URLhaus Database

You are currently viewing the URLhaus database entry for https://drziq.com/nynfp18/fJxmu62pCBk1WDYGOU89kONsgbHbDUeNSDXP/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:938189
URL: https://drziq.com/nynfp18/fJxmu62pCBk1WDYGOU89kONsgbHbDUeNSDXP/
URL Status:Offline
Host: drziq.com
Date added:2020-12-22 12:29:06 UTC
Last online:2020-12-22 22:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-12-22 12:30:33 UTC to abuse{at}inmotionhosting[dot]com)
Takedown time:9 hours, 49 minutes Good (down since 2020-12-22 22:19:39 UTC)
Tags:doc emotet link epoch2 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-12-22ZF9Z62Z079N435.docdoc fcb9b90dfcd26f2ca098e3e522a02a70f160942e0da538b33aec3bf419384a7dn/aHeodo
2020-12-223WNBHZTVGF.docdoc 3a7e77468332deeec16a5228c4b955efb118e0b0d576e638a7a71ac7be04a5fcVirustotal results 20.97%Heodo
2020-12-22Z0JHI1T3L.docdoc ea9e0d2591e09cdea3ac66cbd5410ca96f9bbb033f240fd580c71854292003b9n/aHeodo
2020-12-22DYHZHTI16PKJ90.docdoc ac4a11a17747f0db974bbb343bdf32d636c82bc667c3223c23567faab4377eccVirustotal results 22.58%Heodo
2020-12-22AUIZS5Y1.docdoc 44b69ab822ea1d2cea11bde2cbf85cb033e753dcc8b5e30dc49cb042d3310aadVirustotal results 20.63%Heodo
2020-12-22X21DBWTSNXG.docdoc e992706fe1c263e83911d8cd96067ecadffda1437a6516db6097fae0d542f0een/aHeodo
2020-12-22BCDNXI1VL6YTW.docdoc ffce79e8ecfa61f2f82aa9b40d611c100e6cd68cde6fc34b012ebbd21750908dVirustotal results 19.05%Heodo
2020-12-228U2J082.docdoc 012f7f15e9d4bed2d2d8ac3019cc2197b728f54a3650cd0a5d8463e6a2d95525Virustotal results 20.63%Heodo
2020-12-22MZXE511XO.docdoc bb809b30f35c4fd4500f5d4bdf886b079dd8b06b79f7a81ab2cca3ed9ac73af0Virustotal results 19.35%Heodo
2020-12-224DZWOFD.docdoc 73132ef9149825650cd15e4cc30adc5672a95f12f241a676c2887d1af9d205ecn/aHeodo
2020-12-2251K2TIQ5I6B.docdoc fe3fc65fb1e96044ac8d1bc675d4abb6956734dc2e446aa2d073c2808365f6a6Virustotal results 19.05%Heodo
2020-12-22IZZ0VWM.docdoc 94d3022d541dd9f7fa1fb496c3d9250c9a01ba8d0f0af54c3215eac9f8b22de3n/aHeodo
2020-12-22M3FK2QPDGH1FU8.docdoc 7502643f790e60f6929633b08e891ff81ad310001525c345b9dc2b448c1373b0n/aHeodo
2020-12-22IUIWCWKRCSI.docdoc fabd2798310f1b90dc1321bffbfa1ee8c41695839459d40fd6e32618d3df7ccbVirustotal results 45.16%Heodo
2020-12-22EDVEYOIAW.docdoc 7bf5d728fcd19d3df1127a4d8648cd870c5d123ce9ea4b10eca54cbcd18e10afVirustotal results 43.55%Heodo
2020-12-22AZTD9IVNQ8L.docdoc d86732f28284b8dbef93bd8eeee3150fa2696a1ccc22d520bd82a2a53c58c32bVirustotal results 42.86%Heodo
2020-12-2236P3HVL09AJL.docdoc dbd081ee503b65669b9a1a61dac9d5e95765bd9376783e784d2dae26751309cbVirustotal results 42.86%Heodo
2020-12-22UOD8GA0XXH.docdoc c9167679e64cc007f5f7c42c046c9a36b51f62709a3e5b5350fed1fb8ce7dae9Virustotal results 42.86%Heodo
2020-12-22UBIU204OSOC.docdoc 5961f5f44cedfac8a1de3568cdad7e244f181b87395cdcc5f31e7d102457cdc0Virustotal results 42.86%Heodo
2020-12-2204VQO1KPB0N5.docdoc 0bf21df6643e15a9eadc034f6e7bb35aa9d1b1433bad331c1944fe60418e23b7n/aHeodo
2020-12-22URHJXFEVWP.docdoc 6f31c56a8ea0949ade1a3cabc55e00d367bb073cfaf7f1b447258c79483910f4n/aHeodo
2020-12-22BHDI6WT2DXB6MV.docdoc b4c8d5a38d5092e1a4eeb1e2f9026fa956a251e0cca6351095aed595ecc4d8e2n/aHeodo
2020-12-223UVGCAMU.docdoc 884af4ef4c4cce6b4b6d059a23ddacf8aeb92b68fbb4dcedfbaae3352f1fc5cdn/aHeodo
2020-12-2270G89CVCFO5Z.docdoc 87cad8283d151d96c90fd747887dabd30d0012320be4132f2143deeb69c9c4e0n/aHeodo
2020-12-225U3FV0.docdoc 72526ea70462d80cfb3edea310592329d47c4081c3ee6df1184a219a17b1a731Virustotal results 34.92%Heodo
2020-12-22V4BYBJ.docdoc 86942bbcea50514ec00c4794847620c7ab3863657d7cc8119cf593ffb539cae7n/aHeodo
2020-12-22E1YLXI2C9ITA.docdoc 65ee3709af3223578ca9630bd211afca9a02224398426e501095c895e24f7443n/aHeodo
2020-12-226LG7OW.docdoc 595ca6b04ee946fd5dbbb58b280ad140ada9d2c4f5dff6309281887695c8d4ban/aHeodo
2020-12-22QL6UF0NBF.docdoc 7ec200a834392208ae8521c4804d11ff669137b4265b732a17660527ccf3cf36Virustotal results 36.51%Heodo