URLhaus Database

You are currently viewing the URLhaus database entry for http://www.aipatoilandgas.com/en/Document/gEFdDyrx5bzS/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:188270
URL: http://www.aipatoilandgas.com/en/Document/gEFdDyrx5bzS/
URL Status:Offline
Host: www.aipatoilandgas.com
Date added:2019-04-30 20:41:04 UTC
Last online:2019-05-06 10:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: spamhaus
Abuse complaint sent (?): Yes (2019-04-30 20:42:06 UTC to abuse{at}bluehost[dot]com)
Takedown time:5 days, 14 hours, 5 minutes Bad (down since 2019-05-06 10:47:08 UTC)
Tags:emotet link heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-05-03DOC_914353279603US_May_02_2019.docdoc 36af9c8be06f4d2d0efea6cdad89042fa238d3e1888dd89ea487e99a34e86238n/a 
2019-05-03DOC_914353279603US_May_02_2019.docdoc c114664a3eab4e481e6d7103c9627388a926e66c0a8c4da1535a26087f7aa326n/a 
2019-05-02DOC_914353279603US_May_02_2019.docdoc 177e77fff386350918dff3fc6f874d77b00f47c6d9017c022d416579cac25abdn/a 
2019-05-02DOC_914353279603US_May_02_2019.docdoc 63c779e66565a408efa9dbe3f38629a8b2e231eacfb78c1ea20f16d254eaa2a8Virustotal results 35.00% 
2019-05-02LLC_3955236845US_May_02_2019.docdoc 7b492a6aa0b683eb1c70b5363eb6649a63b0cf81cf23c8534546d71a762be37cVirustotal results 36.07% Heodo
2019-05-02FILE_0225489416US_May_02_2019.docdoc 9412268f1f2c0eb9a06cc682d774e05495a3b4e468749c77e157a5a354c2c8d8Virustotal results 38.33% Heodo
2019-05-02Document_04860570480US_May_02_2019.docdoc 48735c4ff3f7651891f927ad38236a63867ffcbd2a702e9a79daa03cd9c63420n/a 
2019-05-02Document_837183638637US_May_02_2019.docdoc 0a0052896d023efd6db21fdb504e996474df83abcfe4ffb55b55bfd894125505Virustotal results 34.43% Heodo
2019-05-02LLC_0803353491US_May_02_2019.docdoc 0b7bd2da70c954088c58dbc28b9470dbb262ba21c13648eafd0a15b4814cf9d2Virustotal results 34.43% Heodo
2019-05-02LLC_715724090040US_May_02_2019.docdoc 11f45c2f0d6d243306cbd6c70c01f1efb2050836b14f4d669b7a471511ade739Virustotal results 26.67% Heodo
2019-05-02LLC_4838333006US_May_02_2019.docdoc b35b244a1b523f3cf796b6c6dbfe4a4d0fe1b3f733b6410dae9c86fb60128318Virustotal results 30.00% Heodo
2019-05-02INC_300628393511US_May_02_2019.docdoc 692814008db3acff680edd583633e98789c8458f795753f459410f89869d59cfVirustotal results 27.12% Heodo
2019-05-02LLC_4520210137US_May_02_2019.docdoc 3c37cb5bc7d34a299c3442b5d9877e8f4932af1dd6ca5a8b139a668fed5f9786Virustotal results 26.67% Heodo
2019-05-02Document_411270138455US_May_02_2019.docdoc 456c3edf43e0677174dad7da916faec9c2534520655a62ad5be950b123060daeVirustotal results 27.87% 
2019-05-02FILE_881291579833US_May_02_2019.docdoc d208f3eff68d5739131aeb2b16c66c1b6afb8fae27517f1b7b9029d4ef8b1ce2Virustotal results 32.26% 
2019-05-02LLC_6406490145US_May_02_2019.docdoc c00f51900f0ea1f2b2f180fce863a775f22285c5e714f71db05511ebbff40bffVirustotal results 31.15% Heodo
2019-05-02SCAN_60832420013US_May_02_2019.docdoc b0ac55a9a3533916702fcb365a321abaf4990b73459a2fd1a32a3378cda957edVirustotal results 32.26% Heodo
2019-05-02INC_0952319556US_May_02_2019.docdoc c4bb3c6de8d16d8d68841fd2fd8230fb13d8f7c51feaced318d5f41c78f15da1n/a Heodo
2019-05-02DOC_395393886138US_May_02_2019.docdoc 05a8d63623061e357e6537d32e097ef07f792fbfbdbb534d37533e5f9632c5adn/a 
2019-05-02FILE_59852328119US_May_02_2019.docdoc 8e4a311d2368b3ef3374691d891e860542fbcd33a8c5df81d9264762449a41a5Virustotal results 28.07% Heodo
2019-05-01INC_55288753729US_May_01_2019.docdoc fef5c94f160ac594834251f184900922b8b802d3b8460c3dd75f74e895e7fee9Virustotal results 31.67% Heodo
2019-05-01Document_119265046177US_May_01_2019.docdoc dc49d2d7421719050d62368d665c84629bb08d6874ade0bb8940f133b619d9aeVirustotal results 31.67% Heodo
2019-05-01Document_4495522512US_May_01_2019.docdoc 930cace84e8704d5385df2db7557c7d3b2a183de3ffad0d3a51291745b4f9f39n/a Heodo
2019-05-01LLC_77998339599US_May_01_2019.docdoc 7416ebc5373fd8a3ec9ece1dff46c15699738491d703b47f20ae4de8c59bcef0Virustotal results 24.59% Heodo
2019-05-01Document_89801333148US_May_01_2019.docdoc 68e686c3f2b87d3169766ffe4bba021a8acd7648ca38c6c75be829a864558ecbVirustotal results 26.23% 
2019-05-01DOC_81812029377US_May_01_2019.docdoc 42981d37b50801d5cdc23d5d9f0a1e0e20f3787e24c4d20f606d2250ce5bf804Virustotal results 26.67% Heodo
2019-05-01LLC_574048627079US_May_01_2019.docdoc 6f926261cf70832a6f3332c727eb674da29212109a968a25cab4cb92fced7694Virustotal results 25.86% Heodo
2019-05-01Document_214971133132US_May_01_2019.zipzip cfc24d7f2c95558f0405cde02a191d86a1270861db468465f59722d6749c5acdn/a 
2019-05-01DOC_3280327823US_May_01_2019.zipzip 358692d3aface8988f1979ae6dd589dd79da165a8a8de47357acfe519015fcd9n/a 
2019-05-01SCAN_0705192003US_May_01_2019.zipzip 536a2c82810a26c8e8bd4b74ec7fc1035f7db395b297f85bd88f0214e433addbn/a 
2019-05-01INC_51294674677US_May_01_2019.zipzip 0e29b4eb17b4cb336fc1c4847448ab59ff01cffa5de2b4a560eccdb10942e1d6n/a 
2019-05-01FILE_15597175755US_May_01_2019.zipzip 8426c311b97d0506c97c48b59ea1d47fc9cd0ca4d9ffe8cf95e1efb454c84444n/a 
2019-05-01SCAN_46606515860US_May_01_2019.zipzip fd15bed81ff05c0b4220128bdb68bd32103a8e9f8d0327627fb980f5fdb44335n/a 
2019-05-01SCAN_221140325649US_May_01_2019.zipzip ab23fa5d7649ed2a11faf9669975ae4fc7efca26be2b849e06eed6d23f8321c9n/a 
2019-05-01INC_418999228675US_May_01_2019.zipzip 365ed5edbda8409aa45be0982cb501a77095f91e032f62cd20b8babf21fa65can/a 
2019-05-01SCAN_929447547730US_May_01_2019.zipzip 1810293301291bf43f6dd8f1201a48f06d2a94eef2a622ac150d2c06e711da90n/a 
2019-05-01SCAN_0473098665US_May_01_2019.zipzip 9726412583deec1223f51a5e58982080f859cbf70a6bc89fd1f3475842f540a4n/a 
2019-05-01FILE_198166293524US_May_01_2019.zipzip 67bf47556eb022bdec723902ba028714baeefe9b50535b68a3d943a8a7152335n/a 
2019-05-01Document_1115183847US_May_01_2019.zipzip 42ded50fc6722f8e2bb234c56246f92b0c1edacde7c6883bc45d4da6e784735an/a 
2019-05-01FILE_55753469304US_May_01_2019.zipzip 03569bb0d49e3f880602fcb8e7d1d50dbd834d282111ded8df30fc2bbb9d082dn/a 
2019-05-01SCAN_1885000360US_May_01_2019.zipzip 2f78cea5af1b8abf5d0d6c6e362e4fd2d7eec9fa64d26009acb04b22ce1d7e0an/a 
2019-05-01DOC_8973254287US_May_01_2019.zipzip 52ba4f2480008b7f8ff30b013240d28033f808815db46c46413bd29bdc8cf8fcn/a 
2019-05-01SCAN_7985723950US_May_01_2019.zipzip 3b2fc89abc17406d3803d661107b507c441f165762d896977a1464a16eccebc7n/a 
2019-05-01Document_2504684093US_May_01_2019.zipzip 31f2757f7f7f1a58076020f49d82123a05e55d61c79aa01f80ba900beec245fdn/a 
2019-05-01INC_872340932387US_May_01_2019.zipzip 22cd65c1c54d713d559bd8e08c4538d50645f13acaf35015624bdfb8289ad342n/a 
2019-05-01LLC_532265789441US_May_01_2019.zipzip 6991fa7ebc925e6c3775728b14678e4ea7c9ee921deca809577f988e951e635en/a 
2019-05-01SCAN_26755600939US_May_01_2019.zipzip 8fd93ce91f257d5c063e3dcecd7db745ea6f7e46dc9d03afeb064e7b88dcfd54n/a 
2019-04-30Document_0095949490US_May_01_2019.zipzip 45267fd10b20a09d1fcc738320f4fa5fcbed06171cc41794265cfb541985dcdfVirustotal results 20.00% 
2019-04-30LLC_96443897576US_May_01_2019.zipzip 6887503c75230fb45d535554b755e10fff8686cef9232bb23c7a738493fda9bcn/a 
2019-04-30FILE_00590575458US_May_01_2019.zipzip 3455d7ac348cc9962a94aab606f7a1231fa17d499af5cfd2d64f5344008c3f1an/a 
2019-04-30Document_30039342162US_May_01_2019.zipzip 0747d622bea9dfdddd787e6750740d582c33de1c2cc6afa86830efd36babddacn/a 
2019-04-30Document_4436984633US_May_01_2019.zipzip 1894bd25be2fa215ffd175d9e6fb8e88fa628201beea4aa6063e5fa364a571d6n/a 
2019-04-30Document_9891821942US_Apr_30_2019.zipzip 51170f84eb6db4adff2d0115d0840e83a6756cc5f0065e57a3ad42b7aa57d823n/a