URLhaus Database

You are currently viewing the URLhaus database entry for http://russiawala.com/wp-content/5RBU/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:944788
URL: http://russiawala.com/wp-content/5RBU/
URL Status:Offline
Host: russiawala.com
Date added:2020-12-29 18:17:07 UTC
Last online:2020-12-30 20:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-12-29 18:18:09 UTC to abuse{at}linode[dot]com)
Takedown time:1 day, 1 hours, 52 minutes Poor (down since 2020-12-30 20:10:30 UTC)
Tags:doc emotet link epoch2 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-12-30U7TUSI.docdoc b19c3ed6b6012da42e3a700410a21231588c6b1da97f92911a540b9e3ae71b08Virustotal results 31.75%Heodo
2020-12-303TFBMLY.docdoc 48cbbf0f9680ad78df8965f1b76d756f88912c653711968364b7f7eb3f5795b0n/aHeodo
2020-12-30R9AZT381B5506.docdoc e561d015ba417615f931d69404149b840e6f30d937c6d1e8765462d08c33384eVirustotal results 30.65%Heodo
2020-12-3017VHKP4X4W.docdoc 8c39bdef7f9491fc985afb40906aa1f0d4427bb9cb2299ebacd5511b442e9982Virustotal results 30.16%Heodo
2020-12-30U4ORM23MU5RF.docdoc a2bee4290712595f0afb87e5a247cafe694d279fb7350e43bc163630e926aaa4n/aHeodo
2020-12-30VECAJLHF63EGZ6LX.docdoc e1068c52aa236bb0111f08ab3140850d7fbe24bf3e5f32697f64701390f5d516Virustotal results 29.03%Heodo
2020-12-30WFNRUD5.docdoc 2247e8d912eac0fe04e0d232db8ed716ddb81a5a2f24f343b03041e267bf3d7fVirustotal results 28.57%Heodo
2020-12-30ZV4OGLFV1GP.docdoc 71bab4125d8e53687619ff03b3dd9d67b832995ca1998183e77db10e3c2e0c5dVirustotal results 31.75%Heodo
2020-12-30OPA3C4ASVSR.docdoc d89c0125f6b6987e2fe9e70c5748a551eeb0e2b03ad8b06fae80c42153d912ban/aHeodo
2020-12-30UZM1CR.docdoc 5f6b7c56f5a98721b71d91dcd9a177298006b37c11ca8dc6b0bacae198e17feen/aHeodo
2020-12-30LT6M2U4KXKDNPES.docdoc d06d8cb932ace2080f2b04b83182a39e019bf69295824788ab95a12f0dbfe0ecVirustotal results 34.92%Heodo
2020-12-30ORWPGL.docdoc 3c03c64a40ea73e6c0c77edff2dec3625e00a8dd8c85e54df029c5197d7f97b9Virustotal results 28.57%Heodo
2020-12-30CPMCI7OI.docdoc 63a9349a502e7e3e7a78488b5fef1649c62dd1fca5e72c79dd92e0bd89327105Virustotal results 28.57%Heodo
2020-12-30EDT0A5ND8Z.docdoc b5c06b0784cd3209d08f225a7d7d2386bbb90b93832bf6528d6c38904a5ce760Virustotal results 29.51%Heodo
2020-12-30PNY2IFS352WZ1SM.docdoc 0d90ca158eabbf8ebd00e4093c2ccbd118833f31c3c6902dc7cc079b6ad27560Virustotal results 28.57%Heodo
2020-12-30OM1FMXGEIGPEFSVZ.docdoc 4c0bd56c72fbb8e4fc45f671c03970329a3070b215f7727f83040d529e44f5e3n/aHeodo
2020-12-30M1TH0CRB18G42HF.docdoc ff851095aca5969d1f70e5be1a645bf840e10b191b9037c50da8be304f5c01baVirustotal results 29.03%Heodo
2020-12-30YW21IOV1SIUV72.docdoc 038ce32c78cddd37592b182971d0c98b8c1d4dc9b398b593a5d28aba6e947b2aVirustotal results 29.03%Heodo
2020-12-3050FZUKVL35XLYJ.docdoc 62e5f85a3afbef81f4dd4d8281a0fe697d0dfdb6e714ade5175a0f2b68d40083Virustotal results 29.03%Heodo
2020-12-30EX3F7EK04JA4T.docdoc 92420e97420410a69bf5380467fdecf56f39a624e108916cf3797db026d122fdVirustotal results 29.03%Heodo
2020-12-30N0CFEOG1.docdoc 5e9e5d0c36a1395a73be5fc2a97167d451ceaf649ed3c72992238710edcf31eaVirustotal results 27.42%Heodo
2020-12-30J2TPDZMQO7QFFI52.docdoc ec3994399031e9c03729b9c51069c839dcfefc07707959021f85d8250286ff43Virustotal results 29.03%Heodo
2020-12-30MVWHATNPCTW4.docdoc bd913e9c89867c5d668cbc999e4044f62c9efac8f02e6be4066845c3bd2d7171n/aHeodo
2020-12-30AJGX8QILS4.docdoc 95ba3cf22cb9f5dd117b89e7e485783faf1c1bed03669c0724b71a634990bb5bVirustotal results 28.57%Heodo
2020-12-30P26639FNLW.docdoc bdecb7f82b47955ccb4fca39be96e004473340860a8a025debac6d9e69423d26Virustotal results 28.33%Heodo
2020-12-3032R20UMCEETAVJ3Z.docdoc 40862d0b1aafeb508f97893ee74e2b324ec7e1eb96bc924b3248b9174e43c1afn/aHeodo
2020-12-30UXMU5W8N6.docdoc 7a8d6629bfca211542bdee56f999f7cfd7589907c51c4ee05023e62716c8166fVirustotal results 29.03%Heodo
2020-12-305GKY6JR663EVT.docdoc 39e24a73656d38c94f1c4abc67b93be532659af2fa07966c372424780e54cb24Virustotal results 27.42%Heodo
2020-12-30MPAUFVJ5B72SA1TL.docdoc c8b49c2292e087f722d2422f84d52d6850ce69b6cf230ee27f2b2e82d4df7cddVirustotal results 29.51%Heodo
2020-12-30GUXNI0P7H6X17XXN.docdoc fc5f218a335827dae3d47a83de79fbe3bf8e3da9308f22edf5d9a17c8d1ee1ffn/aHeodo
2020-12-3050IK4EKHRJ6.docdoc 26eaeed81c06cdcb31127bb193787c4fac6e77fda2c26b984b00ea10f153450bVirustotal results 28.57%Heodo
2020-12-302L5MLO.docdoc f087744977f77b9662829bc12bde6d8fd085441f9f646469e12fb9f34cbe9251Virustotal results 27.42%Heodo
2020-12-309FFQ8R5U5.docdoc dcb7872fbcfd5c4d82665480c0e8995b991d25272fbd21eaf39d7b376421fb95Virustotal results 28.57%Heodo
2020-12-30ZBQPAVC4.docdoc 865d58e3f55f2d1f7f7c0102845db1fef2d1d373dd3fabcc822d91c643a60a62Virustotal results 27.42%Heodo
2020-12-30UD68Y2I.docdoc b819a59c6a40ff2d03eb14a692706aefd3ea6587a10d13fb8027ce1f57f3f95dn/aHeodo
2020-12-30GK57OR0RMDER845E.docdoc c0081661fadf165b64870df68fca809bd6335c93f1038ddc339f88abef91d61cn/aHeodo
2020-12-301UTWEBVTS.docdoc 689f985fe58887c75bd77a41f8c60cdcfe8d7645f0dc7c324454cf6321a5949dVirustotal results 26.98%Heodo
2020-12-30HQOQPGXL9GFBQ.docdoc 8559a7c90f40194b1cc0ce4e508db1896ac0bc90e0161c4469176ef0fd1f865aVirustotal results 26.98%Heodo
2020-12-305BCGSXMNZYEVWQQ.docdoc 0afd7a7406e620b8d1e0e1a2b63f5a0096fa9e3090973050b74736c876726964Virustotal results 22.58%Heodo
2020-12-30H1DZVJ40R9VW1ZS.docdoc 5ff309e15ed409297bf10da249a2d68038b70b8032f305f43310e8930cc7d606n/aHeodo
2020-12-30JBZUUJMSFR9RKNNZ.docdoc 325a9b75ee1145a597756e7289b5e40d52160ecbd43fdda5d0f9adf1888ae854Virustotal results 23.81%Heodo
2020-12-30080AUN1O7YA3EOU.docdoc 19dee3df18f9767d4dd14ee1c3ed05a893f7ba7592926caea0284cafeb4326efn/aHeodo
2020-12-30ODTZFJQ.docdoc 481f193ae0c0024efaff2af7a85adb48978caad9a874343d1d4bae7e09bbe582Virustotal results 22.58%Heodo
2020-12-3068ENCB19BI7.docdoc a0113dd87628fdb19ae31e74ebe696166c1914dc8d3522f54023314b7f4374edn/aHeodo
2020-12-30ZZIRHO8OAG.docdoc ce9cd686f8b6be086ff6446f8373bf38f5471b2f05c6c6e72dd76587dbb49379n/aHeodo
2020-12-3079MJ2KBVQUBSZ9TE.docdoc c67e6b627484a2883191b35e4db1994df75620dffa6ce55f960a11a2280be3e0Virustotal results 24.59%Heodo
2020-12-30GKV7JF3KUINCXQ5.docdoc f075b561422f41b4412421cd0aa5bbcb988f960c4c632de46179b64e8467601cn/aHeodo
2020-12-30KME3M2Q.docdoc 34d114c948d93bbce1a1b9ecc92c641ef3c8ca4ec755ce893e55f8b89f7c4c54n/aHeodo
2020-12-30D8T3UZ4XW53QZ1L.docdoc ee3c654155c2ad1cdedb1baa923add0335475dbd69432b7c9ce71e34d2f3c15bn/aHeodo
2020-12-3006JIH793DYEJ.docdoc db7a9c5a90c3e6e449fb9375629b793c22d1eace5c4cc7ebdc3743769fa22f04n/aHeodo
2020-12-30LWVLX7GFA0N12.docdoc e799e58726ad5d72644487e2fc47f0ddd22bba379bd0552bbd015e94680c70b6n/aHeodo
2020-12-30GGO9TYHYE.docdoc abce05e21f89f137df460e5541600c3a71aec5ebf5c909a05edc6ad042ae2530Virustotal results 52.38%Heodo
2020-12-306KJJG3T.docdoc e0a65e088a3f0987db1372c2d63e8cccd384d3a4e98402c919d7a49557d49e21n/aHeodo
2020-12-304M30S2VU8F7F07SY.docdoc 161c83286b69307edded6f1105481cfdc65bc36aab3773a365af1972dfabc3ffVirustotal results 52.38%Heodo
2020-12-30G1B0JQE6GBOPVQ6.docdoc bf1d0474a7a16775c50fddacc2381fea17685b89ee711ad2133f326614c421cen/aHeodo
2020-12-305MCKDSL5RM40LYJ.docdoc a015e402908723d20de5ce0e32b55d2dc47b10b36619d08893cf6212a5bf9957n/aHeodo
2020-12-30L6ISCSOD50.docdoc 9a9706902460c2e3ac9e44ed6aff62a001ce31641d96c49072c4750106c3de50n/aHeodo
2020-12-30QLMH5K.docdoc b40baf85b9fb3f4fba22b7357bfb8eb639d08c6175af9bab68528061b66eb404n/aHeodo
2020-12-30BO222SGAJ1VBGIX.docdoc fc88d7102891698ce09ee38c1af90b8e225c496491ddaee1b739a12f1a2eaf33n/aHeodo
2020-12-301YBLED63.docdoc 6b44f18c20a7bb829c5d1e02c4b77128f29a7407068126e8ccbeb63006b77b75Virustotal results 57.63%Heodo
2020-12-30J700UADMBCAMXO0.docdoc e61885a7717cc4121ce91ae5195765d765f9bef414ff079ae2476307a1fdbcaeVirustotal results 53.23%Heodo
2020-12-30S66HVOKC6WP55O.docdoc 59dd64819d5e4347530f69b1a854607289d93c950a746580535cc79d8ee373c7Virustotal results 50.79%Heodo
2020-12-30NF209D4ZF3T.docdoc 4a03b5e095f8e4303740cf67df82c3491eb1b3545de5256870aa1bcfffda1e54n/aHeodo
2020-12-30GVAJTTGIWKDP.docdoc a2999babd2537572c259f968ce20f3f8796b41424ba2a63156d89e90916a2e39Virustotal results 50.79%Heodo
2020-12-30TWZ2ALVRAJBCXD.docdoc c18cbfc2d84a1436acef501a8e605966ab35af260f8a6c86f24e5b459c87bc19Virustotal results 47.62%Heodo
2020-12-304V91WD8V.docdoc aa1cc31a552a26f2449d7de153aab95b4b585fb76e58b5abfb6cec0e7af7921en/aHeodo
2020-12-30ZDHCJ2X.docdoc bf0427321d4aa0c51a23e5ce90c1565b8701260d54170233811f2629de50af99Virustotal results 51.61%Heodo
2020-12-30VGEMVHLTWS.docdoc 84ff4b1cc97853c325a80d9ea06156582a5b00d8a2dbf43e776796904b5ba7cbVirustotal results 47.62%Heodo
2020-12-30016BJWE19U.docdoc 16a0fc95c6217d4542b0a02200d26987e08d41c709ba9c36b9830993b2b4c6c4n/aHeodo
2020-12-30SYSSN0ZE1FK.docdoc 0bd4e7dd4ab7c8f023e4df01d0012cb40b1ee9d7fb10353779eaf1fd47d53c04Virustotal results 50.00%Heodo
2020-12-30YHM5SLE.docdoc a3553d4da88c65554d145c8efde7312447904dd78f21dc173354ef0b3257e555n/aHeodo
2020-12-30DJEQDD0NHXDF.docdoc f370e183c671a04e456590269adc4f69a59350308909cc63683d705bc0213b96n/aHeodo
2020-12-30L1YBY45ENFWIIB7.docdoc c1c222eea5baec06081295edddf806c2bbd101f35d5c554d3f3b63aabe8fb576Virustotal results 46.77%Heodo
2020-12-30XAIGAW1544.docdoc b0286fc6b2b0354bf5bb297ad8f8f81577bb23a3568133181a5daa3eb75954c4Virustotal results 47.62%Heodo
2020-12-30YT2U8FYTCR.docdoc dbd973f39130f458c16efc43bd6876fed237a2499fc0f270e453947730486f72Virustotal results 45.90%Heodo
2020-12-303H5XAUAS.docdoc a59638db98772da1dc6e7a99d209a4373ec89b7fdc7bc87c200eeb5f793a73d8n/aHeodo
2020-12-3038QKVVBT1S.docdoc 968063350b11ebbfd467a30c92b38980fa20b0e4f588f89daa9687981e01f8c3Virustotal results 47.62%Heodo
2020-12-30LWL9WW4GJ.docdoc ddfe5d80323178ceb4c5120878ac5448907826e95c3b76bd9c2306e16af00092n/aHeodo
2020-12-3048ZZ4K1P3T2B.docdoc 59e6703b24b53065555efb55e63e6f368ebd67451d4ae4aeed9b1a59f04a9947Virustotal results 47.62%Heodo
2020-12-30PEPU32SH00SKM.docdoc 1af286a5a937026e62b7a7b6b972f03109862f815f785d9d9d3ba20346da0eeeVirustotal results 47.62%Heodo
2020-12-30UAT5S825G.docdoc 4cd720bc09e82d9d0e35a60cd643c1242a42f6b2ed3c5d393001e402536ed90en/aHeodo
2020-12-30E2IJDOGB3XL41P.docdoc 33483667c69c712c22eb8cd4c4d68c7405a8fd2ebb78aff4bdf518b997d17d4cn/aHeodo
2020-12-2963T4XB.docdoc 2ac4c55baa15d3719031c845766adf59717598fe67e7434f595f28120c916528Virustotal results 47.62%Heodo
2020-12-2994R8VNJTWC10XJA.docdoc 3a005656eb3cb664023108b84291b3de03e68da06530c0c12118195a2a443e6en/aHeodo
2020-12-29BGKLMFVHH9VJU75.docdoc 487b15fce52676130b3320631eed9f16eeeffc6e11fff1aa6b6a4aa4f694315fVirustotal results 47.54%Heodo
2020-12-291EIPB3FA11QOLLJ.docdoc 66a2b350efaf60cc7b59b9de600b6a8183d3a8393688914c52ab4bf9d1e84ac9Virustotal results 47.62%Heodo
2020-12-29HNYKC5X2R.docdoc 812a1640b65eee9ca03e9030b3fb05e9ce0f467e022839fa3959cd2e4f0e7194Virustotal results 47.62%Heodo
2020-12-29K1VRH2L.docdoc cf47feaaa13dd8578065c7ff33e3b1f716e4b71f679b8fe7d10fd33cf1ca8b70Virustotal results 48.39%Heodo
2020-12-298UGI0HT95.docdoc 0e6bf2536adbd39d77a2239b62625e722197073713172655477b6aaa9cd3cbd5Virustotal results 48.39%Heodo
2020-12-29NHNG8EBL3TO42.docdoc b0527fd6da04f36fcec8f97e130fdb3e6ecb9432d58bba14d4816f7715519657Virustotal results 48.39%Heodo
2020-12-29IMUMGTQM.docdoc b74063353bf2fccaa3e2072c2e02dec2c760ab480f73a069277bc389ecd4c929Virustotal results 47.62%Heodo
2020-12-292YITDCTGKCM.docdoc 1efd0a1981dc07034aadfa6bdade3e26e49a389a09a617831eb51802201e5bc6Virustotal results 47.62%Heodo
2020-12-29H1BT2G4QLAQ0MWID.docdoc ff454b11b8fd666d7d8eceaa253fb0756ef6d2a72b572799879d83a8d285ade8n/aHeodo
2020-12-29U3U3TRZDLIDVXA.docdoc eb762ceff6eec6519ea345df6e5eff8b01a57f121c2a12ae7c3b8a379df36691Virustotal results 44.44%Heodo
2020-12-297GZRG2FCCJX.docdoc d0cee85401b2a011867a851ba5d4fbb7c3242e1cb3476d2f78bdab764bbdc408Virustotal results 43.55%Heodo
2020-12-29RIT16MP8YG.docdoc a4054bbf81bc4f704dc9ee14d6f2e5df7b22f91edcd2fb569c14c1fc82064bdan/aHeodo
2020-12-29991EQY2AF4U.docdoc 4b4b26aeed40ceb7e56e6e67e73f85bb0bbc00b2a911ef3a11bedd4a5798c462Virustotal results 41.27%Heodo
2020-12-293IXPR9WOP.docdoc 5274d3939ba8eeead72b38ac7fc4308be7b3db616801d845d304469c9cf395a0Virustotal results 40.32%Heodo
2020-12-29QWWTFO74J0H.docdoc abff62bfa148c0606f2b0f545934c0ddaf4b00cc13c5f3c051a22f8d53b089eeVirustotal results 41.27%Heodo