URLhaus Database

You are currently viewing the URLhaus database entry for http://ewfcc.com/wp-snapshots/sec.accs.send.com/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:169308
URL: http://ewfcc.com/wp-snapshots/sec.accs.send.com/
URL Status:Offline
Host: ewfcc.com
Date added:2019-04-01 14:54:11 UTC
Last online:2019-04-15 06:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: spamhaus
Abuse complaint sent (?): Yes (2019-04-01 14:56:05 UTC to abuse{at}staff[dot]aruba[dot]it)
Takedown time:13 days, 15 hours, 55 minutes Bad (down since 2019-04-15 06:51:36 UTC)
Tags:emotet link heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-04-032019_04___BIZ_131171170084918___66377131073617188.zipzip dbfdb0cdfab29127379747967a06949d55e5f2e87c86fcbda88d2b2e6092ee84n/a 
2019-04-032019_04___INSTR_1534074280943___1773659038.zipzip ba05cc7d15f21af56fd3f497f70d9a403227acb4d97a2eaa6e6abdfe6d33b3adn/a 
2019-04-032019_04___MZG5430859136___1064469937592340.zipzip d27a5b02a93101eaf540ae73af3dc7b09d4beddce8cbae92f3d86df0406cc197n/a 
2019-04-032019_04___DOCS_451039290___34428632624748984329.jsjs ffbe73591031973cb52f6950ed61b168a0f0bda69f004db08846dfc1bd1d1920Virustotal results 12.50% Heodo
2019-04-032019_04___DOCS_987397075015407___215699311372426.docdoc e340bbfe29b2651d4b6f0687ab21f884edece939008227d506bf4f27d07b395eVirustotal results 24.14%Heodo
2019-04-032019_04___RECH_7975493798___241229390973.docdoc 03db2b41ffd92d49ab707fe10425202440d4444618763cbd14ebb0ddaf877516Virustotal results 22.95% Heodo
2019-04-032019_04___BIZ_259809711___2043297450765343.docdoc 2d6ae248c1a0cd20728d4463c2fc0c932a028f0b04c73a833f39c5758c5278b0Virustotal results 24.56% Heodo
2019-04-032019_04___RECH_451229363746727663___835780829.docdoc 1995728387077cbb0fdf558905d8f452d47f65dc1560af23e0413cc5a3703547Virustotal results 23.33% Heodo
2019-04-032019_04___DOCS_935287396662891___87837313124592.docdoc be752b7066a082be8bf72b6017d32bf574a4bc2eed227ad1c76715eb128a20fcVirustotal results 23.21% Heodo
2019-04-032019_04___RECH_899331226241689956___845290188212609266.docdoc cf6a7af412b8343527881eb75f1053cdac5b0a3b6934c690364ec9b46d7b9f44Virustotal results 22.41% Heodo
2019-04-032019_04___PUTO2338884325___40411969970.docdoc 196f7c641e4e11be712d4b472db8b88901795dd235ea0b267f045f33c9bb7abfn/a Heodo
2019-04-032019_04___PAY_613481757___9517701614651306983.docdoc 4b17a00142f8d03ff836bf90d9894ab7599df85fd199356f5789c079c7180c5bVirustotal results 23.33% Heodo
2019-04-032019_04___BFSB58956683820156___95714875426921982.docdoc b78d2ff0649f15af675407c6b15e57c745a6d8a4854aac755ee2eed0ff383047Virustotal results 24.14% Heodo
2019-04-032019_04___RECH_7368582377587942989___809996394.docdoc e01dd387181ef37cef23eb11c04b09daf907d1293dc9ce3f272b92e4154e2063Virustotal results 22.64% Heodo
2019-04-032019_04___BIZ_9613870900062140924___45237133812982935497.docdoc f7e5d344cc86f1d1026e9a7d3b0c30cff5a2cf53bc45546df6b2859b5e8652ecVirustotal results 23.33% Heodo
2019-04-032019_04___BIZ_20407542478___18889895466.docdoc 265824001d2583bb601f90eed3464c698d6833345669bc3d4a9a9f0abefcd3dfVirustotal results 21.67% Heodo
2019-04-032019_04___DNAEI384244658610___684651280819.docdoc 9dce145f506b670e3989b7251d5b8dc1535f1828b9d774f64c536fe91c47554dVirustotal results 23.33% Heodo
2019-04-032019_04___DOCS_831968356723058759___1830438284.docdoc cb42827c604568f8a513010048883a10dbb83184e2526a8ea7c3a65a0005f3f7Virustotal results 23.33% Heodo
2019-04-032019_04___INSTR_86052408262___988513653668901.docdoc a538ebf9b21f16ea6797d0fe7356f1060943869e53b21b7a3151257d45cbb2b7n/a Heodo
2019-04-032019_04_PAY_894840452739130746___305782408291757318.zipzip 366409da65902411e39e788aeeb76a9dff27e00d3d9bcbae56075cd06fe30204n/a 
2019-04-032019_04_ACC928329976246097___59743835181132406.zipzip 2f742727467fe3ebaab6fda5e0ef6994b2e34a3d9545c54885d4be7d60e7ee64n/a 
2019-04-032019_04_LG2691600392___592537135932722148.zipzip bc66b6207c9dc71747f4689b046fbb1650f4d340125954fe18172a171eb7610cn/a 
2019-04-032019_04_NYV22867826757___89848878161630699.zipzip 28371964bcd8d706f2b1755291a468b1fb08496bb2294e3440d3d4eee1e8abcen/a 
2019-04-032019_04_US5588536825___90012804092219411099.zipzip 617e646fd6009d27344f317c99d6ff498b8548afd2151773fc2327f2b15d0e9an/a 
2019-04-032019_04_6657525251___3812118750632216770.zipzip de579628c615948443272d85802220f4752b78ed821e4a1d22fcd9d1a1136e2dn/a 
2019-04-032019_04_PAY265193425488___97071273547870849.zipzip 795ec19efe6fd429636360cbf64d0fba71cba83c14e465f56683fb5ad88b315en/a 
2019-04-032019_04_INSTR8777971969596293051___04914441649.zipzip a489e35aff20f2272db2093fdf2173f3ebcba81875ae53d3daca7c96e6319379n/a 
2019-04-032019_04_US51592379335928441139___20806668846745245694.zipzip 50b265d77f4748948c426911c5b3b09b1353ce241b862f9d50b737d751f03745n/a 
2019-04-032019_04_210775575275618___342895839488.zipzip a83c4647816e3e0172c4ffc127f48ce8e8b0cd35302599fd990acd3924e2174cn/a 
2019-04-032019_04_31956997966083012032___5491415053538743950.zipzip 7156cf82ddab57cb9d8c07b0dff2a9fce5070d6baa077695d5940f257c0fa198n/a 
2019-04-032019_04_27656729760289___427573890910774.zipzip c7a2eb08106087426c444fc8eac68999f8055f2e4ccb6bf9d20d57dfe3e5cdebn/a 
2019-04-032019_04_PAY52623275493684793170___151540477.zipzip cbe060b773d094d2d5088f37ed7649eb9e789a89409752baca278771935d4098n/a 
2019-04-032019_04_PAY7815588338334___309410279311.zipzip 0a02ba75cbe1e085467ce2e27b06dbcc4049a17e86367a0bd66c88e81ac4d56en/a 
2019-04-032019_04_INSTR8051637206540256815___3000537904.zipzip 708791ba518941a302fabce6425bd2a2a135eb6d9c65b6f9a24150ac969d58c9n/a 
2019-04-032019_04_SRG8477323797029565263___2178755178247.zipzip 2c20ef0ec20802e3bb76219a4c31c5bacc8813d86618250a9b398ad8da29f0b6n/a 
2019-04-032019_04_PAY3507059368369___9660655226756224408.zipzip 4564388d8b495f8305a055d5e14a550e0593853022c48fd767af3b20046cbcb6n/a 
2019-04-03INVOICE_DOC_201904_T2_64-74_T588.zipzip e35748f0312752d4a385370e4fcb2245442b4a467c7e9eb77c7a7ee09bd7e414n/a 
2019-04-02invoice_number-I7_32-47_6867.zipzip 77c192dc09d8f1957de245e48eb4dd680774d4fb41bfbea2390fdf95cf33150en/a 
2019-04-02eINVOICE_FILEB9_35-25_Y7417.zipzip f0ea8cea7d4ebb9b153f1f919b75244c7582c957427bca51b0038ebb2e1bb61fn/a 
2019-04-02OPEN_INVOICE_042019_N4_84-34_B2331.zipzip 4d54e4504198b1812516c3fc932ba0c8efb8aa51d9d0abca2c86836cc0192479n/a 
2019-04-02invoice_number-201904_Y5_6-01_X204.docdoc 3907a7c31a9608e4e2cef08d6d2c50c9d6f0bcb99e1ecf2ce89678f52ab60bb6Virustotal results 27.12% Heodo
2019-04-02OPEN_INVOICE_N1_83-95_2792.docdoc b656ece0ac32b84f9f60c002776bc41b6f4405a41d405b692800ae80022492f6n/a Heodo
2019-04-02NEWFILE_B7_0-11_Y2290.docdoc 4cb9a461380191292804b8d0531290e094831e5b46c7d66e1a9d3144be025a2cn/a Heodo
2019-04-02INVOICE_DOC_A4_6-13_2164.docdoc 599f040cb8cfc92eca900081f1425baec21c4ec5513e0e98a44cfcd5a006ffc4n/a Heodo
2019-04-02inv_num-042019_B7_63-93_O6323.docdoc b9746e7ce5d806d7f4ff42f8e03c88cde94b4f258bead511fca7473c81b9daedVirustotal results 18.64% Heodo
2019-04-02inv_num-04_2019_F8_97-31_E8864.docdoc 4b71de470deed5b8ad50d437049c34bf98bbf7a4c6f433456e5c48c735db5492Virustotal results 19.67% Heodo
2019-04-0204_2019_Q3_84-94_2233.docdoc 9b0a480886a2daab45cce7d8ff0d15313dbdbde30f915ec449c23f6fa485b2b0n/a Heodo
2019-04-02inv_num-04_2019_Y0_48-73_T9338.docdoc 7727b36ff251fddb1742ad5566f272f4b821d0bcc9af26103b2ffdbca3f1de05n/a Heodo
2019-04-02INVOICE_DOC_042019_H7_56-79_C244.docdoc 42f8c87a70b8a89f06ff1863240ac8730320fbd9eeda779795b0b94feba20c5dVirustotal results 21.05% Heodo
2019-04-02OPEN_INVOICE_W1_7-13_S805.docdoc a0eedd5eed760c5d9efae761f97850096959aa003e38593cf49531e69f5502f6Virustotal results 21.05% Heodo
2019-04-02NEW_INVOICE_K8_58-08_N9245.docdoc 36d0d07deccfa91620eb476e3d17eca3aa075eaa3cdf453a05d44e6004151369Virustotal results 20.00% Heodo
2019-04-02last_invoice-042019_A9_43-66_67917.docdoc 8400a9b9158f3da10f7445de937082ae42779861fddcf4902d0720c0aead5604Virustotal results 18.97% Heodo
2019-04-02NEWFILE_Y4_1-37_C460.docdoc 0f2f71c68c53dbb375da3fd1b3565f538e0352a373c2f2831c85b4841359991dVirustotal results 20.00% Heodo
2019-04-02OPEN_INVOICE_04_2019_Z3_17-49_96376.docdoc 62338c8fa3a628c5875f1272b7b6578096dc4e03c5b402c3c9bd1b4fb191f66cVirustotal results 20.00% Heodo
2019-04-02last_invoice-R9_6-25_25033.docdoc c6c16be70bf6800e05f8f6154df42dff06b6eb60796705a28010280f0d773b23n/a Heodo
2019-04-02201904_X5_9-89_4793.docdoc 3789fce0ab0aafa72d4266b30598ba9f67e36aa18098ec596330817e05b3169bVirustotal results 21.05% Heodo
2019-04-02inv_num-201904_B7_59-87_96333.docdoc 297daa63a5afa0ffb90c0928b6d0e09a5cdfa51ae161579b570ef8953be95695Virustotal results 20.69% 
2019-04-0204_2019_C2_7-23_Q158.docdoc 0a31017562a6617fd3f85d55fc5e7c50d1de476d90780544b90bcfb666a9c338n/a Heodo
2019-04-02last_invoice-042019_R2_3-35_Y737.docdoc a71a9980a2858b1b5b605dae9cc674776410fb1e9d83bcad3222ce170cede724n/a Heodo
2019-04-02inv_num-201904_M4_99-14_7345.docdoc 366e026751c45985488dff5ed067a15d34745f27223a38fdc8bca427ffea2dcdVirustotal results 20.69% Heodo
2019-04-02INVOICE_DOC_Q7_6-43_Y685.docdoc a15e9e7a06c1923cde4c6e3ef501aac19a146b5c98cbc645745d45fd6730da66Virustotal results 22.03% Heodo
2019-04-02UNTITLED_FILE_N7_25-59_Q611.docdoc 9897a556b3d1de1178deb9f7a583e5e8af6ac1e10776238ab325e5183efaa406n/a Heodo
2019-04-02last_invoice-L9_03-78_F4834.docdoc d034fb677e953189343e9302daac7dcdadbdd7f5fbede3515ad24969963390caVirustotal results 21.67% Heodo
2019-04-02UNTITLED_FILE_042019_D8_1-03_6487.docdoc 1af732a1b95c975205229ad4b301a17ee206de6b2f2da5017b65abb2eb4f8e8dVirustotal results 19.30% Heodo
2019-04-02UNTITLED_FILE_201904_H8_4-05_K3743.docdoc 5dabad4916c92748ae0c69bc10d186467a4b4971cc8607881e9961f91ee77a55Virustotal results 21.67% Heodo
2019-04-02N3_40-81_C5868.docdoc ce8693c0c45a8e5b434db54d1a80daa239d883717b4e305c7a7c6b4844e2b72cn/a Heodo
2019-04-02INVOICE_DOC_A4_9-71_Z7589.docdoc 4dd7f4e459c5ca132990bfcff6aa58b066c5468efe5a036b0377eec428c53270n/a Heodo
2019-04-02invoice_number-04_2019_G1_6-43_R640.docdoc ac80ce87c423e14066360e7edc0d3ef2fd3286450f4ea990d67daf274ff47dd2n/a Heodo
2019-04-02invoice_number-042019_S5_79-68_5031.docdoc 4f26c5a52cdafc9c7fa2d4cb63ef3e32ea4d63f54e5e192eedc90c3d57d763deVirustotal results 20.34% Heodo
2019-04-02invoice_number-D2_8-65_B422.docdoc c9463c9f694e78e144bba886597e088b71126a385f038b3d01a0726a5a2c4435Virustotal results 19.30% Heodo
2019-04-02042019_Y2_86-44_E846.docdoc 17fa36c589e64859b088852040692ace2b388705a611a981e5fd68ef6c6c45bfn/a Heodo
2019-04-02UNTITLED_FILE_04_2019_E1_4-84_B5835.docdoc 8f55a0fe372f475033bb95db248e1126b0f6012dacc7b75faba46416c214f40bn/a Heodo
2019-04-02inv_num-R3_1-42_F1916.docdoc 8a35c1865bac08d865b42f376b27091b3abce6a9c261daacce084dcf6f7b73e3Virustotal results 26.32% Heodo
2019-04-02NEW_INVOICE_042019_C9_29-67_B588.docdoc 95e23ee6831f0add96fdce39a003392c3eaf7caffec7bd31a8f1278e24c740f1n/a Heodo
2019-04-02invoice_number-L3_0-71_V848.docdoc a34956ab5c25d807323ce9afae3524f043f5dc024379d8dacce0a4f0dfac5a43n/a Heodo
2019-04-02UNTITLED_FILE_201904_W4_9-94_Y5518.docdoc 89f88a6abc4ce17a27804192f6a0db40af91f4531b29b381134c70f69101d5b2n/a Heodo
2019-04-02inv_num-J3_4-27_C4654.docdoc 8b2a6b33f19d4e8b028b7b2a999affa79bb3b33325a0b1f29961bfc8b62fa302Virustotal results 21.05% Heodo
2019-04-02OPEN_INVOICE_Z4_73-54_V4442.docdoc 34c9911b59b5b831d2067318cac6922c607963a5e5f81bb182c321ed1498aabcVirustotal results 22.81% Heodo
2019-04-01invoice_number-K9_3-87_J8818.docdoc 770d07ad2c9a92bac676e55f7776e5542f69b31d2335535ebfd9dfe7b32c58f1n/a Heodo
2019-04-01OPEN_INVOICE_201904_H9_83-97_M2724.docdoc d564c45b3bab4adc9f5cbb89a5343c9f437a6130ea2d02818031c49c009c79f7Virustotal results 20.69% Heodo
2019-04-01OPEN_INVOICE_04_2019_I2_24-45_G0945.docdoc 19e0b58eefc53e8a84cec3c30410887a3436b913a73c99f310d39aa36f939622Virustotal results 22.81% Heodo
2019-04-01INVOICE_DOC_042019_W5_8-30_C4572.docdoc 7ba53c8b849fe05ab5f8291d7d6f671afaf42e66e754ff7efaec337fb0d71ad2Virustotal results 21.05% Heodo
2019-04-01NEWFILE_E1_2-64_U0837.docdoc abc43dccb9fea38cdef1250dc47531f6fb43675ecac4a1c4cd0dd8a403879d94Virustotal results 21.67% 
2019-04-01NEWFILE_R1_29-15_D544.docdoc 4d8972a8e9daf54dfb3fdb47c1d40594b085c83cb77a593d56fb90bdbfc9e933Virustotal results 19.67% 
2019-04-01last_invoice-04_2019_S3_4-39_N8159.docdoc 6d38e01eeb359aeac9e96fe8c380728602288f9db548f2d6e16754fb53c42d92Virustotal results 18.64% 
2019-04-01eINVOICE_FILE201904_T4_56-59_L2703.docdoc 5e33b03c540eeafc80493ee77d49c62f6ebb6976f0a9588f40556344fd4369c0Virustotal results 18.64% Heodo
2019-04-01eINVOICE_FILE042019_T9_7-33_L156.docdoc 5a492ba7dc3632add890cfeedb1c6feec57c8bd853662d6dd21be77a7d8b4704Virustotal results 19.67% 
2019-04-01NEW_INVOICE_Z9_6-68_B1110.docdoc 519e42f855be287c5e3a84e07db8a58d86398462abe07817337204cddbabd8b4Virustotal results 19.30% Heodo
2019-04-01inv_num-201904_K4_94-65_A893.docdoc 8cf33605a0e7696bb3b248aab286c0a56cfc3cd4bcaa8e0690f97ec9edb865b4Virustotal results 18.97% 
2019-04-01inv_num-042019_J7_7-25_D353.docdoc 02a3ad899a7bf590e8931b2f02c504bd6ec681e3b67a0bdb7907274c134e83a2Virustotal results 22.41% Heodo
2019-04-01NEW_INVOICE_04_2019_R4_7-05_Q367.docdoc 8216a888738685e8762108552450bf27f1598257ac017a8cdf5d64bcee549f56Virustotal results 19.64% Heodo
2019-04-01last_invoice-042019_K7_89-63_F912.docdoc b52ff838f32010e4f77c24987a3162dff132be804634eab29986729ab2491a16Virustotal results 29.03% Heodo
2019-04-01inv_num-04_2019_T8_85-04_L729.docdoc dae8307d071b861c6b0705985bf3119ab54daf8ee547a20c1c30b56557856fe6Virustotal results 18.97% Heodo
2019-04-01OPEN_INVOICE_04_2019_D8_8-77_W259.docdoc 81074aebf514cd009b4a5f11fead134d8b00bc3fa1174810e0832712350fd268Virustotal results 18.03% Heodo
2019-04-01UNTITLED_FILE_042019_Y2_3-10_L5358.docdoc f963545a067612e9e4cd78bf8a58b82dacf5565952f4cabb298838b2dfbeebb5n/a Heodo
2019-04-01last_invoice-201904_R1_57-06_07720.docdoc ed2946a20ddf754c20853e5d35a2915f15f7a2a0bd9c4321d8e1170e07b6f546n/a Heodo
2019-04-01inv_num-04_2019_E5_86-22_5827.docdoc 60b3baffe75dcbbb939b3bbb40f8649bb4971d907abc1584292f3ac552f494b6Virustotal results 17.24% Heodo
2019-04-01NEW_INVOICE_201904_D9_73-81_A202.docdoc 61fa3f8a394b724a927ded0a10fabc82c7bf67cfb070a336609ef37e57889954Virustotal results 17.24% 
2019-04-01Z9_6-71_38234.docdoc bea695028339352cd2362f0423d2e2ddf3df6e788395989244fbf7ea593b7abeVirustotal results 18.33% Heodo
2019-04-01P3_0-64_T4500.docdoc cd8469ee9f5bd828bc3bd5dba6d8efabd49b03b2f1d0c5ee9ef7bc6363db4f38n/a Heodo