URLhaus Database

You are currently viewing the URLhaus database entry for http://compunetplus.com/stsny/parts_service/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:272236
URL: http://compunetplus.com/stsny/parts_service/
URL Status:Offline
Host: compunetplus.com
Date added:2019-12-19 01:43:03 UTC
Last online:2019-12-19 18:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2019-12-19 01:44:02 UTC to eig-net-team{at}endurance[dot]com,jayanathan[dot]muhunthan{at}endurance[dot]com)
Takedown time:16 hours, 16 minutes Good (down since 2019-12-19 18:00:12 UTC)
Tags:doc emotet link epoch2 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-12-19DOC_PO_12192019EX.docdoc cf1e1c5fdce6dfaeb87c86090e186b06e0165f13e4e47b7136298473f02118bdVirustotal results 25.00% 
2019-12-19RP_6CJ48SP.docdoc f3e5b744b082ac91f4569bd3795822a360b43e848ae1354b0b93a2a63cee1f84Virustotal results 26.23% Heodo
2019-12-19DOC_EQ5686439856DF.docdoc 829263c831f1b2b0cec4218df826504150f2b0c15acb1a72e09300d5cf23c115Virustotal results 25.81% Heodo
2019-12-19O_KYI_120119_XDH_121919.docdoc cb85f97a43fcc49c76da83312f8d2eeb134f4802d0f52420856fb219d76c9dc3Virustotal results 21.67% Heodo
2019-12-19ST_TY4661935514GN.docdoc ea8762cde8721bcd9d366dd2c0cae94ce0ec0f44a624b76335c464d49d368d96Virustotal results 22.58% Heodo
2019-12-19F_0QZYAN77C5.docdoc 2922cd85282f4ab008fbf22435c81ca09a98f863290f665b23c299718995369an/a 
2019-12-19ST_3L8URFYFI7.docdoc dfde887979e2a371477ada84d0cecb56737421b00cb048f0186ab16146f11fccVirustotal results 22.95% Heodo
2019-12-19RP_EZ23WMCZQ6G.docdoc 22461874b83b6287baadcf227b2e495c257af92469d2ac02f98270dbc3fca8e1Virustotal results 21.31% 
2019-12-19DOC_4203000648481.docdoc 8ba8ffda40ada4cc52a7a12e94d64b4602f9daa03480cc523c1c0709608e5597Virustotal results 31.03% Heodo
2019-12-19RP_66151657.docdoc eece617e68c6bd59cba0abfe3a92b1bd28f333ded755fdeecdf32aa5d9369d44Virustotal results 30.51% Heodo
2019-12-19INV_01497853620.docdoc 43cf36bece6360c16a5c550fa8a8d5a8bc1520b790e42c2c3b00b5fdb357bbe8n/a Heodo
2019-12-19SW_PO_12192019EX.docdoc 622cc10ac3d49b4985fbbef6507bf4ba9e03cda3423166fa7b5d81f0c6bddec5Virustotal results 24.59%