URLhaus Database

You are currently viewing the URLhaus database entry for http://flancalfaltd10.com/dist/js/pages/je22cxqsy/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:422066
URL: http://flancalfaltd10.com/dist/js/pages/je22cxqsy/
URL Status:Offline
Host: flancalfaltd10.com
Date added:2020-07-30 15:50:04 UTC
Last online:2020-07-30 19:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: spamhaus
Abuse complaint sent (?): Yes (2020-07-30 15:52:04 UTC to abuse{at}contabo[dot]de)
Takedown time:3 hours, 34 minutes Good (down since 2020-07-30 19:26:08 UTC)
Tags:doc emotet link epoch2 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-07-30FILE_S2DF4LK7.docdoc c1f40d4444844cb79cb946fb23b0064d20f622d7c13ff597227c75e8a8168ceeVirustotal results 47.54% Heodo
2020-07-30BAL_MRR_070120_EHW_073020.docdoc af343e685d3c5d32a0336f1e4fae3d77e6ef090ac8dd238150bc8b56cb8b5239Virustotal results 48.33% Heodo
2020-07-30INV_SZ4042973991YO.docdoc 6013888f6a433a2c09ce1e40de20a8c59ad6b21234fea7ceee7a41df2ddaca65n/a Heodo
2020-07-30FILE_QP9300861305YG.docdoc 9a039540a5c66db061b1a3fb4f0e45324d5f2b48cedc6c1bf88e4b8f1b887302Virustotal results 47.54% Heodo
2020-07-30REP_1341910632243215763371931.docdoc 3980bc03e6441886276662410ebdae8017ceb3af1230c4464922bfc2afe9908fVirustotal results 47.54% Heodo
2020-07-30INV_PO_07302020EX.docdoc 22f70d70bfdee342e6bb2e63626c613fe001305a03780dafd1b43a6889dbbf39n/a Heodo
2020-07-30711MTF3OW.docdoc 07e776c54df1af3395854812f0a6b7915acfa69f07c466e088eab9655d99d886Virustotal results 49.15% Heodo
2020-07-30G_20543521.docdoc 5c7a7a9074d122179780a3db64b04f9d8225c9d4004dd201eb6e650e8d072dbdVirustotal results 44.07%Heodo
2020-07-30I_PO_07302020EX.docdoc 40e6d014a27a07efe20c29e63b976d6655f75f12df83ced2a1cb51907405a726n/a Heodo