URLhaus Database

You are currently viewing the URLhaus database entry for http://www.kampolis.eu/test/secure.accounts.docs.biz/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:188882
URL: http://www.kampolis.eu/test/secure.accounts.docs.biz/
URL Status:Offline
Host: www.kampolis.eu
Date added:2019-05-01 22:18:08 UTC
Last online:2019-05-02 16:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2019-05-01 22:20:03 UTC to abuse{at}ovh[dot]net)
Takedown time:18 hours, 25 minutes Good (down since 2019-05-02 16:45:29 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-05-02201905_RECH_0582958_902533675.docdoc e98d6d03d74c3b122f5a6eb72ddb2c864f825343a68e873179659ec499320532Virustotal results 27.42% 
2019-05-02MAY-INSTR-893645-754883701.docdoc e9cc355b9b2c501a852825e354361d39910f68c1be617cd4370d32f2f9d65ebdVirustotal results 25.81%Heodo
2019-05-0205_REC_04793650_84376921.docdoc da90642a84ccf0e03150cbce192af56cff8e5ec145fde46e2d41a86989219d28Virustotal results 25.00% Heodo
2019-05-0205-DOCS-9889778757-187020219.docdoc 7e5a6e6ecf5554cebd655af3e1db09d80552510bd42af3af1cd364fa84fc788fn/a Heodo
2019-05-0205-REC-870675-407120.docdoc 75fbe40d61fa1f15700afa46c21b4626dc159ee772727d0ff492e1e599e21f90Virustotal results 23.73% Heodo
2019-05-02MAY_BIZ_01331567_5786385.docdoc 6316788989ab49e76f6ea46f35787128eeba3bb4cb860b36bbff791ffbff9a0eVirustotal results 24.59% 
2019-05-022019_05_RECH_5224541_3363252003.docdoc 27f9f197a336e93d2f520b60ec3fa4e8e3b062f994f772e2af261414d2b26705Virustotal results 28.57% Heodo
2019-05-022019_05_INSTR_866493593_73829644.docdoc f9b9b2777dc0ecea0601696230bc2cfcac0452ccff119a84bc86c14b81d02ee9Virustotal results 27.87% Heodo
2019-05-022019_05_BIZ_539241844_3877097.docdoc 1a83e067999d7270f9ffc59b474e317606e5760643632a3aa57547427ed9b81bn/a Heodo
2019-05-022019_05_DVP3273466_229612561.docdoc c67b5c47df7b5d0346a97a59471c44bb6e71b3b688e19114ce2cce04b2375f9bVirustotal results 25.81% 
2019-05-022019_05_REC_144464_0022293631.docdoc 8d2bb644ad211dbf798452fa2d112bbfe2a45e8359543f6c3527eb0794535de4Virustotal results 24.14% Heodo
2019-05-022019_05_REC_32800781_966658146.zipzip 623b4e9f0703d6abc1e47fa60793a07b6eba36d76e975f2b0fe63ef352c4b064n/a 
2019-05-022019_05_REC_117794_723747.zipzip fe748a57f09e7a71ee690878d135c2bccf7c76669d98d44a8c8fb433b70e119an/a 
2019-05-022019_05_BIZ_3908521_456679.zipzip 595de84b8f54ff56d3bd1afa3150ee3149a79cb0c75966d3f4abda945be8a3bfn/a 
2019-05-022019_05_BIZ_1502005964_9717269925.zipzip cc5db1dad2f9d5e2dd822fe7e6ee2689eb814d84d3fa8ec531bf8be1b211b55fn/a 
2019-05-022019_05_PAY_0713799_1407082130.zipzip 5ff15dc40482c03150165017199a165e4a790718cb265773b8d4e0ccb43ee8can/a 
2019-05-022019_05_ACC_359887_3380160.zipzip d39374ed9c4c111c26cf977f98e2100409db6c19299f5c6f2e0ea21d93c75ad2n/a 
2019-05-022019_05_BIZ_96166048_72903124.zipzip af04559b689d6e6355e9ab2159a59a709a7fa7608d4bac031e0acf09b0750928n/a 
2019-05-022019_05_REC_29083689_345901219.zipzip 94032d96fe53107681d3a6192b7f3dcd6e5a48f3b859fa2a3e265f388a6bc88an/a 
2019-05-022019_05_BIZ_3276876258_752667.zipzip c5539f2f33efe4c28c10ba2a480f99c5ce9d9987db1f324c7f23da4724ee7eaen/a 
2019-05-022019_05_PAY_8810483_68573478.zipzip f8baed78e7f8bd3096ff7b3c1c39442553beb6479d877198ab3636a9fc64eefbn/a 
2019-05-022019_05_RECH_45546243_737779.zipzip 30d4e3d890c6a1ebda19d951234fe308e27a4412437b16b1a86b9b89f2300f08n/a 
2019-05-022019_05_ACC_118599235_24839079.zipzip 950ba84d7a68643dc2f5b817b79ed06c085c52c9178fd13969cd9b2157f04a2bn/a 
2019-05-012019_05_RECH_923224_9807513523.zipzip ce57507bb4f9199bd5e5722706a50eb85ea1324d05f9457e759e7d3327244cf1n/a 
2019-05-012019_05_BIZ_2655193_85356878.zipzip 1d39cfe00a26bb33d3740507a92dac0381fcc8dd094e68c77e167952ba00dd01n/a 
2019-05-012019_05_BIZ_61687580_200002186.zipzip 58b500f23c384b3539f6afeff6e70a4e022634105869966294951290fa97cf7an/a