URLhaus Database

You are currently viewing the URLhaus database entry for http://fithealthyliving.net/wp-content/uploads/files/US/INVOICE-STATUS/Past-Due-invoice which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:34495
URL: http://fithealthyliving.net/wp-content/uploads/files/US/INVOICE-STATUS/Past-Due-invoice
URL Status:Offline
Host: fithealthyliving.net
Date added:2018-07-19 15:29:15 UTC
Last online:2018-09-08 07:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Not blocked
Reporter:Anonymous
Abuse complaint sent (?): Yes (2018-07-19 15:31:39 UTC to abuse{at}godaddy[dot]com)
Tags:doc emotet link heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2018-07-21PY26240_2018_07_21.docdoc de662d5bebf05b3d325db46989ca160d6bd5c9f232bd3490c5c9b9e5b7cb7ab4Virustotal results 28.81% Heodo
2018-07-21FG27118461011_2018_07_21.docdoc c0477a0b70020f3ff6bacb0265a07081475e65044a933faeebcc3ba877c2ac86Virustotal results 31.67% Heodo
2018-07-21LYF050230_2018_07_21.docdoc ee94455d05ed60d4bb5cfb2bfd094235e3404128bf578b77ecb95e480d232688Virustotal results 30.00% Heodo
2018-07-21XQ272455_2018_07_21.docdoc bf23076a132ec49497f50575c07dddcdcffc88b8a58aa94baa065ec9cf5f83fdn/a Heodo
2018-07-21DL2540039700_2018_07_21.docdoc d91c31eb9a5705c5f02de259bf377d12608bc9f889e3fa3a59ae291f7f11a515Virustotal results 28.81% Heodo
2018-07-21BAG779604011984_2018_07_21.docdoc 9136a5bfe030511af47706dc05230247cd98e22e6f5446ec64f51d69dad0a66dn/a Heodo
2018-07-21AY47283_2018_07_21.docdoc ff96f38726a5d370bc8c1782c9768c892c6c5d2388c03aef4a5211c47a3b8530Virustotal results 30.00% Heodo
2018-07-21NY6733092_2018_07_21.docdoc 32799477ff89cd4e7c61b13b9071ab8f5b5235fd852a89034baa8a63d84f170aVirustotal results 26.67% Heodo
2018-07-21EW218427_2018_07_21.docdoc 8449b8b0faadcfab22485004ccc56e221ddf48083c8569741996115ef56452f2Virustotal results 25.42% Heodo
2018-07-20EDA3475477983_2018_07_20.docdoc b928bb6d960048b146bc516013a77edda137ca07020f3cce75db2285e6d41c8cVirustotal results 28.81% Heodo
2018-07-20RWN40941_2018_07_20.docdoc 78b28c11eff63b22c58f5fede556b626ad6124bf1d6f26e7e0c8ef8920a62cacn/a Heodo
2018-07-20GR706046204807_2018_07_20.docdoc 3b989a9a60b40ee5295f0d66bf9400fb75634c9cdc72325db17dc986321403aaVirustotal results 27.12% Heodo
2018-07-20LG059028958_2018_07_20.docdoc ee74e5a1a06c6fa34ba5d7bf16dc5193f78ad6d8b4e143fe97ec4e9edb90ec68Virustotal results 25.00% Heodo
2018-07-20SOY78107_2018_07_20.docdoc f2fcda5fae0579434edabdf820a8b4cfd20cb42bd5ed85eed93aaf40b1779e1bVirustotal results 25.00% Heodo
2018-07-20BCH46989373508_2018_07_20.docdoc 122bd15959bc1d92bdf3e3d2cc7d4c7acfd6b12da411e597c713228f66197f2en/a Heodo
2018-07-19UO629845_2018_07_20.docdoc cd92935ce2691d9ee288a0bf78c9b1c50a7439a8693ef3716ccd6d5f6e2a79d3n/a Heodo
2018-07-19YZ16172340147_2018_07_20.docdoc e588d60741370662d5dc50eccb9272f18ae2b92260d23f87f2d5fdc2ff30d0e0Virustotal results 21.67% Heodo
2018-07-19BSN704137414_2018_07_20.docdoc 94c9b705893c975d491fc64bf43ee8ea7b112ca9c8d850ccd7e7166fb8de3d12Virustotal results 24.14% Heodo
2018-07-19RR254598405_2018_07_19.docdoc ffbc71083ac2f2e794fe9483b65264544a0a8d237aa0a2a85c98299eebc1f76fVirustotal results 23.33% Heodo
2018-07-19OW196151696_2018_07_19.docdoc d486c842b7bc3178a4ef69eb778084d523036f7e48b6aa1f24efe10ed02e5ec9Virustotal results 28.33% Heodo
2018-07-19OEA395581_2018_07_19.docdoc 8ee99cebbc5ff65a3506a855cb7620f3412965416853832fbec27207f1ed3397Virustotal results 30.00% Heodo
2018-07-19SRL527866853_2018_07_19.docdoc 5dcb15c147742a5321da1d0fbfa30d0d037ec424a6fdf5661ab94e54fda59acbVirustotal results 27.59% Heodo