URLhaus Database

You are currently viewing the URLhaus database entry for http://stylethairestaurant.com/tt1axi/available-array/individual-62579871-o6eppZs1X/i2ac28s-9tw6zu2260/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:303448
URL: http://stylethairestaurant.com/tt1axi/available-array/individual-62579871-o6eppZs1X/i2ac28s-9tw6zu2260/
URL Status:Offline
Host: stylethairestaurant.com
Date added:2020-01-30 23:59:07 UTC
Last online:2020-01-31 11:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-01-31 00:00:03 UTC to ip_admin{at}csl[dot]co[dot]th)
Takedown time:11 hours, 46 minutes Good (down since 2020-01-31 11:46:09 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-01-31FILE_2020_01_31_360.docdoc 95c8cf64216794e220da4ea2be433e97ba4e1ff99696be784f418e8bd023c313Virustotal results 20.63% Heodo
2020-01-31Arc_20200131_X9192.docdoc 5e1a30103fd40640c8a5b91d5dadf5564896d808711410002020fa9f136b080eVirustotal results 20.63% Heodo
2020-01-31ARC-2020_01_31-G2363.docdoc 479acd550fee84ce07d46ca359554323d14b0874e9402267f9f6cedc7ea64065Virustotal results 20.31% Heodo
2020-01-31MES_4341.docdoc 6fd2e08f2dde33eac79877702712cc2d0e58ce9acd50807a6393b64bef1cc2f1Virustotal results 40.32% Heodo
2020-01-31Inf_20200131_KX874632.docdoc db5ec50aa0307b01efda63c0c839ca56003ecb0cf9e97153c79a15f8c7954de7n/a Heodo
2020-01-31REP 20200131 419870.docdoc 867bbb07e9038e3e82a5213c489f70005c917c0e459e7f6f4f2ccefe80a53701Virustotal results 38.10% 
2020-01-31REP.docdoc 8cf8b5bd984c809a86c9c425d500393b50115233149a953678de79dca4bdc223Virustotal results 35.94% Heodo
2020-01-31List-20200131-VTI18261.docdoc 02d4150ccb8c0569ecd99cc1a860f5c711f1cd2ba567aa5728b830b9f1789f46Virustotal results 33.33% Heodo
2020-01-31Arc 20200131 6755.docdoc 55f0c6da4d510ea6f18adbcc410a571f1beca5347754ae966a5684f2094b27cen/a Heodo
2020-01-30ARC-2020_01_31-5987504.docdoc cac3e8dd339b452c97d51ce82fcdb71d3c7d617f1ea4f1f69273ce566737b5eeVirustotal results 33.33% Heodo