URLhaus Database

You are currently viewing the URLhaus database entry for http://taxngain.com/Factura-recibo/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:34672
URL: http://taxngain.com/Factura-recibo/
URL Status:Offline
Host: taxngain.com
Date added:2018-07-20 03:00:27 UTC
Last online:2018-09-07 18:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2018-07-20 03:07:44 UTC to abuse{at}godaddy[dot]com)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2018-10-03FACT-YKZ-60200-2509.docdoc f958aa25557aef141c6006761061372a3dd47d268d4fcc6238410db564e86da8n/a 
2018-10-02FACT-YKZ-60200-2509.docdoc 83e8537628a79c8f4360765b07a8ca09008f6dd93deeda02b01c6f2546dd7aadn/a 
2018-10-02FACT-YKZ-60200-2509.docdoc cf80463790ea17c7771dbb71e22555fc98f79a9d7488314955f254a1fcda88f0n/a 
2018-10-02FACT-YKZ-60200-2509.docdoc 8d9cc2683e8ec1e9855daf06e103d46e17745a168b4104e8e5ad03622a1c5667n/a 
2018-10-02FACT-YKZ-60200-2509.docdoc bc79239fdc0e1d6facc5d16580d6cbc2833202e45fb1be9ff1e9960bac994be3n/a 
2018-10-02FACT-YKZ-60200-2509.docdoc 455bddd37014b844f4a760ac5b98280618d78d4faee56d01114ed6aa9600bacfn/a 
2018-10-02FACT-YKZ-60200-2509.docdoc 662447f751579bce11016e78a624a9fc7d7e7c99abe238cf684a7077fcf7825fn/a 
2018-10-01FACT-YKZ-60200-2509.docdoc 9f39ac48f93c9eef72268fd31e3c9e925d371b231b7d50cff659ede2d09176e3n/a 
2018-10-01FACT-YKZ-60200-2509.docdoc 3a66dab366416686242c40461d87467a45a7e3a3cc0f527c09acf6d45e9e4c16n/a 
2018-10-01FACT-YKZ-60200-2509.docdoc 039959fbe0b17f6720ca5e86261ec5d41e0c8e9f0239fbf428c86b8cf43befc3n/a 
2018-10-01FACT-YKZ-60200-2509.docdoc c0fcf85f04b12bb15c0887160a9393cf63800f65441f12ac71bdaa34823a5275n/a 
2018-09-22FACT-YKZ-60200-2509.docdoc 1269c5111df7579f5ed66d7052b86319e55aca62322005c7a4b5b68d18107ea7n/a 
2018-07-21FACT-YKZ-60200-2509.docdoc e93124eeeb90da22a0f711e3a06ae24b61393b511ea4723a1be37fcedc87ebe5Virustotal results 31.58% Heodo
2018-07-20FACTURA-YQOY-241644008.docdoc 53f946344c9cb0eee382e70b3f6e520279661c7e296ca08bbe89ab96c402a31aVirustotal results 27.59% Heodo