URLhaus Database

You are currently viewing the URLhaus database entry for http://aandjcornucopia.com/payment_options/6ypscz-epj3n2p-hqykwj/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:179362
URL: http://aandjcornucopia.com/payment_options/6ypscz-epj3n2p-hqykwj/
URL Status:Offline
Host: aandjcornucopia.com
Date added:2019-04-17 07:41:03 UTC
Last online:2019-04-17 17:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: spamhaus
Abuse complaint sent (?): Yes (2019-04-17 07:42:02 UTC to abuse{at}dacentec[dot]com)
Takedown time:9 hours, 18 minutes Good (down since 2019-04-17 17:00:28 UTC)
Tags:emotet link heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-04-17316229417515DE_April_17_2019.zipzip 90fe7a05f6fd040a9401c9572e9265968ae107cfb16e775247989a486c3f17b0n/a 
2019-04-172516466406_DE_April_17_2019.docdoc 694b037147343d3a34387a156a549013867c1f5f92fc3b6376447e2c5ac0401aVirustotal results 20.97% Heodo
2019-04-177032847212_DE_April_17_2019.docdoc a5c7ef873c4dff06978f874ee497b2fd958b56e263244febc3b7e53eaa27517bVirustotal results 22.81% Heodo
2019-04-173140268709_DE_April_17_2019.docdoc 71da59481ca34680c6459f5947bd9e90fc7ecb570e040045c5d200bf313d5e12Virustotal results 22.03% Heodo
2019-04-1732910782039_DE_April_17_2019.docdoc d2dee2a2478d2b039f9fc00f0d980f67a52f9ae8fe542e991d94f53a6f274473Virustotal results 22.41% Heodo
2019-04-1798710252454_DE_April_17_2019.docdoc 566c79acc5b6aca21ec8ad0859b2f53a1f0d4a00e793b4e6cba5fdb53cb2bafaVirustotal results 22.41% 
2019-04-17772695893733_DE_April_17_2019.zipzip da58ffa168f70741ca5661d966b8e9d1693596d5065e0f08e5e124b0abbca357n/a 
2019-04-170480440823_DE_April_17_2019.zipzip 5ee95ffc64bb26b32123f9eee065a39304d4e0bb9e90f7cfdda2f767d7ea96a8Virustotal results 8.77% 
2019-04-17187381079533_DE_April_17_2019.zipzip 3ac3db51509e87b7933386a31845b6c83f01d899298f6482ab6d236caf5cd63cn/a 
2019-04-178330495115_DE_April_17_2019.zipzip b29552277605d0d665ab16ac98aa539606dd995a31b43c38e69a71a68322c2f9n/a 
2019-04-170937405763_DE_April_17_2019.zipzip 652e66a49573284b67fb14bfe5b167b2d48aa67df54d308ad63e93d37a5704b0n/a 
2019-04-17454854912567_DE_April_17_2019.zipzip d9b5836fc10a44890db5b41781f7a135d0e6fb9bbe0e244bc4cb97080c61f771n/a 
2019-04-1735810564487_DE_April_17_2019.zipzip 8e08b38438afdb4ada00a406988c5bf7760ac250101857e46a7a4201925a8a4an/a