URLhaus Database

You are currently viewing the URLhaus database entry for http://twistingdistance.com/duq8qvv/sec.myacc.docs.net/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:163753
URL: http://twistingdistance.com/duq8qvv/sec.myacc.docs.net/
URL Status:Offline
Host: twistingdistance.com
Date added:2019-03-21 21:48:02 UTC
Last online:2019-12-12 07:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2019-03-21 21:50:02 UTC to abuse{at}digitalocean[dot]com)
Takedown time:8 months, 25 days, 9 hours, 35 minutes Bad (down since 2019-12-12 07:25:40 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-11-30n/ahtml 4c7d08f1d6fac569c83fa87b42a3a727668da55317954637ce500d59e058fe03Virustotal results 0.00% 
2019-03-22inv_num-P1/34-21/Y5064.docdoc 087aabe1a51cff0adb78f83e2e4a1d9414eb0c56a9c17c780050f76904f95939Virustotal results 25.45% Heodo
2019-03-22invoice_number-V8/95-81/9040.docdoc e8c672af328d3f1b8163cbaff7c0274de81e0aa5ec3affe75e784b07b1cc9b2bVirustotal results 23.33% Heodo
2019-03-22inv_num-K8/54-21/N7582.docdoc 118e1fe0787681eeaa375cb15afedb78f8cf1ab63fbf1ad135fae0f547a15deaVirustotal results 24.14% Heodo
2019-03-21NEWFILE_R1/33-45/F040.docdoc a68a7976f82460ba2b79c49795b916bc78e5905be020c9bbe9f56dc0b57d4e25Virustotal results 23.73% Heodo
2019-03-21UNTITLED_FILE_T4/72-97/Y172.docdoc 11b5a0df795927c02f3e42e65147f41fe34c52bd05c10acf346cdd200979570aVirustotal results 23.21% Heodo
2019-03-21last_invoice-032019_A2/02-10/Y808.docdoc 5164857f347b536f53d894d4b028d58fde37fdf2edfd1c34a8397208ada2a37eVirustotal results 23.73% Heodo
2019-03-21NEWFILE_03_2019_O5/01-18/G6454.docdoc 2307b1f1943b999c2aabc28d74bccabf516336b861da31241b0d89c370a03550Virustotal results 22.03% Heodo
2019-03-21Q0/8-23/N1301.docdoc be3778cfd7908b66e9f4bfbc3b062da0bf20e56d0e9346647d4c2942ff907ba1Virustotal results 24.56% Heodo