URLhaus Database

You are currently viewing the URLhaus database entry for http://itekcom.pe/iweb/available_section/interior_profile/876783134107_vVPOewDKb4jZ9g/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:422985
URL: http://itekcom.pe/iweb/available_section/interior_profile/876783134107_vVPOewDKb4jZ9g/
URL Status:Offline
Host: itekcom.pe
Date added:2020-07-31 20:07:07 UTC
Last online:2020-08-03 15:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: spamhaus
Abuse complaint sent (?): Yes (2020-07-31 20:08:03 UTC to abuse{at}dimenoc[dot]com)
Takedown time:2 days, 19 hours, 15 minutes Poor (down since 2020-08-03 15:23:43 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-08-01file-THO76688.docdoc 92a8c9729a35ef4fbe97b8b931ac2ba3284ff4c1aaaab30eadbe36ad12c75465Virustotal results 47.46%Heodo
2020-08-01Doc 2020_08_01 913.docdoc 68d03e74f29b8ab84731be7d1d202d1234196be51e50924a161404b942aabdf4Virustotal results 48.33% Heodo
2020-08-01REP_20200801_FR081714.docdoc 170792807608455432c626fa966cb339667a2dd902f641b8073dd44bb86d64e4n/a Heodo
2020-08-01DAT_2020_08_01_K4556.docdoc a680dee80d1c2e20335b72e1ab12908d3d79228c4be39a045dbcf6bff5c2f2can/a Heodo
2020-08-01Arc 20200801 539.docdoc 5b869243a1f25181d647b1ab540885e1991a6d935499fe16f8b1866d6c11cceeVirustotal results 49.15% Heodo
2020-08-01Dat 2020_08_01 NG8466.docdoc b022041c3866fa72e9822bbd3eb197dfe6d228453a0261f39be63a3d2b47f9cfVirustotal results 50.00% Heodo
2020-08-01Mes-2020_08_01.docdoc b516a3797050f6ac640f573248069d74c0a95c2f96e09f7c8f960d02edb53117Virustotal results 49.18% Heodo
2020-08-01ARC.docdoc 80dda9df45911b1dc5b4d3bc282bb68c6029d2065d7cb8191b92fccbc3286ac2n/a Heodo
2020-08-01Inf_AUB5551.docdoc dd7b7de461d1bb98f753cab9f3d748f28f34c6919770f2c279541724298390a8Virustotal results 49.18% Heodo
2020-08-01FILE 20200801 AC73686.docdoc e22babe2af8bd5773584af907edf624944ff08fef4ceb67d88f0b67b9ef4ca33Virustotal results 50.00% Heodo
2020-08-01arc_0767425.docdoc 04981b8eb7a0bf161eb0f9230b02e179380d03d2dfa0bb819ad60e25947e052cVirustotal results 50.00% Heodo
2020-08-01mes 20200801 AK305669.docdoc badce2483951ae1a102173ec603478bd0d218eac1287212b49aa80c421e80438Virustotal results 48.33% Heodo
2020-08-01Rep 20200801.docdoc df2dc0151e9893df9a0b5fc037b8857125e0e013db773886f7714baaac50f250Virustotal results 50.82% Heodo
2020-07-31FILE-20200801-6254930.docdoc d237fa25ba4fb8cc8b5aa3c9a5edc6b8f2dc2c5ca92a707e20b1a6fa58e658fdVirustotal results 49.15% Heodo
2020-07-31FILE F346096.docdoc bb7bf7084a18fe63dc1c4ab7b9e6efbbffe5e925099c0dfa664cc648e6d92adfVirustotal results 47.54% Heodo
2020-07-31mes_2020_08_01_401.docdoc b4d308bac3c2d2a2424a9a8bcf6987ff50ee40c437032bbb16ad3545b2f73984Virustotal results 49.18% Heodo
2020-07-31dat_20200801_7810700.docdoc 8698a975eeefa70a6e8eac20e57be07dbed23f59301a735a72892edcfdc62d26Virustotal results 49.18% Heodo
2020-07-31list 971006.docdoc ecd04f11959248f4efbea63e69ab2359e0031dbefa8aaea74b90de94456bb89fVirustotal results 46.77% Heodo
2020-07-31dat_XVT526862.docdoc be26601d6cda02134a641d0d0888c7c780636ec180084ca0fc3f66281e23677aVirustotal results 47.54% Heodo
2020-07-31LIST 2020_08_01.docdoc 3d5427a07cdecdce3e2943473bf2a141a3eeff0e22919c7b1fe3378aed3d1590Virustotal results 48.33%Heodo
2020-07-31arc 2020_08_01 21315.docdoc c45bcf9a41075804172523238d905c314dea01aad3babafd32cfe0ef52b86260Virustotal results 45.76% Heodo
2020-07-31arc 2020_08_01 O796.docdoc 2f5edec4351fad5521646ffb86ecb8c584fc8da1f3b7852d1302cb8ec7fc696dVirustotal results 46.77% Heodo
2020-07-31INF_01004.docdoc f4469edd9d414e0d622d3b4445beafe1ef3b0787f29b9225b2157438d9bfa722Virustotal results 46.67% Heodo
2020-07-31INF-20200801-764.docdoc c392286c985ecf84b1e75a52095b44c2e5f596410d388ea8ebe5f912bad95650Virustotal results 47.54% Heodo
2020-07-31MES 2020_08_01 529.docdoc 028ad78c3d669870415ca9cef8fdf704e543382daa866d7ee003993217aaf48cVirustotal results 47.54%Heodo
2020-07-31FILE_20200801_DNT328178.docdoc fe41313ae7dcaf87736d8cfd069d8fda8577fcc2c9b406fe90caed2e64ab2d13Virustotal results 50.85% Heodo
2020-07-31arc_20200731_LMP23478.docdoc b90405b5945098e5acd1f81f9821c66b49f8bf3b41ae47e41ffb76e5a95de4f3n/a Heodo
2020-07-31dat 2020_07_31 H92897.docdoc 7ed15abb6a47b9e653147364a154fa1a9a13b44694833fc022420060f703f57dn/a Heodo