URLhaus Database

You are currently viewing the URLhaus database entry for http://dev.sitiotesting.lab.fluxit.com.ar/EN_en/AIgj-JB_gmR-Fd0/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:119276
URL: http://dev.sitiotesting.lab.fluxit.com.ar/EN_en/AIgj-JB_gmR-Fd0/
URL Status:Offline
Host: dev.sitiotesting.lab.fluxit.com.ar
Date added:2019-02-07 10:10:11 UTC
Threat:Malware download Malware download
Google Safe Browsing:Clean
Spamhaus DBL :Not listed
SURBL :Not listed
Quad9 :Not blocked
AdGuard :Blocked link
Reporter:@spamhaus
Abuse complaint sent (?): Yes (2019-02-07 10:24:03 UTC to cgrisotto{at}IWINDS[dot]COM[dot]AR)
Takedown time:1 day, 5 hours, 56 minutes Poor (down since 2019-02-08 16:20:40 UTC)
Tags:emotet link heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTSignature
2019-02-0814622049817777552.docdoc aef36d758c88037b4ad9e1fb77453694fd0e7a342e4915d8d6098466c35d2fd7n/aHeodo
2019-02-08950336500036.docdoc 86a56403d6bd67ca0b777d7efe3e3d020924c5f364d48f5b2b5c1a6f27a865e5n/aHeodo
2019-02-08ACC24328922770351336955.docdoc 037202f5fc80cc4fb83a30b848e5040540128d262e89cbe6b8251c3561cdf932Virustotal results 34.55%Heodo
2019-02-08PAY429376119159059.docdoc 6ee9974244602dbc226340de32a8ef84b40c190e45a35e29d1736218e1c6e5b9n/a
2019-02-08MWIG00302024434690670.docdoc 246cd14379e908df2b4c005856e871f39e4566599909267691a01357d2a1a36cVirustotal results 33.33%Heodo
2019-02-08PAY525403424.docdoc 559008ecf5bf28ccbde15a6568382e374e5cf944b343b5e4818bc0b4fdff1a32n/aHeodo
2019-02-08N8092401710040.docdoc 42906bb0cb8a0470637a8a5fc09c2b9b11d938599d60178f1c0f401b6ff2e951n/aHeodo
2019-02-08BOA924233166958161.docdoc 54fb9896f364fb974573b3a50a83a39171bf0a6eb8107f38c81a4b9d3b4485c3n/aHeodo
2019-02-08PAY38598864826616.docdoc 85af3bc103238b493009e9a74c161136cb2bcfe136777e704944fbdd274c2c06Virustotal results 33.33%Heodo
2019-02-08WN42984050756016.docdoc a39681227ba1bdb2f66c030f39d5397244040193f58e069e35930616b39c1420Virustotal results 33.93%Heodo
2019-02-0887386312963928200.docdoc 0c411e60204a80768b18c2dd0d4e56070936f1c4991177784ed2eb29ce351ec7Virustotal results 33.33%Heodo
2019-02-08XR2064487509.docdoc 63ee4e95fc86b5809631b69f15033787f0221da3cad8a0ca05fc39f2e10f1d05Virustotal results 35.85%Heodo
2019-02-08US0420435030923.docdoc dbba1eb0d528879f7076be9af07a24898169c7bdd7bcdd79eaf4d0e83a34cb98n/aHeodo
2019-02-08PAY1010588474040.docdoc c8dbb6fe21dd709ffdc3b4fe934bbe1eb6adfc1b646a4067f45f70c484c89aean/aHeodo
2019-02-08US05630120507.docdoc 1c9be6a9763027cc90932603670865373dced51459b4d711adbddbcf4a85547an/a
2019-02-08ODOFC43091293477549130.docdoc 52c3208b2170d964c9077b93ba5c38e16db71a5434843643b4721c9e8a841108n/aHeodo
2019-02-08954987718393519.docdoc f837fea1fdedaa39ad5578afc221bfd4da571268cb772147f1d9f7e149c15749Virustotal results 35.71%Heodo
2019-02-08PAY494947765889272.docdoc 39d4adecda95f90c6003d3ec947975897f109e8f91e178d9d3c080887bcd33bcVirustotal results 33.33%Heodo
2019-02-08US61290234358139561.docdoc 3165de51ed8b543a50bb96f0ebbb49bff2cb62a897a45cb447aa36b1b11abb15n/aHeodo
2019-02-089389392912.docdoc cc03ce0a51f50b4701dbfa6864a041731dcc669d5b3c170e994b3fce5324a25dVirustotal results 33.33%Heodo
2019-02-08US774098147.docdoc 0ea4133dbffea10ee43515f194680bd340929f9115daff2cd357c3ebe7ced4d5n/a
2019-02-083831195672000.docdoc d3d635fea208f7dec066952c0a7d03253552dfc7662ccc0d2247de3446f5a59bVirustotal results 33.33%Heodo
2019-02-08BBPQI99522276429.docdoc 5ed7cc8999af9acac77212ba833ab29e9bf98feacdd0618e894cd30de7957e61Virustotal results 33.33%Heodo
2019-02-08HJCN79761521932029452635.docdoc 4a3dccc784392a7aa21a68b8e814e614e3c9b4127e2aa0c1846dfab839a687adn/a
2019-02-08TIY950726416.docdoc aeb1c5e8b573116c9ed147f64d1db534df4cb2eb2e33fe5af895402a50fc2281Virustotal results 31.03%Heodo
2019-02-08WBSSW267443937697253.docdoc 3edaa9ac035cec54508be143de0265727cca4cb154f86b5ec888743ab26394deVirustotal results 31.58%
2019-02-08US3748301561690461382.docdoc 47aed60a551a22abf392fe6562346562b03cd9c63bd83644895fb428c852dd1cn/a
2019-02-08PAY91292498673497551.docdoc 67e82c559802d774b8f72cc34ac4e162c9e684c4a3dfee235d2d9a69c96cce31n/a
2019-02-08PAY91292498673497551.docdoc 67e82c559802d774b8f72cc34ac4e162c9e684c4a3dfee235d2d9a69c96cce31n/a
2019-02-080282836443.docdoc 673773fd39bf02c344d2495f84dee91162abcdccad19aadb2a6c73aebbb58babVirustotal results 34.48%Heodo
2019-02-08US8718622009374834611.docdoc 3676a4721af61dbf4ff144df9ead3660b5cf5b88987e1f16c2d7fa8d6998201en/aHeodo
2019-02-07PAY5713464948449417.docdoc 3424d2306c78a36cb317ebb3534f728b5bd581570d75252b52318eb23ec11f07n/aHeodo
2019-02-07US248022579022.docdoc 4c74271c485e09e8f0f4972cb3d20a59762bbb8b0bc19c4ae8ca26f81d2513e7n/aHeodo
2019-02-07XUZK68352951168165634.docdoc 379d0b0c33adabeaf168a2d4d72ff71449b22bf10d9066e4ccf9d62b08125b16n/a
2019-02-07UZME21774905836026136653.docdoc 18507487483e0e610e48c8b4a6c5d77ea8e335d9975f2957890f8de6a546cf99n/aHeodo
2019-02-07US44109956481764714137.docdoc a46eb155148efd1ba294319d02244f2cd6414a306bbe67a6d8550efbbbfda768Virustotal results 35.09%
2019-02-07MM05390885224392758.docdoc b7114a38dff247e3de3bf5d26ddf0afbec48fb80a1e9a6390de6127db8fa0c0fVirustotal results 32.76%Heodo
2019-02-07US2586429640952723.docdoc fcd62376637e53bc88128a97945c969e720616b1843215995acc6030d50caa56Virustotal results 33.33%
2019-02-0737395619828553.docdoc 2f907b1674e0e09e33560104c18ec67b7413b63cd0dc9222374de25f7fa91124Virustotal results 33.33%Heodo
2019-02-07ARL062982531075.docdoc b8c4c2a766945ed6217c9b7633457bf3a97c2437c0b8eda59d928213172703d9Virustotal results 36.36%Heodo
2019-02-0794296184885.docdoc 2e24d3f008b0283c9a83c64958fc5385d85da33afa32476c523174060d02787cVirustotal results 32.73%Heodo
2019-02-076142733766247510.docdoc a33bd6497d52c1160a06d3e87cca05a806eafd4d2c4aad38eddd2dd2bcee5164Virustotal results 33.33%Heodo
2019-02-07PAY848304129171192.docdoc c2cdf8acf8e693cf9fecb7a168e46d1e382f1ac5badcc5cf3a8ea55d558f3e8aVirustotal results 31.58%Heodo
2019-02-07US40673612620.docdoc 057c3da94fb7ef6f2b29ac24d498a3a875ed8dd6f1bff29b6b3667c23c76c220Virustotal results 33.33%
2019-02-07PAY792307833766.docdoc 2f6d1fe062ba51f2128b79f9a6084aa5dd01c2c7801477096eb5ad09c47be44fVirustotal results 30.91%