URLhaus Database

You are currently viewing the URLhaus database entry for http://arteusvitavky.cz/domains/Overview/aj2xxa-1311381-0949575-vpqyz-tcso47mit16/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:293794
URL: http://arteusvitavky.cz/domains/Overview/aj2xxa-1311381-0949575-vpqyz-tcso47mit16/
URL Status:Offline
Host: arteusvitavky.cz
Date added:2020-01-21 17:00:03 UTC
Last online:2020-01-23 08:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: spamhaus
Abuse complaint sent (?): Yes (2020-01-21 17:02:03 UTC to abuse{at}wedos[dot]com)
Takedown time:1 day, 15 hours, 22 minutes Poor (down since 2020-01-23 08:24:33 UTC)
Tags:doc emotet link epoch2 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-01-23FILE_18376529.docdoc 7d7dbd503462905ff0336f5bce30008d5e60a05850e892b91e1b5ecdbb220854Virustotal results 22.22% Heodo
2020-01-2320YAU5MR0L3Y5DP.docdoc 369488460f5d15f277924ca8f7c9da9046f082c111d528e799ea1d2e9407c794Virustotal results 21.88% Heodo
2020-01-23BAL_TZ8790119993XG.docdoc 329cef98b814d926a6f4a2c9635fce3e09e91e9545665914971007acfa9eddbfVirustotal results 30.16%Heodo
2020-01-23L_K56FN42HQYWR.docdoc 9e417d5c58ae969ec35f92ad1143eb6c4aaf1928b9e9b86fa5e893fe6c007f62Virustotal results 31.15% Heodo
2020-01-23FILE_PO_01232020EX.docdoc e63aa1c3401d847d86e7d7a0183b1b09932060991feb79d6e2b775a27f30c36bVirustotal results 30.65% 
2020-01-23ST_GB6675180387IJ.docdoc c902819826aded735fa4ea8025d726e7b868dbee374343fde8e6b5a3fe6733e0Virustotal results 28.57% Heodo
2020-01-23HR8722602959WR.docdoc 57f80688fb69b44c38dc1526796d523074e95761263f1c762f83cbb491b369a6Virustotal results 28.57% Heodo
2020-01-22DOC_6236513512.docdoc 29487cc347b96694240c5003b2fde7f8e509ac63ea9365249aa1a23c122502ceVirustotal results 27.42% 
2020-01-22ST_78920629.docdoc 72bd6822c6587d7476c2bce9cbb767b7f392c8c960c6a5f08b75f5ef154f6a2aVirustotal results 27.42% Heodo
2020-01-2238146192989714571683.docdoc c551f97351c13e0f158f87d3c11bbdb5b9f2b2b10576509755d225e3f3bf46c7n/a Heodo
2020-01-22LAOU_50837910.docdoc 696eb463a71f1e49e463dde08cd523507439d5a8b27bc5adc7a95c5fc1746816Virustotal results 27.87% Heodo
2020-01-22DOC_PO_01222020EX.docdoc 09ba2c714fe341925320bc402db84ab428a6d8eac27a70d68cd6cf9a0ca714cbVirustotal results 26.56% Heodo
2020-01-22BAL_4893614167165767239301541.docdoc 069ef10afe63ac6665e7b1fe0caa7982f224f4c8738b455a07050d44e21ec0b7Virustotal results 27.42% Heodo
2020-01-22SW_PO_01222020EX.docdoc 5f685d49710e07b7bf6d016e2e75676bcba151a6f2af4c7f08f826261f7fce75Virustotal results 28.12% Heodo
2020-01-22EJ9471050729NM.docdoc 074ec6f9a2776114bc1d9e2da2250b73417843b3357ada6f17a5f4b606ab9a91Virustotal results 31.15% Heodo
2020-01-22DEJ_010120_ZOX_012220.docdoc 5be3e93b04906a447233525f99dffcce0d42f3559aa4ecfb866c92b5fc7f6671n/a Heodo
2020-01-22WQ_I4PYXLVANAKK.docdoc a8e86ce1edef7bad9f725d8f9b127d50d0a80a4e3477a2294f61bd2be001bfc7Virustotal results 31.75% Heodo
2020-01-22BAL_UCB6OE1YCJ9.docdoc 2e5f9f296d5addeabf6f8caa5e1e989363265c1ca3cba2201a933e734bcf8635n/a Heodo
2020-01-22SW_32204539.docdoc c4b215a59659e1c91fffadf971f2d9f6a0865a757e23c4ded707e894927c7837n/a Heodo
2020-01-22REP_89799144.docdoc 78ccf76669f5a2bee9b21435419ae9a674d35c1e68a75f44f943b9c71ba7c41dVirustotal results 26.23% Heodo
2020-01-22ST_PO_01222020EX.docdoc 65a1628ef9bc3362fb43fdae7776948360a3fe80ae3fb6f8f03a5d2a68e8694dVirustotal results 27.87% Heodo
2020-01-22FILE_22931048.docdoc f4537190336568e84c9ba01fcf8b21c50da4bc7b0eecaafd25acc762bbb1d1dcVirustotal results 26.67% Heodo
2020-01-22PO_01222020EX.docdoc 96e71ebc8855336f1ff5006afcd5167486abf09cebca7b194da01a83388a9053Virustotal results 21.43% Heodo
2020-01-22RP_63961282.docdoc 6386c6fdd8a1eb4f6fc7bf14c51236c53a6d7dc8419ff7add51d3a75c46d3610n/a Heodo
2020-01-220717337788560.docdoc 4608dceeebae9faa5e9e2416bee85509b67e80af4422fb61baec34056ada48d8Virustotal results 20.97% Heodo
2020-01-22PAY_RJP_010120_CHG_012220.docdoc 6dd831fbe1f601834039bd80bbaf9b2bbe45f08d144b5d4ad5caa0e8135df998Virustotal results 20.00% 
2020-01-22FILE_HTK_010120_TEI_012220.docdoc b913bcdc497b6b660c83a30cfc62dd393c53c9a867f3fab997e326e3c8b94a73n/a Heodo
2020-01-22INV_XEA_010120_BBI_012220.docdoc 6321d13c864a5af9a0a39e72120db0999714232489e7bf8461b8a795db19a222Virustotal results 19.67% Heodo
2020-01-21FILE_23765388.docdoc e7cfcc5924207c0384febd2ca4125ab12dc6c893443adf4fecf44f056f3e243cn/a Heodo
2020-01-21ST_ZYX_010120_SEX_012220.docdoc b5d3d28c7cf031aca9149a40e293973df4908b797894f03fbcb558fb2c7878c4Virustotal results 19.67% Heodo
2020-01-21T_6317125878651170462812552.docdoc 4a5b9b9742ab79ec97f03a713d79186193ea89fbdce64cc486bdfeb117c7e7bfVirustotal results 19.67% Heodo
2020-01-21SW_ZBT_010120_IGV_012120.docdoc 3971d2f8dad1df7ae025551c02c685cf456405eb7ba164f380e38518f2d228eaVirustotal results 19.67% Heodo
2020-01-21MBQ_010120_BLU_012120.docdoc f8b7610b7621a91b5d28857ea340a864fe7c4b11e544e0a8d55b06130078f520n/a Heodo
2020-01-21PO_01212020EX.docdoc 87f198aab109437e66b753398ed36d61115bcd349c900750ed31b89952b9f3bcVirustotal results 20.34% Heodo
2020-01-21PAY_PO_01212020EX.docdoc 2f2a0cf5f701e2014ef05a565aab080235be85106bd630e67bb5c9e1aabefad5n/a Heodo