URLhaus Database

You are currently viewing the URLhaus database entry for http://jointhegoodcampaign.com/verif.accounts.docs.com/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:166287
URL: http://jointhegoodcampaign.com/verif.accounts.docs.com/
URL Status:Offline
Host: jointhegoodcampaign.com
Date added:2019-03-26 13:17:04 UTC
Last online:2019-03-26 22:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2019-03-26 13:18:03 UTC to abuse{at}gigenet[dot]com)
Takedown time:8 hours, 50 minutes Good (down since 2019-03-26 22:08:26 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-03-26INVOICE_DOC_A1_2-52_B6814.docdoc 3b830090200e332b076c8cc1844a217be005a562aac2d27c4e355e74fc73326fVirustotal results 30.00% Heodo
2019-03-26P6_20-95_W522.docdoc f9823331bd35b3d6261f188cfa806840203a16258ae986afb39ab1af3f0fd1cfVirustotal results 31.58% Heodo
2019-03-26OPEN_INVOICE_H8_64-75_5886.docdoc 2374ec382a76e66bade5c869b9634f31863fdfb0ac2e92ce40609c29a37a5612Virustotal results 27.59% Heodo
2019-03-26V4_73-22_77417.docdoc 69ea3847f4be1650782e07dfc4db91afa83bc8cb45338d2a07d8b239316f7420Virustotal results 24.59% Heodo
2019-03-26INVOICE_DOC_M9_66-94_33714.docdoc e1a7af29f2962985756c4008639a3382379d62692fbf4610ea46be579f04a7e4Virustotal results 27.27% Heodo
2019-03-26invoice_number-032019_U4_0-36_0488.docdoc 09834f37282dce31cab5092d125101773dc3fa089722c1b8863488a917987850Virustotal results 24.14% Heodo
2019-03-26OPEN_INVOICE_03_2019_T4_5-40_G1587.docdoc b2eb60826f06aed5ab872a82b0716861b3a3bae9cd780652ece22a8ddfdf98c1Virustotal results 26.67% Heodo
2019-03-26E7_80-98_60759.docdoc 11b896195a088f1c607f69f0dc515f33e90e3e2c79fb61c6d497752350bb36ceVirustotal results 26.67% Heodo
2019-03-26eINVOICE_FILET2_19-59_E614.docdoc 4e867558dbe59b6e4930fae30fa396798583590c9d608dcd636f2523ce529a14Virustotal results 25.00% Heodo
2019-03-26NEWFILE_W5_7-27_0019.docdoc 4e18fa50dbc36f5fd21c06da558ae4d85c968bbb8a1030b071c9e915202ea03bVirustotal results 26.79% Heodo
2019-03-26INVOICE_DOC_03_2019_L8_45-98_C282.docdoc e81c59e4ae58b1bf4dcacc060adc9c1cae74f5a8116fa14ed6a6c825edc1f125Virustotal results 25.00% Heodo
2019-03-26032019_S0_9-38_V9522.docdoc ae6cc633b50312b7b94090fe7b2eb08e07873d86039c9571eca760b75298de6dVirustotal results 22.81% Heodo
2019-03-26NEWFILE_B5_54-87_G1770.docdoc 1328d0eb80a0ba2bb7e2718af20554862827f393c0cdc6721c834f5dc4e55a58Virustotal results 23.33% Heodo
2019-03-26INVOICE_DOC_032019_M0_3-00_T042.docdoc d60993b0ac532bfe2823458d95f8704396071229b913fdca18021ff6dfc3e67dVirustotal results 23.21% Heodo
2019-03-26NEWFILE_U4_3-67_P5856.docdoc ef9fad01c71ba0eee99e2a19dd1af01ce5bb34e813b86499bc080e82b462d053Virustotal results 23.33% Heodo
2019-03-26OPEN_INVOICE_K5_3-20_V909.docdoc f65646ecbf84d1cf0c037bfe7b95aced71184d65979ca58fbbe4f50dc94a5c26Virustotal results 22.81% Heodo
2019-03-26UNTITLED_FILE_032019_P8_7-42_K983.docdoc 1769fbb95876cbe71cf41acbcbb36989d4a25e7bf2c513ae87d5fe90d0be71afVirustotal results 22.41% Heodo
2019-03-26UNTITLED_FILE_M7_46-34_4742.docdoc 4caee991d51aaa8af2dd9752e7e231e27484619886726c3154bb7a9134463cfeVirustotal results 23.33% Heodo
2019-03-26R4_8-88_N223.docdoc 6ae93bc9199bc2209d15b68fa9309990e6b46aa85e1197db3de9f259fbd8bc6cVirustotal results 17.24% Heodo
2019-03-26NEWFILE_03_2019_G6_3-97_43045.docdoc d618ebaa786ad5b2b53a07a78ac5b60fe19dc44ec7a7553606cc7841fe5b0df7Virustotal results 19.30% Heodo
2019-03-26INVOICE_DOC_K6_66-53_K748.docdoc 09501785bc10af41bf78d2cfd7acb36fdea13d06a31cf3f2f58c877118adc038Virustotal results 16.39% Heodo