URLhaus Database

You are currently viewing the URLhaus database entry for http://outerwearman.ru/video/cZ53OqazcuUfi4kzfNnSC8lODlTY8VLAG6c9Jze2soya574WM9sN/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:972767
URL: http://outerwearman.ru/video/cZ53OqazcuUfi4kzfNnSC8lODlTY8VLAG6c9Jze2soya574WM9sN/
URL Status:Offline
Host: outerwearman.ru
Date added:2021-01-20 23:23:04 UTC
Last online:2021-01-21 09:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: bomccss
Abuse complaint sent (?): Yes (2021-01-20 23:24:02 UTC to abuse{at}jino[dot]ru)
Takedown time:10 hours, 5 minutes Good (down since 2021-01-21 09:29:38 UTC)
Tags:doc emotet link epoch2 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2021-01-21VAX0C4HYQ801.docdoc 1849ce13b6b8587273a6ba9558bd63b59ccef9a7c8b25c01c14253a34da481c6Virustotal results 35.48%Heodo
2021-01-21KOFSB89K6DSK8L90.docdoc 58087e36eb939fe42f9ecafa00c3ba4002c238182b406a45db0ffa7ae6e83398n/aHeodo
2021-01-21XUFARYEWE9W767E.docdoc 75d4b326ca471055fba9d3e4dfbb994e191135130d15f7f1e75fa6a8346bf89dVirustotal results 29.03%Heodo
2021-01-21BN6XWYI2.docdoc 4ba19977d7051012b6f22a72868e1c909438f6eca3e725dde0816c11f5d7f262Virustotal results 35.48%Heodo
2021-01-218NG4W5VIGC.docdoc c81d0f1555b356115f9478fb3e1a082fe834f56fa4361077081cc7c399d5bdeaVirustotal results 29.03%Heodo
2021-01-200TR2TML6.docdoc 9005833203499e17fc8dc75a6082bd9762dc6acd404ae5dc6b0fba27fa9e1c7aVirustotal results 37.10%Heodo
2021-01-20VN4201J4LOHR5H.docdoc 019f04b6b435d65725a7fea600c318e96d64c945fbf8ad3ee2f67d05900a27cbVirustotal results 35.59%Heodo
2021-01-204WWPQIK4QOLV0LZ.docdoc 3d27524fc5a80d20ae3567440ebdea86883b5cd1cf599ca8afc8ae80c41ae31bVirustotal results 36.07%Heodo
2021-01-20B99M4B8CHRF7FDM3.docdoc 45c2215141817c9d7e320947f1f94ef7ec92d3351de8ac3798a7e306b34f5de5Virustotal results 35.48%Heodo