URLhaus Database

You are currently viewing the URLhaus database entry for http://compunetplus.com/fortyfour7/attachments/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:425993
URL: http://compunetplus.com/fortyfour7/attachments/
URL Status:Offline
Host: compunetplus.com
Date added:2020-08-06 05:12:04 UTC
Last online:2020-08-06 23:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: spamhaus
Abuse complaint sent (?): Yes (2020-08-06 05:14:02 UTC to eig-abuse{at}endurance[dot]com)
Takedown time:17 hours, 46 minutes Good (down since 2020-08-06 23:00:53 UTC)
Tags:doc emotet link epoch2 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-08-0674769103646823969717.docdoc 1ef7cadcf3f3ab9942c605b804971dc175c8cd97b08b3d01445ad36f4ec08463n/a Heodo
2020-08-06FILE_88048715.docdoc 6404a5a49751db7e1c82b5bdffadd5171eea2b5a4b43f9b77afb50b2095df09dVirustotal results 24.59% Heodo
2020-08-06PXUT2WUM9.docdoc 3c74dbf95327daeaf341a8b8b7eefbe17199eb34186f75217d342c3b384a1ce5n/a Heodo
2020-08-06FILE_PU7CSYFMYQEW.docdoc 327c6bfb13ad517728ad6518c92fb0bf638b79474445be494e4e8e6da2f772a6Virustotal results 24.59% Heodo
2020-08-0683518406.docdoc c587f3652820270bba59542522120672e8e95522ddcf9ef94ada4b00271b3bd7n/a Heodo
2020-08-06W_3580994427508765375516349.docdoc 3d7b0b0b8db48edd63f38207860a39c39f05ca912545fae115149ce35b949740n/a Heodo
2020-08-06UZB_080120_DTK_080620.docdoc 2da17d7865ed7dc5d2f59f2899832de079f556e08e9b4944669771070ec95dc8n/a Heodo
2020-08-06F_GWA_080120_RCV_080620.docdoc bd4d8ec335ea6b566e07d533c4212ec2723c617c3b524ec37fb756a2aef87248Virustotal results 22.95% Heodo
2020-08-06GJMP_34006934.docdoc ee16f0d261298da91e2cdfa906bae31181043b794e116b3e7cf8d1530670ce98n/a Heodo
2020-08-06REP_PO_08062020EX.docdoc a9eb8e8a86142b393557bd5e515c620e32d6dd4f988cd664863adfb847e17239Virustotal results 22.03% Heodo
2020-08-0665074455.docdoc c5944d19845ba43fabec436bfd6eb76d0ace4bd9dca1765e27046ff9c9025062n/a Heodo
2020-08-06FILE_78152643.docdoc 896711811c4082a44e4af378dd0871e2db8cc9688844acc7d85af7aae9b6970dn/a Heodo
2020-08-06J_88598247.docdoc 26651eaf693fde8e3e3d383d1107aa741512f4cecb7b8d9b1e61172c02353ae2n/a Heodo
2020-08-06013579807317.docdoc 98826e022ea7e43c4ca336a98b7dfb45866836324f79e8e7af3eb4af39686c22n/a Heodo
2020-08-06N_84130465.docdoc 86ce98ee6a09dd1c7c6624e70decfc961385aa91b973c4f19f3f9dbb6091ec24n/a Heodo
2020-08-0674861752.docdoc 05c72e97f5d458c6490496c4ac646b9555bc470d63b6bbea42875e5adb1a1549Virustotal results 20.97% Heodo
2020-08-060753480152534987.docdoc dcf13e777cc81ba6dbf2ebaf5747e5de599a4de2aefffe544b7f52c9e0188827Virustotal results 21.31% Heodo
2020-08-06DOC_PO_08062020EX.docdoc b554adbe36cba4bab4728dd27cbe944e169443554e2a0cb67e1410fefac08049n/a Heodo
2020-08-06DOC_10094471.docdoc 3aea71cb3bbb127254bc652cdf318ad814683e16c4c9f8fb7c6e84d42d32553cVirustotal results 20.00% Heodo
2020-08-06D_DEC_080120_JPZ_080620.docdoc fa7a2f035cfa8ad6cee98c7429474f64f136f99a81f8f1047463efbedd4e7094Virustotal results 19.67% Heodo
2020-08-06DOC_PO_08062020EX.docdoc fc55cdec1587494b3683916ba5c6b6679011e4cdb28f218c292abe9e23efc1b7n/aHeodo
2020-08-06DOC_PO_08062020EX.docdoc 751d0f8d16eae467cda2596b400afebcba628d7a0dd6cb876b1a2963acd5c8a6Virustotal results 19.35% Heodo
2020-08-06REP_70P8WM0.docdoc 4f225fe467ead97d93712caf45378bd55d657949b260ff02f9fb976e168d8e0cVirustotal results 19.67% Heodo
2020-08-06INV_II3136907543WZ.docdoc cc324cd79b2712fc61b22f7c63489ec231fc8149bd01b67d17cf7bd46e820202Virustotal results 19.67% Heodo
2020-08-06PO_08062020EX.docdoc 74b5a5e2f1ca9e2ce5b60eb11efe7430653d3bc4330800836b015f96c21916cfVirustotal results 19.67% Heodo
2020-08-06OQR_080120_SIN_080620.docdoc e3f7f2d3351b06fa9be4a1c28eef0a769392232b5a9bd43975080da87615713eVirustotal results 18.03% Heodo
2020-08-06GXZ_080120_LFJ_080620.docdoc 5c2650c6f95890e21c19649bcf085d416903c07507187992836803a3426bfb60Virustotal results 18.33% Heodo
2020-08-06INV_PO_08062020EX.docdoc 33de6eeb3c10a93d48bd9b22a94e7e55ac291a1e1141528cfbbcdeaad940ec77Virustotal results 18.03% Heodo
2020-08-06QOB_080120_VIJ_080620.docdoc 203da8f7d358cdae661760fd8b5e14035a447d446ce6d1bbb3b41b1871adbd75Virustotal results 18.03% Heodo
2020-08-06FILE_PO_08062020EX.docdoc 3a8a7bb3d3cac21614a78a6ee59a7b7d5f4e9d0cc161d48a68fa99616098766en/aHeodo
2020-08-06VF1497680644LI.docdoc c056f4cec1a76b851c0b54c766fec5e08eaa27577527b20743cf7b65155867c4Virustotal results 18.03% Heodo
2020-08-06Y_2FJOHGLQ1D.docdoc 995be23dc0d3ee7c4f282548b4755e02e5ec5a8a8b303aa746005cc1e787261cn/a Heodo
2020-08-0671377592.docdoc 760332e0cc50301ec3479486479a525dab98e541c7400d07d8158dbf76135b4cVirustotal results 19.67% Heodo
2020-08-06BAL_28791392.docdoc e6a45f7c1be03604263bb5d5368c322f9085a5d98a7a9c23c073e8a7e8a07b30Virustotal results 18.03% Heodo
2020-08-06PO_08062020EX.docdoc b05b7a5b7251a3088a61d778b36b9806d3c57425a15891696e1f447a258f08ffVirustotal results 27.87% Heodo
2020-08-0674435340.docdoc 62c944e88aa9a89db23e2db63e8744e0ec22dd0ccf46478bbcef7c688752b06aVirustotal results 25.00% Heodo
2020-08-06INV_PO_08062020EX.docdoc 17d593021eca36c491e85a211c4634737d302dbc74456ed4de71a9c0d3a1e8fbVirustotal results 26.23% Heodo