URLhaus Database

You are currently viewing the URLhaus database entry for https://www.francescodammacco.com/statement/hiwyrraee/92sn0v-19110673-411927-su78-mm7x32982e/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:295314
URL: https://www.francescodammacco.com/statement/hiwyrraee/92sn0v-19110673-411927-su78-mm7x32982e/
URL Status:Offline
Host: www.francescodammacco.com
Date added:2020-01-23 00:07:07 UTC
Last online:2020-01-28 16:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: spamhaus
Abuse complaint sent (?): Yes (2020-01-23 00:08:03 UTC to abuse{at}staff[dot]aruba[dot]it)
Takedown time:5 days, 16 hours, 39 minutes Bad (down since 2020-01-28 16:48:02 UTC)
Tags:doc emotet link epoch2 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-01-24PAY_PO5738785281PN.docdoc aeb84982d0e2205706556cb22479f85dda1c429948e28951fbc4016803f50881Virustotal results 32.81% Heodo
2020-01-2478987312281966498441818.docdoc b0efd344f7ae4235cd9cc23987b870711491df21c0faaa0257cc6299907f6970Virustotal results 32.26% 
2020-01-24JT1924764481WY.docdoc 3caac521ef6acdf1ff0b371f5ac76ae8d110ca0eca1eb9e29bb199f166b2aa35Virustotal results 32.20% Heodo
2020-01-24B_PO_01242020EX.docdoc 8388df2859989323c4471518332173373dbd4ef4d8d051f781b74ad808230e2fVirustotal results 26.98% Heodo
2020-01-24INV_8E6ER40YIJL9BX.docdoc e6b5308d22a82173d7dacd05347c79cddd91abb9818625523f0b1d659ae833a4Virustotal results 27.42% Heodo
2020-01-24PO_01242020EX.docdoc 17d0af0278265e68fc7bd551aea53ca47aea8455884650d045407cbddf0d0b96Virustotal results 26.98% Heodo
2020-01-24QZX_010120_DGF_012420.docdoc e848ede38876ef2dedf485fe2818f53dcfc4a4cdd21062ce8ff7a53d2f8e32b1Virustotal results 26.56% Heodo
2020-01-24INV_40524752.docdoc 059d70cb9f95a63944ca0932ea90cec44e20bdd60b0ed2717eb60f69cebcf3a0Virustotal results 27.42% Heodo
2020-01-24SKFB2YMEPHQUW4.docdoc 66f90d5536e1a0de8632e348e3d437ed244887b1b0e241579dbcc92471a705b1Virustotal results 43.55%Heodo
2020-01-24G_776687940914742550527173.docdoc ddf866c230e59d9ca832eab360303767357ba3355a1cdc0509e069fa3234898aVirustotal results 41.94% Heodo
2020-01-23SW_353163353933234291077590.docdoc ac27d95d04263a2986efc527c20d7b2a3b133ceccf089832e227d243dc982607Virustotal results 30.65% Heodo
2020-01-238962656847118632924088.docdoc 329cef98b814d926a6f4a2c9635fce3e09e91e9545665914971007acfa9eddbfVirustotal results 30.16%Heodo
2020-01-23TOY_010120_PKJ_012320.docdoc 4cf7c66884e9b8170e1002c1e8d9dafe4374e442891da9f16da94bed6f8f2d8aVirustotal results 31.75% Heodo
2020-01-23FILE_2468154727964581264.docdoc cf72901c6f393919be6a0bed5ca2671fca36d5705fd639d1722cdfeb3ff93c24Virustotal results 31.67% Heodo
2020-01-23CI_XATEBVJBH.docdoc c78e3b88c08a9425cc9d6043a9d20e85c160e556a37f57f3f2515cb894c33316n/a Heodo
2020-01-23BAL_36640935.docdoc 0e8c14cf56a477e93793b7b50a1c66fb04ea3cd1e9895cba2aecf9a17c7bded9Virustotal results 27.87% Heodo