URLhaus Database

You are currently viewing the URLhaus database entry for http://rjhs.albostechnologies.com/cgi-bin/multifunctional_zone/individual_KFXuFT1_T0hFjc2wNN3MdR/QKk61NGJ_mg3KlJ5H3auIp/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:288774
URL: http://rjhs.albostechnologies.com/cgi-bin/multifunctional_zone/individual_KFXuFT1_T0hFjc2wNN3MdR/QKk61NGJ_mg3KlJ5H3auIp/
URL Status:Offline
Host: rjhs.albostechnologies.com
Date added:2020-01-15 05:17:07 UTC
Last online:2020-01-28 09:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?):mail Yes (Ticket DCU002246469 created on 2020-01-15 05:18:05 UTC)
Takedown time:13 days, 3 hours, 44 minutes Bad (down since 2020-01-28 09:02:51 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-01-17823-844477818.docdoc 823311045ac1c690b8cb26697c04f1debaf3121720b946a7eb1cc2999d302a50Virustotal results 44.07% 
2020-01-1737522.docdoc a0f17f80ce80691a533fe067a73e277790233ca5364620f6aa819e0f4e59b5d9Virustotal results 42.62% Heodo
2020-01-17Untitled 8250.docdoc 6869e0e17bfecfa73511915e8a93d1a0d31a2cc85fd41c15879dba1825fd0d0fVirustotal results 37.70% Heodo
2020-01-17Untitled 722697_6612.docdoc 4540d13474d9a5d7586a40a104739adf516fcf2cd77ab0ce4a2e8ccd8570df61Virustotal results 36.07% Heodo
2020-01-17Untitled 700874_261.docdoc 64b3152bd236d1cbb372afa6060de02a1ba83eaa0c88a5348e93cbf5f9785151Virustotal results 35.48% Heodo
2020-01-16075093.docdoc dea447993b83d0040b327b7bca1562be3895ff66b4e5b4abea62b9ac7ffa547aVirustotal results 36.67% Heodo
2020-01-166495495.docdoc 5b5fc12126eed77880537114373507d05bd137495a2a431d504b63de952c5851Virustotal results 36.07% Heodo
2020-01-16828486-97199390.docdoc 90a3beebaa0854035394ebb503a93b46b7858f539ac30bd19e1af068fecee85fVirustotal results 34.43% Heodo
2020-01-160253546727_958.docdoc 7acf0416530d3d66ae6cde15921faf920b2143c3fe981f1f3823af0f3112310dVirustotal results 33.90% Heodo
2020-01-16Attachment 52913681.docdoc bfca91d7d20bca7cc74ca24032dd667a3b58d1b08195279aed4d02d96cc80d7dVirustotal results 30.65% Heodo
2020-01-16622.docdoc 6ab08d34634ed795167bd4958ff7d1eb30025d103150d61406c1ae39394d4f76Virustotal results 27.87% Heodo
2020-01-1624593-764851.docdoc 5b2a0117af3d95245f6c43ef539fbd170c31ccea1fe3a02d55e87e7fc761e2e0Virustotal results 28.81% 
2020-01-16Attachment 65723-894252.docdoc d01121be7f7eb193a85d9ba14596730d3d33089f5c368501a15b89dd095b803bVirustotal results 24.59% Heodo
2020-01-16820.docdoc 01b069673973506bb9c35db2747193e2b4e7b231f1d6fa99b200341bee58c47dVirustotal results 26.23% Heodo
2020-01-16Attachment 1300.docdoc 41a33df5428a9b69eb9ca7bbed3dd8d8776d2243cf92c3ca20d20ff0745831c2Virustotal results 24.59% Heodo
2020-01-16005-7523126473.docdoc 058abfe0e47582efbe8082a02acb54eec587373096ba71b4f00150553e29a7faVirustotal results 24.59% Heodo
2020-01-168681-0832622825.docdoc 35ada14e088a2eb8a39beda6c669b97d500b78bb66d3a57c74e39d1f3848fb51Virustotal results 26.32% Heodo
2020-01-16172.docdoc fd10ac0355308d4f45fa5a35b0f6c729c5a507258de0a74653c9cfa3d6cec96bVirustotal results 21.67% Heodo
2020-01-16906112355_5501.docdoc 52b8ee16a9fdd2028a27ec9ba13c06aba711b407b8e6f9310d1598cf4117bbdcVirustotal results 45.16% Heodo
2020-01-16Untitled 418687-183752.docdoc ced84ccc882a33b61611d227e8b21ca4b67d9970af737ed7f3a8c32e41ad835eVirustotal results 45.90% Heodo
2020-01-16Untitled 7970710.docdoc 881b837b4f8b743627ade4703cf5e6fb97eeb788212f253c65db3ed2d097375fVirustotal results 47.46% Heodo
2020-01-163926.docdoc df5ac7938838d52c0cae9fba928e85535e98dad36ef70be26a592926c7291c50Virustotal results 44.26% Heodo
2020-01-16Untitled 3207349_5150.docdoc e2a9d9016c8575cc113654642aa970a6f3e13381a5d2f57aa4974f5009d51ba0Virustotal results 44.07% Heodo
2020-01-15Attachment 66596.docdoc 0be4320540734a39e0818810123c7202ea89e28cd8bf0a28c984bf0e58ab9689Virustotal results 40.00% 
2020-01-15Untitled_164401446.docdoc 9057d1c59e76ba1bd1ea1a13f8eec123e85d1f8f51e1967d5b360ede52593ba2Virustotal results 33.87% Heodo
2020-01-15FILE.docdoc dba6e87c2a3ec66dcb501092196f225195379c1eb31cd986c01e0874f633966aVirustotal results 33.87% Heodo
2020-01-15Untitled 6038242.docdoc 2853b45864dd97b3be97f9acfcc6be83c6024d9b4e5b48d6b56a8c622e106b5eVirustotal results 32.26% Heodo
2020-01-15FILE-273 9829151.docdoc 5a444bb7248957c2b190c22b974bb1d24c9d8c6b97f8467c1939c9addefaf35bVirustotal results 38.71% Heodo
2020-01-15Untitled_file 635540_99824.docdoc 0fb50b5b206f00dd7262c5c93442db0ceae46f68721a7ed6f20c651af7bdd5a6Virustotal results 35.48% Heodo
2020-01-15Untitled_file_9348.docdoc 0c7825c80066650f70b7c1f56d287aae552fc2da9e2312e59df2543dbe55637an/a 
2020-01-15Attachment.docdoc 39bfeeabcf77b494d068ef3ac49576ebf99b16723fa1facf76e5b0b1752d99b4Virustotal results 30.65% Heodo
2020-01-15attachments 5215091.docdoc 2e08996c6b2e945284298d12fa32aa2f9095d766e0b2e67f6f3b8e07ee541810Virustotal results 25.00% Heodo
2020-01-15Untitled_707561.docdoc 98bb0f81197453d87b17ace9204d09b4fd741c54e3791545ece0ecbf0e70a07dn/a Heodo
2020-01-15Untitled_83788_063651305.docdoc 789f9210cab6cd5d82f2eb8839d8f8681a18cd0e7cc05d4871ee30adf22833eaVirustotal results 22.95% Heodo
2020-01-15Untitled_file-87063016.docdoc 609637f33b697bf3cf03c6198e03538893f491cef1aa0894fe101dae3bf4b67dVirustotal results 18.03% Heodo
2020-01-15Untitled 96036422.docdoc 2643b7c39e5ee1c738ff00da841b165c9db63557280f78bdcec21ae5443ca352Virustotal results 18.33% Heodo
2020-01-15UNTITLED 994894 593.docdoc c758eda50e69cf30766e229c8a0e31a6ffd61ce8c06ccce6be7448668b19b002n/a Heodo
2020-01-15Attachment_321.docdoc 1fa6b7a7605dc661da0153aeb358bb43dece920fd742c3dd961919856a5fa69aVirustotal results 36.67% Heodo
2020-01-15attachment.docdoc 6f72f0f4da8067274f2690f751cbf1585cc4a53ff940fa49d40e398c7812ef29Virustotal results 33.87% Heodo