URLhaus Database

You are currently viewing the URLhaus database entry for http://www.dobavljaci.com/wp-content/uploads/ybE/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:296483
URL: http://www.dobavljaci.com/wp-content/uploads/ybE/
URL Status:Offline
Host: www.dobavljaci.com
Date added:2020-01-23 23:21:04 UTC
Last online:2020-01-27 09:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-01-23 23:22:04 UTC to abuse{at}A1net[dot]hr)
Takedown time:3 days, 9 hours, 43 minutes Bad (down since 2020-01-27 09:05:40 UTC)
Tags:doc emotet link epoch3 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-01-25Invoice-PM72_72306612.docdoc 983ddd1518361a6f16f1b4f4980f9f8e195ab46794ddb14935f83c5a93781f17Virustotal results 39.68%Heodo
2020-01-25Inv-NC41_2008081.docdoc cc2a02b23102e898d67f5485ed9f922b40b4006521e1ff3d26aeb85195284f8bVirustotal results 38.71% Heodo
2020-01-24Inv ZYJA57_418158624.docdoc 75014b9efcb14fb22591a986fdf636d6106b987d956ebbf793aa91c24dd67dc8Virustotal results 34.38%Heodo
2020-01-24Invoice-5_922427.docdoc 92e56c8d6f6630b9d9bbf2083ea377ae3f9600b6b452ae0740dc18902d49e2a3Virustotal results 32.81% Heodo
2020-01-24Invoice_LEF9_798246.docdoc a83d0f30a2ee74323fb78fd55b642779d7064f8392525e99dfd2bbfe947e2e48Virustotal results 31.75% Heodo
2020-01-24Inv-5_719307845.docdoc f632cc29e85b046da247d72a74114c3d50dec27be7e5bae146b9622e2542e59aVirustotal results 29.69% Heodo
2020-01-24invoice-0_5461811.docdoc c260f6cd5f516c2c4fbfb823ad262a0577d66cdbe77a0e5ba6d5d7277f66fc1eVirustotal results 30.65% Heodo
2020-01-24invoice LZT32_0088801.docdoc 1ed89eda4082db6a63f5763f3b955ebceb2851d10a358546c5f1f6b2145f3905Virustotal results 32.79% Heodo
2020-01-24Inv_6179_612845913.docdoc 3d77b72651e464a5eacd9ec09426f2ed186472e8cd379d628629a6b29be9bd05Virustotal results 29.03% Heodo
2020-01-24Inv-GTGJ2_3363118.docdoc abbfd0b5d7417b224f96c7ed693c2f4cf8549db85c79eeb4fd9f03994ff3eae7Virustotal results 28.33% Heodo
2020-01-24Invoice_RS8099_464030.docdoc 58f4a9350c2c4d061072015bf56382f773719d9d78ad3bba260cece6dce54e54Virustotal results 26.56% Heodo
2020-01-24Inv-342_2985809.docdoc e4db7e7349f371a879dc50766f710ecbe9764269b1cf58ad3e03468a7a5051dcVirustotal results 27.42% Heodo
2020-01-24Inv-1795_5585133.docdoc 91716865af6c80fca3ecac4d0d46ce403b4e7374fd8b651d19a1b98d4ae55b93Virustotal results 27.87% Heodo
2020-01-24INVOICE-5311_859896599.docdoc 863f355a4912ee86d8ce6aa0b98ad27034bc55650b9ad5b47e1a3ecc5cc4d90bVirustotal results 25.40% Heodo
2020-01-24Inv_SF64_67560839.docdoc 0410a5d9885db43d1b91eb836ab2e33102eec96ec006db3ac01737fd6e10ca5dVirustotal results 29.03% Heodo
2020-01-24Inv ZJ5618_526940588.docdoc 21ed646e9c73d65b5355a50adb7b3a7b2f6d76b45d4248e2ad2480fd784ee8b5Virustotal results 25.40% Heodo
2020-01-24Invoice_TQII20_078440.docdoc ec33bf8f58aa91fab9e04fe9b8ff924c656ddb9921691b11dbf291dfb37afcd9n/a Heodo
2020-01-24Invoice NS4524_198323101.docdoc 829533600afafde7716701f0ea4bc0cb998fbd85124cda950547315d1c512adeVirustotal results 25.40% Heodo
2020-01-24Inv-XZDQ457_392715559.docdoc 7c181b5800d9b531de9f431cbd6947e93f55ac0e5f6fcad200acf2466f411a8cVirustotal results 49.18% Heodo
2020-01-24Invoice-1973_52690498.docdoc 3019c5713b1eae96e9080ac03f4c948abb9012ec8937fd082bf6f26c9aabbd98Virustotal results 46.77% Heodo
2020-01-24INVOICE-WK98_895660512.docdoc 925fd77e54e7f3919be7b33bad1a622b8b9ddce4492dad8e0afbb11f9084797dn/a Heodo
2020-01-24Inv VL001_963785605.docdoc 0ca26646d4e6d640b628e402fcbf0dc050634baaf8b6468051b29dd30a1cc140Virustotal results 46.77% Heodo
2020-01-24Inv 967_93709387.docdoc 79bfe21092e5b5147666511c2d7755c35fd7698f9210bcdf49a44e5c9677534fn/a Heodo
2020-01-23INVOICE-Y9268_524746000.docdoc 4d65aa1d4d4356e59a68839a7e437a4e3d207e6bf481c90baf4ba6de5b9d0ed4Virustotal results 34.92% Heodo
2020-01-23invoice 394_913600418.docdoc c178793508c9ec1955d363fa70ab41ca7a17928c7445a1594789904e320ce640Virustotal results 29.69% Heodo