URLhaus Database

You are currently viewing the URLhaus database entry for http://maksimumgruptemizlik.com/wp-content/DGQyMFRAZXZ2fpHeYCS9FnuYsdyZV6n/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:938060
URL: http://maksimumgruptemizlik.com/wp-content/DGQyMFRAZXZ2fpHeYCS9FnuYsdyZV6n/
URL Status:Offline
Host: maksimumgruptemizlik.com
Date added:2020-12-22 12:01:05 UTC
Last online:2020-12-23 07:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2020-12-22 12:02:05 UTC to info{at}veridyen[dot]com)
Takedown time:19 hours, 35 minutes Good (down since 2020-12-23 07:37:50 UTC)
Tags:doc emotet link epoch2 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-12-237ONWZZWVQZV7.docdoc 000b049debe1595e96d46d2cb910795e269d9d3f1b3210bfa45901356b3b3b3aVirustotal results 25.81%Heodo
2020-12-22YNQDJPVU.docdoc 5c4cab29ee87b07eb6a57ccad782631b9281fa4db8f0a1b12d2672584426ccceVirustotal results 25.40%Heodo
2020-12-229RBMLPH4FEX1F2Z.docdoc 32dbb92d892c9f50e99fc70db5b9f3efe0721a6464984a3f84e6592cda81684cVirustotal results 24.59%Heodo
2020-12-22AFOCCQ2F8F3DJ7.docdoc 893d0822b033e0d5ea0484d9a61ce0354833603684cfb54e8e493f2740641784Virustotal results 22.58%Heodo
2020-12-22D50RXQ5E8OBO.docdoc d4f5f3aaeeddc099dd63c275bdb2ae1bfcb6c3232c75e93fa0f670eecb36e518n/aHeodo
2020-12-228Q5K8BI1VZH2.docdoc 6420b73153baa8bc93494e5f2cac6f1248c102e7bfccb497d71bc67791603ca3n/aHeodo
2020-12-22GOLBXB.docdoc ac4a11a17747f0db974bbb343bdf32d636c82bc667c3223c23567faab4377eccVirustotal results 22.58%Heodo
2020-12-22TFGRIVRPZMC4KREX.docdoc 0e0a8e32415a80ba95b8af747d13f3b6312498145d1677df7641ba3c9cf8e9b6n/aHeodo
2020-12-2294MR5M.docdoc 672fd53363516e84ed426b99e3465bc33a40e08ecad177bad2c69349b92c7828Virustotal results 20.63%Heodo
2020-12-22JY4Z8B2OJJT.docdoc cf9bc9b1442f38adb15e975a6ce0c8a12e5893516067ca74541f8c5aa26f4f75Virustotal results 17.74%Heodo
2020-12-22RJNF5KK.docdoc e50ca86a89c2be0f4e271feba71c17c73e846bfdfc1f3ebd69d442f098acc0a0n/aHeodo
2020-12-2244MG4V3FKZVL1FHA.docdoc 628715602170e6fa97dadd0ea965652619994ef5eadd84bda8c45db0db3ef0f3Virustotal results 18.33%Heodo
2020-12-22UWFFQMY4CHFUYR.docdoc a5bdf83f7a7007f23b721bd73c5219830d2685673835bcb9a2af37e47ad2603dn/aHeodo
2020-12-22YATSPXP.docdoc c56452bc0ff9abfcda3df47210eba4e178e55a49d0673f42c9d192ce0234ca64Virustotal results 19.05%Heodo
2020-12-224DO5IIP.docdoc 3cf79aa67b9b74d228fd5e8d25633f13d2282edaa63d6ebc02bc95d05ed4ef45n/aHeodo
2020-12-2236M4TYSAAF.docdoc d86732f28284b8dbef93bd8eeee3150fa2696a1ccc22d520bd82a2a53c58c32bVirustotal results 42.86%Heodo
2020-12-22N9YSA2W.docdoc dbd081ee503b65669b9a1a61dac9d5e95765bd9376783e784d2dae26751309cbVirustotal results 42.86%Heodo
2020-12-22G2KGN9FWF35Y.docdoc 942e084f202a3423e74c8d347b68accfea9d0379d76ec084dcde6260b4032e65n/aHeodo
2020-12-222HQNNHFZRLBXLXR9.docdoc a447c84f7560c4f1edf551724e02c90c1b0ad6b1e96e42db4020d2a749940e80Virustotal results 37.70%Heodo
2020-12-22DI5R6OXBN2F6N9FC.docdoc f8a293a233f791740b03d5e9f763edbe9ce5b7118b45986d500a6951716f52c5Virustotal results 37.10%Heodo
2020-12-220OOP4U.docdoc be0dbaaec3415c76acd2fa6e9c3969d8bf86f058be7e69e357518e173ba4d246n/aHeodo
2020-12-22RRA0NBJ06T17F0.docdoc 2b9c863d07937c6130c145012febf915401100b8a7e5361cd8244ba88af53411Virustotal results 34.92%Heodo
2020-12-22PISQCUNCM470NND.docdoc a93bf1dae053588d5f7174c570551c0345f3aa682c6ff34789661370833c6c8en/aHeodo
2020-12-22DVIW418U.docdoc 86942bbcea50514ec00c4794847620c7ab3863657d7cc8119cf593ffb539cae7n/aHeodo
2020-12-22R89FO04PAVHGIZ.docdoc 6e80cf87bd4ef21287958848ca5250a78cf17cf17f09a9b1b11cd37a01a24202n/aHeodo
2020-12-22UCWLNPTOF686U.docdoc 595ca6b04ee946fd5dbbb58b280ad140ada9d2c4f5dff6309281887695c8d4ban/aHeodo
2020-12-22G0KB70YYQAD.docdoc 7ec200a834392208ae8521c4804d11ff669137b4265b732a17660527ccf3cf36Virustotal results 36.51%Heodo
2020-12-222OZ6ZL55UMO6.docdoc 0ca72ce4d6b45d4c63a514d52e63ef5d16506801e86c1580e6196848f66577d1Virustotal results 36.51%Heodo
2020-12-221UY0JKKJHQ.docdoc 9d8702abb3208dc13f0d91e35861eb44b975c2d35711260a8b1bd2b5d80eb962Virustotal results 36.51%Heodo