URLhaus Database

You are currently viewing the URLhaus database entry for https://a1college.ca/zcrb/FILE/ee-08326650-7553-bpvy-fnz8vt/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:294454
URL: https://a1college.ca/zcrb/FILE/ee-08326650-7553-bpvy-fnz8vt/
URL Status:Offline
Host: a1college.ca
Date added:2020-01-22 05:05:07 UTC
Last online:2020-01-27 22:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?):mail Yes (Ticket DCU002266696 created on 2020-01-22 05:06:04 UTC)
Takedown time:5 days, 17 hours, 2 minutes Bad (down since 2020-01-27 22:08:27 UTC)
Tags:doc emotet link epoch2 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-01-24BAL_PO_01242020EX.docdoc ffcc0e55a0f4f8f0c3e8a73ace53ecb741b1831f7b8ef2dd2b607087a5d5e0d0Virustotal results 47.54% Heodo
2020-01-24INV_038734122284100005.docdoc 2c4b0f8d4c1eaa6adbac77b21a05ff32242cab116fc252c21c67fc0ab51ba110Virustotal results 46.77% Heodo
2020-01-24FILE_VJQ_010120_DXU_012420.docdoc 423b7b9ea002165c61b8db1259dd9bbad8a0dae6fc5401a591d206e01c4cbe05Virustotal results 43.75% Heodo
2020-01-24SW_KMR_010120_IZN_012420.docdoc a5a83502716a69849058507848fe4dd4f3282eafae03e6fffb7628d453f2966eVirustotal results 44.44% Heodo
2020-01-24REP_WK8454317585KY.docdoc ddf866c230e59d9ca832eab360303767357ba3355a1cdc0509e069fa3234898aVirustotal results 41.94% Heodo
2020-01-2312428053.docdoc 0722f8049954458b37f5abac8260f73b904d3cc22b749cd8f17136ce6640de34Virustotal results 36.51% Heodo
2020-01-23FILE_SM35UQ3U3CMFJ8.docdoc 44383ba280209b37ce51bd1acbbedeb0ce8a381c7df3cae05f3a624b75bad529Virustotal results 39.06% Heodo
2020-01-2351346061.docdoc 86eec0c136bf128a3ecff3448b635759a3f1a59bd572354ee242b6104910bd10Virustotal results 30.16% Heodo
2020-01-23BAL_1347225157312.docdoc fc252e63169ae12bd304670fd8a56a969b89a721a64477c2f5095e9c453dc9f1n/a Heodo
2020-01-23RP_VZF_010120_OCR_012320.docdoc 1f81a8909d5f34a4c9561fbff1c8d28146fab6c2035ef4d7f8be8c11eeaf019dVirustotal results 30.65% Heodo
2020-01-23ST_JSY3W9WW0ZKM8.docdoc f66076ecc005f5bba5bf8dbe3c7f85fee5b3cb20a0b19f18f316d94ce160888eVirustotal results 32.79% Heodo
2020-01-23SW_UA6YDFMSDVIGA.docdoc 6b852e2457846b25fbe15b2679508ae82057f6e75873b3347b26c395ea2c3dffVirustotal results 31.15% Heodo
2020-01-23n/adocx a340d8ba5f7367085e1773a5d0349ecadd71bd43d775d96d697126bf76b76d4cVirustotal results 25.81% Heodo
2020-01-23RP_YSZ_010120_DJP_012320.docdoc 590f0a342c24b79d0de79d296f97e76a596a41763e8c24844af72b974d60a629Virustotal results 26.56% Heodo
2020-01-2379640593.docdoc 3dddeb95fb091ba145a2b0705117b8ecefdcf833024674c193dbe2ccbc4c6bd4Virustotal results 20.63% Heodo
2020-01-23131953497908.docdoc 79950a40bf62dac08fd1adbb9c8aba2b8db0e05de9829d485ac3a51302d546a8Virustotal results 20.97% Heodo
2020-01-23XN_NG6053827156XQ.docdoc 87375ae81a73bb3dc7f704b3e7e62e3e496b286fa24c145831637953f4bcd132Virustotal results 20.97% Heodo
2020-01-23RP_1EV7S5HU8T12.docdoc 9cd39ce28644fb0f4e0e7dad49fed36f777b06e6950bcd98c30eb410e42cfc5bVirustotal results 20.63% Heodo
2020-01-2397307733.docdoc e50ca42cece8459c5ed1bf0713f580775a5bea5fd9384b1e5f284e52f2db08b1Virustotal results 20.97% Heodo
2020-01-23A_62741622.docdoc b81a60006f912bcf5104d693656d3f0fbba61317a80e61acfcb081eb86db1fbdn/a Heodo
2020-01-23M_RST_010120_NCE_012320.docdoc 9af2280771f435166b53ce4682f2cedf9072877a0fd338920e1a7ae4434c47caVirustotal results 30.16% Heodo
2020-01-23M_RST_010120_NCE_012320.docdoc 9af2280771f435166b53ce4682f2cedf9072877a0fd338920e1a7ae4434c47caVirustotal results 30.16% Heodo
2020-01-23FILE_IUBL1L46UDYVA.docdoc e63aa1c3401d847d86e7d7a0183b1b09932060991feb79d6e2b775a27f30c36bVirustotal results 30.65% 
2020-01-22n/adoc 17ebf0d892909e22d238708812b6adbcedb480990d317453d25e67a374225f15Virustotal results 26.67% Heodo
2020-01-2288418659776784324971.docdoc 65a1628ef9bc3362fb43fdae7776948360a3fe80ae3fb6f8f03a5d2a68e8694dVirustotal results 27.87% Heodo
2020-01-22REP_ZSN_010120_NVX_012220.docdoc 134850341519ad670ef48fcddc9e953e257c461ddb9e870b15510d02269a5e5dn/a Heodo
2020-01-22FILE_IEG_010120_JHE_012220.docdoc 96e71ebc8855336f1ff5006afcd5167486abf09cebca7b194da01a83388a9053Virustotal results 21.43% Heodo
2020-01-2211895847.docdoc d173dce258b2b69dba7948268341c6c03babaa25b88b3a66e8ab3d1f08cc97dbVirustotal results 20.00%