URLhaus Database

You are currently viewing the URLhaus database entry for https://santandreu.manyanet.org/components/available-JLSmK6Fr3-Jdq3MtHEQ9sX/verifiable-05y6-kpyijuf9f4ptu/x7dx-06u7xx/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:300688
URL: https://santandreu.manyanet.org/components/available-JLSmK6Fr3-Jdq3MtHEQ9sX/verifiable-05y6-kpyijuf9f4ptu/x7dx-06u7xx/
URL Status:Offline
Host: santandreu.manyanet.org
Date added:2020-01-29 02:51:03 UTC
Last online:2020-01-30 13:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-01-29 02:52:02 UTC to abuse{at}acens[dot]net)
Takedown time:1 day, 10 hours, 58 minutes Poor (down since 2020-01-30 13:50:16 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-01-30Arc_2020_01_30_981.docdoc ddf014e6d9e70bc1709c2ccde24524fc72092f929ea37df901ee88f152ae4c43Virustotal results 28.57% Heodo
2020-01-30file_X72475.docdoc b6033387e8a30e0590f8e152c6234c360412bd1687400e315384a939a1b6071aVirustotal results 28.57% Heodo
2020-01-30dat-2020_01_30-DE427281.docdoc 1cfaa5e745d1fa8b33a9d1127e92bb4a28306b9e96ddea13b629e19959f2f26dVirustotal results 23.81% Heodo
2020-01-29Inf 2020_01_29 728.docdoc 26fcbd1c125868234b999ae7d9304bc998f33b18f853e3327882d870bd9e2ef2Virustotal results 25.86% Heodo
2020-01-29DAT_20200129_609178.docdoc 94e0d6de6118c26179d6f05dd39b5583f1fe79c66151f666734b93a655a71930Virustotal results 23.81% Heodo
2020-01-29ARC-2020_01_29-XZ29932.docdoc 7c22eab322ac6b786498c54df9abb223c3466203f681028b1023147f081fd6can/a Heodo
2020-01-29Inf-20200129.docdoc d6548725e281a6fac0ace4af505c15a21b8e1582ab951ad62e29dc42cae45885Virustotal results 43.75% Heodo
2020-01-29ARC 2020_01_29 IB877.docdoc 085777a85dd9b9d62ecf918d0cda586ecae8d0b32af5aa6182d85c77a8a571fdVirustotal results 42.86% Heodo
2020-01-29REP GK04476.docdoc 8c05cb88caacbc8eb0e4a1e79a0d1a707959b45fb39f5e694923b6b069ebce75Virustotal results 43.55% 
2020-01-29LIST-20200129-7801560.docdoc d0587297f7b5699b364592f59c0d93057b42defb42c714d6381d54a6142953edVirustotal results 44.44% Heodo
2020-01-29rep_2020_01_29_TL9103.docdoc 21c2a2a3240b1a41cbae3e253d00e74065f031a23a74bb27493c9473fe9a4c02n/a Heodo