URLhaus Database

You are currently viewing the URLhaus database entry for http://www.tru-liv.com/localstart/CukTLEfbnfKTvDbGRlI4xjj5JmPO/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:972615
URL: http://www.tru-liv.com/localstart/CukTLEfbnfKTvDbGRlI4xjj5JmPO/
URL Status:Offline
Host: www.tru-liv.com
Date added:2021-01-20 20:28:05 UTC
Last online:2021-01-22 16:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: zbetcheckin
Abuse complaint sent (?):mail Yes (Ticket DCU003266728 created on 2021-01-20 20:30:09 UTC)
Takedown time:1 day, 20 hours, 3 minutes Poor (down since 2021-01-22 16:33:23 UTC)
Tags:doc emotet link epoch2 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-01-22YFJ8ZUJ.docdoc 7371dcb540c73179ced65f5fb2eae7f7b3cda4f46a4e5584deb6874e7ee576b2n/aHeodo
2021-01-22BZ8TG4YF.docdoc 9ba0039bc176e474fdeeb96eaf3feac9ad506e1a1098355a5b07c34d54ca789an/aHeodo
2021-01-2217QFPBBGX6509V.docdoc abfe4c583168ef347612435e4a452cb19d1716caedaf134353db27a4e0efcfc2Virustotal results 27.42%Heodo
2021-01-22ACUA935X2EO40NO.docdoc 9e2c5e3ffc4db3771082aa0ed3a6c30821f0545c540f6541d087d1e65e733cdeVirustotal results 26.67%Heodo
2021-01-22VECE0KWR.docdoc 46ecb2bd799ed8838178b39b07df00329f9348fd48545a9e6be9b76e5ea6de09Virustotal results 29.03%Heodo
2021-01-22FTDEEN.docdoc c61c1c56b3ed7944b84879580c06f0c3401562c04cd0a4a6ba8e1cf0d449463bVirustotal results 29.51%Heodo
2021-01-212IMM6IUMQQ.docdoc 3a0235b5137c1d8dffa67e97c6dbe13cfc7117e3c62dfee05d8897acdea83b5cVirustotal results 40.32%Heodo
2021-01-21KGKUXMFZ9HC.docdoc 54385e84d22e522ecf660abd63e8cdc132b0ad766af8d7c589b13f7be5371c2dVirustotal results 39.34%Heodo
2021-01-21PGGD3L4JK9B.docdoc 4121d45c89baa331a26e0dd4c638c04a81fd89a98b09675d3e1cb3c0a57c80dfVirustotal results 38.71%Heodo
2021-01-215JIH3G5RJYX.docdoc c817fecaa0572cdffb222f4e40d2d2f64fed46d86c042e8cfd9cc3b597489912Virustotal results 39.34%Heodo
2021-01-21XLNYJ98.docdoc c4f94c6960792fe6e062b42c6c149482152a96588a9a5b9c3f7c4a35c974ac50Virustotal results 40.98%Heodo
2021-01-21YV7X2Z066RNMM0QI.docdoc 734760f1587fe2caa03e721fc7f70c74e90517fae7f02f75ca4cf60cfa2c947cVirustotal results 41.94%Heodo
2021-01-21TYWDU3LL6.docdoc f19f01987b42d9be03048f6897f0ae6dd4265c93cf2b1e055b28e5354113a2d2n/aHeodo
2021-01-21EIO4DVGKJS69SGL.docdoc 64a17440d41fd8eae4685249c345b5022f4e690183200645ff1e6f7f804159ben/aHeodo
2021-01-21M5706PHEH7WFZ2PW.docdoc 4142cfc2bb8a067a21c0439bef1d08e1742025b00b3cb1c9619ff7bf0a2b42d6n/aHeodo
2021-01-21I0Q87IAMMJBKF.docdoc 11e1780e215a952185315253632033b1e42e269f59252e80ccc002e7ed15c086n/aHeodo
2021-01-2116Y2ENP0HI.docdoc 1fa18e851ad74226caf71eaca19ccba3ba2b1457521c4a4fbe6ba07fb3008333Virustotal results 37.93%Heodo
2021-01-21QPMWA88Q0HP.docdoc 5a17dee61b79152ce451f560a17603b291bd0934b4c0bdb69a3328fca8b36771Virustotal results 39.34%Heodo
2021-01-21DIGTPPGD.docdoc 80f688c0b9fb7d3277bddc7d43c06d13ddb6a1658247870d0287de8c157e0becVirustotal results 37.70%Heodo
2021-01-21R682ZII8JZS27J.docdoc efefc84243ccc08a0c004247847a2e7c55dc7559eaf302919c40085ff83f5c4cVirustotal results 35.48%Heodo
2021-01-211RX01ISAEKTNO5.docdoc 8d7efeeb6526c1ce01dd7d5a75a5f9c22d9ef5dec9e19d6504cc1d073cf8c864n/aHeodo
2021-01-21T6ZO08UP9DYZF5.docdoc a27a067570f7050895722c7148589fd30eb44e4d77e2dab8d884271e0235664an/aHeodo
2021-01-21FKT3AZ2.docdoc f1b16a95d60e942f2ca4724096a5a078f74d16d045da8ebf4cbd11d1fcb25322n/aHeodo
2021-01-21XOX0A3H0A1V.docdoc 1ade51b62019cdf1df087f2ebf35d2d5fe4aa1bc5a03d76324ff346bfe5d7953Virustotal results 35.48%Heodo
2021-01-21PPT529.docdoc 4fbc5117af26fd60f03e2660f74b6b18cfb88d2badad4394939838a779bec2d7Virustotal results 35.48%Heodo
2021-01-21IP2NJPEYP.docdoc b5b3fb90ae6803eaf1c36f587b978d687b19cc72399a51128388be7d421599b5Virustotal results 36.07% Heodo
2021-01-21J4J6KV1QES34C.docdoc 6666bd131bccf0a6bf3973a274445780cd1216aa9260c08d10a079c9ea58cd44n/aHeodo
2021-01-21DOB52W1CDW6GRF82.docdoc 5f73dcc09f5d4ac5219b105e1083dda4baca6637aaaaee7ffb27691684f4968eVirustotal results 35.48%Heodo
2021-01-21TPUBUI9O9IN4Y9.docdoc a58be0e3ba5abd6441bef2a7efcdffa251f5f396685642160a2508363b75395fVirustotal results 35.48%Heodo
2021-01-21ZP8687ZI451KWX8K.docdoc 6696dcee2f90b0c3f0614d8197a15ce194e31f0940e923dd5f9bb95fb42fa479Virustotal results 34.43%Heodo
2021-01-21MWDT9AC35JLM4.docdoc 8529a3bea5066aa6c825c3e7f27e7c014eccc2f265ac844787e13aa77048fc38Virustotal results 35.48%Heodo
2021-01-21VP14ZQLXV0JB.docdoc 17130511b6b91858676f6df0392ecb7db5aa7d5782038832dfdb68cdfb6717e2Virustotal results 35.48%Heodo
2021-01-21C6B8FT76.docdoc 38dd4edef2de2088eb63ab88c4213512a1b0bc748d115d2ed16ac1c5c2cf27b7Virustotal results 31.67%Heodo
2021-01-211VRXBNOXQO4K44.docdoc 7a20adc14eedee96591f3f10da2623860f3adfb5c70d6603bad7802045e11c81Virustotal results 33.87%Heodo
2021-01-21DOT99FIRN.docdoc b0b540ad237698caeabe4f0eb6faa0869a39484393d922cd298e23b304562845Virustotal results 37.10%Heodo
2021-01-216RQ92V4KGI2ZY.docdoc 1849ce13b6b8587273a6ba9558bd63b59ccef9a7c8b25c01c14253a34da481c6Virustotal results 35.48%Heodo
2021-01-21OLI68F19CA3ZYPG.docdoc 58087e36eb939fe42f9ecafa00c3ba4002c238182b406a45db0ffa7ae6e83398n/aHeodo
2021-01-215UFLHLIR0EN.docdoc 75d4b326ca471055fba9d3e4dfbb994e191135130d15f7f1e75fa6a8346bf89dVirustotal results 29.03%Heodo
2021-01-21N8K8TCR09.docdoc 1b2b0f6f229f819f49cefa1af565aa4e83bf8b1f9df047bebfa9143dbebbb349Virustotal results 28.81%Heodo
2021-01-210FW176KYKPV.docdoc c81d0f1555b356115f9478fb3e1a082fe834f56fa4361077081cc7c399d5bdeaVirustotal results 29.03%Heodo
2021-01-21MU0NT3F90R.docdoc 9005833203499e17fc8dc75a6082bd9762dc6acd404ae5dc6b0fba27fa9e1c7an/aHeodo
2021-01-201X44ZB17.docdoc 019f04b6b435d65725a7fea600c318e96d64c945fbf8ad3ee2f67d05900a27cbVirustotal results 35.59%Heodo
2021-01-200YEBWQXSJJ.docdoc 3d27524fc5a80d20ae3567440ebdea86883b5cd1cf599ca8afc8ae80c41ae31bVirustotal results 36.07%Heodo
2021-01-20OC3T4G2ZT.docdoc 4cadad6fe9f001e7d45a39b6a54af137aa2cc08f465010ecb7539156ed88d384Virustotal results 29.03%Heodo
2021-01-20PYRZAM.docdoc 1c781faa1f4f2e3a4757766943a18d7b1c16ce4e695382b723a36dc9a52d8331Virustotal results 33.33%Heodo
2021-01-20WWTAB7XCDPY7ZBH.docdoc 5a43f6cf21f15f541f3c485ea237f724e3c72ea59d91e44092103cae63a01bf6Virustotal results 32.79%Heodo
2021-01-206D5HSW8DA.docdoc 51d0ab773047ebaac512a5d397e79534ac5b266afd4ee691d6356a8bd7fe4b11Virustotal results 31.15%Heodo
2021-01-20W8BEAEERSACJC0E.docdoc 96c0946b5c6a8d77fa253d70c944ac5e78a5a0cfc0e22ebbc27b44a8550cec6dVirustotal results 30.65%Heodo
2021-01-20Q0QQOH5N0NG.docdoc 3602f8e737829acb355fceaf51908fe8a199a2ae44099cedd08d3cb298fc8b53n/aHeodo
2021-01-20SJEXD0BY.docdoc 462f5d61dfa9c9938d8d78f06e90df29e4037d7a20edbb20da7d9ed0d69a4b02n/aHeodo
2021-01-20CA1SZS.docdoc 0f0061b80732fc11150a67c1807a75989ce897eb2be6e22d425c4b41f88f98eeVirustotal results 29.03%Heodo
2021-01-205SAG9PWFC.docdoc ddca7d6d22b741be7ae7ed5e884bf7bdf3e0a17ba7cc4093ca1744bdcece2fbcVirustotal results 29.03%Heodo
2021-01-20EUKG6AZNP6SII37.docdoc 8c9e3c8b6589995ae77125707441a518cd80dcf62a2c59e0d4b53a2bbef0576bVirustotal results 29.51%Heodo
2021-01-20DJJICDXPDXXUJ.docdoc 90512c0b5b5ffe54f12e39016dd9e8673631e0eecee9a8c44b2f3f9a90cc9b18Virustotal results 29.03%Heodo
2021-01-20TO01WM6GBXR5I.docdoc edf31b7e2675b612cb3930814615f228a9fff1dc8613ed5e47d9e98418ee99ffVirustotal results 29.03%Heodo
2021-01-209D7FW0.docdoc c08b3f7c06d7b77801575fd05c9242aa9c5f8ad17788390c0f15fceead07002fVirustotal results 30.00%Heodo
2021-01-20AZ6UNW6MZ9NMX.docdoc e4cb0eb0b65af11f26a5b0a66600e1ea942175dbac4014967d689880158e2a0bn/aHeodo
2021-01-20KGIZDT3Z0ES94VO.docdoc 020bceec2fdbd029d767e4d2714cdf30546debb93652c93fa9983cdbb2403cd0Virustotal results 24.59%Heodo