URLhaus Database

You are currently viewing the URLhaus database entry for http://best.lodz.pl/wp-includes/0zCLAwx1M6QB30zub2KLmVnxnQ/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:945039
URL: http://best.lodz.pl/wp-includes/0zCLAwx1M6QB30zub2KLmVnxnQ/
URL Status:Offline
Host: best.lodz.pl
Date added:2020-12-29 22:18:08 UTC
Last online:2020-12-30 16:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-12-29 22:20:19 UTC to abuse{at}p[dot]lodz[dot]pl)
Takedown time:17 hours, 56 minutes Good (down since 2020-12-30 16:17:06 UTC)
Tags:doc emotet link epoch2 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-12-30RNPTNKN.docdoc 7fef2f36b64703910def4f6a15cfe314b2ac2f9691465ecd3999a29daf6b25c7Virustotal results 29.03%Heodo
2020-12-30LILPAK7.docdoc ab777090ccbb32ca62cd68252948553b3238027752ead7c357919b5d3ca9c10cVirustotal results 28.57%Heodo
2020-12-308BVHT9IGD.docdoc a90b5fb7fe68a65962a5023189a8c8184bbaaa72f39ee8a1e071183398cfde46n/aHeodo
2020-12-30FKIQDJP359H770I.docdoc 4239d149bdc65c62946a2bffabc81bcc602baf67a1d402b898c4c036073d627bVirustotal results 28.57%Heodo
2020-12-30IKXASO2Q.docdoc be2287f06352c21f4412b81411c76a2e3c23bc99bfd67a39549574e6f0143ec5Virustotal results 28.57%Heodo
2020-12-30E2GYMHLFS7972.docdoc 2f87f9dfc21b3bf28e05b410fae3b5e7c8c1aff9f754f5e14a14aeec884aeac4Virustotal results 28.57%Heodo
2020-12-30J4V84JAI0KOC5M.docdoc d3b4663e294cfce22aed52067a56d10cbd57c0ce477d110616debd538660a115n/aHeodo
2020-12-300HYXYCLVA89MHR.docdoc 7a8d6629bfca211542bdee56f999f7cfd7589907c51c4ee05023e62716c8166fn/aHeodo
2020-12-3000ZCWX.docdoc 74bf5ffc4f0fbbcfa4decbf40f781dcd4dbe1a409c1fdb581d1f92e368f251fbVirustotal results 29.03%Heodo
2020-12-30A2HPI4TGZWO.docdoc 21022affa95dab0187075b7cce4ddf5f01c0b0212c5254457c3c75bb9df9267dn/aHeodo
2020-12-30USDV4Q8J3JAX.docdoc 26eaeed81c06cdcb31127bb193787c4fac6e77fda2c26b984b00ea10f153450bn/aHeodo
2020-12-30UG4OLD.docdoc 3c5a0e1906eb2a02dc597a235c6ba9b3faccc526ef1aa3b2f34f462257ff7261Virustotal results 28.57%Heodo
2020-12-30POLHE8NIWQ.docdoc 7f975c35b98c82e158e6689e3a8d6c5da6a640ba0f279256f3c01927e7476fbbn/aHeodo
2020-12-30C306PSNRK6CVCUU.docdoc 4f7771f7916dab6379a8d67278d7b2e73ea25fa1352afbf2e9bba877cfd31846Virustotal results 28.57%Heodo
2020-12-30B2J350GS9F.docdoc 0ba1937af38c05e2b7dbff1968cfe0f4be186f31d6c80248c907cf869d12fd0bVirustotal results 28.57%Heodo
2020-12-30CPFVV9.docdoc 30123f50820037c7241d7a3052aca6a9ebb345b5b4ceccfd1ba9563356e15b50n/aHeodo
2020-12-30JO8Z6CL7.docdoc a7db4e6fba4660583590e4869f493775027f534150a3e900666e591eec4649dcVirustotal results 27.42%Heodo
2020-12-30PCJ51B.docdoc 8559a7c90f40194b1cc0ce4e508db1896ac0bc90e0161c4469176ef0fd1f865an/aHeodo
2020-12-30VWTBN137CJ9P20TR.docdoc 6f513e7300aec90543fdc0ef13377b05ed0a0ad346ae59112eb3753bd4664f08Virustotal results 23.81%Heodo
2020-12-30D6MM95MIRW.docdoc 118f33c9a3de922579f1aa3ad43f85e40ed10edc7ef6c881b667db675ff09dcdn/aHeodo
2020-12-306SM5IZR5Z4N2W.docdoc 6a14b0c30175c029ffd20001912c51cd6a7084240acef0ab1139cfadec64b5a1n/aHeodo
2020-12-30EYC0NDBXVLTI.docdoc 81c53ed228ffde29d71ceab29c0cad80bee160c21b5160091f0d85ef6fe9fa76Virustotal results 24.19%Heodo
2020-12-30JWTENPENX4YEQR.docdoc 6afddcbf7a8a64702774f4bee529ef01e20567882777318dad0e184eadeb80c2Virustotal results 22.58%Heodo
2020-12-30HP5CJ8JNYBK.docdoc 523b00e1ee6f5889ae4040bc5fbc46c57e5d33e2419f441d46564316536f3a5eVirustotal results 24.19%Heodo
2020-12-30KOVINLACWDDCNK.docdoc c67e6b627484a2883191b35e4db1994df75620dffa6ce55f960a11a2280be3e0Virustotal results 24.59%Heodo
2020-12-30UB03QPC0XE9.docdoc 3ca900e9e95aac2ac93a8ba096430b3378ef5e3153712249db1cc29affb347f4n/aHeodo
2020-12-30L8SJFEK624C.docdoc 57139c1429320dac20c68cf72ab1ac5dc7dc482d4e05be8b886967115fffea25n/aHeodo
2020-12-306W35G4UXC2YOXANW.docdoc ee3c654155c2ad1cdedb1baa923add0335475dbd69432b7c9ce71e34d2f3c15bVirustotal results 22.22%Heodo
2020-12-30W14ER3AGSCIWA.docdoc db7a9c5a90c3e6e449fb9375629b793c22d1eace5c4cc7ebdc3743769fa22f04n/aHeodo
2020-12-30ON2YBWL5JS32D1X.docdoc 4b7778c74f084c7cbe57205e56c590730227816f7212231df1ac32dc21e18c71n/aHeodo
2020-12-30AT2D2CM.docdoc e799e58726ad5d72644487e2fc47f0ddd22bba379bd0552bbd015e94680c70b6n/aHeodo
2020-12-30VV6BP9T.docdoc fa5aa91755a36f8142bfa74818a3aa61264edc65cf4aa9fb8d4bec28f6faadb0Virustotal results 53.23%Heodo
2020-12-305CGVRQGAOZ1.docdoc e0a65e088a3f0987db1372c2d63e8cccd384d3a4e98402c919d7a49557d49e21n/aHeodo
2020-12-30148TNSO.docdoc ef18f9ad5834b882d4554fdb6b709c4fa3782704b22dc9e7a535b40f2fb4ddb5n/aHeodo
2020-12-30V632ZW49UK9OOQ.docdoc bf1d0474a7a16775c50fddacc2381fea17685b89ee711ad2133f326614c421cen/aHeodo
2020-12-30IZDGG23GFVHAIJS.docdoc 8a55450704d7b16e71b269f44d8e64ac29fdac23b0f65951a4a4e7d0654a4499Virustotal results 52.38%Heodo
2020-12-30YEW7687W9NJ.docdoc 74f1385297f1e0abe566a9e2eedddb41b97279a2043c11a88b08c05304331390n/aHeodo
2020-12-30PD63LTGIQO.docdoc a586bd9284e08911b3ba6a021732d976be512698b16238e9ada5a5d08b477fban/aHeodo
2020-12-30ZPZ3B9T.docdoc b40baf85b9fb3f4fba22b7357bfb8eb639d08c6175af9bab68528061b66eb404n/aHeodo
2020-12-30QKHYHLOT9J19JJ.docdoc fc88d7102891698ce09ee38c1af90b8e225c496491ddaee1b739a12f1a2eaf33Virustotal results 49.12%Heodo
2020-12-3095PTNI5FYRK8.docdoc 41e784f18168ae902f8bd265907c8e6e15b3cffde32a299bff675ee4b6902a03n/aHeodo
2020-12-30D5WNY5J6G6.docdoc 59dd64819d5e4347530f69b1a854607289d93c950a746580535cc79d8ee373c7Virustotal results 50.79%Heodo
2020-12-30ZERJ0S5.docdoc 400265d4687c120a0f5ac2f335dfa97bdae5a45c2dab4f11ba4ea9309b55f550Virustotal results 56.45%Heodo
2020-12-30XAQCH6N8T8RMW7.docdoc 94b586e5a285387c08041e2a39bc999a222670b33b5e3793cf3136cc9ca4add6Virustotal results 47.46%Heodo
2020-12-30C4JD4OA.docdoc 6516e329e7d2f720e9cd95f5f61a9ebd0af6b0cf0f35e31e872a9eef210a2ed0Virustotal results 50.82%Heodo
2020-12-306PFT1018OCDZ.docdoc add8349cc360e174c38c2d36277412b334744b3af808d91097b5b9e9c9834f3fVirustotal results 49.21%Heodo
2020-12-30JPUCWJHOFIC9A.docdoc bbb438693d73bffc0675f548a52a1639697b0acbc53423881708882b0a3ae949Virustotal results 49.21%Heodo
2020-12-300VFKI5.docdoc 84ff4b1cc97853c325a80d9ea06156582a5b00d8a2dbf43e776796904b5ba7cbVirustotal results 47.62%Heodo
2020-12-30J6AMDFVREHJKP.docdoc 16a0fc95c6217d4542b0a02200d26987e08d41c709ba9c36b9830993b2b4c6c4n/aHeodo
2020-12-3076MPCJSEP2Z6D.docdoc 9f343da9a2ef57f1ea4109e7e45944ada3a23457de02511ef088806da7686d4aVirustotal results 49.21%Heodo
2020-12-30XPFDB17VOC.docdoc a3553d4da88c65554d145c8efde7312447904dd78f21dc173354ef0b3257e555n/aHeodo
2020-12-30RMDA9LIQYPF.docdoc ee94018b625d16f7aa8fd8542511da49e0e15f19cf1ed9e231b85fc64985aaceVirustotal results 49.21%Heodo
2020-12-30P53VT6109GY6.docdoc c1c222eea5baec06081295edddf806c2bbd101f35d5c554d3f3b63aabe8fb576n/aHeodo
2020-12-30O7A6ZE.docdoc b0286fc6b2b0354bf5bb297ad8f8f81577bb23a3568133181a5daa3eb75954c4Virustotal results 47.62%Heodo
2020-12-30MB4XZ38KEG8.docdoc dbd973f39130f458c16efc43bd6876fed237a2499fc0f270e453947730486f72Virustotal results 47.62%Heodo
2020-12-30UYMTHO8Z.docdoc a59638db98772da1dc6e7a99d209a4373ec89b7fdc7bc87c200eeb5f793a73d8n/aHeodo
2020-12-30UCKY8P4FTH6MCL4X.docdoc fb536ddde6cab869be41f798e99515c6ee28c45eabaceabb3ac1ca568fcfd723Virustotal results 47.62%Heodo
2020-12-30M89ZBG.docdoc 8034186046c4b68f988ed2c9589699ffd59443ce8573ebc96551cccc435a6723Virustotal results 47.62%Heodo
2020-12-30H421PMJQBJZ.docdoc fec3ad4118a479bcf4486c4612fc14f123d4cf677b8dd088bbf218be9d0497acVirustotal results 47.62%Heodo
2020-12-304BPRI3A.docdoc a353494dd669a02ee28c0495169608f2ccd8a7d5e42a10547f7026ec218d4814n/aHeodo
2020-12-30OEP6C87UX.docdoc 4cd720bc09e82d9d0e35a60cd643c1242a42f6b2ed3c5d393001e402536ed90en/aHeodo
2020-12-307YTV7QBKKHWJJFI.docdoc a332b1b8c14d38acb7299d21e92bf7985317a49b621f340f9886ff2d01ca1d6an/aHeodo
2020-12-299L8UMUN2.docdoc 1b4a340a7d7925e5635152af5c56f1fd2e77b9088afb6fe33eba7a03009f5df9Virustotal results 47.62%Heodo
2020-12-293RAW4UF.docdoc 3a005656eb3cb664023108b84291b3de03e68da06530c0c12118195a2a443e6en/aHeodo
2020-12-2958FIRKA5QKFS.docdoc 487b15fce52676130b3320631eed9f16eeeffc6e11fff1aa6b6a4aa4f694315fVirustotal results 47.54%Heodo
2020-12-29LHHFFHWPRLH5Z7.docdoc cb5d63f90240367ececfe0c32a70c72082527a0040fe434a6f463bd4574d4157Virustotal results 47.62%Heodo
2020-12-29TIQ8CX5MH5WG.docdoc 812a1640b65eee9ca03e9030b3fb05e9ce0f467e022839fa3959cd2e4f0e7194Virustotal results 47.62%Heodo
2020-12-29F931CINLXXLMX.docdoc f7f4c153f0e9bf9a7093dc3fcf469f47c4c2bef873407f016dd746a5b78970e4Virustotal results 48.39%Heodo
2020-12-291DBKPO8RQ.docdoc 004ffe5fdd488817ced5a47937acb4d2e3130187329de56fdb5920a56d3118a2n/aHeodo
2020-12-29MTEA5MVI0EWSXBUM.docdoc d6480e873d81be6637d3ba474138b40d9773c0d9294fc530019ed6f3d1fcb1d5Virustotal results 47.62%Heodo