URLhaus Database

You are currently viewing the URLhaus database entry for https://www.vet.auth.gr/test/INC/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:308334
URL: https://www.vet.auth.gr/test/INC/
URL Status:Offline
Host: www.vet.auth.gr
Date added:2020-02-04 19:15:06 UTC
Last online:2020-02-11 11:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: spamhaus
Abuse complaint sent (?): Yes (2020-02-04 19:16:05 UTC to abuse{at}ripe[dot]net)
Takedown time:6 days, 16 hours, 0 minutes Bad (down since 2020-02-11 11:16:49 UTC)
Tags:doc emotet link epoch2 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-02-06X_AG1283997139UC.docdoc 2713b0c6f383d5bba986684ea92a7f03ac8ca86cd04b3feaf5109e8bfc45c9bfVirustotal results 27.87% Heodo
2020-02-06U_8946033042.docdoc 807f7322304ca5f5132365d3c5d99b64695b3592534d72721df2e26c87b62345Virustotal results 27.87% 
2020-02-0683612836.docdoc 5737f7ed7cd458a5bdd41d85070e356a78eeb81034603469215e488275eabddaVirustotal results 27.87% Heodo
2020-02-06INV_CMD_020120_YJK_020620.docdoc cce94ff484c66f08d8214d4c9f67474457e430f521b89f9d206d4c66bf49848dVirustotal results 24.19% Heodo
2020-02-06YVGM_443073040714149350961.docdoc 4da3454acbd16e098661adc2171e3bf19bc40f55e9a416617d6aaa1e573ccb17Virustotal results 32.76% Heodo
2020-02-06INV_ZBT_020120_XIL_020620.docdoc 1fd03ef12b326b02fd4fe003ca69fe08cafbe12e0f80dde88cf2467a0213082aVirustotal results 31.15% 
2020-02-06REP_LM3935384616FU.docdoc c35a3b840c12000e6e8934e36e36fb8afc2e31cfef1f65f86a65060576eba93dVirustotal results 30.65% 
2020-02-05XK6766687657HK.docdoc 88f4cc73437590477b19a279a2fa382b8f300f5aa9b85c6c307841d35258cbafVirustotal results 30.00% Heodo
2020-02-05BAL_RP1932847078VC.docdoc 8380d2c64c2a29d80b16976dcc762e086987848300b02efebf7cd1ea4c33ba18Virustotal results 27.42% Heodo
2020-02-0521669738398713967849372.docdoc 38f73122c81a0e707706156a5e4fb6edb2d677901b9daedf85a6387e70e2e7a2Virustotal results 28.33% Heodo
2020-02-05DOC_PO_02052020EX.docdoc 692a15bcb22062c2d92b977daca3245dd81c4f6aaacc7c4bafcf577aef07d71bVirustotal results 27.87% Heodo
2020-02-05X_18ETC24BWWLKS45.docdoc fcb570d8d855f669580ff9de27c85f2a0bcbf2563ea608b49f4bd44846e2fe4eVirustotal results 28.33% 
2020-02-05BS8879700379KD.docdoc e8172a18f6d7f0bd45a2e199d48ed24cba4c034a6268aa3312dfe6649a8b3c9aVirustotal results 28.33% Heodo
2020-02-05PO_02052020EX.docdoc e9d7bdc52bced1f87bdbfd45bf9af23a87ecf43470f4f8e95e75f9fccff2c076Virustotal results 27.87% Heodo
2020-02-05DOC_XU1567413408NK.docmdocx 1c96dc2ca50755af8de45649f800c5bc8afe690dec831035e2c9c004447e2e63Virustotal results 35.94%
2020-02-05BAL_57455365.docmdocx 99c5ceb221ce858619c96a3c350e5fad387ecc92fd1497de940d95a5f84252b6Virustotal results 36.51% 
2020-02-05INV_03518572.rtfdocx 679f8b9176955bad28be27b0fb4e17d959e8ae21f09f00aa516308fed55eb1ddVirustotal results 33.33% 
2020-02-05INV_PO_02052020EX.docmdocx 8b5c629465d1e775ff08a64c17e15af3e0abedc77e2718bf8a7a700ed92c6b27Virustotal results 33.33% 
2020-02-05INV_CD4826436097WJ.docdoc c32783ab5b1cec148b616d04704e1e627ad45ce809b51f8eaf3f8816d09f9fb3n/a 
2020-02-04DOC_FCM_020120_XUV_020520.docdoc 72f4f5e9da9b5bdb21aca95cf1f4a1fe70f0b46f1bb06362050575f2b89bba19Virustotal results 32.26% Heodo
2020-02-04REP_PO_02052020EX.docmdocx d47c77d9d0def102dd934260114120e0bd5fd719e88480dda4a53342cc6701e0Virustotal results 31.75% Heodo
2020-02-04FILE_DDR_020120_FIB_020520.rtfdocx e7f9815f92e7cc94121a968c79606d06bac0b134593d51cf2defc641e1f34865Virustotal results 33.87% Heodo
2020-02-04CP5617938912WM.rtfdocx ba1ad7a3f3d3f24d4862ca8b73df68f7e30f04153cc87040d51e2943af746c09n/a Heodo
2020-02-0484013968.rtfdocx 10a4a79ef018d8594156fc6ad3dc14646fad3b07d661af9c687034c39dccf0a4n/a Heodo
2020-02-04DOC_AV9973457720SC.docdoc bbcd6b5c94644e253a79a063d0cc52be2fcdbf8a2025dfdb3c383d820054e923n/a