URLhaus Database

You are currently viewing the URLhaus database entry for https://modernwebgalaxy.com/wordpress/cerrado-caja/special-forum/faXj5MveYG-y2hN4L5hIt3it/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:306709
URL: https://modernwebgalaxy.com/wordpress/cerrado-caja/special-forum/faXj5MveYG-y2hN4L5hIt3it/
URL Status:Offline
Host: modernwebgalaxy.com
Date added:2020-02-03 12:01:04 UTC
Last online:2020-02-05 10:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-02-03 12:02:02 UTC to ipadmin{at}polpublishers[dot]com)
Takedown time:1 day, 22 hours, 57 minutes Poor (down since 2020-02-05 10:59:26 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-02-05oferta-02052020.rtfdoc 4e82c0983f4287199416515585b3322785209242527d21f73fc1213fac0da816Virustotal results 25.00% Heodo
2020-02-05Factura 02052020.rtfdoc 2680ccc11a0001f2af126f851b3389dd62ebf81afd0e72ce2dde130c37a48578Virustotal results 25.00% Heodo
2020-02-05facturacion G505158285-7303241546.docdoc eb0614fa7448abc22e0ceaf9c44eb1878aa6b234ac95c81bd4ce5ec62077cc59Virustotal results 36.51% Heodo
2020-02-05Factura Q7495214035_33383264.docdoc f3c47abbd73189178815d64455b8ec19fe5becc182f276e2f72a39a3a486033cVirustotal results 33.87% Heodo
2020-02-05Factura 4q561n.docmdocx aef911d16e36d3d8410cec34d4f72340a3e3d7614f0547588132f79b66935e5fVirustotal results 35.48% Heodo
2020-02-05facturacion_02052020.docmdocx af1accc87f852c4f806095f124f7e9c581c7f305338551cadce72b80c02ab373Virustotal results 34.92% 
2020-02-05FCT-68319432206.rtfdocx dcdcefae226e1eccadad30728bc5d5a86fcc042676c0e98078e62ccd82b564d2Virustotal results 33.87% Heodo
2020-02-05FCT 196p5110345p.docmdocx ab25cd8065a0df8608fcd69bd29689ae7657b263b8290a459052ff0cfcac3951Virustotal results 30.65% Heodo
2020-02-05FCT 21208non52p129.docmdocx 87bf983815a7bdfc6fda722fa02b1adef0c064fc60a443faed053662ba92a74fVirustotal results 32.20% Heodo
2020-02-04factura_74qpp3m7.docmdocx 6464ea34b63546f7d2cdcb780b772b1250731bd38c105c2feb70e0928d49b1abVirustotal results 32.20% 
2020-02-04FCT-DVQ298286.docmdocx 3e807f7cb48c71df4ce8ba0a0024238ec14712f1e68e7d0c959ab376f2fbd524Virustotal results 32.76% Heodo
2020-02-04facturacion-WAX54792_9805.rtfdocx b9d42e016bb94271c9d10c7c68d438ead1f0078d3b0fe039da3166ed9f29432eVirustotal results 33.33% Heodo
2020-02-04fct_724181122.rtfdocx 6773f2d12cac7fc60b6b05a0ad90ea189f3479d0c7e8eb0ed642722077ca9bd5Virustotal results 35.48% Heodo
2020-02-04Factura 23917388.docmdocx b652230d0ab5eba2fd05573b7ef10013f6563c1bb9f64d5f5106b15cc8a5ade7Virustotal results 31.75% Heodo
2020-02-04FACTURA_02_04_2020_1514072189655.docdoc 265e4a2697fbfecc43edb76419d9e4a8928492d01b548cd7d6804226d6b2a593Virustotal results 37.10% 
2020-02-04facturacion_P0418460181177_05877.docdoc 2c3e5ee6956f0a42b52aedc74115e2e3a74ebeb6127edd783325d177727535e2Virustotal results 37.10% Heodo
2020-02-04factura 6861897.docmdocx ffe59b190e1aea7c975d401c6efc7427e35dd63718af5a25cd858b1f8c4090eeVirustotal results 36.51% Heodo
2020-02-04Factura-50116670.docdoc 05f89d1b6bf1a0443a52a1f52c120eda46fb60b922beab020051781d3a405981Virustotal results 37.10% Heodo
2020-02-04Factura_02_04_2020-HE494797469389.rtfdocx 4797cddac2f4b88206c147e98842f78fb081f26db474df81a02a7a05c59865beVirustotal results 35.48% 
2020-02-04FACT-4539477793.rtfdocx ab0837ea73974131b3f5b997122999652e55984c19cd55a48ab812c4500480f6Virustotal results 35.48% Heodo
2020-02-04factura 2524440878-6724.docmdocx 3455fc14bf4bc55e2cd1a0d3e6ba9f195bd43d0a44099f3f23cb2c9b95310140n/a Heodo
2020-02-04Factura_02042020.rtfdocx e7efd8b51fe962beea9c03d46c368c47bc18e9e425c384f0c928f3dc2404f6deVirustotal results 34.92% 
2020-02-04FACT-02042020.docmdocx c896b275330256006e4bd20c9f1acb9b11b059ff0673988e853bf709b6fbf67eVirustotal results 35.00% 
2020-02-04FACTURA_02_04_2020 17038.docmdocx 002d694ef8bf683023d2285a4a16c1673c4ac35874c13d7cfd9c9dc9cee5854cVirustotal results 33.87% 
2020-02-04fct o06o705pmpm4796.rtfdocx 3df4c20b912377bb69db29aaf085b27d9eadd660678c6c0d113a502c36257532Virustotal results 33.33% Heodo
2020-02-04facturacion 02_04_2020 B3606335.docdoc 7769ae1cce4e29c3e8bd982600d46a07804c1f66a2772bf00ea100aa24c227baVirustotal results 40.68% Heodo
2020-02-04FCT_02_04_2020 97D51315.docdoc 06ef3b76fdfb2eccd0a672a1023ffeff68a0dea6d2a4da527eaa596842391fc1Virustotal results 38.10% Heodo
2020-02-04FACT II3606980-020455490957.docdoc 8143fbcde0aa33fda4259a4da03b0f205f9577ebc92d9dc186cb20a1219de133Virustotal results 38.10% Heodo
2020-02-04FACT_02042020.docdoc 05ead2ea8d0ec1dfd4f5b491661af731b41e275c0471f7f733cd097b544413ddVirustotal results 38.10% Heodo
2020-02-04Factura 02_04_2020 EB1229119.docdoc b5bdbfe46cbe25168c809c0da1cd3018bef7e7821ead2808e7b22f4a01d76a34Virustotal results 38.10% 
2020-02-04FACTURA-53p2n697q33q65m.docdoc b0bb80de572b15a0b0de99bed596703ce05859027b0b5a001b36eb8927608155Virustotal results 35.48% Heodo
2020-02-04FACTURA_6qm5n2.docdoc ce8eb63345280d1325f0c238ee972e035dae857560a8092478c2d7029db2b81cVirustotal results 34.38% Heodo
2020-02-04fct_n3p4810o61m.docdoc e74c14cc0cce7d98fe5d9948d6c75cfec2207c4ab7e13ac89c68e898d259ade4Virustotal results 35.48% Heodo
2020-02-03Factura_882475.docdoc f1ca3ac8b29ff318670eb9fec48430c20bfd5c159a0e78ea322110f711f0b3caVirustotal results 32.26% Heodo
2020-02-03factura-q2n98095389o864.docdoc 63e3e85f403c106b4fafa44e02021f77eed338d965daf6c30eaeaa4c206bba12Virustotal results 32.26% 
2020-02-03fct-798510571.docdoc d53e6a2be1f2632c5fb45a3342e9af1be2a275b210f7566214f5901c7e96f7cfVirustotal results 31.25% Heodo
2020-02-03factura-K7572451295.docdoc a76a7c2029ae2435701beb379d26d8d9d8d033af5dc49715a117b071173d4da0Virustotal results 32.26% 
2020-02-03factura ER8759429731.docdoc 07203376cb50ab736270e81db3c3c4503371a701b5015e88407c407326388750Virustotal results 31.75% Heodo
2020-02-03Factura Z2N4543244269 146193867.docdoc 5f570674404dafed0028b479c8a05c8d21186b07e803f2837cc21ed2e4708139Virustotal results 31.75% Heodo
2020-02-03FCT-Q4B623027.docdoc 9681ccc3cf58b12d30d0c4be40f0de86eaa804c3f72922a4e654956134e1b831Virustotal results 31.75% Heodo
2020-02-03fct_02_03_2020 CB701728247.docdoc 0768e6328bee4367126b667fb15ade01f9437381461015bc3b02ab3f79331e92Virustotal results 31.75% Heodo
2020-02-03FACT_M1109668.docdoc 87f524c38edfcb1ec1b2b14d426e30cda6caa18d7a58852ede76a5b1ffb8e536n/a 
2020-02-03Factura V6975055 7464721875.docdoc 6f1b024e7c96da7fe1a7c676accf6389ba787000e8824827d9c8b857eb1f2d09Virustotal results 28.57% Heodo
2020-02-03Factura L7953564204.docdoc b4665fed3f0c1383a203a68b4e4363b2ffe0b0f8228bfed2918b348bc3ffb3c9Virustotal results 30.65% Heodo
2020-02-03FCT-02_03_2020 A334487.docdoc 54142f6a4088f1e334d28ce28d0eb17d62a9f16b5b330bdec8385c0fad13410dVirustotal results 28.12% Heodo
2020-02-03Factura_NY571179533 22004129070.docdoc 35204d4eb52df7678ff315af1506d6196f610bf4ae3908cbdd8251cbc57da31fVirustotal results 29.03% Heodo