URLhaus Database

You are currently viewing the URLhaus database entry for http://educacioncontinua.udgvirtual.udg.mx/wp-content/uploads/trust.myacc.resourses.biz/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:167825
URL: http://educacioncontinua.udgvirtual.udg.mx/wp-content/uploads/trust.myacc.resourses.biz/
URL Status:Offline
Host: educacioncontinua.udgvirtual.udg.mx
Date added:2019-03-28 16:44:10 UTC
Last online:2019-03-29 08:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2019-03-28 16:46:02 UTC to helpdesk{at}apnic[dot]net)
Takedown time:15 hours, 20 minutes Good (down since 2019-03-29 08:06:24 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-03-29last_invoice-S3_6-39_W6854.docdoc 12583db8d5ea01ae4522b26328dbcabd5528be2be4b7226db5b77c0bb44abd8bVirustotal results 18.97% Heodo
2019-03-29UNTITLED_FILE_U4_07-67_X1915.docdoc 40aebffd79b1933b3c00c5ad4a61ec87e6e24ba5d76f1c20aef992898791e776n/a Heodo
2019-03-29INVOICE_DOC_O9_8-86_08038.docdoc 2866f479be953dcb5cc2496835a92aebcce0cf20621b3f1c1db732769c9a727cn/a Heodo
2019-03-29last_invoice-V6_2-04_9689.docdoc 5961eb9bf4332ab555a70348e06e186e8e4f80f0a55202df809eacb89ac0140bVirustotal results 21.05% Heodo
2019-03-29last_invoice-E7_08-84_N612.docdoc 9dffc947ed7833b5b4559706174131ee66afe0b424d197de635a31134c65b64an/a Heodo
2019-03-29INVOICE_DOC_201903_R2_4-93_C945.docdoc dd2850787209e73656b3b90cf7ef3178a6365d6f51f93f0d8da479065d11449fn/a Heodo
2019-03-29OPEN_INVOICE_03_2019_E2_14-64_B9272.docdoc f92917d630476dd00cc3a0ab09dbaafce3566b9b5a4e2f8ab12befb09446c1beVirustotal results 21.05% Heodo
2019-03-29last_invoice-032019_O3_19-00_L2021.docdoc 01e91cdbaadf4e6e0436d05e7bdbc4e993d540de68c8beabbef4f40cf94d12abVirustotal results 19.30% Heodo
2019-03-29NEWFILE_201903_K2_3-52_I702.docdoc d5516a09a269ef26e1758949622906cd10d8be7a7563477f69676bf39fafb234Virustotal results 18.97% Heodo
2019-03-29OPEN_INVOICE_J4_66-26_C7590.docdoc bbe330bc9715563b46dc3003650534500f0e1626417bccc8f6f6ce9da9abacedVirustotal results 20.00% Heodo
2019-03-29INVOICE_DOC_201903_K7_0-49_O8435.docdoc 228ecb3314bb2995035ce1364155d1c1cbf08d4cb3823ea0a0bcb0a7bf1b7a8cVirustotal results 20.34% Heodo
2019-03-28NEW_INVOICE_201903_C1_2-80_0289.docdoc 03b685ed5ef743bc79be917bab22b14dba65d8a84a241fe497cd3528e9e44005Virustotal results 20.34% Heodo
2019-03-28NEWFILE_T4_3-47_K5629.docdoc 71f211df2de4b957fe98ec1a3cd694aaf721ac2c9ba74569ec143339ebfb5729Virustotal results 18.64% Heodo
2019-03-28UNTITLED_FILE_032019_I4_6-73_P6402.docdoc 9e201d9168a6aaa11818f31f749652864b0101a6255d2bf1cb3c1a95aedc5132Virustotal results 17.54% Heodo
2019-03-28last_invoice-U9_08-65_Y025.docdoc 99b3d5a34113cc75d4b9a6223cbe88b6d29772050753d73b0fe4d0973f01a5bbVirustotal results 19.30% Heodo
2019-03-28last_invoice-201903_W7_7-49_Q220.docdoc ab16d26f1b07001aa8da1ef5952f44b869e6a6a5b45bb7c6b558340616642ea8Virustotal results 20.69% Heodo
2019-03-28inv_num-G9_13-92_Y0875.docdoc 85ce0b6f11357619590d599a56063126e9610c6b3b19d2b6ca37cf9cd8a532bdVirustotal results 20.34% Heodo
2019-03-28NEWFILE_201903_H1_1-55_L436.docdoc 30104a704f45e7021ba42f9e461fd8b4e6fb7b0497bea2ee412257d6713fbdb4n/a Heodo
2019-03-28NEWFILE_201903_Q8_5-51_H2072.docdoc 7cad22cb843c2fcfd4470d5d9acec7a6ac9d6226b210fbecc6fea1ce718800c7n/a Heodo
2019-03-28eINVOICE_FILET8_5-77_B7937.docdoc 17ffb9c6d2c9155fd3f429c00dab716e0500191cbf9786b46073703468fa0a4bn/a Heodo
2019-03-28inv_num-032019_U3_41-54_Z381.docdoc 18b357e0fabf12c46dfb3407731f052b440d02695454fa68a86a3df374c54742n/a Heodo
2019-03-28invoice_number-032019_K5_5-53_D5091.docdoc 58c481a9fba100943b37f867b2eacad9269d46b7ad93dd4eb68c86c8ac885616n/a Heodo
2019-03-28eINVOICE_FILEE0_7-03_M9123.docdoc 7c072afbc026fae66519103bb562a40ddb756f0d7440b34cad67961e0e8f5edcn/a Heodo
2019-03-28invoice_number-032019_C0_65-85_94618.docdoc a30a91cb7e147735f4ea59d4755368febe6fe0e2819c8a00378c66a124b2f97aVirustotal results 19.30% Heodo
2019-03-28NEW_INVOICE_032019_U7_76-01_30143.docdoc dc7e0eb574757c565af43b6f24221f9880a74fe087044a7199dd10054d292268Virustotal results 19.67% Heodo
2019-03-28INVOICE_DOC_201903_V9_6-99_B2907.docdoc 3005821f84ddac51706f1b6fb7b12cb6a20d300c118944476eac31974020bcaan/a Heodo