URLhaus Database

You are currently viewing the URLhaus database entry for http://jkncrew.com/esp/hvrJgrBEtx/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:195772
URL: http://jkncrew.com/esp/hvrJgrBEtx/
URL Status:Offline
Host: jkncrew.com
Date added:2019-05-13 22:53:07 UTC
Last online:2019-05-14 02:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2019-05-13 22:54:02 UTC to abuse{at}servercentral[dot]com)
Takedown time:3 hours, 42 minutes Good (down since 2019-05-14 02:36:05 UTC)
Tags:doc emotet link epoch2 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-05-14Document_3080090053US_May_14_2019.docdoc 83d4128af5bfa64a5a011ee5435d26a0c744abf7fba4540a79320240fe3dee44n/a 
2019-05-14FILE_2035905442US_May_14_2019.docdoc 130187838b015cbac791a2eb4a4cac0a07114b85e1a18a3352576cce2c5ae1aaVirustotal results 23.73% Heodo
2019-05-14FILE_20061701509US_May_14_2019.docdoc 6e27b70e10089e9b815f7eab1b80e637e40733060f22a20e6b010b25287122acn/a Heodo
2019-05-14Document_2333218478US_May_14_2019.docdoc 5c4496cdd3ee86af8935d9e1f64e6337c732741df7824571cf15e426f7913923Virustotal results 23.33% Heodo
2019-05-13FILE_259130842618US_May_14_2019.docdoc 95b76cb37e2e3caa0e07f01c9aab219e128ea4ac3cab80aa48e9fc2733713343Virustotal results 21.67% 
2019-05-13FILE_5860627051US_May_14_2019.docdoc baac5eeb90873f5781c9ecc9143537bd287a609e4dd9ce36b697e8fd1976b288Virustotal results 16.39% Heodo
2019-05-13LLC_56894665687US_May_14_2019.docdoc 3b33502eee805abdf772cff17265066d740c3f6c01d837510f58cb2e433ff5e6n/a Heodo