URLhaus Database

You are currently viewing the URLhaus database entry for http://www.dominicanaapie.com/En_us/STATUS/Services-07-05-18-New-Customer-BC/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:28540
URL: http://www.dominicanaapie.com/En_us/STATUS/Services-07-05-18-New-Customer-BC/
URL Status:Offline
Host: www.dominicanaapie.com
Date added:2018-07-05 10:57:46 UTC
Last online:2018-11-30 15:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Not blocked
Reporter: ps66uk
Abuse complaint sent (?): Yes (2018-07-05 11:00:45 UTC to abuse{at}digitalocean[dot]com)
Tags:doc emotet link heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2018-07-05QP-223358599225600.docdoc ff26649a060dcad53a8361e4137ab831af4c577f5c0ef1faf80dac89fe1ff294Virustotal results 21.05% Heodo
2018-07-05JB-00872421832.docdoc 75089cdcaf29e7215e944c4d3893a7544a017eb0c696ac32440b2e5b1de11205Virustotal results 22.03% Heodo
2018-07-05RT-007717784663830.docdoc 458f13dc3f3efe2c7963c9c9ad56dd73f55ac0db1458a0afc83e8a2cdd937504n/a Heodo
2018-07-05ES-4225494063630.docdoc 2b54cc8a6d5df0ad2c8778ee1d48a059921166f6f69da270338e01f68701d1d3Virustotal results 21.05% Heodo
2018-07-05KO-3064638167002.docdoc 7a8eab39aee51e709a537d2f88740d70c924a9d09c987fb4040c370e81eb7ca4Virustotal results 22.03% Heodo
2018-07-05ZV-296982766974.docdoc 610cf810ec265f5c750129e7a7e8553392e2cc8c0d2c0d65796db642452f948cn/a Heodo