URLhaus Database

You are currently viewing the URLhaus database entry for http://www.ftpftpftp.com/calendar/multifunctional_pLAXtV_RzLu04FMjtM/special_warehouse/CWzFbgRHV_qsHhs2L9KgHu/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:288586
URL: http://www.ftpftpftp.com/calendar/multifunctional_pLAXtV_RzLu04FMjtM/special_warehouse/CWzFbgRHV_qsHhs2L9KgHu/
URL Status:Offline
Host: www.ftpftpftp.com
Date added:2020-01-14 22:46:13 UTC
Last online:2020-01-24 23:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-01-14 22:48:02 UTC to esabuse{at}hkbnes[dot]net)
Takedown time:10 days, 0 hours, 39 minutes Bad (down since 2020-01-24 23:27:31 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-01-16UNTITLED 20520-9674591.docdoc 0bb667859f35e9606b929fc129f045343481b1b7c72662a2b4e1d2a2dc778ec6Virustotal results 36.07% 
2020-01-16621668823_118.docdoc 5b5fc12126eed77880537114373507d05bd137495a2a431d504b63de952c5851Virustotal results 36.07% Heodo
2020-01-16723569-8088192655.docdoc 90a3beebaa0854035394ebb503a93b46b7858f539ac30bd19e1af068fecee85fVirustotal results 34.43% Heodo
2020-01-16Attachments 4301635034.docdoc 7acf0416530d3d66ae6cde15921faf920b2143c3fe981f1f3823af0f3112310dVirustotal results 33.90% Heodo
2020-01-16Untitled 64962.docdoc 889cf94d7f391e3a01900604efbf7e91709771a38594159de1dadc94553a5b26Virustotal results 32.26% Heodo
2020-01-16UNTITLED 9139-59381518.docdoc 56503e659d69adad5ac525757b9150c95dd7a7f9a7eb202cc0adf485cb72646aVirustotal results 29.51% Heodo
2020-01-168851-8089498.docdoc ca0c05bfef01f7d22555fe041f72e55d439d8fef94ff24ddae27f1e34281543aVirustotal results 27.87% Heodo
2020-01-16705-3683694402.docdoc 96518ce359be4c8105cedaa61d48832d40eb57910fa69a710e010a1ad1b8d16dVirustotal results 28.81% Heodo
2020-01-169761096_822.docdoc 689f66009a9f3ed42c17d67f4d86d5f60ae80785512aa190e601297c9c255d6fVirustotal results 25.00% Heodo
2020-01-16563636_386.docdoc 01b069673973506bb9c35db2747193e2b4e7b231f1d6fa99b200341bee58c47dVirustotal results 26.23% Heodo
2020-01-16Untitled 8910644.docdoc 41a33df5428a9b69eb9ca7bbed3dd8d8776d2243cf92c3ca20d20ff0745831c2Virustotal results 24.59% Heodo
2020-01-16UNTITLED 0852177924.docdoc 058abfe0e47582efbe8082a02acb54eec587373096ba71b4f00150553e29a7faVirustotal results 24.59% Heodo
2020-01-16Attachment 183641.docdoc a4457e9d33f338913da7f6a2360e29530eaf2cd690d0078b5a107ec42d1757d6Virustotal results 26.23% Heodo
2020-01-1656537.docdoc fd10ac0355308d4f45fa5a35b0f6c729c5a507258de0a74653c9cfa3d6cec96bVirustotal results 21.67% Heodo
2020-01-16166576_0179.docdoc 08258403e9f6dedf233554f21865bd22b4aa6941973c9268e933bb39a335d1f3Virustotal results 45.16% Heodo
2020-01-1646193-451110.docdoc 72d879cf6a283602966f151dec323a7b02e19627aca02a4e3550863c1e54c76cVirustotal results 44.26% Heodo
2020-01-16Attachment 7639.docdoc 7204a25ba4b77bff66469e40fa49147a9678f02340c621c739a96f7553e0d70cVirustotal results 45.90% Heodo
2020-01-16635736301.docdoc a37fa54831fec3fbad89949009700bc427feffbfb745baf310cad7cd5196381dVirustotal results 43.55% Heodo
2020-01-16UNTITLED 041907.docdoc db3d2fa04f5982cb16e5f797f9e7c2b7247fd8ee9fe0ae3f6aa64ac5ea286d7fVirustotal results 42.62% Heodo
2020-01-15UNTITLED 8924249.docdoc c5ede9120a7219c5db64d4bd1d28da88ecde710c606892fce486b6771b8f7e41Virustotal results 42.62% Heodo
2020-01-15UNTITLED-5600564-7082607.docdoc 78616833085cfea2eb679516f1d7f7a22c930463f5d32622b2b5f3af4474021bVirustotal results 35.00% Heodo
2020-01-15Attachment_59640 4542659.docdoc 2a72d798a8c83d6eacf6b07c27ff4774da7d2b2a8b5e469cffaf22ac22a061a9Virustotal results 33.87% Heodo
2020-01-15Untitled.docdoc 35a6c928ace899581d72bbb94aecb90fc54a9ef85b852a12cc77ec1a7fd4a239Virustotal results 32.26% Heodo
2020-01-15Untitled 8793582.docdoc 5a444bb7248957c2b190c22b974bb1d24c9d8c6b97f8467c1939c9addefaf35bVirustotal results 38.71% Heodo
2020-01-15Untitled.docdoc 498ba73b01d20bf622b233b774f02d1f612e4ac63f2a7147e50219cd2ca14a12Virustotal results 35.48% Heodo
2020-01-15UNTITLED.docdoc 0c7825c80066650f70b7c1f56d287aae552fc2da9e2312e59df2543dbe55637an/a 
2020-01-15Untitled_8330746333.docdoc b7c8a3e40105bd185fc5919dedc336a0f6c9a193ba36312490ca17aa2bb7d45eVirustotal results 30.00% 
2020-01-15Untitled_4392718.docdoc 2e08996c6b2e945284298d12fa32aa2f9095d766e0b2e67f6f3b8e07ee541810Virustotal results 25.00% Heodo
2020-01-15Untitled_9021-8116525.docdoc 98bb0f81197453d87b17ace9204d09b4fd741c54e3791545ece0ecbf0e70a07dn/a Heodo
2020-01-15Untitled 28568527.docdoc 789f9210cab6cd5d82f2eb8839d8f8681a18cd0e7cc05d4871ee30adf22833eaVirustotal results 22.95% Heodo
2020-01-15attachment.docdoc 609637f33b697bf3cf03c6198e03538893f491cef1aa0894fe101dae3bf4b67dVirustotal results 18.03% Heodo
2020-01-15UNTITLED-235.docdoc 2643b7c39e5ee1c738ff00da841b165c9db63557280f78bdcec21ae5443ca352Virustotal results 18.33% Heodo
2020-01-15Attachments-667997333.docdoc c758eda50e69cf30766e229c8a0e31a6ffd61ce8c06ccce6be7448668b19b002n/a Heodo
2020-01-15Untitled 47456.docdoc 1fa6b7a7605dc661da0153aeb358bb43dece920fd742c3dd961919856a5fa69aVirustotal results 33.33% Heodo
2020-01-15Untitled_023.docdoc 7295c628c5a8c7d747f2a1108316b2c182034558ccdabc495e8a4f5beaf5771cVirustotal results 31.15% Heodo
2020-01-15Attachment-307-9807035.docdoc 9362ae0daf8aecc19d3b8e7935cf1073616730a03ed86f12d5389b13f5ca2fa5n/a Heodo
2020-01-15Untitled_file-832574.docdoc 87c8765523549bffda97b2026e7d94acad88047515f157001ca32b3b7c778f54n/a Heodo
2020-01-15Untitled-3439715572.docdoc abbac4cfe051493dc1f2e9622f16494e6dddd3bea503031cd4d178fadf50593eVirustotal results 31.15% Heodo
2020-01-14Attachment_642378224.docdoc f1c75c60b453911b2c8e42ed3ca3bcd53aaa4d43edec622faea67bb82c87d6f6n/a Heodo