URLhaus Database

You are currently viewing the URLhaus database entry for http://agiletecnologia.net/site/uu7d-xrf12-321/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:267387
URL: http://agiletecnologia.net/site/uu7d-xrf12-321/
URL Status:Offline
Host: agiletecnologia.net
Date added:2019-12-12 02:04:08 UTC
Last online:2019-12-27 09:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: spamhaus
Abuse complaint sent (?): Yes (2019-12-12 02:06:02 UTC to abuse{at}redehost[dot]com[dot]br,flavio{at}redehost[dot]com[dot]br)
Takedown time:15 days, 7 hours, 11 minutes Bad (down since 2019-12-27 09:17:14 UTC)
Tags:doc emotet link epoch3 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-12-14Bonus Payment Notification 466551346.docdoc e6f2bdf03c19374ae92b706db7592cfc6083da55085d7994bec43cc0ed7fd634Virustotal results 29.51% 
2019-12-14Bonus Payment Notification VRB540505.docdoc 9cd1e5d9e247f3fbf59b8440bbb947b1220e10cb5014c06a482db567c335f198Virustotal results 30.51% 
2019-12-13Bonus Payment A33560886.docdoc d3fb8e9199f3f6447e8d71b94ddb8b199d21045b15dd8a6aed45115ccbb58580Virustotal results 29.51% Heodo
2019-12-13Pay UAI7429158.docdoc 83604b75cb97165fd1d2343ef019335f3eb13024dbf193774a4acfc7162a9046Virustotal results 27.87% Heodo
2019-12-13Bonus Payment NKJ790298.docdoc 61bd31127d7986d44e8d0a56bb5f11c6ad0d5bcbaac574580da229469c7b0f71Virustotal results 29.51% 
2019-12-13Bonus Y939.docdoc 941883f4ff0a879f4034405695a7cf711416a878b0e414de84c8fd6d6cb7166cVirustotal results 29.51% 
2019-12-13Bonus Payment P841.docdoc 989cc9dd654ecb6687eec34fa5f51f6cffba0d7f021364203d80117642f9a877Virustotal results 27.87% 
2019-12-13Notify 6970.docdoc fbb5d3e4e1d7d1caaa0b4a2d266d8a578f957966cea4223104fa9094daa9c632Virustotal results 30.00% Heodo
2019-12-13Bonus Payment V955.docdoc 7f350e0bb84750815d9982ccb48286d2d3b454d9952b076d306876879f8a058dVirustotal results 27.87% 
2019-12-13Bonus Payment Notification 8472009.docdoc ae2f1b9b781ad51f32f4038dcd1b8db56c34c444d786907c9cfee709206c2543Virustotal results 28.33% 
2019-12-13Pay Payment C4862.docdoc 1d9d018983c19aba80412aef9e7c2d0f7e71c28ae8770d785819ef49fb467c5aVirustotal results 26.23% Heodo
2019-12-13Bonus Payment Notification L018888.docdoc 6a5b5173bbee3ac445651227d6d24e875e04bb93eb1c0a60b5711ded512195f0Virustotal results 26.23% 
2019-12-13Pay Payment 5401.docdoc fbe0ec1ec4b33074fcb351e2f371bfc8c7b194c8f7a2fd9b4f70944117a4d034Virustotal results 24.56% Heodo
2019-12-13Pay Payment D455379.docdoc 07eb1f103c1fce37edabd5f8e89d0b23230c1e4726aaf7efb8359b790da97a1eVirustotal results 24.59% 
2019-12-13Bonus Payment Notification 418364.docdoc 7eef3e40c5fe9e85bad4b2299a8ba6c37727189761a0ff114307b5b50952b508Virustotal results 41.67% 
2019-12-13Notify E82673481.docdoc 372460bdb54f1878f71464f959c05cb9db903af3e1e24c646afca9480e2f83f3Virustotal results 35.09% 
2019-12-13Pay IQ4274246.docdoc b60d4f28174a720751b80d4451e140ba053c0a74dc1e921a80b5b78c8d721544Virustotal results 35.00% 
2019-12-13Bonus Payment NW737.docdoc b0d8386da0bf54c0c5a1d6d964712f34dff1a4c19272342ac7f1b1c0b7501334Virustotal results 35.59% 
2019-12-13Bonus RB180560.docdoc 16a152d62c22e97695d546db457c563ee707a1720e2484aefca89c4ea444f756Virustotal results 34.43% 
2019-12-12Bonus Payment Notification R080.docdoc 4e6ecdecd5d7cefb2a5ae9eb200dd55c82bdf5f1a34628177e18ed12ce96cbe6n/a Heodo
2019-12-12Pay Payment YHX9785670.docdoc b11c0efd45884d745e5ab432d564083219ec67f55f7b21c4ecad715203a9e389n/a 
2019-12-12Bonus Payment WC42278.docdoc 4ab7db337b3b597fdda75aed736f5d3256721c22f9c6b3a12fb0237b7b725e8dn/a 
2019-12-12Bonus 189421.docdoc 68c93898b108b7aa57c65a1e99d5063c76cec402e828d5618720a0ca1b79fb09n/a Heodo
2019-12-12Bonus G1991202.docdoc f59f977d3187101bfbfe78bc48663ed97e0764674f803e9ad5af7607661ac4e5Virustotal results 33.33% Heodo
2019-12-12Bonus Payment Notification HEP748.docdoc 4b5e6ccc14d9a7b31c23401e1ab258567b0f202f5605f170399a3adddb9f646fn/a 
2019-12-12Bonus Payment Notification 661.docdoc 8766efc88b7e69bd335ce0607a459ebef87acad1fb3941526085853212b56ca7n/a Heodo
2019-12-12Pay R6149.docdoc d3d7ffb7e75aa5c7de4cbaa219d82f1218cf931d368a484aab30d9a68c413484n/a Heodo
2019-12-12Bonus Payment Notification CC0768080.docdoc 5df1f1341851c837a5892bd964c406fe101dd9154c3b5c1df36eb95372c604e0Virustotal results 30.51% Heodo
2019-12-12Notify FY890021282.docdoc 8ec626cb5d05c16b41312eb6967a5b541891ecbd185bd088415fff9689af2973n/a 
2019-12-12Bonus Payment Notification 94875.docdoc b235bf9aeaa3cd3418f2f1f3769f99b65e465915cd872b5860d833e456668c8cn/a 
2019-12-12Bonus Payment Notification HP72761497.docdoc 94510d6c56c6fa6cbe0d4b8db07087b3a841aae400176f97d419ad2bd3bcb85an/a 
2019-12-12Bonus Payment Notification FV692.docdoc c765ecf47cc4ba7c01f89d2a7349570cd9ffe689498c807227fadcc78f291da2Virustotal results 40.98% Heodo
2019-12-12Pay 411.docdoc caf8ab5d365524a7b9a69fcdc15f7ba0873d7f4314d2c13d5cf2eadfa2a8f494n/a Heodo