URLhaus Database

You are currently viewing the URLhaus database entry for http://otgconnect.com/wp-content/3esjZBEsahmcKXfD3IEWLHCwAbK0Ed0DF7Wp/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:972705
URL: http://otgconnect.com/wp-content/3esjZBEsahmcKXfD3IEWLHCwAbK0Ed0DF7Wp/
URL Status:Offline
Host: otgconnect.com
Date added:2021-01-20 21:31:06 UTC
Last online:2021-01-23 11:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2021-01-20 21:32:02 UTC to eig-abuse{at}endurance[dot]com)
Takedown time:2 days, 14 hours, 11 minutes Poor (down since 2021-01-23 11:43:16 UTC)
Tags:doc emotet link epoch2 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-01-210I2LXPVF67CF1.docdoc 3a0235b5137c1d8dffa67e97c6dbe13cfc7117e3c62dfee05d8897acdea83b5cVirustotal results 40.32%Heodo
2021-01-21EVT8BV5PGEZNO.docdoc 51fae18ca6515a9154913bc82e245a72308b832eb47b5785a21beb0f0a34b07en/aHeodo
2021-01-218I5MXY29MOF.docdoc 920fac5b7032800366dc97b32e8ecde37c1432a99f3e2eac1d3d36ff62ad85f1n/aHeodo
2021-01-21WQ159I81A62HB.docdoc fe4636a4066b3525d7bc3a58f2a3ac8c430e3bb88f0e975869c95e7cdc91aa5cVirustotal results 37.70%Heodo
2021-01-215PK2DMMNIPF.docdoc 7b84f2501e9b8aaa56422e3bbd5742f0e1ef38d318c28d689ed5662e85a65cfdn/aHeodo
2021-01-210RCXVAGU9H0O.docdoc 734760f1587fe2caa03e721fc7f70c74e90517fae7f02f75ca4cf60cfa2c947cVirustotal results 41.94%Heodo
2021-01-212FO2528GKMKZ.docdoc 92479f2f51bca6692c4c3d53b3f9a49bf1d5aeab01a98e9a2feb0d6d68ef6343n/aHeodo
2021-01-21F57VRU.docdoc b77758a7936af2b7c6b3df9fc45475ca411a9cfaae447bd97a2ab3b8d60aa160n/aHeodo
2021-01-21L32LCUUG6MF.docdoc 4142cfc2bb8a067a21c0439bef1d08e1742025b00b3cb1c9619ff7bf0a2b42d6n/aHeodo
2021-01-21RENTPAX4.docdoc 11e1780e215a952185315253632033b1e42e269f59252e80ccc002e7ed15c086n/aHeodo
2021-01-21Y3NDIZ.docdoc 1599e10bc74eeb7b67c71bbfc12008d0f8bc8c3457297d017e2c633457a5800fVirustotal results 38.71%Heodo
2021-01-21IK899ESJRHTRSN.docdoc 17420055c7c1b85137e8f5e78a7eab811ae1b4f00b33ce05590e19399286fe2fn/aHeodo
2021-01-21ADQVDR4.docdoc 80f688c0b9fb7d3277bddc7d43c06d13ddb6a1658247870d0287de8c157e0becn/aHeodo
2021-01-2103RIVL9U7GXD4.docdoc efefc84243ccc08a0c004247847a2e7c55dc7559eaf302919c40085ff83f5c4cVirustotal results 35.48%Heodo
2021-01-21R9YZ7U7MF0PG.docdoc 8d7efeeb6526c1ce01dd7d5a75a5f9c22d9ef5dec9e19d6504cc1d073cf8c864n/aHeodo
2021-01-21OZVMPDZSYI5T9.docdoc 66840e0ecc45de6d60dfd40a9a510bc1664f4121d4e66b498fa33e3b1cf2ae31Virustotal results 37.10%Heodo
2021-01-21MD2856866R8CEKJ3.docdoc f582def432e13ece8b95e4ef399332f18cc093c85db59f4f4f0ce822447b465aVirustotal results 35.48%Heodo
2021-01-21V27SHNCAUF.docdoc 1ade51b62019cdf1df087f2ebf35d2d5fe4aa1bc5a03d76324ff346bfe5d7953Virustotal results 35.48%Heodo
2021-01-21BSE9ZC6.docdoc 50b410f2af280b1a288a0f94bae66b4db4278e307b1461a93a231a2ca715cb53Virustotal results 36.07%Heodo
2021-01-21RGZJQJN.docdoc 2d75bc655ee87200243a8c0f383323e49eb31a7b0cc6f86e4376c41f83e0f542Virustotal results 36.07%Heodo
2021-01-21XS3OK9I.docdoc a1adbad4bcb1cff2e45b7b7e7be4838dbf2133df86b768c9a1d9fa056b5b5d39Virustotal results 34.43%Heodo
2021-01-21ROZOZ79LJSNXK0.docdoc 5f73dcc09f5d4ac5219b105e1083dda4baca6637aaaaee7ffb27691684f4968eVirustotal results 35.48%Heodo
2021-01-21UMVZGJBOT7H.docdoc 8ab4622f9baca8db727f2fbf8f473144938729d286d1a320633fff3fc0897ae7n/aHeodo
2021-01-21COYKZDNUB31REKC.docdoc 0852348c68997bc5f4ee1ad2fce794f15198b36f41818a23b69e787f4cece095Virustotal results 35.48%Heodo
2021-01-21RU6JFCRHL6IM.docdoc 8529a3bea5066aa6c825c3e7f27e7c014eccc2f265ac844787e13aa77048fc38Virustotal results 35.48%Heodo
2021-01-2165F1Z2JN88GPBX5.docdoc 46512d0921fb5626d9080c7f3930e3b4ffb9cd15bf20c8554f150e7ff47b951en/aHeodo
2021-01-21JC0BTMFVR30Y.docdoc 38dd4edef2de2088eb63ab88c4213512a1b0bc748d115d2ed16ac1c5c2cf27b7Virustotal results 31.67%Heodo
2021-01-21PORVCRD85N8TD.docdoc 7a20adc14eedee96591f3f10da2623860f3adfb5c70d6603bad7802045e11c81Virustotal results 33.33%Heodo
2021-01-21O8N4E7F.docdoc b0b540ad237698caeabe4f0eb6faa0869a39484393d922cd298e23b304562845Virustotal results 37.10%Heodo
2021-01-21JD3NS4IYGR5DYB.docdoc 465766cf4d4152c6b11a68b68646dfb8266ab7cdf4b9ce2660feab1aacd32294Virustotal results 35.59%Heodo
2021-01-21GK32VVNG1S.docdoc 58087e36eb939fe42f9ecafa00c3ba4002c238182b406a45db0ffa7ae6e83398Virustotal results 35.48%Heodo
2021-01-21RDXPX8SAG2Y5Y.docdoc 1b2b0f6f229f819f49cefa1af565aa4e83bf8b1f9df047bebfa9143dbebbb349Virustotal results 37.10%Heodo
2021-01-21Z0RRNWR7J37B679.docdoc 4ba19977d7051012b6f22a72868e1c909438f6eca3e725dde0816c11f5d7f262n/aHeodo
2021-01-21ZMK8360J.docdoc c81d0f1555b356115f9478fb3e1a082fe834f56fa4361077081cc7c399d5bdeaVirustotal results 37.10%Heodo
2021-01-21X2QA5NPCSDBM.docdoc 1df953e34823f8351e1702bcda5b4b75887620f2ce403968f4cb0524e89bfa65Virustotal results 29.03%Heodo
2021-01-20XY70D6J.docdoc 141fff422c09e0667d14fb353c2b716e5942f8e592bf7e4c8627c33cca4deac9Virustotal results 37.29%Heodo
2021-01-20487ORUVCWBH4V68W.docdoc 3d27524fc5a80d20ae3567440ebdea86883b5cd1cf599ca8afc8ae80c41ae31bVirustotal results 36.07%Heodo
2021-01-2050HRL48CIGGU.docdoc 45c2215141817c9d7e320947f1f94ef7ec92d3351de8ac3798a7e306b34f5de5Virustotal results 35.48%Heodo
2021-01-20G1C690B9Y8TMY0.docdoc 9567a3e4acbb781baa119cbbd1863def630fd858a58d6658e360d30614b82082Virustotal results 34.43%Heodo
2021-01-20M9S3G7L0634AXJ.docdoc 69c319f6ceb4941cc2152d633b509323f22dc33994ebf516db8304e2c5409a62Virustotal results 32.79%Heodo
2021-01-20KIHWW0.docdoc cfeb8617b6934ecd6b5a4bbdfa12bb62a323bedd9f43b8e11352618ecfa75b43n/aHeodo
2021-01-20THAFY6L9ZNQUYMH.docdoc 96c0946b5c6a8d77fa253d70c944ac5e78a5a0cfc0e22ebbc27b44a8550cec6dVirustotal results 30.65%Heodo
2021-01-2084N38BTBWR.docdoc 3602f8e737829acb355fceaf51908fe8a199a2ae44099cedd08d3cb298fc8b53Virustotal results 29.03%Heodo
2021-01-20ZRWQBJUKS.docdoc 462f5d61dfa9c9938d8d78f06e90df29e4037d7a20edbb20da7d9ed0d69a4b02Virustotal results 26.67%Heodo
2021-01-202DF1F56NA.docdoc 885bec24ff3ff31176e787f7b53f03563bd32498a8dbe78cf0f8c7e933abe619Virustotal results 30.91%Heodo
2021-01-20SHPATSKKXOPYN.docdoc ddca7d6d22b741be7ae7ed5e884bf7bdf3e0a17ba7cc4093ca1744bdcece2fbcn/aHeodo
2021-01-20W5E4AFVBBMX1NJGD.docdoc 8c9e3c8b6589995ae77125707441a518cd80dcf62a2c59e0d4b53a2bbef0576bVirustotal results 29.51%Heodo
2021-01-20ZX0ODQJEGMAW.docdoc c84de615620cd1a69411f262b2f431ac07909b7705e43c1a97d80f5bfdc3ea33Virustotal results 27.87%Heodo