URLhaus Database

You are currently viewing the URLhaus database entry for https://www.weinsteincounseling.com/wp-includes/NgTJ/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:972691
URL: https://www.weinsteincounseling.com/wp-includes/NgTJ/
URL Status:Offline
Host: www.weinsteincounseling.com
Date added:2021-01-20 21:14:13 UTC
Last online:2023-06-13 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2023-06-13 17:29:05 UTC to google-cloud-compliance{at}google[dot]com)
Takedown time:2 years, 5 months, 26 days, 12 hours, 11 minutes Bad (down since 2023-07-06 09:27:54 UTC)
Tags:doc emotet link epoch2 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-01-22FPOLF87YCTIBZ.docdoc 4ffa47e0f118abfe29b729542aaa390586651144b3c79a2272f3808bc4f4310aVirustotal results 33.87%Heodo
2021-01-22Q862M9O5H5RDH.docdoc 6b2fbb5e14a3a1018e7cbf6b37d303d86504f0fc412e8d0f0db3100162bfdd0bn/aHeodo
2021-01-2227FBY2ENSPB01NA3.docdoc 46ecb2bd799ed8838178b39b07df00329f9348fd48545a9e6be9b76e5ea6de09Virustotal results 29.03%Heodo
2021-01-22OHA36MFDX5K.docdoc d50ed8bf7cc3581a31201e5b72aa5ece499c46d36a837aef12ffc20bcd9214aen/aHeodo
2021-01-21WF0B227QMV.docdoc 3a0235b5137c1d8dffa67e97c6dbe13cfc7117e3c62dfee05d8897acdea83b5cVirustotal results 40.32%Heodo
2021-01-213ZDAW4.docdoc 51fae18ca6515a9154913bc82e245a72308b832eb47b5785a21beb0f0a34b07eVirustotal results 38.71%Heodo
2021-01-21DX5KLHZPAODPK2R4.docdoc 4121d45c89baa331a26e0dd4c638c04a81fd89a98b09675d3e1cb3c0a57c80dfVirustotal results 38.71%Heodo
2021-01-217SQH4YPBT95.docdoc 101b256c68bda370bc6e6d2bb174494911b42079e76fcc63b34f0900288c3f26Virustotal results 38.71%Heodo
2021-01-21SV1ZJGDAMEDG.docdoc 7b84f2501e9b8aaa56422e3bbd5742f0e1ef38d318c28d689ed5662e85a65cfdVirustotal results 36.67%Heodo
2021-01-218MI5CW523GO.docdoc 734760f1587fe2caa03e721fc7f70c74e90517fae7f02f75ca4cf60cfa2c947cVirustotal results 36.07%Heodo
2021-01-214NOFOWW.docdoc f19f01987b42d9be03048f6897f0ae6dd4265c93cf2b1e055b28e5354113a2d2n/aHeodo
2021-01-21U7VTD991.docdoc 64a17440d41fd8eae4685249c345b5022f4e690183200645ff1e6f7f804159ben/aHeodo
2021-01-21X3THN3F8.docdoc 4142cfc2bb8a067a21c0439bef1d08e1742025b00b3cb1c9619ff7bf0a2b42d6n/aHeodo
2021-01-21NWZRM9.docdoc 1fa18e851ad74226caf71eaca19ccba3ba2b1457521c4a4fbe6ba07fb3008333Virustotal results 37.93%Heodo
2021-01-216DLHWGGDD.docdoc 1599e10bc74eeb7b67c71bbfc12008d0f8bc8c3457297d017e2c633457a5800fVirustotal results 38.71%Heodo
2021-01-21GTQW2OL16.docdoc 5a17dee61b79152ce451f560a17603b291bd0934b4c0bdb69a3328fca8b36771Virustotal results 39.34%Heodo
2021-01-211ZYYRMO.docdoc 80f688c0b9fb7d3277bddc7d43c06d13ddb6a1658247870d0287de8c157e0becVirustotal results 37.70%Heodo
2021-01-2139FWFVUSRAD.docdoc 8d7efeeb6526c1ce01dd7d5a75a5f9c22d9ef5dec9e19d6504cc1d073cf8c864Virustotal results 36.07%Heodo
2021-01-2186EX5V1YT3KQ55W.docdoc 4994c3de88be1e554fa1b922de43a5f18a5f007c949399d53aa6a8e9687659d9Virustotal results 37.10%Heodo
2021-01-21VZEKY8.docdoc 66840e0ecc45de6d60dfd40a9a510bc1664f4121d4e66b498fa33e3b1cf2ae31Virustotal results 37.10%Heodo
2021-01-21NC8JLMHR.docdoc 34f009842068cfd83b7b0048deb0698f8647a41889d562c9314a7b4665c073beVirustotal results 35.48%Heodo
2021-01-21PMQ5RSWPQLI8L78N.docdoc 1ade51b62019cdf1df087f2ebf35d2d5fe4aa1bc5a03d76324ff346bfe5d7953Virustotal results 35.48%Heodo
2021-01-21PZ0QVQS84V4.docdoc 50b410f2af280b1a288a0f94bae66b4db4278e307b1461a93a231a2ca715cb53Virustotal results 36.07%Heodo
2021-01-21RBTE7CY.docdoc 2d75bc655ee87200243a8c0f383323e49eb31a7b0cc6f86e4376c41f83e0f542Virustotal results 36.07%Heodo
2021-01-21DQE74E3U7.docdoc 6666bd131bccf0a6bf3973a274445780cd1216aa9260c08d10a079c9ea58cd44Virustotal results 36.07%Heodo
2021-01-213AYG6DETY8.docdoc 2a4e442727def25a8ce8ddc73ffa52be640dd1f1016dbc26e3157f361936aa88n/aHeodo
2021-01-21LVIUNQPUCS2.docdoc a58be0e3ba5abd6441bef2a7efcdffa251f5f396685642160a2508363b75395fVirustotal results 35.48%Heodo
2021-01-21R0P5UKL22866.docdoc 0852348c68997bc5f4ee1ad2fce794f15198b36f41818a23b69e787f4cece095Virustotal results 35.48%Heodo
2021-01-21P9APYB70BP2AX3.docdoc 8529a3bea5066aa6c825c3e7f27e7c014eccc2f265ac844787e13aa77048fc38Virustotal results 35.48%Heodo
2021-01-213LE0AWS7JM50IGB.docdoc 46512d0921fb5626d9080c7f3930e3b4ffb9cd15bf20c8554f150e7ff47b951en/aHeodo
2021-01-21DEV1Z2Z9Z9CVNW9Z.docdoc 2b74e583a0148f1e5f2c91424947740e520cd67c66c78bc6a20c22fbc34b83d6Virustotal results 35.48%Heodo
2021-01-21L2G99P2K81M102.docdoc cc9a98243c5e282cbde25cdda1b4510e22afc3a444e07d97c8c9ffef7ff45463Virustotal results 35.48%Heodo
2021-01-2188CZ5J.docdoc ba3aa81154976cc9bdd719ecce4a925b513892f51cf40a1f511d77d1c180f1den/aHeodo
2021-01-21P2MVBZT2WUEYHB.docdoc 58087e36eb939fe42f9ecafa00c3ba4002c238182b406a45db0ffa7ae6e83398n/aHeodo
2021-01-21NHWA7P5I6KFC.docdoc 943f25050a280f1b3fc1154ce8740d31f30935391a7f7e9cd1cb0152f46ff099n/aHeodo
2021-01-21YFOXC0SBI6G.docdoc 9675b2f426b45cf771be7405a1b50bb1f2625f5be481848e4df2fa7419fc36acVirustotal results 37.10%Heodo
2021-01-217RUP967COZCVF.docdoc 1df953e34823f8351e1702bcda5b4b75887620f2ce403968f4cb0524e89bfa65Virustotal results 29.03%Heodo
2021-01-20ZR79ZJBES66.docdoc 141fff422c09e0667d14fb353c2b716e5942f8e592bf7e4c8627c33cca4deac9Virustotal results 37.29%Heodo
2021-01-20A3TW4BHUG.docdoc 3d27524fc5a80d20ae3567440ebdea86883b5cd1cf599ca8afc8ae80c41ae31bVirustotal results 36.07%Heodo
2021-01-209N9A1FXSJSAC.docdoc 3f5a613e83e83e91a8b9a8f676535284c8e0f817019b55845e157d8b436ac03aVirustotal results 36.67%Heodo
2021-01-20V3742719FFKW.docdoc 9567a3e4acbb781baa119cbbd1863def630fd858a58d6658e360d30614b82082n/aHeodo
2021-01-203J1W4WX9.docdoc 69c319f6ceb4941cc2152d633b509323f22dc33994ebf516db8304e2c5409a62Virustotal results 32.79%Heodo
2021-01-20JONQIBZ6R5K5SM.docdoc cfeb8617b6934ecd6b5a4bbdfa12bb62a323bedd9f43b8e11352618ecfa75b43n/aHeodo
2021-01-20UE4U1FR8.docdoc 3602f8e737829acb355fceaf51908fe8a199a2ae44099cedd08d3cb298fc8b53Virustotal results 29.03%Heodo
2021-01-20PVWDUINI5K3.docdoc 5eb0bd0ee37f979306d609872b652c8d2ab52e48f95b37ec05fad18504277dbeVirustotal results 29.51%Heodo
2021-01-20G7CE2O.docdoc 462f5d61dfa9c9938d8d78f06e90df29e4037d7a20edbb20da7d9ed0d69a4b02n/aHeodo
2021-01-209W4SLIS.docdoc 885bec24ff3ff31176e787f7b53f03563bd32498a8dbe78cf0f8c7e933abe619Virustotal results 30.91%Heodo
2021-01-20R6UO1HZS.docdoc ddca7d6d22b741be7ae7ed5e884bf7bdf3e0a17ba7cc4093ca1744bdcece2fbcVirustotal results 29.03%Heodo
2021-01-202A2Q7HC0IU4VXC2H.docdoc c01ace5e5093f9c57d7a89fecdcec19a4c90762c99e748b4956b17a8e8f272ccVirustotal results 29.03%Heodo
2021-01-2060WBXAGV.docdoc c84de615620cd1a69411f262b2f431ac07909b7705e43c1a97d80f5bfdc3ea33n/aHeodo
2021-01-20BHL1MUFAWGBQ7.docdoc 57c0a7e0c8c758419617cbb0493789572ffd9bad491e5e98ecb0754de052efe3n/aHeodo