URLhaus Database

You are currently viewing the URLhaus database entry for http://argosactive.se/engl/8hvtz_4ifymkbliqdj12c_resource/security_area/fl4eazm4di6ijxva_wu6tw3v5ty7y/ChristmasCard/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:273336
URL: http://argosactive.se/engl/8hvtz_4ifymkbliqdj12c_resource/security_area/fl4eazm4di6ijxva_wu6tw3v5ty7y/ChristmasCard/
URL Status:Offline
Host: argosactive.se
Date added:2019-12-19 21:17:17 UTC
Last online:2020-02-11 11:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2019-12-19 21:18:05 UTC to drift{at}binero[dot]se)
Takedown time:1 month, 23 days, 13 hours, 59 minutes Bad (down since 2020-02-11 11:17:55 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-01-30n/aunknown 9712cc3a3011511550aa98faba8a2b15c9c12442e93722447e6f733c9c2e381fVirustotal results 0.00% 
2019-12-21correct duplicate_626366.docdoc 1aadecae9e168d092eb93dbad3f0473f5c2c11233263ed2ace1269ae81743868Virustotal results 41.94% 
2019-12-21final_instance X416014.docdoc 100ef3eaa20f4e6bc17de7448e4352a84784d9d8ac61b930e401c587b13fcf60Virustotal results 37.10% Heodo
2019-12-20release_BSS81142.docdoc 76f2c4ce954bae527c898aed21e3dce200792a97dde4f23d62d82d29ef282793Virustotal results 32.79% 
2019-12-20part 277991279267.docdoc 399194bf5a65f66bf7d130c1b73d5c5fd4cac3743ceb388986e338a04725bceaVirustotal results 27.87% Heodo
2019-12-20correct-rep_70o3p5o3.docdoc 0a430db8f97c853692ab17929306a7a3ac9523448c878e51c0fe7a1665833f24Virustotal results 27.87% 
2019-12-20relevant_release D88807-731348627.docdoc 8ab0062b0f2ef3962a8a32c49b92c3da0166b5150d5edb37aae325f2a54078a3Virustotal results 32.79% Heodo
2019-12-20relevant duplicate ZZ81411358146.docdoc d4695b412365970f3061a9b994950dfe0309bb4c7bcbdc99c384c02026faa1d7Virustotal results 29.51% Heodo
2019-12-20newest-469qm9m7om06m.docdoc e10256aa8460c9c6df046fee0c72c6d41130ea4ff241d3f85eb707d89b812225Virustotal results 28.33% 
2019-12-20final statement-12202019.docdoc 889a682dbc3d28cad3bef8dccaf916c1076c8380ad56c008992ecf7baf32d354Virustotal results 25.81% Heodo
2019-12-20Christmas_Congratulation_Card.docdoc 38ccc50635da609242ef8381984b03bd8fa7e79e50c8d62467f8b5e5533b12cfVirustotal results 26.23% Heodo
2019-12-20correct-release 66033.docdoc 51769ec4d4a32038ae94386128813f3d8d3f9b4e5abd02e596758ca9e2fc69bdVirustotal results 22.95% Heodo
2019-12-20info-4487335591.docdoc 5ff89563f185b55eb05da2f55cf8749cc90c65780af138ab2f4e317a40b8b138Virustotal results 22.92% Heodo
2019-12-20last_duplicate_GRR30089648310.docdoc 0d24eb3bc04dd6a7df975e688b8fd13fb4c325e027327c7c278f2ce0b2350f4dVirustotal results 22.95% Heodo
2019-12-20final-file q3omn88.docdoc db1b7614f7990cf6a79141f12cb65d47eae15099ee14be39f8cfee9872b1bd02Virustotal results 22.58% Heodo
2019-12-20correct release-KJO43421.docdoc e7f3d38e909a25fe37d40452a07b925e8777c017e1a9cfb65b8a637c14f37bdeVirustotal results 38.33% 
2019-12-20new-release 12202019.docdoc 4e0e485da37a319d5ea48647ada706b0e98f9927be8f911cbb7e2e0d088102a5Virustotal results 35.48% Heodo
2019-12-20relevant-file 46961114478.docdoc 1491062b33e78edbfd429228e32d2682f4dd064689305f7322dce39b5db8fcadn/a Heodo
2019-12-20relevant-version 12202019.docdoc de8d2fec05ff4e86930f2de6036d7a040532c7cf0a495f655b91690ed9351630Virustotal results 32.26% Heodo
2019-12-19bill 12_20_2019 4834104.docdoc 0354e0ed30431f79101163db4d6e645fec1a7cb2a951263043f0482aaf3e78d6Virustotal results 32.26% Heodo
2019-12-19GreetingCard.docdoc 99b525c742fa2566480a16591b54a9c41f620cc8cd6090498cf2c4fdcd18b2a3Virustotal results 32.26% Heodo