URLhaus Database

You are currently viewing the URLhaus database entry for http://antoninferla.com/OLD_SITE_BACKUP/progress/verif.accounts.docs.com/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:169870
URL: http://antoninferla.com/OLD_SITE_BACKUP/progress/verif.accounts.docs.com/
URL Status:Offline
Host: antoninferla.com
Date added:2019-04-02 00:21:05 UTC
Last online:2019-04-12 16:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2019-04-02 00:22:09 UTC to abuse{at}infomaniak[dot]ch)
Takedown time:10 days, 15 hours, 44 minutes Bad (down since 2019-04-12 16:06:36 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-04-122019_04___PAY_7554418363___3720758805665584.docdoc c57f69a1a40c66d76e6a858e0077c93fc2f7524e200889a71ddef057918f05b0Virustotal results 65.52% Heodo
2019-04-02last_invoice-R0_9-95_52418290.docdoc c1778f49059e02fcb5f9de81e0d2e16105ae1608a939c973f8d4a3048ecadf17Virustotal results 33.93% Heodo
2019-04-02UNTITLED_FILE_04_2019_A5_04-63_981453.docdoc 6fde8fce0f23d0f2e40227200ef1aa18f625d93e76ae6340866ddd0b7c0bd5b5Virustotal results 20.34% Heodo
2019-04-02eINVOICE_FILE201904_L5_09-53_18893034.docdoc d8845a88fe2e10568fcfa1531f5d7fcde3789ff438f6674e96b3ae894800543bVirustotal results 21.05% Heodo
2019-04-02OPEN_INVOICE_Y9_1-86_9275106.docdoc 74e28180300817f88672db64b9a92b4da799cb654f1d695babfd7e687922c736n/a Heodo
2019-04-02INVOICE_DOC_042019_A7_9-20_3509715.docdoc 5fa78da23a8e6295dde375c04b387d3013f840ec1bf02c507843fc28e8c3195aVirustotal results 19.64% Heodo
2019-04-02invoice_number-Z2_4-13_6472225.docdoc 5d0df4144ba0bca226b8e0df4f93f48f85b46f1c62462d203114efb9525ba653n/a Heodo
2019-04-02INVOICE_DOC_B5_2-82_29036508.docdoc cb3c705b0e960696cec3f8f9b42f4e07a55ab194c42f7fa312dbbbdde909bc75n/a Heodo
2019-04-02OPEN_INVOICE_X5_76-27_619213.docdoc 8c51449760f329e638238d652539d53b08c1635cb372fe9c48a8fdcd6ec06305Virustotal results 24.14% Heodo
2019-04-02OPEN_INVOICE_04_2019_C5_2-01_46999.docdoc a9b03fe9d8d0651b131d0852285b1cfb948b2fd48d579957f7a3133ba360e363n/a Heodo
2019-04-02UNTITLED_FILE_K5_7-20_94853.docdoc 93a7a25c9e1a17a88b2bd6e7e695b389dcc8b7e317856c4640179163696dc2d1Virustotal results 22.41% Heodo
2019-04-02NEWFILE_042019_I7_27-18_09312481.docdoc d6553c9f42b20b801a2e272ad4486278207ea176164a323c3b5e47aeb935c9acVirustotal results 19.30% Heodo
2019-04-02last_invoice-H5_67-98_8463835.docdoc 54e68e5ee348e7bc7b78bada7cfdbd29282bb2ed9aed20e5ad907e1c394f1cd4Virustotal results 18.64% Heodo
2019-04-02eINVOICE_FILE04_2019_F3_48-65_9072316.docdoc 2cea5a5983f18cbb457cade99d38f735fc9ef0aeab6b7b6a3b33a031cde2bc93Virustotal results 19.67% Heodo
2019-04-0204_2019_P5_92-21_929750.docdoc 454162d001c26a37601cb082dc3d5452010c103d5b69f24a23b468c221d996ceVirustotal results 18.64% Heodo