URLhaus Database

You are currently viewing the URLhaus database entry for http://infitdance.cz/ubiks365kfjwe/closed_module/close_forum/7h1ojncpb6io7_uu83ywxv/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:289102
URL: http://infitdance.cz/ubiks365kfjwe/closed_module/close_forum/7h1ojncpb6io7_uu83ywxv/
URL Status:Offline
Host: infitdance.cz
Date added:2020-01-15 14:36:05 UTC
Last online:2020-01-16 10:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-01-15 14:38:04 UTC to abuse{at}savana[dot]cz)
Takedown time:19 hours, 31 minutes Good (down since 2020-01-16 10:09:52 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-01-166544435-575931784.docdoc 5c7211462187dbb4e5abf21ee9e5a05a3c25e6f516a271fa6cce643b806a5d4eVirustotal results 24.19% 
2020-01-16126491.docdoc fd10ac0355308d4f45fa5a35b0f6c729c5a507258de0a74653c9cfa3d6cec96bVirustotal results 21.67% Heodo
2020-01-16771220.docdoc 52b8ee16a9fdd2028a27ec9ba13c06aba711b407b8e6f9310d1598cf4117bbdcVirustotal results 45.16% Heodo
2020-01-16573.docdoc 72d879cf6a283602966f151dec323a7b02e19627aca02a4e3550863c1e54c76cVirustotal results 44.26% Heodo
2020-01-16793514_5562.docdoc 881b837b4f8b743627ade4703cf5e6fb97eeb788212f253c65db3ed2d097375fVirustotal results 47.46% Heodo
2020-01-16Untitled 3409-1501600.docdoc a37fa54831fec3fbad89949009700bc427feffbfb745baf310cad7cd5196381dVirustotal results 43.55% Heodo
2020-01-161052942065.docdoc e2a9d9016c8575cc113654642aa970a6f3e13381a5d2f57aa4974f5009d51ba0Virustotal results 44.07% Heodo
2020-01-15UNTITLED 960879.docdoc 0be4320540734a39e0818810123c7202ea89e28cd8bf0a28c984bf0e58ab9689Virustotal results 40.00% 
2020-01-15Untitled 70987.docdoc 0dce7996d8fb1617ac09efd1125611ee679f96a6b1089fa6e2696a2ae84a726fVirustotal results 33.87% Heodo
2020-01-15Untitled_7364246.docdoc dba6e87c2a3ec66dcb501092196f225195379c1eb31cd986c01e0874f633966aVirustotal results 33.87% Heodo
2020-01-15FILE.docdoc 2853b45864dd97b3be97f9acfcc6be83c6024d9b4e5b48d6b56a8c622e106b5eVirustotal results 32.26% Heodo
2020-01-15attachments-2170.docdoc 7f65f1308b3b95febdbf94d1a72b3d6d4f155c391aac69222ebf649a48b0fda4Virustotal results 39.34% Heodo
2020-01-15UNTITLED.docdoc 498ba73b01d20bf622b233b774f02d1f612e4ac63f2a7147e50219cd2ca14a12Virustotal results 35.48% Heodo
2020-01-15Untitled_007370135.docdoc 0c7825c80066650f70b7c1f56d287aae552fc2da9e2312e59df2543dbe55637aVirustotal results 32.79% 
2020-01-15attachment.docdoc 63665d74c67914af0867a9cf3992a2f449b5e7722b62a924c5c9e61ca5615478Virustotal results 26.23%