URLhaus Database

You are currently viewing the URLhaus database entry for http://spolky.csvts.cz/cspzp/Qj6ZPCdulmZHCad3obgWKWwPzIZ52lg6RiD8qfhZxkK4nEGxDP2S2yBctyVl7h/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:949236
URL: http://spolky.csvts.cz/cspzp/Qj6ZPCdulmZHCad3obgWKWwPzIZ52lg6RiD8qfhZxkK4nEGxDP2S2yBctyVl7h/
URL Status:Offline
Host: spolky.csvts.cz
Date added:2021-01-05 04:56:07 UTC
Last online:2021-01-05 09:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2021-01-05 04:58:03 UTC to abuse{at}vodafone[dot]cz)
Takedown time:4 hours, 56 minutes Good (down since 2021-01-05 09:54:46 UTC)
Tags:doc emotet link epoch2 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-01-054VG53CS.docdoc 06e62808d596c4d1c3cfa93eb960bccf7c9b0971b73db6622777558e287e0c68Virustotal results 28.57%Heodo
2021-01-05ACL46DWUKM5MA24.docdoc 3aaa77019c90c6bc1e883e9af492d6bbfc3a0e8792980f09fc30424c9dc69c9en/aHeodo
2021-01-05EP3RU4UU7Q2.docdoc 184094121e7f85f28812ea9fef22dd1cb20c0a75183f8cc057d7b905b5bc220fn/aHeodo
2021-01-05EIRVM9F94WDSKOFU.docdoc 742d7fb297d4b065534d4a387ed7cdefc37b87f63e8b920020a6b08c48abd5bdVirustotal results 28.57%Heodo
2021-01-056GH744FP9.docdoc 70aa5aae32738f7033ad0efbeac4d8975e3658753b1a58e06702bed88ac47de8n/aHeodo
2021-01-05Y6C8C3O9C.docdoc c34d5901f2fbc511b45bf5f763e9bc65bd50748300aa82fdbc054296ad9a22bfn/aHeodo
2021-01-05BDTQBVOQ.docdoc 932733fb7f8065b6976771967d0d9b4d27db4c07c2b69334db798fe9581a12b2n/aHeodo
2021-01-05OPUWW6B4IEI.docdoc 53b1728bf17ee86c76be53270417119e22c2f1d8ddad4bee36bbc701803d30abn/aHeodo
2021-01-05MZ8ON7FX7.docdoc fc54284371340d5ee0e9de0094b70280b063294cc1408866edeb19387215462an/aHeodo
2021-01-05GJDCY8UNJ.docdoc b1a27a0f4544b8bfa1365c6b5e8e4acf72aa4c2c6a1f49b20571bc04c5719b31n/aHeodo
2021-01-05BJ0MP8R0M1IV4.docdoc efe81ba5699e6e8cacc9303e09fad7fcdfabc4c3a4638b520e9a1f6ccbbbce51Virustotal results 32.79%Heodo
2021-01-05OH8NG4W9AA25A5.docdoc 68f339174767db80cb1578578631e93ff0ca10f79e575271ced080937a3f3159Virustotal results 32.79%Heodo
2021-01-05MIKJZ0N5JBXFN7.docdoc 555882aa0c70bf9f62ae71584a9e5e18353d6126de19390f8c2859c15693764cVirustotal results 33.33%Heodo
2021-01-05TBQUJA763YDCV.docdoc fa91514bcf7bf7d49942a9540a1d515095c09cd936dae7f0073647dff6249c37n/aHeodo
2021-01-05Z2YH3WA452XIRU.docdoc 805cc20cd0bc45430f2860141c12bdd16435560a0284cca1b833d12dda8bf8a0Virustotal results 32.26%Heodo
2021-01-05FSLFES.docdoc ce77e9e1fe235b5bcda9dd1e3db5ed575bd397a7e5f96da2775491ee0c23639cVirustotal results 28.57%Heodo
2021-01-0598Z86MIV9T.docdoc bc60a50738caeabfcd59cfc7f355ad5fcb5ac7d0b57afd7d96aef09e6eca8b0en/aHeodo
2021-01-05Y5ARR3X203.docdoc a1f37ed65bdf8395fc45107b12753f64e37425fda21b9aad7045ef39429c6a87Virustotal results 31.75%Heodo
2021-01-05KIFV721LEUWMEPI.docdoc 6f31db5bbdffcfd6869ca287c54ab7010c4bdacc510e86fb8fbebc7999d8cdf1Virustotal results 32.26%Heodo
2021-01-05C6TTRL79NCHF.docdoc 57573ae812bd40b5f1f02c9098899b026dbe071fddd98c0f39e979e542925274n/aHeodo
2021-01-05PR9P2I5ERDV.docdoc 062356944de62064252aeed4336f1416ec9ecd03ed618d6c27dbc0bfe8d168ffn/aHeodo
2021-01-0512V6HWS91V0.docdoc 2fce0e475493a78ec8132358305eaf611dad56e9f69186a6ba81488abe696ba6n/aHeodo