URLhaus Database

You are currently viewing the URLhaus database entry for http://flatbottle.com.ua/@eaDir/sec.myacc.docs.biz/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:167325
URL: http://flatbottle.com.ua/@eaDir/sec.myacc.docs.biz/
URL Status:Offline
Host: flatbottle.com.ua
Date added:2019-03-27 19:29:06 UTC
Last online:2019-09-10 20:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Blocked
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2019-03-27 19:30:08 UTC to abuse{at}ip[dot]datagroup[dot]ua)
Takedown time:5 months, 17 days, 0 hours, 37 minutes Bad (down since 2019-09-10 20:07:59 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-03-28NEW_INVOICE_F6_8-59_73632.docdoc 13e0e61192c1988874d9a831462e969584d175b599743e6603a5aaf30f01dee9Virustotal results 18.97% Heodo
2019-03-28invoice_number-201903_F2_81-81_Y3333.docdoc 95486e2d7bdf753ab5dd9caeb51cbb91a06f11521db0fea52573e902a03da112Virustotal results 20.34% Heodo
2019-03-28032019_H4_6-72_Z830.docdoc 7699b547d21e5fff5a674fa0334b2b3c99df4028409b34d4c34400e21cb38ddbVirustotal results 19.67% Heodo
2019-03-28UNTITLED_FILE_Z1_20-34_8393.docdoc a30a91cb7e147735f4ea59d4755368febe6fe0e2819c8a00378c66a124b2f97aVirustotal results 19.30% Heodo
2019-03-28invoice_number-G7_9-05_Y055.docdoc ffbf6b1562b8ff882933b9ce4dc9234fd6fbdf6e5be7e645bc6e2461159929bfn/a Heodo
2019-03-28OPEN_INVOICE_03_2019_M3_00-46_Z4553.docdoc 6115b87c62a217561200f42c1f9e1e1d31ec34400eac8fc9145a14dbca8e6549Virustotal results 19.67% Heodo
2019-03-28INVOICE_DOC_032019_Z2_8-17_V5552.docdoc aa0ef3951a39c86c0395dde80d57272def9b8756952204304bf9ed79d85cc221n/a Heodo
2019-03-28invoice_number-U1_45-13_1009.docdoc 2259ac1ad9939fb671f465c375d02d920ac8db2c7cd7e168cec08a9519168cafVirustotal results 18.97% Heodo
2019-03-28invoice_number-03_2019_N5_14-79_J288.docdoc c7a62ffc51eb29258444aefc420d301648b47cbe90c4a0c4a1080d25131ed120Virustotal results 20.00% Heodo
2019-03-28UNTITLED_FILE_O2_0-19_Z651.zipzip 48de7b337954d7cd0a1d0a37fdad37bbb1f8ded56cefdbf6a35b1aaffa469430n/a 
2019-03-28K7_7-00_B5893.zipzip 9a3cbb44f4c80b78417e39d4a4f9ff25b0d7350f2e2f34e101d78b16cff0c497n/a 
2019-03-28invoice_number-201903_G8_8-92_W7914.zipzip fce0f9e21d5c1d853569365c0fb542a6418b6537357fce8de26579899a2ac923n/a 
2019-03-28NEW_INVOICE_201903_X5_7-78_H998.zipzip 44f0f8c784fecca48295a2ab4e8103a4b54b37144d597a7fff4ab6f4d7cdd376n/a 
2019-03-28OPEN_INVOICE_W1_6-07_L851.zipzip 4bbef9b6f30b4cd10dc52d776f72a5bcc5d0e1e4c2136efbae1500463eb5b587n/a 
2019-03-28OPEN_INVOICE_Y2_86-37_8105.zipzip 4a6888781a15715124c80befadbdbd098ab82c828c958f2672d092d3d8fde043n/a 
2019-03-28NEWFILE_03_2019_I2_8-75_D620.docdoc 5af83698900e379720c708d5f3c309a50b7218165ba3bdfea449c30acdb9250bn/a Heodo
2019-03-28invoice_number-M0_90-22_X6422.docdoc a232af0c3f002cd836681fd5a0390a0f1c59ebf19ff49f4b31fb7462610cfcd2n/a Heodo
2019-03-28OPEN_INVOICE_B2_8-55_X182.docdoc 8aaf79e524679ebe1ef63e92eab2bd689ea90f3dcc3c028c415017e8b142553fVirustotal results 20.34% Heodo
2019-03-28inv_num-032019_Z3_32-21_Y2145.docdoc f63ad3b200350203a0bdbca92e51ac4f2e6298ca4e15d0b80649dc0b073847cdn/a Heodo
2019-03-28invoice_number-032019_E2_9-37_6004.docdoc b3f763b5c753fcd11090efff494b3a94694fa49128d99c9994c45aa0f3f69438Virustotal results 20.69% Heodo
2019-03-28OPEN_INVOICE_H1_0-05_T121.docdoc 1d36a5f2e1f83f0a71f9be2be783cffae1b50e0682184ab5d25efc0074dd4dc2Virustotal results 18.97% Heodo
2019-03-2803_2019_W8_66-30_O079.docdoc 343fd043c6c2a7a17fae47222c63e5cebad4648dca59a943d940899472570f1fn/a Heodo
2019-03-28OPEN_INVOICE_201903_K4_72-60_28442.docdoc 1f46d826b6012341bb304f1efcbe4cfa8cbdf34e0d570e39fa3308a5637f9948n/a Heodo
2019-03-27last_invoice-U8_40-72_4639.docdoc 87750caffc8fbe4109d678333a28134bc58096cd9c56e6d3131ac0d39234b9a9Virustotal results 25.42% Heodo
2019-03-27UNTITLED_FILE_201903_A3_45-58_T562.docdoc a5b83356c5af3eb2a1501283ee2b6528d1a66bcf3250db4c9ce135d2c1dbb046Virustotal results 27.12% Heodo
2019-03-27invoice_number-03_2019_F0_75-88_G739.docdoc 64877c2ca66f4be260d79e854cb9c6c53a3e7ec4fbc5a3d11686a2bbe6801b2aVirustotal results 24.56% Heodo
2019-03-27INVOICE_DOC_K8_3-36_3079.docdoc f5ca2bb01cd70b2905fb37bbc02fed796fe635f7278822387fa99c36157c0096Virustotal results 27.12% Heodo
2019-03-27UNTITLED_FILE_Y8_78-64_4772.docdoc a196ccb4650badd3b67d60f1377e0612d9dd0c4171a758fb96294ab66a4b0349Virustotal results 31.67% Heodo
2019-03-27INVOICE_DOC_A1_8-78_C4806.docdoc 12aefb9788dcb7742691cb65f47fe77eb529d1af66629aa23540923d8bf8a3cfVirustotal results 24.56% Heodo
2019-03-27INVOICE_DOC_201903_T2_89-40_Q2656.docdoc 77ccf29ca6938ccec807a5d114c72dd94da670bb6d98c0ad19f9717cab3ecd9eVirustotal results 21.31% Heodo
2019-03-27NEW_INVOICE_201903_X4_84-41_L8281.docdoc 390e1912a2e15d28182d1119e691a015c19badfbac587d9a0ffe2b6ac65e09d5Virustotal results 24.56% Heodo
2019-03-27OPEN_INVOICE_201903_B6_52-10_U876.docdoc 16a1211eaea306077774dfa0429f826433dcc8720e1bf64ead6e95f44c9e436eVirustotal results 24.56% Heodo
2019-03-27eINVOICE_FILEG8_6-32_A5275.docdoc ba4a393249fe369eac65cee06624824db2ef81079d4625e251ffbd620299796aVirustotal results 24.56% Heodo
2019-03-27INVOICE_DOC_032019_V2_3-92_L571.docdoc 885402297b94bde75190d29262083790e59f00e61e30d17b49caced0c16c9e94Virustotal results 25.86%