URLhaus Database

You are currently viewing the URLhaus database entry for http://rvcluj.com/rvcluj.com/FILE/j0svzdjsijtp0al7de1dmyzt13_fsufl8-742776001579903/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:205087
URL: http://rvcluj.com/rvcluj.com/FILE/j0svzdjsijtp0al7de1dmyzt13_fsufl8-742776001579903/
URL Status:Offline
Host: rvcluj.com
Date added:2019-05-31 15:40:03 UTC
Last online:2019-06-05 08:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: spamhaus
Abuse complaint sent (?): Yes (2019-05-31 15:40:09 UTC to abuse{at}gtstelecom[dot]ro)
Takedown time:4 days, 16 hours, 25 minutes Bad (down since 2019-06-05 08:05:13 UTC)
Tags:doc emotet link epoch2 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-06-01Document_1866441543US_Jun_01_2019.docdoc ef62880b29c9e9403633bfe2c0572d75e5d9ee3fa4fb698697dceb9efc99ec3dVirustotal results 49.18%Heodo
2019-06-01INC_7816795465US_Jun_01_2019.docdoc 7c4cc9d295547a0cef91a556f42d21a5e87964fb2272c8a33fca00016e71ec4cVirustotal results 48.33% Heodo
2019-06-01FILE_446673894520US_Jun_01_2019.docdoc a389d68fbf4adbcc66623c13e90b243c9793e9392be363ad8d01e427081f4115Virustotal results 47.54% Heodo
2019-06-01SCAN_2569753716US_Jun_01_2019.docdoc 51b855cbe57d74b049f542899bba538e6a47f83b9d6e15e8e5f38cc758664f8bn/a 
2019-06-01Document_1992578575US_Jun_01_2019.docdoc f5f4295f963a3f3ac6e0dc5f1b965821609ca045e1ee63c8687225310155887bVirustotal results 45.45% Heodo
2019-06-01Document_689156502930US_Jun_01_2019.docdoc e5cd9fb3599e112d7f690ec64cc87eaca100d75fc46123812fb4a690ad71be55Virustotal results 48.39% 
2019-06-01SCAN_94988195144US_Jun_01_2019.docdoc 84a66f8e7292ede26e286442de89b8a1fed1521c29552f9b8b1bc17da0d26e5fVirustotal results 48.28% Heodo
2019-06-01LLC_479898947037US_Jun_01_2019.docdoc 78f1f6d72541c029a695ff06e0b00368d8c2e76e40a24f220ae805149d55daebVirustotal results 49.15% Heodo
2019-06-01INC_325272031266US_Jun_01_2019.docdoc 6db3364c302d5c19db16a08c2bc81b3d4c2950d667272c12dcbd6827654aeabfVirustotal results 48.39% Heodo
2019-06-01DOC_41069804129US_Jun_01_2019.docdoc d777840280b22871584a1f1a9fb73dac5b7b335ed3089c35c638e0ad6984eb5bn/a 
2019-05-31FILE_558797703541US_Jun_01_2019.docdoc 71bfba9498217d205555c3c7f0896f3930029f0ebc78a09e0ceb48cbbe8b2899Virustotal results 44.83% Heodo
2019-05-31SCAN_6107371272US_Jun_01_2019.docdoc f8e39ecf6d736e3e321da3e786e095c108564c0ada8a0916f70e04bc642e60d5n/a Heodo
2019-05-31Document_5885452941US_Jun_01_2019.docdoc f2c59cc9eaffd0c7050123d864febc3e5380b439d1041aaeb45b04ae7c6e6bbaVirustotal results 40.98% Heodo
2019-05-31Document_996353791052US_Jun_01_2019.docdoc e1e0d91e131669f5c88bd9a851b270f11c8eb364f13253c1adc7c965db858dcaVirustotal results 45.76% Heodo
2019-05-31SCAN_09612515277US_Jun_01_2019.docdoc 581ee0c680366cab8a51a73d4f4cbab601aa247791e43cdbceebeefb4ef48f9eVirustotal results 45.45% 
2019-05-31Document_282029510530US_May_31_2019.docdoc 14e39469bea5e529217ebf13911d4c03eeba3657b224d187be857903cd4a6018Virustotal results 46.55% Heodo
2019-05-31INC_973114456841US_May_31_2019.docdoc d9514b4f75ab539d1ca84ff57a6795c47df2a145ef78dfee482497f28a7653a7n/a Heodo
2019-05-31FILE_231311695615US_May_31_2019.docdoc a53484da9e213b8f9a1506bc4356647f57082f7eddc755737785e30ba2b09eacn/a Heodo
2019-05-31INC_810899320715US_May_31_2019.docdoc 8f4852fa2c68ac025463fc858447d51fdcb2d4d7bc4d1ea7987563baf0ca3febVirustotal results 29.51% Heodo
2019-05-31INC_38318134850US_May_31_2019.docdoc e5009799562414d49629a271b53611e9e72d6886a79f293f417d75822de62318Virustotal results 26.67% Heodo
2019-05-31FILE_52909569847US_May_31_2019.docdoc 0cf0654cb6fb80e2c39a28dea61555e1bb0f9bb00ce96ebdb4e7ccfbcb98d585Virustotal results 25.81% Heodo
2019-05-31LLC_09548792583US_May_31_2019.docdoc a45823ba084d0d78d09d4326a97572fb65035c88e1db0c5ee841f2843c28d7f2Virustotal results 24.59% Heodo
2019-05-31Document_2011058898US_May_31_2019.docdoc 132b80a7e447dfd6893270baa35d4a97fdccf1bf7306fe94f81233d1ea15bc9bVirustotal results 21.67% Heodo
2019-05-31Document_8228526495US_May_31_2019.docdoc b1a76d5bd22e884a6992fed64848e840fe9603c35473ca3ba16a7ba71a2336a4Virustotal results 23.33% Heodo
2019-05-31SCAN_11267445656US_May_31_2019.docdoc e50892cdd3dbdff6f0516653e9f59ac44bb20a0f739a95b6e25d89cb7a2e196fVirustotal results 39.34% Heodo