URLhaus Database

You are currently viewing the URLhaus database entry for https://a1college.ca/ko8pt/4c5rn-lg2b-83282/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:300076
URL: https://a1college.ca/ko8pt/4c5rn-lg2b-83282/
URL Status:Offline
Host: a1college.ca
Date added:2020-01-28 15:38:04 UTC
Last online:2020-01-31 05:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: spamhaus
Abuse complaint sent (?):mail Yes (Ticket DCU002282348 created on 2020-01-28 15:40:06 UTC)
Takedown time:2 days, 14 hours, 16 minutes Poor (down since 2020-01-31 05:56:36 UTC)
Tags:doc emotet link epoch3 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-01-31invoice-OSHB0089_522249390.docdoc 59143f942ffc2f0d43226ecdbc3042d66ba488b6fe44506a5301169d1e6306e0Virustotal results 32.26% Heodo
2020-01-29Invoice 3022_446819.docdoc 5452b9448c3310adaa86f6020c32d6ae4727fce5049f613ad9242e2f35e94effVirustotal results 22.58% Heodo
2020-01-29Invoice-NYF591_5320833.docdoc 41ef384c11051e3b98c409f476aca9a2f5a0433e0cb411f547133b5d5727044aVirustotal results 31.75% Heodo
2020-01-29Inv_94_44720396.docdoc 8f114fa9732298d525aa216d90905f24142f129d79e62500f139a3c09db00fd2Virustotal results 29.03% Heodo
2020-01-29Invoice_GVMN1_8074503.docdoc 70b79f7a9104113770865d6b9495150c39a6d3f9a5f98750ea69871f38ac5566Virustotal results 29.51% Heodo
2020-01-29Invoice VC7_851274.docdoc 8a502f32c4e9b027761b883615a99071262858fe124e0f76a51ee65583ff4c59Virustotal results 27.42% Heodo
2020-01-29Inv 801_1730710.docdoc 7522a47f398818f54f95582e8d122a7bbd81f69c9807cc61fa12d0fc15a2e39bVirustotal results 27.42% Heodo
2020-01-28n/adocx 3af0ea9c16ac781e609502ad28fe5c862a178395c2a30f4c2c0ccffcc3d5ac6bVirustotal results 23.44% Heodo
2020-01-28Invoice-O36_0962126.docdoc 3df4040ff091afff090f8c832f2608c10b23e4363a152243b592690cbb20c6b5Virustotal results 26.23% Heodo