URLhaus Database

You are currently viewing the URLhaus database entry for http://spyguys.net/cgi-bin/sec.accounts.docs.biz/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:188899
URL: http://spyguys.net/cgi-bin/sec.accounts.docs.biz/
URL Status:Offline
Host: spyguys.net
Date added:2019-05-01 23:11:03 UTC
Last online:2019-05-02 17:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2019-05-01 23:12:02 UTC to postmaster{at}myhostcenter[dot]com)
Takedown time:18 hours, 4 minutes Good (down since 2019-05-02 17:16:28 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-05-02MAY_RECH_34910609_1837098.docdoc afa805779d05d4746cdd39e3f7ea8586b4cbb7736badb85194a673fad468ceafn/a Heodo
2019-05-0205-INSTR-805089-8540009.docdoc e98d6d03d74c3b122f5a6eb72ddb2c864f825343a68e873179659ec499320532Virustotal results 27.42% 
2019-05-02MAY-INSTR-67714163-417604782.docdoc e9cc355b9b2c501a852825e354361d39910f68c1be617cd4370d32f2f9d65ebdVirustotal results 25.81%Heodo
2019-05-0205_BIZ_280612_5372945.docdoc da90642a84ccf0e03150cbce192af56cff8e5ec145fde46e2d41a86989219d28Virustotal results 25.00% Heodo
2019-05-02MAY-DOCS-367598497-81240640.docdoc 7e5a6e6ecf5554cebd655af3e1db09d80552510bd42af3af1cd364fa84fc788fn/a Heodo
2019-05-02MAY_RECH_184816_353870343.docdoc 75fbe40d61fa1f15700afa46c21b4626dc159ee772727d0ff492e1e599e21f90Virustotal results 23.73% Heodo
2019-05-0205_INSTR_5074520854_893056784.docdoc 6316788989ab49e76f6ea46f35787128eeba3bb4cb860b36bbff791ffbff9a0eVirustotal results 24.59% 
2019-05-022019_05_REC_375910_154475605.docdoc 27f9f197a336e93d2f520b60ec3fa4e8e3b062f994f772e2af261414d2b26705Virustotal results 28.57% Heodo
2019-05-022019_05_BIZ_322032087_72422142.docdoc f9b9b2777dc0ecea0601696230bc2cfcac0452ccff119a84bc86c14b81d02ee9Virustotal results 27.87% Heodo
2019-05-022019_05_INSTR_120238231_224969077.docdoc 7c26c03904ba19298d89b86815c39fce874013b15fd899a6f92672715da85f66Virustotal results 27.42% Heodo
2019-05-022019_05_INSTR_418609_535565283.docdoc c67b5c47df7b5d0346a97a59471c44bb6e71b3b688e19114ce2cce04b2375f9bVirustotal results 25.81% 
2019-05-022019_05_KCGQ727155_8471447.docdoc 8d2bb644ad211dbf798452fa2d112bbfe2a45e8359543f6c3527eb0794535de4Virustotal results 24.14% Heodo
2019-05-022019_05_L596675_9146327.zipzip 9b36ed8ca9e61c16b4d63b63ab958d00138b5004d9feccb49a0955a6f3ef1044n/a 
2019-05-022019_05_PAY_4094036_66006482.zipzip b84f37c355c4810dec32c2fca4acbfca7ba3b8cd2d2bbcc7f5b1d8a39f10c395n/a 
2019-05-022019_05_ACC_3066568990_467403581.zipzip 367bfe89bfdae577ad8a69f05fc80fa3e6e2738a42abe75607f6a8221713a35fn/a 
2019-05-022019_05_BIZ_5666465600_598348348.zipzip d0cfa80813da1a6aa3bb57e543e73d2b85ba69f09608533a26a5e577c1706630n/a 
2019-05-022019_05_REC_559614_879693.zipzip 9442995c1ab8772c95e80854884c4df01aff5893acc487cb0cd379d265085698n/a 
2019-05-022019_05_ACC_285250_442852.zipzip 6d7441693fc197bac1b93d038312bca2ff94ee7e43aba2b250488af94c2da36an/a 
2019-05-022019_05_PAY_3840181_884068.zipzip 1a9f0df2949c93673f29ac0a888aa48437bae19b3d28f72b62b7cd2da7000096n/a 
2019-05-022019_05_ACC_704442987_80487461.zipzip 2d59688d3a538dcd04509e110c2e513f8c03e2f73b605a4a3188f486debb35c5n/a 
2019-05-022019_05_DOCS_6434813204_54405868.zipzip f0a622f58ca8345fdbaefda01a0720ac31d51e8b9e5f9878ace89c68172e3d8dn/a 
2019-05-022019_05_BIZ_55544441_9333420.zipzip 13efb4e21a81b308ff9a8600962ca7652b643edd5a2be3bf669aa5fc0233312an/a 
2019-05-022019_05_BIZ_5155678439_0419739423.zipzip 5aff58630525b4b31ed375a78eceb5c7deb849d37e54420cd05f7db0d7b9cad9n/a 
2019-05-022019_05_Y587941036_052358.zipzip 54fd20925ca8ea0edf351d9d51c09bc5ed97a2a48788b67b39b815a051a0c435Virustotal results 9.84% 
2019-05-012019_05_ACC_2142181_874940480.zipzip 897a12b4e3617b02ce36d9fac85d49311b1c16db7a69c010fe6a0b642e737ce0n/a 
2019-05-012019_05_RECH_2037083_91396700.zipzip a0e51a8558a805dcb621655f8e04205ddfed93bdd94d9da82afdcdd2f0ae82d8n/a