URLhaus Database

You are currently viewing the URLhaus database entry for http://sparkcreativeworks.com/cgi-bin/INC/5ZKHsB36/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:184379
URL: http://sparkcreativeworks.com/cgi-bin/INC/5ZKHsB36/
URL Status:Offline
Host: sparkcreativeworks.com
Date added:2019-04-25 04:48:14 UTC
Last online:2019-04-25 15:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: spamhaus
Abuse complaint sent (?): Yes (2019-04-25 04:50:08 UTC to abuse{at}hostwinds[dot]com)
Takedown time:10 hours, 18 minutes Good (down since 2019-04-25 15:08:24 UTC)
Tags:emotet link heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-04-25DOC_4067269535US_Apr_25_2019.docdoc 47d15e14ae126a2a669ee71f409be3b80bb1127327933c8991b05ecd453cf656Virustotal results 34.43% Heodo
2019-04-25SCAN_2206124459US_Apr_25_2019.docdoc adb17498e7aef92a20608d0899bca2e9c61c730889b3105e8e56517bb54217bcVirustotal results 35.00% 
2019-04-25LLC_1836591600US_Apr_25_2019.zipzip dafd63a4ee23f22bce37535191dc153b23d78896dd40ca72794e0009a468c256n/a 
2019-04-25SCAN_0682179607US_Apr_25_2019.zipzip 3644004dc1c36ffa165ec29d893fd688ab12c12029d3e8981602bcd8d5e11ccfn/a 
2019-04-25FILE_849661001595US_Apr_25_2019.zipzip a1f7d3244221dd07c298b93f20516017f804994185ddf184b32b87d4d602d971n/a 
2019-04-25LLC_843515463946US_Apr_25_2019.zipzip 2f874beb3182c402754524ba8de25045a3b5f0e4f17afaa8c34879afc0d29807n/a 
2019-04-25Document_18760108700US_Apr_25_2019.zipzip 78006b13fd8c4d709252014b0c3e1705d66b06865416e5d27df27881a0274e0en/a 
2019-04-25Document_54781036166US_Apr_25_2019.zipzip 332615a66f632df13b15be65f1a859e380f1648d81dee97dea6b3a2e8c196b79n/a 
2019-04-25DOC_827887926655US_Apr_25_2019.zipzip ba4ee5f3497b95b871297af583e965092e464d9983de3f5848acf4e6d246de23n/a 
2019-04-25Document_1867914140US_Apr_25_2019.zipzip 9639cf517087177d704836067b882326fb92e49a63743086fff28d6c5f7e249an/a 
2019-04-25DOC_5076480654US_Apr_25_2019.zipzip cf66c4b5edf26b780d3d0aae5de21d70d0ed0038d2cc3af37deae4ce84a636b6n/a 
2019-04-25FILE_705075527640US_Apr_25_2019.zipzip 17d2ab5b8cf42c5b3f43a63472ef84b2c80d04ec9f50a93c5af056a167b7bdd6n/a 
2019-04-25Document_7203847303US_Apr_25_2019.zipzip 8450d14ecc932cf42fe5ca3c7159e026441b9be99cf1875b46662f83fb77eb40n/a 
2019-04-25Document_920575186098US_Apr_25_2019.zipzip c853e0d2f86025b030ac55819ef538b53e63c150b1007412f9b73bbcff2cb3ffn/a 
2019-04-25Document_4105112785US_Apr_25_2019.zipzip 11a1175e29454eeb2b3852b46328751ad63cf095e8b63b4d13aec75b6d44c0efn/a 
2019-04-25LLC_212698540704US_Apr_25_2019.zipzip b30ff864a4ba2422609ea58da08bc137d652726e8b4d71022719a6025322a2e4n/a