URLhaus Database

You are currently viewing the URLhaus database entry for http://www.cancomic.com/newsletter/US_us/Jul2018/Auditor-of-State-Notification-of-EFT-Deposit/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:29903
URL: http://www.cancomic.com/newsletter/US_us/Jul2018/Auditor-of-State-Notification-of-EFT-Deposit/
URL Status:Offline
Host: www.cancomic.com
Date added:2018-07-10 13:56:28 UTC
Last online:2018-09-08 08:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Not blocked
Reporter:Anonymous
Abuse complaint sent (?): Yes (2018-07-10 14:04:47 UTC to hm-changed{at}vnnic[dot]vn)
Tags:doc emotet link heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2018-07-10invoice-20180710-5237518.docdoc d0eca29f940de95765c3d549c6bc02e7986d4a31a2cdedda60d04dcb121636bfVirustotal results 37.29% Heodo
2018-07-10INVOICE-20180710-88759314.docdoc bc54851f2240dafa4dc0e686d5b07b48b6628f241e230718df9595851f6ed1ddVirustotal results 37.29% Heodo
2018-07-10invoice-AOF-9568153.docdoc c1933e48618589d1d5e2ae92fd49cb01908d444e675775d00cb8e49f1d86dc78Virustotal results 25.42% Heodo
2018-07-10INV-2018-07-10.docdoc 53da48a0821a575d2d26dfc02aaff907837c0377ba19c9159bbc35aa95a52fdaVirustotal results 25.00% Heodo
2018-07-10invoice-20180710-04318988.docdoc b61f35838f9bebd42eb1e5bfab38b498df50bf0cb4466ec55e771a3da7c10c06Virustotal results 30.00% Heodo
2018-07-10invoice-013-PCW-6022162/8.docdoc 7da4c73c4a5ee57e4cd954f186c755c9b1dbba3efd16b71128bdf5687cdb5ab5Virustotal results 28.81% Heodo