URLhaus Database

You are currently viewing the URLhaus database entry for http://maxprofits.co.uk/cgi-bin/eTrac/lfr8t3/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:270231
URL: http://maxprofits.co.uk/cgi-bin/eTrac/lfr8t3/
URL Status:Offline
Host: maxprofits.co.uk
Date added:2019-12-17 02:14:03 UTC
Last online:2019-12-18 17:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: spamhaus
Abuse complaint sent (?): Yes (2019-12-17 02:16:02 UTC to abuse{at}publicdomainregistry[dot]com)
Takedown time:1 day, 15 hours, 23 minutes Poor (down since 2019-12-18 17:39:52 UTC)
Tags:doc emotet link epoch2 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-12-18V_FQR_120119_NLM_121819.docdoc 0214b00b36773e071fc1fbfeeb968b8747cf4d5f2b18e754af318acd502a44c2Virustotal results 22.95% Heodo
2019-12-18Y_VQ9GN2TPU46K1.docdoc 72851487d72a6a77325466baa49993729a1f37c30e7cde22654fc795d3e5e09en/a Heodo
2019-12-18FILE_42537698.docdoc 95be0dae3703eb412bdae01c004024b7e93a6d4a3b903f59ff1bdc79fe797a55Virustotal results 22.58% 
2019-12-18ST_PO_12182019EX.docdoc 94e0bc0db239e792a6c52eb45fc69d0681c8a39c67dd462973c72d6560a4519aVirustotal results 21.67% Heodo
2019-12-18PAY_PO_12182019EX.docdoc 88193a931eb5010eb900efa6cfd2d16256af0873dee67850a4abbd1d6f5aa958Virustotal results 20.97% Heodo
2019-12-18PAY_KRJ_120119_OHV_121819.docdoc d19458049a137e1bfcd3f580aeef39686b6e1ea204dbf4f4a3abf79bcde08016Virustotal results 42.62% 
2019-12-18DOC_59095467.docdoc aaf3e3daf13c96071a436e0b71879423e317e159aea31f016f469790375c4954Virustotal results 42.62% Heodo
2019-12-18BAL_PO_12182019EX.docdoc d373501a4b3b0a680538b71685799902aec68074038e2ea8114d3efdbfb1182dVirustotal results 42.62% Heodo
2019-12-18INV_PO_12182019EX.docdoc 2175e92f59d8610b907e3989d6fcd6789e81855f2c86efb3a4ea836f934daa9dVirustotal results 42.62% Heodo
2019-12-18J_YX9239907084JU.docdoc f2a74df5302a1cd0bc302de52610490d80ca4730f5451c0b5a28480f57600474Virustotal results 36.07% Heodo
2019-12-1766080865945488.docdoc 96d4aac0f3abf694b0a71e6948aed4ab10019fe41f8a981854b6c94915adc066Virustotal results 37.10% Heodo
2019-12-17ST_PO_12182019EX.docdoc 6360b48ad6657937e29c8904108773ec3f145c12ced3eb0df2a0cafb10484ff9Virustotal results 35.48% 
2019-12-17RP_UL66SY5TGBG9A1.docdoc 5f8e6e5aa39964eb98832414d520af7154f0cfa719d2953f5eb4718dcdad7b51n/a Heodo
2019-12-17PAY_SFP_120119_FSD_121719.docdoc b052f303261ad97b693c92155c7f187664dd9c144538ac447d7eec82cc8f1cb7Virustotal results 29.31% Heodo
2019-12-17ST_XM8697060199ZN.docdoc 0061258396098be6656503cf2eb97c5ce407e160fa521a1e79faf9a0d05e46a4Virustotal results 28.81% Heodo
2019-12-17INV_MP0256281122HS.docdoc 672852f4b5ac5999ddf37a3f4c78bd42ba59f458157c8548dbf758c0d52d5c6eVirustotal results 30.00% 
2019-12-17PO_12172019EX.docdoc a53ac5677652d397c8666a63f766c4ff7921fe7b50250c9e7c6e2eb32a4d7941n/a Heodo
2019-12-17DOC_QWB_120119_TIY_121719.docdoc 0033429b263b67e4f436ffe2aaecb77de6b85ca9d6a4c7f8a37f320cdb0a8dd8Virustotal results 28.33% Heodo
2019-12-17SW_X7IF7T6JNOVI.docdoc b10937be9e11d385b2189aa8123b397746b089e476519fdfa698717f395d56b3n/a Heodo
2019-12-17199476853848976.docdoc b01da25e2db90af2ff5926e0076ebaaac04db732598695f644ee4da87c3b0b53n/a 
2019-12-17MQ_SQY_120119_PSV_121719.docdoc cb58a6837dedb9f1a8dcf5d0a37dcc35a2e2fd90010e49b7ceb644e77bb135e1n/a 
2019-12-17PAY_EJU7EBIUB32NWI0T.docdoc 21fb791ba9108627682a7450513994fcbc0644182399573b5601be6c609f0c51n/a Heodo
2019-12-17REP_RWP_120119_MVP_121719.docdoc e0aca6901229fe14ab6616fc1fdc88bbba7ec6b600a9d26f1c63dd59d7c9e6b7n/a Heodo
2019-12-17DOC_90847261.docdoc 836e40ae7edca39b906b3df99557e994a413aa4b9359ef7d65ae3546b7f6fa74Virustotal results 26.23% Heodo
2019-12-17PAY_17950982.docdoc e6efda7de53dfdf13bb7783dc0e4bca3537a9cf1ba994698a241c7051d133148n/a 
2019-12-17FILE_9368252635.docdoc 8ea95184b930e16a0be2da918e6525e7ccd6f9cb5f06869d0934b51d411c5d14Virustotal results 25.81%