URLhaus Database

You are currently viewing the URLhaus database entry for http://adfootball.com.ua/bosp3r/multifunctional-array/verified-warehouse/4v7oe-Lsi7gt59Lqz/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:306823
URL: http://adfootball.com.ua/bosp3r/multifunctional-array/verified-warehouse/4v7oe-Lsi7gt59Lqz/
URL Status:Offline
Host: adfootball.com.ua
Date added:2020-02-03 14:08:13 UTC
Last online:2020-02-04 11:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: spamhaus
Abuse complaint sent (?): Yes (2020-02-03 14:10:06 UTC to network{at}abuse[dot]team)
Takedown time:21 hours, 43 minutes Good (down since 2020-02-04 11:53:39 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-02-04inf LO5965.docmdocx a2af1039b0c9e8636d89d189de0aad64528f566301920152cf493d54409dac79Virustotal results 34.92% Heodo
2020-02-04Mes.docmdocx 29d71c405f029109b5b6a5eb51f5f957a706b5130105c3abd7e3e97cccc66c2dVirustotal results 36.67% Heodo
2020-02-04List-2020_02_04-K09480.docmdocx 002d694ef8bf683023d2285a4a16c1673c4ac35874c13d7cfd9c9dc9cee5854cVirustotal results 33.87% 
2020-02-04list 684.docmdocx 028f4c2dbdc1cc4dcc34a7dd5f190ca34075756f22fefa208b992649fedf8c14Virustotal results 33.87% 
2020-02-04inf 20200204 FO25291.docdoc e7dff7f723fedd0bc9f266faa3881c43c23ce4326345a128638be87f1bab58e1Virustotal results 38.71% Heodo
2020-02-04FILE-20200204-895.docdoc 06ef3b76fdfb2eccd0a672a1023ffeff68a0dea6d2a4da527eaa596842391fc1Virustotal results 38.10% Heodo
2020-02-04mes_2020_02_04.docdoc 8143fbcde0aa33fda4259a4da03b0f205f9577ebc92d9dc186cb20a1219de133Virustotal results 38.10% Heodo
2020-02-04LIST Z707987.docdoc 821d5e01c6a22bf01f87a2cc063615e17a74dd2599e21bb6ec2de779f77c8d08n/a 
2020-02-04File_Y598472.docdoc b5bdbfe46cbe25168c809c0da1cd3018bef7e7821ead2808e7b22f4a01d76a34Virustotal results 38.10% 
2020-02-04REP-2020_02_04-8141.docdoc b0bb80de572b15a0b0de99bed596703ce05859027b0b5a001b36eb8927608155Virustotal results 35.48% Heodo
2020-02-04MES 2020_02_04.docdoc aa3931cb2f3ab736b14ffab1da3e306231e5ca42842da644913c4ba7ed5730b2Virustotal results 35.48% 
2020-02-04Dat-913314.docdoc 96ca41fe85593ec2adee71cbe9ddeae3c084689d3bd049ba0b3a548895583c11Virustotal results 33.87% Heodo
2020-02-03doc_IG230.docdoc 7a683061b05b3d070d8ce39cec4901d51e51c52e9593c13ce40d1ffbf9a7cd97Virustotal results 32.26% Heodo
2020-02-03REP 2020_02_04 138.docdoc 63e3e85f403c106b4fafa44e02021f77eed338d965daf6c30eaeaa4c206bba12Virustotal results 32.26% 
2020-02-03Doc_2020_02_04_0001678.docdoc 638b50da8c574f4785910dca412d1afe1520c754d676c4f8838455d0de5d637cVirustotal results 32.26% 
2020-02-03rep-20200203-84156.docdoc 0d7ea58a5c9c2e9c564452f61b6fdc2c2a590d27f718ff40d270537518afb93bn/a Heodo
2020-02-03dat 20200203 I88131.docdoc 512b2b0415df7c51ee775773ba39d89e89c37b739b4d2479db8ac4b4af3d23fdVirustotal results 31.75% Heodo
2020-02-03list-20200203-31624.docdoc be46d590004156142653812886a91838c45fa7c1337b8144ea85ac92f415e780n/a 
2020-02-03inf_GJY37615.docdoc f1d4b658171bbe8745c7e166db3d348bac12e758574806836df8eae73ff78181n/a Heodo
2020-02-03REP-20200203.docdoc 2dcadaf9703bea2cb80e65f8c66d26d25f03055e60a4335e8d6b885ef19f1ac9Virustotal results 31.75% Heodo
2020-02-03doc 2020_02_03 X437715.docdoc d33c0e00439f2ef24087636b3317355dee8eb2fa050ec652a5b795c996bb9b03Virustotal results 29.03% Heodo
2020-02-03MES-2020_02_03-2836090.docdoc c395f4d101a2ad5ed466a19426a403517c2bdc222651eaa30a43f69f4018b239Virustotal results 30.16% 
2020-02-03DAT_2020_02_03_H3528.docdoc 78680455359744cbaf8f82589ab486a671f2a78a86cf41874a37d17a4985f4d6Virustotal results 29.03%