URLhaus Database

You are currently viewing the URLhaus database entry for http://taufir.com/wp-includes/zxqwJdXbR51rZSPf4PDCCbXuxlsPjIlO8ryFfoMPoS2jPpZqOUUYK67hi567Rko8IJgWLM/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:949055
URL: http://taufir.com/wp-includes/zxqwJdXbR51rZSPf4PDCCbXuxlsPjIlO8ryFfoMPoS2jPpZqOUUYK67hi567Rko8IJgWLM/
URL Status:Offline
Host: taufir.com
Date added:2021-01-04 21:10:05 UTC
Last online:2021-01-05 23:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2021-01-04 21:12:05 UTC to noc{at}psychz[dot]net)
Takedown time:1 day, 2 hours, 40 minutes Poor (down since 2021-01-05 23:52:51 UTC)
Tags:doc emotet link epoch2 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-01-05I2MHT6US5.docdoc 0baffc20eaca4aeeb47c5c2ad8b6e1422d4407ebd13b501b7ebec60859dfe18dVirustotal results 50.79%Heodo
2021-01-05K0VZCAJP7DY0W.docdoc 43c7f051a51a97f73a0da6ab032c326aab4593dbe54c6666295898f1ce993fb9Virustotal results 50.79%Heodo
2021-01-05C4DFNIMBCY.docdoc aa637b00fdde01bdd5c1e2f3d0b91364528bee85d5f1a8c1ff80fa730cf79a8eVirustotal results 46.77%Heodo
2021-01-05QP37HL8X.docdoc 10662fecd3be581c0e3e48c76674df0e815878786e19bce2dcd21c3552655269Virustotal results 43.55%Heodo
2021-01-05D244B7UIT.docdoc 8b55e8ac93c6d98a00b5790b88263103586e05cb124ce6daac1b1061df4772abVirustotal results 48.39%Heodo
2021-01-0511ML4MV.docdoc bb01889917b4085f76e0f2e8dcdcc048d628c18c0e800e6fe4bf8d8cb486f4dfVirustotal results 48.39%Heodo
2021-01-05Z3LVGQ0OEF916N.docdoc cdc5395931b2b7da44dbfe1d93bef7a982f103fafc2259f0d0b41025628b11b6Virustotal results 46.77%Heodo
2021-01-05KB3HSY8UFHA.docdoc db13b0bb816476742e2920b6a33274082f378ab0538824d8027c8a2b9947d102Virustotal results 49.21%Heodo
2021-01-05J1GHMEKHDHCM4.docdoc 62e59eaea6957db1a93e77c39471b0610482dc77a76165a48b7e0de0db27aea6Virustotal results 45.31%Heodo
2021-01-050Y3QUA67SP.docdoc 961a80ccd1b1e38897c5003ee920895e6fc6cbb1799b7b68c4429d8f5b5f9c64Virustotal results 43.55%Heodo
2021-01-05NDK1N21F160.docdoc 4e30a0c0d464a13919be9367c51ec2d36f2972e27861997410add5b113bceabaVirustotal results 43.55%Heodo
2021-01-05WRDKE44YESU.docdoc 74e13fc7a5f9b1cf0480e925f0e2274991fef4b53dd6ab413f42a006599edb97Virustotal results 43.55%Heodo
2021-01-05BLL5MY3DMFV8FO37.docdoc 53968a89fd9c1d34d45403fc7882d3e15a8c8b832a2cdbf5f6d5b0967d777fd2Virustotal results 41.94%Heodo
2021-01-05JR9F94.docdoc d37f415a2cf63bb8ee10f26fcb4b74ac54becccae3d6114d852c170765e8d45bn/aHeodo
2021-01-05M91Q0Q52QDG8M96.docdoc 80454b5f97454034a460b2976c3161f4efcf1131cb3ba594669114a46e069c98Virustotal results 42.86%Heodo
2021-01-05KYQWH60C4VH5EX.docdoc c4ce0eb227b221d4f84b66d77278e5508154523f6b6ce3bb756b33863a878046Virustotal results 42.86%Heodo
2021-01-05ZOJ5XH4TBJYB8OE.docdoc 1d7c91c4d2f76c54f4e0732030817ab00b79b727688be8a00122bc2a9387ea9bVirustotal results 42.86%Heodo
2021-01-05TWB4FJ.docdoc fd6f8497c7f1598a8b9b1efce5d180e4c935b6eb142460506657136415c9aeecVirustotal results 42.86%Heodo
2021-01-05C09MNT4A.docdoc c2a6153157de0da1987225400eb7e32c87f9574e825320466772d6804cf8d3b0Virustotal results 42.86%Heodo
2021-01-05OYJ947BTN.docdoc 8fd9cb62864fba4744ed8c84378c4fbe014c5b9f08d61c6a84d8816c2e6e4d9cVirustotal results 44.44%Heodo
2021-01-05IRQI7Z4DG9M4DB.docdoc e6d8f9a17d64ea5f77d1ed0f0e92e908e3a5c28ceda1803e3637322476ed758fVirustotal results 41.27%Heodo
2021-01-05AUWHGQKE0.docdoc 972c65cfa05e9f20d99e2a9ef7eefaa9a5a6bcdbfe731ce84af19dea721b4af2Virustotal results 41.27%Heodo
2021-01-059ER6TZBFJANV.docdoc 6bfdc2cd8834b0b754fb0e27882423ac07d2847ef11163583c2acede0798104cVirustotal results 40.32%Heodo
2021-01-058VZOKJE569W.docdoc c8716d77cc9731a9bd2f9e62118940e19ef0e5f78720b842f7fd47d53300282an/aHeodo
2021-01-05M2TYHWBA.docdoc 4ec6bb0b2ce1529a04163cb7987c3a252b4b942cf820aa976d0e2ffe95e84344Virustotal results 41.27%Heodo
2021-01-051QOB4X.docdoc e988587a9306a7454ba6dd4d9d1797f145d62cec0d590d00cc35e756a99e48f8n/aHeodo
2021-01-05V2SOAG99BNI33P.docdoc 9fbb1d6a78d460235c15cd965c206905604e198b8e8dbfb02bac8d5c2582cfa6Virustotal results 41.27%Heodo
2021-01-054GRSQO4OPGPOIC2C.docdoc afac66c125f46ce3c87f0613ef483fd0c8b46478b68498cccd087563fb8b7e43Virustotal results 38.71%Heodo
2021-01-05S9NJPH08LWLYRC.docdoc b7ab6e42f85864cffbabbd1238bb6ec2054478a1b89e8cf59d519bc07f6ac543Virustotal results 43.33%Heodo
2021-01-050KN39M94T.docdoc 50427b012e3fc35f90d9473514320fce89169d4734d1d7fe25f968f76f3190c7Virustotal results 41.27%Heodo
2021-01-05ZB2SBM2.docdoc ba2073ba50e5fc8b59c8a7d87b446cb15e03e0a75b3c9d639f42879dc9123187n/aHeodo
2021-01-05LBG9ERYM8A.docdoc d3d9fc2d3491815fa83fabc32f536dccf14350291f93f8291f6b86274f49755cVirustotal results 34.69%Heodo
2021-01-052KK0QFCHXXQ6TH4.docdoc d2129d3f6656065ebb9e44876adb0e285f9a575ebec8f44cd1fca68b92d4e69cVirustotal results 38.98%Heodo
2021-01-05UBIXO5HFKJVXRGEK.docdoc 36f1f3e2b474fdd2dba5500b93616364847f17689ab90dd0b98763bb817587c3Virustotal results 36.51%Heodo
2021-01-05I0F3QSMT6KRG.docdoc 5a4272405ec5815ec5ce110738678a0209b357093fdcfb9eb643570cd07cb7b9Virustotal results 35.48%Heodo
2021-01-05ZICHXADS1QH8475M.docdoc a56a1800d7e4025777037ca7710c9d3371e740bed22da122514b4926f7be79f9Virustotal results 36.84%Heodo
2021-01-05ZPHUZV.docdoc 4a3fb7e251123f52bc92b32749afea19092a3a9b6f694bc62842db349c93eb54Virustotal results 34.92%Heodo
2021-01-05JHVJD0YPNWYN.docdoc 43adb8d3a4f74699978989a06ef9aa06b6af6e9373673b197eb5c81b8d117340Virustotal results 34.92%Heodo
2021-01-05N3KEEX9E4OI4V.docdoc e1ed12bcae0da4c4a1154924ad77715d27052249f5056a72f02f9c6a42a6ba59Virustotal results 36.51%Heodo
2021-01-05O612GDUAO4FZ6.docdoc 91a7ce72ae73517cf823f4b6ff773ed980257153161d71111b095b9a5b56450dn/aHeodo
2021-01-05DOL997ZKITKF.docdoc b6702fb9c3979ce91ea2639c005c1848572d3998031cf816442c4f38776b4655n/aHeodo
2021-01-05LQ9TM352D.docdoc a700e19d7dc7facdc0598d4c78fa8781ae1a7cf9a6c215deb838a9d6c78bfd7cVirustotal results 34.92%Heodo
2021-01-05UYVLEZ519R8.docdoc 56107ecbd594f1c684f729d239e501bb2d1561d6a584d7ba0a0d69ded2bbbb18Virustotal results 34.92%Heodo
2021-01-05MVCD60HO6NITE.docdoc 001e1ea7ab07c91d781f5c51cd2039efc3acaf9f3a7b4bad38979ad48ad2119cVirustotal results 35.48%Heodo
2021-01-05IHBTKZTWDF59N.docdoc dec912faff311861c29da440acd2b9397c1e37bfb5be458cb8b21fcfc150d152Virustotal results 34.92%Heodo
2021-01-05QGEGZFQW4Q5GMOV.docdoc 80fadde081a035c58538d60c3829934f50b57a18850e7506eae4157595906af0Virustotal results 33.33%Heodo
2021-01-05K4CD80Y4TR041GU.docdoc ef6c966c74e229e34f880f5df67c40fc69a57caf55d1b033527dd9c5be04516bVirustotal results 34.43%Heodo
2021-01-05OD52O45PNJ5T.docdoc 6bc73ac4754a61cfd480d1b333cb576785fcae102111701e6461365d6b535105n/aHeodo
2021-01-051Q38CV.docdoc 5811f21b56ff4e4ebecda822447d72e3375952d4762d2289f132db72185e47eaVirustotal results 33.33%Heodo
2021-01-05VDHSNNGYSWU5G7.docdoc 01bce41750258f3d232b9eb7fe7901a88167254f0fe956f557bb33aced7cfec5n/aHeodo
2021-01-05VVB3ZKQN.docdoc 93eec48d8f34dd47d5c87249dc01e4541b6715b6f8ea7e37b2a81cba49b76939Virustotal results 33.33%Heodo
2021-01-05QKX5Y3THVFK8FNW.docdoc 37ddd596a953691452989e0ecc19ccb927d26debf39b6e00f9dcc2aafa92fc32n/aHeodo
2021-01-05D23V8VMDQK39YJ.docdoc c5093981d845dddb3354e358477d1865f47564bebb0fea43cb8588e31955e4b2Virustotal results 30.16%Heodo
2021-01-05YX9F7KKVM2S.docdoc 4e737e03635e1e3e25aa1dbe5b3d6b48475ff22a04d6c7784f9a2ab55083d0f0Virustotal results 30.16%Heodo
2021-01-05XCPB201LIXJGW.docdoc bf7cae6c920be51d01231f410c3dd16183c89f983509ea4d25e5cb308cab7630Virustotal results 30.65%Heodo
2021-01-05ZDCPUD2YYL31PW.docdoc 9ae915057958cea9afdf68d25db2382af275e1df97697179b81cee8948202f35Virustotal results 31.67%Heodo
2021-01-05EJT3NF07BQ8CN.docdoc eb9832a8c1808d003e6b6a981f8c8fc5c67ec90c7faf9a1d1250315ea1f953d5n/aHeodo
2021-01-05GEDEYH.docdoc ff12ebb01a78239f88677715c2dd26f3d7aa9368c15a94590bb5a8035adb043dVirustotal results 31.15%Heodo
2021-01-05KXDOEL.docdoc a9575801042f3fbc21f0c577ca40731edcbfa884a765d32c1d9d9e775c961953n/aHeodo
2021-01-05SVHZ7MXW.docdoc cbe19f76bfedc090a57dab2ddb7abca1880676f4614bad3f1f48a953f54d450fVirustotal results 30.16%Heodo
2021-01-055DOA26U.docdoc 7a478c1c24c25e82274c1757d5603581f28754f7a8614b646701da5fa27c6aa4Virustotal results 30.16%Heodo
2021-01-05SU03L540VL.docdoc 8403254744e2730ba02b0edbbb2adab46acbd84388cfe7d2570f96cbac547b89Virustotal results 28.57%Heodo
2021-01-05E194HY8ORIAV.docdoc 9fa1a2f7bbcdbf6208aaf8d08fa62a31b91a7b6d98dd4d7a7c23437fe6a6e763n/aHeodo
2021-01-05C8GR6P9NYX6UXQ.docdoc 3724b137d395a8ff9abcbe11e75553e699c89099a6f10f8b7c81b22214d5781eVirustotal results 28.57%Heodo
2021-01-05ONAPU6BQW4XO9O5W.docdoc 8895559775500122c02bddb5dad4de7f16102619210f9f5be927336e768bd0b1Virustotal results 28.57%Heodo
2021-01-05TMN2FD6L0PZO5Y.docdoc 70aa5aae32738f7033ad0efbeac4d8975e3658753b1a58e06702bed88ac47de8n/aHeodo
2021-01-05H2S092R78M.docdoc 20c4e385c38815675f3a8d97965e53c8b8f55f5034eff90bc8847142f5a20ad2n/aHeodo
2021-01-05OP4DISB3YFFA.docdoc e243ac7c1ea7d9335bf414580bef9417d41b9e85f688cd22afff509c0c40db77n/aHeodo
2021-01-05IMAZCWT6962YT9.docdoc 53b1728bf17ee86c76be53270417119e22c2f1d8ddad4bee36bbc701803d30abVirustotal results 28.57%Heodo
2021-01-05SEGW42LO5K28.docdoc a26ff62a2264180c03ebf68a26120cadbcee3f53a4cc6dc7ad00d97ffd029c85Virustotal results 36.51%Heodo
2021-01-054KHGUB6LIQGG.docdoc c89d8cf447d03687818fda76021467eb01ca57915644cc3516ed2b47d99b3eb9n/aHeodo
2021-01-05QX1VD7SEH1OL1ZKZ.docdoc d67fe49fb7149fd2066f78aad02d737430236ddecb5374f6c7063dc3dc20b7c2Virustotal results 31.75%Heodo
2021-01-05SFWVT1XMQEC93PT0.docdoc 68f339174767db80cb1578578631e93ff0ca10f79e575271ced080937a3f3159n/aHeodo
2021-01-0529B03BZ3XP7D.docdoc eea58b2b0043981ad90b971ebe83901ebcefceda806a25b6eaf21408b3d3a689Virustotal results 31.75%Heodo
2021-01-05QENQKT4OCPI.docdoc fa91514bcf7bf7d49942a9540a1d515095c09cd936dae7f0073647dff6249c37n/aHeodo
2021-01-05Z5NFVHGMNYRRLV.docdoc 805cc20cd0bc45430f2860141c12bdd16435560a0284cca1b833d12dda8bf8a0Virustotal results 33.33%Heodo
2021-01-05QP7RA8.docdoc ed554fe56ab46d0e27c0febbe54663474540030391fb638542a4beead28f8ae8n/aHeodo
2021-01-05LWDBUETMF9Y6.docdoc 31098f25a636339c3e7b05faa2d9803b8ff4686479ceab5ee22ba257193992a8n/aHeodo
2021-01-057YGC3GZMMGI7Q.docdoc bc60a50738caeabfcd59cfc7f355ad5fcb5ac7d0b57afd7d96aef09e6eca8b0en/aHeodo
2021-01-055GLDFZAZM.docdoc 403df2e81bbb1cbe0b761a68962a96d99082642fb0f7764a1f7ea057c7854988n/aHeodo
2021-01-05F5G2HSB0TYMUH.docdoc 6f31db5bbdffcfd6869ca287c54ab7010c4bdacc510e86fb8fbebc7999d8cdf1n/aHeodo
2021-01-05NRSL21NY6ESWW09A.docdoc 54496830b594a269cf3ec9c90a9358b797f967912c3e7ee8c6a8da7f31135f12Virustotal results 32.26%Heodo
2021-01-05IVRS9G5GDPFGPN3.docdoc 906f8cd4e47a854b5529ec1ba4e7af7a9429b6cdb09772e8cc661a0071cd46f8Virustotal results 31.75%Heodo
2021-01-05VM859Q9KHO5KD.docdoc 2fce0e475493a78ec8132358305eaf611dad56e9f69186a6ba81488abe696ba6n/aHeodo
2021-01-05XY3W9O.docdoc 771ac1b506fa360b405de6d3b6947b0fa3e32159b35dc852efaf0eabf8cf6b75Virustotal results 32.26%Heodo
2021-01-05G9775D4Z.docdoc 1b815075fbe2801ca89c6f4227c9ae2fdb2275698791758ef57f7073fd4d0d6fVirustotal results 32.26%Heodo
2021-01-05DRJGEVQOPGL7JXF2.docdoc 47045bd8084c3a6d54f452d66db9d55f9af7413a968bde9ef5c0967bd5acececVirustotal results 31.15%Heodo
2021-01-05T04Y4MSTXPC.docdoc 09292d51e8d353b88a500ab38de30d3aaec41733df7b368af869cf472bfef48dVirustotal results 31.75%Heodo
2021-01-05OOQHZS47LSLG.docdoc eedc56307590cb415b9388656d7287000bf530c10ab8c8c1f8bf4875321c2398n/aHeodo
2021-01-05VGWO7SDHRR.docdoc 48e5d9cf1ebc2c615dc60b2f35595632cb1ebf25c2305ea31f087bbe8689a1adVirustotal results 31.75%Heodo
2021-01-05L4TWIG9NWL873SW.docdoc ec2aca363bea5e10495d5682f2c50b4a46c9ca51236fb795e7d87e41109ce790Virustotal results 31.75%Heodo
2021-01-050TKOTSNNJ.docdoc 84050cc58a43aebd78c85392869761e0772f48740c414f586b2716f6c5a09b99Virustotal results 31.75%Heodo
2021-01-05A1WOXORH.docdoc d156b4fc840034beae78f8d4c55226d4dd1771465d0b8f45322dcd63731bdd4aVirustotal results 32.26%Heodo
2021-01-054J25CPASS1H7.docdoc c909996e11aabb6f9003b0ca2e0e52d58c16777e4c7e6fc11aa6b599183dd7d4n/aHeodo
2021-01-0508VQ2352.docdoc acbb7afbd6807623f7b138be593f37aed6daf29c912342a71aa8b65fbb4a99f7Virustotal results 31.75%Heodo
2021-01-0536ASIBT03RE2NN.docdoc 715302c7c5d571733456f11e19d6c7a066388ef318fb726b24578ae121f9bc20n/aHeodo
2021-01-05RZS5NK5J.docdoc 6448368ab7df4127112976c2569ddb2ca562595979b6aa627afd33cac7b47d71Virustotal results 31.15%Heodo
2021-01-05EVM2TH8XPBZQ8CN4.docdoc 38d17dfd9fc5d7eb04a6ed019750022081fd13b253d0eb08d92fd9109815ec52Virustotal results 31.75%Heodo
2021-01-05NSGKWUUE0ICMH.docdoc 0dddfc149150477c5fae49dec6477c7936aaab52d827e85d522a6aca5217fcdaVirustotal results 31.75%Heodo
2021-01-05EO9JUQ930FX9.docdoc 401e09065cc4fe70319e8924de8ab2ace957de8a65a2a1ac15330fdfe2f9c092Virustotal results 31.67%Heodo
2021-01-05KQPL56UXKRE.docdoc f1ff8d81d84d73a186c72546b5efdc3abd4f4a91243d0f2bb537cc1418d8bdaen/aHeodo
2021-01-05J3HPFLMYUZG5AL.docdoc 3d59c114c200d80ba97d2866d3b53aada9eee8b22a90c4bee3f60bbb254fe1c0Virustotal results 30.16%Heodo
2021-01-057G3AMHNKL3MIY.docdoc 269b7e9055041b22adcfd3f3d1d0a4711292eb08c8674a535071c2ccf27a31fdn/aHeodo
2021-01-058RCDIB4LEU99BXR.docdoc 9b5ceeadb9d26cc60561054e3ea318e82923f3b04a9e505aeb8750ef4b3d902cVirustotal results 31.75%Heodo
2021-01-05KW62ZEEPM.docdoc d4e6f646fefbec70addba05ff09663419b87f9639b77c91ed711cadebd38f1daVirustotal results 32.26%Heodo
2021-01-05LJ3YLK5D8UO.docdoc 76791e1b0ebfbf5081b8f6c4e3196ad92ca2d9904c48fc16d8e9d82b3585853fVirustotal results 31.75%Heodo
2021-01-04ELEE8PN.docdoc bf2f59ecb85a6029a908bdf90f5dae875e68196bf1987cf72959bd568355c702Virustotal results 31.75%Heodo
2021-01-04AH3ZIAH06ULGVL.docdoc 1f3408d6afcfe5d362d5ff3499a030b245b4f62883dca94f64bea90ac430fc24Virustotal results 31.75%Heodo
2021-01-04SA7IOG7A2OJ.docdoc 9e43571bf7a712feb6f6f6f2dbbef7876ee0a5895f2219bb76775b6809d98f09Virustotal results 31.75%Heodo
2021-01-041PO1VT4JJSOM.docdoc 0daffdebae76adc451e7450a0655b6cdb1755cf372b24c67e462531a3a535469Virustotal results 30.65%Heodo
2021-01-04UQRDCBXRG2.docdoc 145466e49f1ebf4ed38896709a64733353a2389bd676b7ef055c79637f53c082Virustotal results 30.65%Heodo
2021-01-04089BLKTJXLL.docdoc bd71cb5216319d67b7163d101b227e46c1b8172480c96aee9172be8670c32fbfn/aHeodo
2021-01-04AXZ7T45JFD6.docdoc 70364c0d02f4a1d61a76caf33b3c7b6349e382fc465685ce6ff04f6b1f422b1eVirustotal results 32.26%Heodo
2021-01-04MV4LK2BIVVFOJMTJ.docdoc d6f1b9a4e9318d759d02ae98959c6147f8779ef82f41bd3c1970a6f9dfe6c0d5Virustotal results 31.67%Heodo
2021-01-04I7471Y6K1TZ.docdoc 335244fcbcc6009ad28d75a6dfe0349e05900474914247fa1170d8aa92d7e988Virustotal results 31.75%Heodo
2021-01-04LRM8HCRPZM5HA1I9.docdoc b10a960e8977a7b70533cbee4eb85803cde6da3e96f6b83f3ed90e1950ca002an/aHeodo
2021-01-04GL7JXF2.docdoc e9e38a6cb9cb68a769315bfb851f0050c0de6d11eea0e844369970fe0de81ce2Virustotal results 32.26%Heodo
2021-01-04D9DP3AIW2Y1WO.docdoc 3d21a5365d2e1f9d0e3d3e86dda15dc5ad052808764acba64fd1bdeb9ec0fcf7n/aHeodo
2021-01-04DG09MCKUXUAFF4.docdoc 5b5a5d832bc2ab16da7304396039c9b4d15d3fabb3bb41386578505f0124b0c4n/aHeodo