URLhaus Database

You are currently viewing the URLhaus database entry for http://zhouse.com.ua/wp-content/secure.myacc.docs.com/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:160232
URL: http://zhouse.com.ua/wp-content/secure.myacc.docs.com/
URL Status:Offline
Host: zhouse.com.ua
Date added:2019-03-15 16:57:03 UTC
Threat:Malware download Malware download
Google Safe Browsing:Clean
Spamhaus DBL :Not listed
SURBL :Not listed
Quad9 :Not blocked
AdGuard :Blocked link
Reporter:@Cryptolaemus1
Abuse complaint sent (?): Yes (2019-03-15 16:58:07 UTC to hostmaster{at}hvosting[dot]ua)
Takedown time:6 hours, 21 minutes Good (down since 2019-03-15 23:19:21 UTC)
Tags:emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTSignature
2019-03-15Invoice_201903.docdoc a203b6af59485d57d4530f2ba99f787233466005eef20da05b17976311370e2fVirustotal results 36.84%Heodo
2019-03-15Untitled.docdoc 5c77f3a493cabe60afa8403288fd2cf521c373dbf286aa4299d5195a602161baVirustotal results 37.29%
2019-03-15Invoice_201903_48270880.docdoc c4fbe1560255335c1841233e59cb2311a29a0c8e9fa048e5b9c17d63229a9af2n/aHeodo
2019-03-15Invoice_201903_0319735959.docdoc fca65dab5ad7ecf95f0fd270155481011075e57d39fd72c0c651565dfd570483n/aHeodo
2019-03-15Untitled_201903_347068250.docdoc bf14aedaf97ce161aa6c05eb12a9d956ccd320a333e7df811eab261657efaecaVirustotal results 35.71%Heodo
2019-03-15Untitled_032019_63740535.docdoc 14db79623415fc45e2354cfed559f6c56aa3cae7385f9eb7359f5ad7335cb583n/aHeodo
2019-03-15Receipt_201903_56227916.docdoc 1ecd64aa6006c73cb14c06bb987317222b365237fcdbe64d97fa8f99e31648bfVirustotal results 25.86%Heodo
2019-03-15Receipt_201903.docdoc 781ac0d18d99b193564766a40fbfea262a48883f0700958abc9ec2e579cfbd8dVirustotal results 27.59%Heodo
2019-03-15Invoice_03_2019.docdoc 57277c706a102860896ee631755e31fa9624d1fb3e1683da4ae2bdef627b5b72Virustotal results 24.14%Heodo
2019-03-15Receipt_201903_55319150.docdoc cc00fe1971c3af231965da04aa0098a0c4ed8074d42ad7013ec9de42d82d46e0Virustotal results 25.00%Heodo
2019-03-15Receipt_032019.docdoc 099bcb5b2179f7c14bd95dc7c3f3f19bb0ed63e0bb5ebf8a687fb95947d12430Virustotal results 24.14%Heodo
2019-03-15Receipt_1845257.docdoc ab6b15a847a89156226e33725e55831fe2fe05979901233036adc218a9c33cb9Virustotal results 25.00%Heodo
2019-03-15Receipt.docdoc 21af84f4b453bf740bd23fd90d43f3f3c135895f04f838a9ddcbc50bcb7f3754Virustotal results 24.14%Heodo