URLhaus Database

You are currently viewing the URLhaus database entry for http://shawktech.com/shawktech.com/91nw-hd0kc8-ingjmpx/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:158879
URL: http://shawktech.com/shawktech.com/91nw-hd0kc8-ingjmpx/
URL Status:Offline
Host: shawktech.com
Date added:2019-03-14 03:59:03 UTC
Last online:2019-03-14 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Blocked
AdGuard :Blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: spamhaus
Abuse complaint sent (?):mail Yes (Ticket DCU001068507 created on 2019-03-14 04:00:04 UTC)
Takedown time:17 hours, 35 minutes Good (down since 2019-03-14 21:35:20 UTC)
Tags:emotet link heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-03-14US5210041817522961.docdoc c682ff24eb382238b5001dbe9d62b86c3b4e04e46617e05c50939a8940858ff7Virustotal results 23.21% Heodo
2019-03-14PAY139351493967986532.docdoc 49c57d161b9afd46ce6d08e489a33d977f56c502596e3a2b53e0440821db656bVirustotal results 30.51% Heodo
2019-03-14US476006883149863973.docdoc 87d748238573658dc6e3fbebafafa3e22006d4f73e6ed60197b70f94d7d662acVirustotal results 29.09% Heodo
2019-03-14PAY4861131466.docdoc 742d2d3cd5908d4c5e7730e43181b793512c36df2dcd1e9083e1cc834a885bb3Virustotal results 25.45% Heodo
2019-03-14ACC6081122649072.docdoc dca4d945c877cb761af0260da5444b51786fdfdb0eb4f3fb749ece6ba86bcd80Virustotal results 27.27% Heodo
2019-03-143614744798.docdoc 6463b40e63fdb8fe75bed1c9c568c990dd6c52c1a772b81a02c9f4c827bf3b2aVirustotal results 22.03% Heodo
2019-03-14US4647066698094832226.docdoc 168399973502212b1938656d770f7c8197c3cc6cd45ec9198495a1ccca08c90cVirustotal results 23.21% Heodo
2019-03-1467308134656.docdoc 90b389ea0ad281d78c57b8002497b12c3665f4ecf533785b679a75583bb729can/a Heodo
2019-03-14PAY01793502734263400414.docdoc 5f5a00ed2f6f8e405a0800e7d34ac7fec27a2019e2385ae4dc25d9e59f36840dVirustotal results 21.43% Heodo
2019-03-14LZ21604802885983562160.docdoc e2db4bb6197ceb3f7f526b90f798ab50ae9da76d3bb73613d099762a4d9114fdVirustotal results 22.81% Heodo
2019-03-144559132095326.docdoc b4230f9bf711e4e1e28421129ab0b7933dcc2b9c99d6026e2b74a16d782e6078Virustotal results 23.73% Heodo
2019-03-14672193158057.docdoc 7f601495b0e3cbca55b2019a759af31ae1628ef4cb9706b73322e6640c861e0aVirustotal results 20.00% Heodo
2019-03-14INSTR501595081123.docdoc 04ca9621f75adf50a9f0bce9ae46d4bc7d800c7cc92b823f73cbb43855ad2da1Virustotal results 21.43% Heodo
2019-03-14INSTR057547359636392.docdoc 6a372b1b2ed89c0a7b5e71a77f23cf0d8ae9b8f315d7b9ad19f3f655ee295806Virustotal results 21.82% Heodo
2019-03-14ACC1546719964117330.docdoc e34c2e3d493cf67c31fd7adfff5041b773f3a45b959245e62d922e93c1750573Virustotal results 21.43% Heodo
2019-03-14BMYHW32491988845438250.docdoc b0a1885a6c9c9acdcedb5a167dd6ea48a160e9b0a61a49a8d71070f76a5dcad3Virustotal results 21.05% Heodo
2019-03-14BHUGO103671795559.docdoc 7cf568a80f9e6e47a18e36d724ef05e22799ff9458d5b6660b428b2d49553e53Virustotal results 18.97% Heodo
2019-03-14ACC798300900474.docdoc a09af7559ece9e43da3988f4d5622c1683f655d5cb3048895d30cd93038a6814Virustotal results 19.64% Heodo
2019-03-14US1433025929516.docdoc 3d6f9d448cf807a6ead21e2ecc9eb419d99222af0fc1c5a4d051857cdf34f189n/a Heodo
2019-03-14US870440440445.docdoc cad4e4277dd8b18e158d11a07af396c57c831fbd3bd6dcab61389e1bb602d21aVirustotal results 20.00% Heodo
2019-03-14INSTR29962248727137296807.docdoc 8f1931f7bd6758af6a41b0e553ce691acd035b57f59579f5f38ad4ec55b649d6n/a Heodo
2019-03-14ACC12729363400072473529.docdoc 55e71b4c09811fe80c49e2ef13f2bbc994ee2a664b19baf0e10b4e05cda923b1Virustotal results 20.34% Heodo
2019-03-14INSTR689785033597297318.docdoc 470f6512e929539ded3d53ca7e2391b194aad516b18afa4dd97ce1dc3f6b344dn/a Heodo
2019-03-14INSTR14885564528375.docdoc 2e358c3b5c303b1e4202d84d134698aab2d3d51fe6201b8dc183da58a089819bVirustotal results 22.03% Heodo
2019-03-14274404722655594.docdoc 71cfcc18effcb5455aed5ad4938de2a2b237c5ad186721bde6a88cf89c09f314n/a Heodo
2019-03-14US9862266179079.docdoc f44eba5083630aaf1b74be5801c80b25617e17b16f91c6d1e0b61918a80cb24eVirustotal results 24.14% Heodo
2019-03-14US549462790758.docdoc dc724e42ec75a11bb8303c163323cc54689a0d99950b5a912c7586d1255ae591Virustotal results 25.42% Heodo
2019-03-14ACC34614448849400464.docdoc 3c6f64a5be116d88b759fc3a625da4265353f3a23de5d03faacad67fb58dd4afn/a Heodo
2019-03-14IXW67626272850318539875.docdoc f796de28c88f033d69534752ff49bca27ebd200bee01b952935949ac35f281a5n/a Heodo
2019-03-14INSTR00725475277269839.docdoc 8c77b90bcec1ccfdca3f73dcc1835ec0b99a6bc07abdd01a89ad8d8274e92db1Virustotal results 26.79% Heodo
2019-03-14PAY95589904513068553.docdoc 690e114212075dcffa45e897f29e5bbd8228e50e7c5ed18733cea303953bf5bdn/a Heodo
2019-03-14INSTR512518966638743421.docdoc d0f8398e793c3f58f92bdfed9d6e35e7efcddb390e12d27da290ae7337baaf73Virustotal results 26.79%