URLhaus Database

You are currently viewing the URLhaus database entry for http://www.handbuiltapps.com/wp-content/w3tc-config/oinz-ejykf-cwltfngf/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:159743
URL:http://www.handbuiltapps.com/wp-content/w3tc-config/oinz-ejykf-cwltfngf/
URL Status:Offline
Host:www.handbuiltapps.com
Date added:2019-03-15 01:23:14 UTC
Threat:Malware download Malware download
Google Safe Browsing:Clean
Spamhaus DBL:Not listed
SURBL:Not listed
Reporter:@Cryptolaemus1
Abuse complaint sent (?): Yes (2019-03-15 01:24:05 UTC to abuse{at}digitalocean[dot]com)
Takedown time:4 days, 1 hours, 59 minutes Bad
Tags:emotet epoch2 heodo

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTSignature
2019-03-15SXEL5042871416798579703.docdoc39752866b4e0aab0bccc1d8a153619ab2e6b01d18802d2e0db2590576e85d263Virustotal results 14 / 56 (25.00)Heodo
2019-03-15ACC12244925751222.docdocf350612cd869a24a2eda1831234957a0d039007e64060b0532960a9daaf76d03Virustotal results 23 / 56 (41.07)Heodo
2019-03-15US62604724983746874.docdoc37d1202eb265a09f8a50520c4d3709d0db0020c1f6700ab5fba2acd5bf8612daVirustotal results 23 / 57 (40.35)Heodo
2019-03-15RMRGL75609960044095926.docdoc17bd003cc3b5d5179b7f9ae72c5c9030a1bb860f50f9826b6a737c25cc597cb9Virustotal results 22 / 56 (39.29)Heodo
2019-03-15US7412904198900730.docdocaf8e2888bd64490a70b1309b3860118339130a019d32a57de1d95d8d73123d69n/aHeodo
2019-03-15US42846515650363939.docdocbbf554b9fb07d7fb4b3bf21b4c53b1769b678d6bd5a3023c62e344b7ecbe07cbVirustotal results 19 / 57 (33.33)Heodo
2019-03-15US47892374246861344.docdocf236525e9c45c8f47c90b25f282b107183b7d0926d4e9f821bf2c50a8b6e959dVirustotal results 15 / 59 (25.42)Heodo
2019-03-15N605259101199841.docdocddf8088e8d20e6320e6b8381ffc11303bae71c0ced56739ccc4a00cdd5ebd249Virustotal results 15 / 59 (25.42)Heodo
2019-03-15PAY3990907432.docdoc362b8a185f5462bc87c79f3774eb02399bde94bbb3890f2cc5042e12ada68c2fVirustotal results 15 / 56 (26.79)Heodo
2019-03-15US327491315.docdoc2fbd64621b79df5e283e3a678f8e19f5d6915606c3c3b76aa51b8ec43be5115fVirustotal results 14 / 58 (24.14)Heodo
2019-03-15ACC47384033120903.docdocede18ac09dd9ab563bc95d5a3a3d91e0319bfc5b0bbae509fb03ba8c11228e22n/aHeodo
2019-03-15PYLBX4011947552111.docdoc509067b017fc594b417b93d6fb8b122ac7fd467fc384ed3e06b34d4fea8e36cfVirustotal results 14 / 56 (25.00)
2019-03-15GX812193428.docdocdfdd975cd860626d4edcbc854d8b867fc2d05a953524884d4cbb75cc72ff9b4fn/aHeodo
2019-03-15US23686164330.docdoc1e897b6aa1607f22a9016bd31302ba7666a9d89b3ef509a70d580d4faf0fa0d6Virustotal results 13 / 60 (21.67)Heodo
2019-03-15PAY591144849672873.docdoce54ce33083b377ac80463785d9300214958673ff30797750da30d0661f82f35fVirustotal results 13 / 59 (22.03)Heodo
2019-03-15INSTR725568267.docdocdb407e674507467231a1a24ebd21199212ab21a70a35bf4e735419d22f32c89aVirustotal results 12 / 56 (21.43)Heodo
2019-03-15PAY041646023130895.docdoc56443b5dcae8501d615a7b2982bdb51c47bb7fe239224ea898da35bcad6511aaVirustotal results 12 / 55 (21.82)Heodo
2019-03-15289425857978327316.docdocba95bec390cf5b946e1fcd0021d188c4a7cf3198cd2aeb9d48cbbdf173de7660Virustotal results 14 / 59 (23.73)Heodo
2019-03-15INSTR54484088823.docdoc58a852c0f098dda910e51699d10c457e0e5f329bbf36074eaa42b189a0670afaVirustotal results 14 / 58 (24.14)Heodo
2019-03-15T668992328968242.docdoc2d90727ed2fe84052ac39eab12e5a2b5423b7433702f143813c31b74df3d03f9Virustotal results 12 / 56 (21.43)Heodo
2019-03-15H11169024148.docdocc2aa60c14d857f98e372b34e710a13341c110c0b57baa52f5feb30e461bfe122Virustotal results 13 / 59 (22.03)Heodo
2019-03-15NAWLB483944268937.docdoc73133e1ac9f4b0354b9e32b8c15bd19b0a47773dc7e200c133b87f7e250ccf00Virustotal results 12 / 56 (21.43)Heodo
2019-03-15ACC400786414661.docdocbf1a1ef70a4d2f45740c873eb408f2c8d8a4a90da6479afcb93a6fcd75b1ef11Virustotal results 12 / 57 (21.05)Heodo
2019-03-15INSTR3503453354898832776.docdoc6687c785ca45539ea76158d1af08f3e58031d01130cb76d510863f786aebf4fbVirustotal results 13 / 59 (22.03)Heodo
2019-03-15931519243414.docdoc956ebdd66cd219be94e56d98379369c32d6251ebcbd7948d0f465050efae55ffVirustotal results 13 / 59 (22.03)Heodo
2019-03-15US165201730403623.docdoc89115bb2c800e35a3db323f329857f37cc82ef33376ab911fb5f246d8385aff2Virustotal results 12 / 56 (21.43)Heodo
2019-03-15INSTR5806852726957.docdoc07e992db0d01560e68faf557acb2b60b9978577c27522d70a4f2fa2f347bb430Virustotal results 12 / 56 (21.43)Heodo
2019-03-15NF810098948790691715.docdoc799bb9af040ba880f789ab9307a2b5ebff334849698481279f4c4f1c1fdb2340n/aHeodo
2019-03-15US76318593134.docdoc2669686968d5761cbd9ccf6cfb1e2cbf2b36b174c9b7595b15b82971ad131573n/aHeodo
2019-03-156719355438.docdoc7dbccbdcad299185bba7f79d61b63d13cfa4a4c4dd514c519e97ec649bb1d71fVirustotal results 12 / 59 (20.34)Heodo
2019-03-15ACC8641120221.docdoc6d68a290585c0c8c14872708dc770c050331039ca3e18aba84e769e032171277Virustotal results 24 / 57 (42.11)Heodo
2019-03-1507364739736111982.docdoce44af298e1fb69027db9f6ffcf9b20791065a1debb1809596ab7f9ebca2166b4Virustotal results 22 / 59 (37.29)Heodo
2019-03-15INSTR620460475047.docdocbd6b0a8c2ba7dd51fd2816f8f4b588a93dbf5f89f52bdce125e309ddb1858433Virustotal results 19 / 55 (34.55)Heodo
2019-03-1571164324448277915.docdocb90e38df9762ced356dcb51126bbc6a51532947e1b1f04f12203679068bf514bVirustotal results 19 / 56 (33.93)Heodo
2019-03-15PAY592788400346.docdocbb8f603dc0e356ac1c4ab5e9c6b8005ecd39a392e681402ad40b5d0cd804f668Virustotal results 17 / 56 (30.36)Heodo
2019-03-15468240459248019.docdoc05f052aca11ad0d1d2dabea4ce046669131b23c30347e864e373bf2f02a84606Virustotal results 18 / 55 (32.73)Heodo
2019-03-15GHVU025030717.docdoc28b4db9be8b5f8420b7e6a2129f73f525d6124bb0a009c12eb22e6eedd1584a3Virustotal results 21 / 58 (36.21)Heodo
2019-03-15US16169258980.docdoc562d5b97c79d21bf2f6ab0bc588c8ee6c2754257451cd48986c86f389f21116cn/aHeodo
2019-03-15PAY7267685604365.docdocec6c34b5caf9381cd07ac2f6ed1320707e64e5ab77b19751d89116d1c81fc00aVirustotal results 19 / 56 (33.93)Heodo
2019-03-15PAY97509676114.docdoc76764d3d22bf183e62a16b907edf2a7381571cc7386a39e37718f2643de55ff8Virustotal results 19 / 57 (33.33)Heodo