URLhaus Database

You are currently viewing the URLhaus database entry for https://myvalentina.pt/bhe/dys-7tufu-8791/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:307594
URL: https://myvalentina.pt/bhe/dys-7tufu-8791/
URL Status:Offline
Host: myvalentina.pt
Date added:2020-02-04 08:46:33 UTC
Last online:2020-02-10 13:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: spamhaus
Abuse complaint sent (?): Yes (2020-02-04 08:48:04 UTC to network-abuse{at}google[dot]com)
Takedown time:6 days, 4 hours, 38 minutes Bad (down since 2020-02-10 13:26:43 UTC)
Tags:doc emotet link epoch3 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-02-06INVOICE-Q0379_70311245.docdoc 12368c93f93b5feac92d01c7f620337dcbaab18dc50b27dfe2a50ebae513d355Virustotal results 23.73% 
2020-02-06Invoice_417_710791.docdoc 17b29e76ddb4039f293e0c93f83655142f074ae79f2351966016608b7c1e90a3Virustotal results 21.31% Heodo
2020-02-06invoice_79_082112.docdoc 5f1d9dff136888c71d8b157e91821d73a94faa92af1bdc04912d223b7b1de32dVirustotal results 31.67% Heodo
2020-02-06invoice-N4_3302009.docdoc a5cff7ee606a8a6c948ee336eda7e29469e87bd9085229bc751a4d5890af3cb7Virustotal results 32.79% Heodo
2020-02-06invoice-2_2738924.docdoc 50051e3e1ce6f4e8cff5c1aea5b8358c441124cc41963fe30cb28be4a8e1102aVirustotal results 33.33% Heodo
2020-02-06Inv_UOAP26_332878.docdoc 93282356080579d53a5452153eb409eb8147c26576e582d8c01b69613ae23b87Virustotal results 30.65% 
2020-02-06INVOICE-HPU893_544914743.docdoc c51e186787384d53e2c2def27f71e05297f4ba141436082787b427de1ca85398Virustotal results 29.03% Heodo
2020-02-05INVOICE MC6208_655988.docdoc fbc7e227ec8bd45144bdd33ac13c8a9b563282ce2c47bed6f613e71ed22dea4bVirustotal results 26.23% Heodo
2020-02-05invoice_724_3801356.docdoc 1d88805e149e2e933f734f1ddd170a7016d4c4d9de47f1b17111780a38a8c0f2Virustotal results 25.86% Heodo
2020-02-05Invoice-A6212_3540132.docdoc 1150cb15701be86a670059d255f3c3f26feb9e001633f41936a01464bd78dcb6Virustotal results 26.23% 
2020-02-05INVOICE-EX2607_56230592.docdoc ace43a368eb13682974cf022e6eedec49ca4c3a5a7fd7d4a644eba41690f451bVirustotal results 25.81% 
2020-02-05INVOICE V2_08938081.docdoc 2592177b8fc2dad7890e1d568a33bde6b00c015fc0c96dbccf47299f5f0953b2Virustotal results 29.51% Heodo
2020-02-05INVOICE-QXMO6_723908.docdoc 39442de844b2a9c03d581fc87ca3dd2f2684e038a05846bcff552d1f189459b0Virustotal results 28.33% Heodo
2020-02-05Inv-H784_02561441.docdoc 84ab1b0c57eafc70447f75791ac3a8534acb95c51e44abf63675f491de43c9dcVirustotal results 25.81% 
2020-02-05invoice_AS7_4308430.docdoc a3a5c99d4fa774ca66335632af6fed87de7a57d2e33fe1a7bc71b42c39d23b23Virustotal results 27.59% Heodo
2020-02-05Invoice QNG85_060196.docdoc d1b0b5be66f1360fe4da3896bc1ae1f6c1527a172dc08cfe3c0e29175b6a7363Virustotal results 26.23% Heodo
2020-02-05Inv-CS707_63572455.docdoc b539ee99f616299f9baffbcf4271a7cf0a6fac55fefa07370bae3bf7a259fa49Virustotal results 35.48% 
2020-02-05invoice-MTQ253_934818516.docdoc 3269f6a5411c3654cdca4cba71b035ea670e939e358592bebb703d9bfaa1eb80Virustotal results 51.61% Heodo
2020-02-05Invoice-IHR21_188227.docdoc 1d1ad37018649607913264ef75cad7bc63005b2432b9b27e41f41b574d4d7989Virustotal results 46.03% Heodo
2020-02-05invoice-B081_372836.docdoc 6773f2d12cac7fc60b6b05a0ad90ea189f3479d0c7e8eb0ed642722077ca9bd5Virustotal results 41.27% Heodo
2020-02-05Inv XM6591_64439735.docdoc 25d98e7b0341be2da85f8fbbe279863673a1b0744c9773c8f6bcaa0c0666c935Virustotal results 34.92% Heodo
2020-02-05Inv-YJ45_074041.docdoc fe95a5f68fe689f22c1ba6e479febd867fbb29760f0063700ad27d7d8b482d67Virustotal results 34.92% Heodo
2020-02-04invoice-FCSS3695_8077403.docdoc d753eaf7b22aea01dd44dfba5b9fc26ebb5677f4a713b4afa69d8c34efe836f0Virustotal results 33.33% Heodo
2020-02-04Invoice-ZDZ8_571192.docdoc 1e4ffd4d7205f7d16d481d32a91e7d2fcffede84ef8a98c8011e49e396f4c134Virustotal results 33.33% 
2020-02-04invoice_0_584804.docdoc 541462a915468b906df031ddc535d58ddb6851345a0cc9c8c5fa680f461b58dbVirustotal results 33.33% 
2020-02-04Inv NO0_29090132.docdoc 66c21df001ec2854ff8a52fa54fd230584511644369225989149758ae3d5ddbeVirustotal results 33.33% Heodo
2020-02-04INVOICE_IHT7837_005385292.docdoc 1d4e658a55c115e90f7df8950f3d76f5ad5f3b4b657e81a283cd0c8ef724f341Virustotal results 32.79% Heodo
2020-02-04invoice-01_90950660.docdoc 0fb732f5c9a990018ae072745106ee7271dfcf5c9b283a5879b4509073f9d3c0Virustotal results 38.71% Heodo
2020-02-04Invoice-EGDO595_100831.docdoc dc6e2ba6750d92a64482b6a093e50aa5b910078694f2865d1d2033a2cb51ae94Virustotal results 38.10% Heodo
2020-02-04invoice_66_392848832.docdoc d932abd5ce69b0f8a19cfabbfdf36ed9bd4312619a5b2ad396fddd5fd2345df3Virustotal results 38.71% Heodo
2020-02-04INVOICE-DLDX12_207110.docdoc f99c24382c6e2d8ec1ad09019fa680479f7dba17a4c7c97f995361590d6e570eVirustotal results 38.10% Heodo
2020-02-04INVOICE-OU931_3526730.docdoc 56ed604e8022c9347e77f79ee8dbbf6afc3a159909548b64df5e3d5e896d2a49Virustotal results 36.51% Heodo
2020-02-04Invoice-LNMX851_1452015.docdoc eacfda7cff958601644640117ada58257c29f124a9f64df75f0f01b0976711aaVirustotal results 35.48% Heodo
2020-02-04Invoice-405_335170.docdoc de202c3cd1c3adb4b21d3633d675c3594731a46a627c623c1ce09418b1eef41aVirustotal results 34.92% Heodo
2020-02-04INVOICE-DL7412_6642654.docdoc bafbd75e421480990b2396e0719fe2ad3c4d37d32fdd45ceeffd0e4fa4c9b665Virustotal results 33.33% Heodo