ad4121bb0be5a292c832b3f58a674d3ed705b656Virustotal results 26.98%Heodo
2020-12-235G4GIR3.docdoc 2edf013ada24ea7a142b0844b980169d465e7f5aefdaf645b44ece962d10d74aVirustotal results 28.57%Heodo
2020-12-23QBWVCF.docdoc a7b7abb4d144045e42bf5e55e294d5b67850d11ccaac312734570ccca072851fVirustotal results 26.98%Heodo
2020-12-230ERCOY14XHI.docdoc d515c766ed70768021011da8cee6b7e50fa0a5ab48bedcce9dac95adccd4500fVirustotal results 26.98%Heodo
2020-12-23MZB1YHU.docdoc 09d5de04cf0dc8dff51dd2315b237fa491d213f8496f1c361a7ef2efbbe15932n/aHeodo
2020-12-230Y3ZPXZTV3GB3U.docdoc a28b7c24587230e5ac5533afb0324572f1d1341d264eccba2aaf6b2a34e5ce81Virustotal results 25.40%Heodo
2020-12-235WTI2172Y.docdoc cb4f991bd4228ec60ab6af1bab6193e68f4fadf3a30b226e7ee9cdfe893113a0Virustotal results 23.81%Heodo
2020-12-23QJ2MFMIX1.docdoc 49f4475b4c4b63927d612bfcfc707d4a25237813c727333fbcb42fec441757dcVirustotal results 23.81%Heodo
2020-12-23I4U9IH.docdoc 8538d00638c32a97eac2e8a9e1766a39268d8effa55c28026d3b75fe114dbc18n/aHeodo
2020-12-235EWLUB4ELJCEA16.docdoc 7e0f29831e6732a730d1b231a94cae3a27525976381cf6b97d15fe45c295f239Virustotal results 22.58%Heodo
2020-12-23BM6LX87S2.docdoc afca4fb94300e4d7cd65cf15d802e9a4e1e6fe20051f8c2428b3a821bb3c8cben/aHeodo
2020-12-23HWUI0FS9WSQWEDF.docdoc d5231db757615d38ce982ea1272ef281efc93dc8105418c890e8f9e59d76ef0dn/aHeodo
2020-12-23TC0PZYLLGLFLKUS.docdoc 1b7862cdd7e11129f0b2efba625efa4a4298cc9610881f0e2ecfef4299a10afaVirustotal results 22.22%Heodo
2020-12-2312B1DWA9ABVW6YDZ.docdoc 055f997b54c9f0fe5ab2c07849d8e88daae0adb0ff26458d823b6f7413f3ac72Virustotal results 22.58%Heodo
2020-12-23D3WSRS3Y2.docdoc 241c359520f4cef1af1de9d4789bf620f8086c7feb5aa2deba772b87aef3d514Virustotal results 22.22%Heodo
2020-12-2363QRA260EV.docdoc 318cf158cf886f17e7e947feaaf989f25e514c91bec35e9dcca2a4f2ef4baa95n/aHeodo
2020-12-23EYZPQJPFEH3O.docdoc 6083b405a5bfb099398dc2417486e1c2913bba82b96baff811a71ee6feb0884dn/aHeodo
2020-12-23IYLVZMNCZL.docdoc ebfadd85753d033e248aedd9f9c5772331aff8dc35049d0842e8c423d64ea08cVirustotal results 20.63%Heodo
2020-12-238N1177FK0FV.docdoc f0a4ee510f94aaef257225740c62c4a65b2da3ced23ca6b1513b9fbe11fd3cd8n/aHeodo
2020-12-23J0OLKNTOU56BQ.docdoc 60029fa95c17ba479a9ed424abc3a3f684111997424360741b67de478d0bcd4dVirustotal results 20.63%Heodo
2020-12-232SZTI4QGWFDQ2TN.docdoc cf2febee508b7992d107d1a46b3deb724fff5b3905e1b7208ed0b5106c2b63ban/aHeodo
2020-12-23SNF3ENZW.docdoc ba9ea1c4a35b426bb909eae9b8b40a6acdd5a80c1cea10d8a336338a7b282522n/aHeodo
2020-12-23YVHZED9N.docdoc 4a6d02a3adc59903ee067a5abc702d78fb31c61deb56b7360fade2ec85195569Virustotal results 41.27%Heodo
2020-12-23UUFAEBHOGWI9L1N.docdoc 93901d975d0df11ab32c4eaf841b43684882ce002e1222696c629076b1b81792n/aHeodo
2020-12-23IFQXPN9A0N5M68.docdoc 0b92e01b938b2941f4f0940c53a2f53da1f523d08ac18e2f8bc4dd9cc96b52a5n/aHeodo
2020-12-23ZXOPM3QAOA3O1F94.docdoc 2bed788f0ae4910b2b76b0d6a72af5f76811598705f59de52684ab9f99ca1fa3n/aHeodo
2020-12-23RJ5DWNMBGJU9V.docdoc cf2b33d88046f8e39c8299718c9132fc22247ef02bfe6ae6d404b0ca1c7c6119n/aHeodo
2020-12-23STXM535X1M0DQE.docdoc 70cd2d38d41ecad15addac25c6e09641cce2f946161ecf261e639a09576ecb8bn/aHeodo
2020-12-23UHIX2ACMUN4W5.docdoc b534c439ac7a89c6af82331ebd70e5b5ce5e13a2e871bb7ab122b00004605e97Virustotal results 36.51%Heodo
2020-12-23QXUIXF4Y.docdoc fd76c945ff05629b1e31b55378f97c543c8dce7496389385dae3fd4b8acfd12dn/aHeodo
2020-12-23SFC8HTJDX.docdoc 68e9fac6a7996f04c150777aec9f02864a62b4c0d59675625c1801a231461a0bVirustotal results 25.40%Heodo
2020-12-23SFDRWVQ6NZDSKY.docdoc 525689f16129765cbfcab859edd5d99fbbec461ea04160605819b2f4b6150042Virustotal results 27.87%Heodo
2020-12-23CZ4UTWB4FJN8.docdoc cd26f4220386d91ffb1a0233ece99c207f4335aab6a4c6227d64756f16500ef7Virustotal results 31.75%Heodo
2020-12-2373NBSM7TP.docdoc e9c79c389f9e0132834f2da34cf19158e44330446302146e5636b0516d65ed51n/aHeodo
2020-12-23AEH8L5.docdoc 6983d0de072547b29fe27502cd474096e7831a387d6980280fd1519c1cd86025n/aHeodo
2020-12-23FM3R6M5.docdoc 168fe6ffe9e78f01a7f784833ba9306ef1edad3ccea334df35937424ef0220bcn/aHeodo
2020-12-23ACVD6T3R.docdoc ba96b09e7eeac72b4363f7b0749f36b0f3b68ecb4b3c40462d0f9d426b4cb483Virustotal results 30.16%Heodo
2020-12-23C0Z7FJ.docdoc 64df2f4241becefb0876d62be5908b4d62620e2aeb97828cb2819d952d106f11n/aHeodo
2020-12-2389YGMJ7.docdoc c29f20dc33cf2304271a54734dc3746f342898284264bd66094dee544fc133bdVirustotal results 26.98%Heodo
2020-12-23FNYNV0G0W0CWZ6.docdoc 9a8b914d6bb8ae09a04b32fc897fdb9a9ffc073975b436b031ac837b7eeefb0bn/aHeodo
2020-12-23GYUJFT8KXN39V3.docdoc ec49319ad4b8ab163292c8a1332640a715616436de18d6b1124f4cc51b3cb4c4Virustotal results 26.98%Heodo
2020-12-23HA9YZSVO6XLXVUB.docdoc 1f5a0f7a62383b576ac6f661f97a2c035e72d6f054e5b63ea53123ed9081dae6Virustotal results 26.98%Heodo
2020-12-238GRRZBVQQL.docdoc 31f327ab8307786ee50af20aaf5c4c2b6ecc974b69a584c78a2dce04fe5d327en/aHeodo
2020-12-23YGRQJR8KNK0.docdoc c693baac5d3227d362a0fe99ad187c18cde1f45a404c94c881d424023303a744n/aHeodo
2020-12-23EPU0TMV5DG0CSRL.docdoc b6a4c5fd2aa2119a83b7372ac02aa65feae5a7d083a93656c4a437dd865a447fVirustotal results 22.22%Heodo
2020-12-23UTG4LS1SXAAX14.docdoc 64e04bddf27b3d535ea895f4dc08267a98a4c401edadc68e3caf7f6f850c4f64Virustotal results 25.40%Heodo
2020-12-22IV7L6AN7P.docdoc 815857993a030da4586f91406591e013e670d9a286faac31e529668bb9a169c8n/aHeodo
2020-12-22CS4CF8.docdoc 32dbb92d892c9f50e99fc70db5b9f3efe0721a6464984a3f84e6592cda81684cVirustotal results 24.59%Heodo
2020-12-222W42818CTVM.docdoc 05c57f48c8b1958bf16f64a292f9aa05a43f6185d02c54a0d8cf03b2fbc56ab5Virustotal results 25.40%Heodo
2020-12-22UL3LEEOMZ1.docdoc b88940065daeda56e1e49c0db60c1e275b39e435f83b785742242104d173a57aVirustotal results 22.22%Heodo
2020-12-22JMVTD58.docdoc bc80ebc602752fe60bc486b8620ac2692c2cf2f368e79cecd3a281ce807855e8Virustotal results 20.63%Heodo
2020-12-22Z81U8GMOGQA.docdoc 2d523850bbd1d5abcaf76fcaceba272f038d954a97263941a3375c3301a1e2eeVirustotal results 20.63%Heodo
2020-12-22DGZXB0L.docdoc e2e85f53c26daaa6cc7e1fe602e51f272ac256cc0c23725350d37b4a5a888520n/aHeodo
2020-12-22D8AM1MCYJGWU1W.docdoc 3a6a1a101ff166519b8b881efee09a67e6b3fdd9de23e64eb8811d52604d9923n/aHeodo
2020-12-2254MD529ZJWG.docdoc ea9e0d2591e09cdea3ac66cbd5410ca96f9bbb033f240fd580c71854292003b9n/aHeodo
2020-12-22WA1Q5JE9FL.docdoc 27906840017168a094ac6e8680394dc597113999570a3fd5bb8d19005ec8a01en/aHeodo
2020-12-22IPW9L6.docdoc c8edf2d6bf8063fe5d26adc5deb79ebba1b6f2d9fb6d25f560e2c4791b6668bbVirustotal results 20.63%Heodo
2020-12-229SKMCR58GQ0M8.docdoc 2b3c9804804fdcc11bb7fe3e0d269d644f968eae8f77d314ab1e8e700529d5e5n/aHeodo
2020-12-22OLJ7YGEU.docdoc ffce79e8ecfa61f2f82aa9b40d611c100e6cd68cde6fc34b012ebbd21750908dVirustotal results 19.05%Heodo
2020-12-22ID9CSU8KNX.docdoc 7202951f9a61583025149c17fbbfd11c028ddf3fb0c080886b3022f117c9b0e7Virustotal results 19.05%Heodo
2020-12-22BDKAJJCULW.docdoc 755b0648467884ea407cb2be70ee59bdff597edec6e149816e553134e25aaf54Virustotal results 20.63%Heodo
2020-12-22CGW62LNO.docdoc b5cabad4213a8d3f738e1ad1145a3130b3f5fe2739bcb8e5aa1f1ac3fa3fcd7cVirustotal results 20.63%Heodo
2020-12-22NPWRTN4.docdoc bcac6e544a85109fa2e8fcfa76dd269f02ff7b933aceb784575da053e1f940ddVirustotal results 20.63%Heodo
2020-12-22NNL0JIO70NZ.docdoc e5614cfb775d155e08d37cb94f971696d9f60791a83ac671d7e6929438337933n/aHeodo
2020-12-22IDYIO4P.docdoc 7502643f790e60f6929633b08e891ff81ad310001525c345b9dc2b448c1373b0n/aHeodo
2020-12-22NYQ6P74DR0TP8SM.docdoc fabd2798310f1b90dc1321bffbfa1ee8c41695839459d40fd6e32618d3df7ccbVirustotal results 45.16%Heodo
2020-12-22HEMIPMLR.docdoc 339e0730197932c60c9905a6ef13b72d5308cb38a9965cd3b4e5eb4a3999665an/aHeodo
2020-12-22DK1EBGN.docdoc f9cde2aedc4f7b8ed8a2795c97febd0fa0caf980946d9d19819e7ba870f2ac23Virustotal results 44.26%Heodo
2020-12-22ZHQWWIY3D.docdoc 6191dcfff06f36e7ae3ffab9272718d60482913bac94ce985ce8a5eaca930e26Virustotal results 43.55%Heodo
2020-12-22JYVLY53UV.docdoc 5b4a0dc192486378dcf0eea12dc55425b6166fb54866abce0b8a339b36d2fa26n/aHeodo
2020-12-22JQ265FEMZRWAMEA.docdoc 5961f5f44cedfac8a1de3568cdad7e244f181b87395cdcc5f31e7d102457cdc0Virustotal results 42.86%Heodo
2020-12-22WMTPW2WO.docdoc 5f4018dc3b1690532b9c475183c9b2d86113ccf0da5fea7459275baa9a0af22eVirustotal results 38.10%Heodo
2020-12-22BNQVPRFEO1BB.docdoc b53dec8069b951674ed7de1e6bd4092172c11b0639b445c24faf363744511c6dVirustotal results 38.10%Heodo
2020-12-2253G6BVKT0VHSM6.docdoc f8a293a233f791740b03d5e9f763edbe9ce5b7118b45986d500a6951716f52c5n/aHeodo
2020-12-22U5KYNSCW549H.docdoc 884af4ef4c4cce6b4b6d059a23ddacf8aeb92b68fbb4dcedfbaae3352f1fc5cdn/aHeodo
2020-12-22GAJ083VFH.docdoc b7bad120c0c3ba7ed2881c98fc26104cefee58148b7c5850ceb87b683595f2a8Virustotal results 34.92%Heodo
2020-12-22QORNHFG755A3XAO3.docdoc 72526ea70462d80cfb3edea310592329d47c4081c3ee6df1184a219a17b1a731Virustotal results 33.87%Heodo
2020-12-226OTFVP6.docdoc 30fcb0b638fa78c9ec712cfdde89641c5d6a6ae28c3bd1fa75b29f9b78855721n/aHeodo
2020-12-22E40NSTSKIU1UAI6E.docdoc 6e80cf87bd4ef21287958848ca5250a78cf17cf17f09a9b1b11cd37a01a24202n/aHeodo
2020-12-22KBLM7Z71CS.docdoc 7ec200a834392208ae8521c4804d11ff669137b4265b732a17660527ccf3cf36Virustotal results 36.51%Heodo
2020-12-22WTCK2JOSM.docdoc f5d52678316f377c59a3f063b29a06a415106d5833d1786533d7abb7e27008cen/aHeodo
2020-12-222L5CWRZD.docdoc b243c7cc81b3d66be13ecf0f9876b4e579c80b51dbece8f9a0be2bf85542437fn/aHeodo
2020-12-222OZ3DGH.docdoc 5d45aae2fb42f515daf99e0df859fe8fb728ded811e109bb5221a8b34bcaaed4Virustotal results 36.51%Heodo
2020-12-22MRDBNZ9.docdoc bcd43a28292c3b23ddb842d173e09e82095f9de58af9eb9feec0035c916e8156Virustotal results 36.51%Heodo
2020-12-22MIAO9TOCSG.docdoc 8d81a91518edb9064843167a920609e56978183e85642ee805484047d2629808Virustotal results 35.48%Heodo
2020-12-22OYY0S7NW86R9QNM.docdoc 44567a5fc7455899c29966d8b05b823a60aa48487ed47b4ee9262fbd73bb6a1dn/aHeodo
2020-12-22FCHKATYK4.docdoc 0e67b99a7e91109c9be68c97620b8f63d5c572404114291b27c995cd5c11dacdVirustotal results 33.33%Heodo
2020-12-22T9B2D996XVAO.docdoc 6e64c93e0929da5ff396df56de2ba50ef16098d90feea49e0a1973edb6dd4238Virustotal results 31.75%Heodo
2020-12-22MXMNW8UFU5OUFULA.docdoc 33b84c4e55798d0445fa4926f79f35d6b12ed272eda6f6686060a47bf22c39c1n/aHeodo
2020-12-22638UQH25ZVO.docdoc 32fbae9d70e182a0fb8050fd163d5d96e7a269a462d2f0d98c9ad301a56be59fn/aHeodo
2020-12-22DQRKGJGSZ0NJ2Q.docdoc 5bdc116f61159b0fdf12780d8228204288849c12c8cd79641e3061b1c4a8c0c0n/aHeodo
2020-12-22TLTHKRW3EQSWM1.docdoc 205ebf3346876ecce80616025b86de13965c5e1fb6f8e252fe9337ed8390bf31n/aHeodo
2020-12-228ASAB4SKK9CWQTAX.docdoc e18f34fd2b761c5ff699a3bb1e6bf4fa2f9d43f91cfc0ff44794e8ae7e4ae926n/aHeodo
2020-12-22EJQR6P5.docdoc 1f59b8c98ceb6c3f280526c5b3f1fe4930766fcafc84ecd28089994b9775147dVirustotal results 31.75%Heodo
2020-12-22E4HM44IZDRX.docdoc a920635eb94e7e0d4add7880d523b5d55170d97bed0841dfc32e8ee4657c6106n/aHeodo
2020-12-224D3FUULS0.docdoc 7c7bb9a49435ab8c1bc07689750d6853d406473e512b9d4720330b8489a35a2dn/aHeodo
2020-12-22O0X7KHRP33WLRIGP.docdoc f1484f77d7833c2797c1f51838d30018f62d6b94cd90a17ac0f72633d22222a5Virustotal results 49.21%Heodo
2020-12-2284O2CP5Q4A.docdoc 5107a8bea0eaf25e9678f18390225717dd772522a6645b195e40d9e9214f058bn/aHeodo
2020-12-2285XRTMO9D8HK.docdoc e832702bcd4a1bc593af89baf3e22083205d412a049797b164db2d6177678325n/aHeodo
2020-12-22HX21C08PPR6C.docdoc 092f14c2e660fd33f931eb2674dc484e624998ce01555b386e02991e8a6d574en/aHeodo
2020-12-22YG7OTAXI.docdoc 16435a7bc02d8c0ebfeab05878d59be715c385a0d646258abd2ddaa498800d30Virustotal results 49.18%Heodo
2020-12-22M27RH5TQ1NZY1KA.docdoc 99791db1cb487d25ca3160836589adcad5fc57a1dceecd3cdc82ecbee51716ben/aHeodo
2020-12-225P7AJUNAAVZWHAII.docdoc 7a894e2ed601a9331dc7f0f250ab3d57481aa463c9a5f123d4740d43b6ae9a5bn/aHeodo
2020-12-22ECIYKID31S.docdoc 2e2845f894af1842a98bb01b55cf68757e6c573d1d97c11cf41818de4a70f82bVirustotal results 50.79%Heodo
2020-12-22OKEXWU.docdoc d841f4da05bdada1458017cf1fb3029d311ce6c10ba7f8e0787f663dffd2600eVirustotal results 43.33%Heodo
2020-12-22KU6FYHTT.docdoc 6adf12a084ccf2eb6dd19a35742a35f03bcba878416ef83b9c520e17d55ac329Virustotal results 50.00%Heodo
2020-12-22AW3XZ3.docdoc 13544a2cf0cbb74b9e56d6a07e2f7b0eb1a6fa51076693f0dbf166097b1d2b35n/aHeodo
2020-12-223TQXR6XL3Z.docdoc 6c26774c4763bbbc05c970dbe0b96045fefbdffc80c2d7878e8ca8089f0215c9n/aHeodo
2020-12-22IETXXDLD.docdoc 200414fe067c46610fc5739841fdbd2c50b2c19b65693fffa9e8999c094b45feVirustotal results 47.54% Heodo
2020-12-22DLFZHR.docdoc 45defa35954d6268fe26f6ffec131a6de427af2f682079ef11852a33ff1db07dn/aHeodo
2020-12-22U3I3ZR8DZ.docdoc 56653f85b04940e6ed43fa36bad1c147ff98665b1466dd59f46fbaa65b38f209Virustotal results 44.44%Heodo
2020-12-22T9TYP199PI9OL.docdoc 47d01951e8e4d0425373658359ab6e4e764c29adf9f0a674dc51fc859ee31719Virustotal results 38.10%Heodo
2020-12-22PWGFS563TMP37PG.docdoc 4be32fc9457cb3575d9f59665e4d11c4625dd3bff4cc13ff2f25aa739753173bVirustotal results 45.16%Heodo
2020-12-22FTENRTYZK9I95U7V.docdoc a02591c24d3c86f54be79271c7ec7e679141ae9245b3ac62da5d6f382edc0880Virustotal results 44.44%Heodo