URLhaus Database

You are currently viewing the URLhaus database entry for https://digitalhub.com.bd/wp-content/Ckl/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:306610
URL: https://digitalhub.com.bd/wp-content/Ckl/
URL Status:Offline
Host: digitalhub.com.bd
Date added:2020-02-03 09:31:08 UTC
Last online:2020-02-04 13:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: spamhaus
Abuse complaint sent (?): Yes (2020-02-03 09:32:02 UTC to abuse{at}exonhost[dot]com)
Takedown time:1 day, 3 hours, 53 minutes Poor (down since 2020-02-04 13:25:08 UTC)
Tags:doc emotet link epoch3 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-02-03Inv-V62_594519.docdoc 067fff5d784f9786ae058b130a83029465b53e97660dde6be90b11622d9b6b7aVirustotal results 33.33% Heodo
2020-02-03Invoice_91_12615590.docdoc 4f9d0e3e6b138836f0a9a166f65ba3d279222da0fe4165b194629919e9d5d41cVirustotal results 30.16% Heodo
2020-02-03INVOICE-PLY32_812537589.docdoc d90c59b26218aa831effd196084c08b2c4606192c868aed7f8d30088bd38317eVirustotal results 30.16% Heodo
2020-02-03Invoice HNJY5488_517601.docdoc 38c96d8507862ddea6819c19789902d2d37b129cabb16be06b841c31db6efc63n/a 
2020-02-03Invoice-FZMJ580_23826463.docdoc 4c489bf3a0bdba25130efcec5895e6b665463a5020c5b6ec79b6615523122c11Virustotal results 28.57% Heodo
2020-02-03Invoice-LKOH0_833084217.docdoc c3a5e8695e125c7ec245765ae6398962f3b9ef99d8a780321d28bf0d909efec4Virustotal results 26.56% Heodo
2020-02-03INVOICE-NJY3_596456.docdoc 9c8f4b623546147c5d0de2b5178112ef3cff473d2e604d2f6fbecd74d1969a0bn/a