URLhaus Database

You are currently viewing the URLhaus database entry for http://pvcprinting.co.uk/_notes/Overview/v79al94150498322558472p21yx9bnrx/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:422825
URL: http://pvcprinting.co.uk/_notes/Overview/v79al94150498322558472p21yx9bnrx/
URL Status:Offline
Host: pvcprinting.co.uk
Date added:2020-07-31 12:53:06 UTC
Last online:2022-01-27 08:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: spamhaus
Abuse complaint sent (?): Yes (2020-07-31 12:54:03 UTC to abuse{at}rapidswitch[dot]com)
Takedown time:1 year, 6 month, 4 days, 19 hours, 33 minutes Bad (down since 2022-01-27 08:27:46 UTC)
Tags:doc emotet link epoch2 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-08-01YEMQ_ROSAZDB.docdoc c1428a65c5e75c9b7ee41ad547278aedd961bd3491449fbfde3000c771cba87cVirustotal results 55.00% Heodo
2020-08-01PO_08012020EX.docdoc cc7bdd707f48d5b726a93953080eba89aeac024a738dee113d31c83c8ea8a88dVirustotal results 51.67%Heodo
2020-08-01FILE_MWJ_080120_XNU_080120.docdoc 48ec3cb0b3408e9a5eee789c2be3831f7f404716cd35363007175398554f0219Virustotal results 51.67% Heodo
2020-08-01FILE_PO_08012020EX.docdoc 3d313d6dc6fa20a7e7637af1c94de520d97a71eb8fb1e68a5f6f69054d801469Virustotal results 50.82% Heodo
2020-08-01REP_SEW_080120_NEF_080120.docdoc 41fe7adf7807de60a91dea01796332752f93281e218123f39fa550d31aa15d13Virustotal results 54.10%Heodo
2020-08-01MPO_080120_KXK_080120.docdoc 7b6a76a3a932265f067c2751c8bd6647327d0ec5bd95563dc3dc38d797a1469eVirustotal results 54.10%Heodo
2020-08-01BAL_TZ5298052545BR.docdoc f5671015ad6746cf334bbde3f8310dc831719a74e5432d619f8843e20be44dd0Virustotal results 52.54%Heodo
2020-07-31REP_PO_08012020EX.docdoc 94d26039afb10119b8ed05666e43a95e3b9e8093304d9b796aa1c791f200ccabVirustotal results 46.67% Heodo
2020-07-3117960921.docdoc 6e57ee227a3844d09aa4ed4a64cf69ec819367f00f8df9bdac7f6e09ffc551aaVirustotal results 48.33% Heodo
2020-07-31FFVDP16J.docdoc d3811967649cb2540eaa540cb627ace1afbfd14e0321a81f08ebc6b23d4cb7d3Virustotal results 47.54%Heodo
2020-07-31VCA_080120_YXZ_080120.docdoc 7a5911301b1b83e475a1f9d388add6ea34617263f712fc80e34c160f16cfbda4Virustotal results 47.54%Heodo
2020-07-31DOC_FP3854541516MG.docdoc 94740399d4f82347d284463c29d6bd05a288b65a122efd5f8d8b379ab5979a80Virustotal results 49.15%Heodo
2020-07-31PO_08012020EX.docdoc 4834d43a503e5a10693dcc514692016c26b9084f17b258a3505a4e44ac893db7Virustotal results 47.54% Heodo
2020-07-31VQ9OXZ5GK.docdoc ad5d63edee98350ce19edb0c144dd79079865cf72f2e092b91678a77835f10c8n/a Heodo
2020-07-31INV_GT9456122823KB.docdoc 1e4b706d611f935dd5aaac2b97e921c9c1df152d9dcf98127840b7c0e60348eeVirustotal results 47.54% Heodo
2020-07-31BAL_MTV_080120_OYT_080120.docdoc bbcd31c3397c143abb89d3bf7569302b4ba6966d081e8c0929461f8c4d94d66dVirustotal results 47.54% Heodo
2020-07-3126038037.docdoc e792dd738d65feae60cbee6722c08fedfa8dbac81f0f437dd64b143f58bf3dacn/a Heodo
2020-07-31PO_07312020EX.docdoc 7fc8e6e9f781dbcd928e2801941f611c8bbbdc8559983a1f4fddfaa91892074eVirustotal results 47.54% Heodo
2020-07-31DOC_FA2475985913CI.docdoc 53b0406efd3043bb9a82034aad1061ca92952b9d1a9111ba31afbc95d47076c6n/a Heodo
2020-07-31INV_33594252.docdoc 97a0ba05768ba99119322c6cb79f62bfc92dbfbd64b56b393aa203e7679f5328n/a Heodo
2020-07-31INV_VL1596081164UP.docdoc 504834100a9af027c208a0a9b1f6b09b526c4e6d4925f4bc15e4c30a6c6edcc0n/a Heodo