URLhaus Database

You are currently viewing the URLhaus database entry for https://www.newplastic.es/cgi-bin/open-array/Ilr9s-6ItDe1XgRk-EljWaxEOr-rPVqkbJ5GOKW/472999247-ouz9yfBOW58kJ4n/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:426431
URL: https://www.newplastic.es/cgi-bin/open-array/Ilr9s-6ItDe1XgRk-EljWaxEOr-rPVqkbJ5GOKW/472999247-ouz9yfBOW58kJ4n/
URL Status:Offline
Host: www.newplastic.es
Date added:2020-08-06 17:44:04 UTC
Last online:2020-08-07 19:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: spamhaus
Abuse complaint sent (?): Yes (2020-08-06 17:46:02 UTC to abuse{at}clouding[dot]io)
Takedown time:1 day, 1 hours, 41 minutes Poor (down since 2020-08-07 19:27:06 UTC)
Tags:doc emotet link epoch1 heodo link Quakbot link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-08-07Arc 20200807 NOJ77148.docdoc 7ba25693e2acb9afa6c453839ed62fb82efd94369f13a1549a0b57b8949cf0ccVirustotal results 33.87% QuakBot
2020-08-07Mes-20200807-T4267.docdoc cb1f2bf4578f29a20e8d2870d56795a1b2ebc499d05b0b2398af82735726cb6fVirustotal results 34.43% Heodo
2020-08-07DAT 2020_08_07 48375.docdoc d30fd458f190f862617c0b08d5cc7d7368f2dec8903b2caa0f8aacb6b498edb6Virustotal results 29.51% Heodo
2020-08-07List_QX7183.docdoc 612b33cca81c88e812436d48c987273b54a73bdc04a908102beac2aaf50b5825Virustotal results 26.32% Heodo
2020-08-07List 2020_08_07 UC0681.docdoc 8e2bbe860f81156cb3f65c53cc9e82ba407d702856b895049330baf81c76a673Virustotal results 25.81% Heodo
2020-08-07File 20200807 3327641.docdoc 9f3d4befc75b49a5e090558b5cf953d5da87bfac56db564bfdde1d36d6ad7b74Virustotal results 25.81% Heodo
2020-08-07REP IB3286.docdoc e557c9d2cc0e3f2aa2355b58c657834d11c61fe22903ea0800713dc9e09632c0Virustotal results 26.23% Heodo
2020-08-07REP_2020_08_07_669708.docdoc bb249753b6fd6220b43602a1122cd458d29055d3e37603c1a3a1e2f21a81366eVirustotal results 26.23% Heodo
2020-08-07list_20200807_3026.docdoc a288dd3026142c4fb729f070fdb05a968a11a0cb77d24bdcc066866ac51eb936Virustotal results 26.23% Heodo
2020-08-07rep_20200807_583.docdoc 3ec975d212b214553bac033787cb72d8310c493b5261f76b8ba3b5421b9f31e1Virustotal results 26.23% Heodo
2020-08-07Dat-2020_08_07-6959681.docdoc fe1ae8ea8abfaf32f9f1f40504fc00c2f746c6dfb758714e8a29b9a43c35d019Virustotal results 25.81% Heodo
2020-08-07doc 069.docdoc 3915157ac78131871b91bc6eec62153f53f74c5f6e7b6c23451f4b55688a14cfn/a Heodo
2020-08-07list 2020_08_07 051.docdoc c9446d50702574217eb30ddf8a9f1752c77215b5a1d6a451532920aa2a8ad5e5n/a Heodo
2020-08-07Mes_2020_08_07_K0255.docdoc 382174823a7c36d512b36fa77c017170465f34034a645db3517ca6de6e902aaaVirustotal results 25.81% Heodo
2020-08-07List-2020_08_07-1439.docdoc d55a2e0971027bd30b6722f6827d6344f1126b7f7ba6c04a91179b881ca6e98aVirustotal results 26.23% Heodo
2020-08-07DAT ATN3642.docdoc 1cc3fe55cd9952581cd54ff7b1a12d5a7a2aa90d760fda8b9a6b2ea8d010e1a7Virustotal results 44.26% Heodo
2020-08-07mes-APG382.docdoc e3cfb2e0648535875890582842fe912425271c2dfaeb7c1ef7f982a9ac41c18fVirustotal results 37.70% Heodo
2020-08-07file 57124.docdoc 8a05d2fa81e61dc7197f89395e1217f66bbf6daeca792b192b49eafe167ee0aeVirustotal results 38.98% Heodo
2020-08-07mes_20200807_0043044.docdoc 2a7f0551cd0fa000ed5992db4346987430e32084240b9eb53ad0369763734b71Virustotal results 33.87% Heodo
2020-08-07Dat 2020_08_07 1969.docdoc ff8de7de95e6aa0e4144a28e204c568e2b0897039d3c6925195053aa742cd7f6Virustotal results 37.10% Heodo
2020-08-07Mes_2020_08_07_P6787.docdoc bde536ff0957de3adb9867d66016e8c3cbf60783323bb1589b762ca55e034fd0Virustotal results 37.70% Heodo
2020-08-07Rep_954067.docdoc bc4e6f2f51ea8d20050084adfd08a79cd489462c22f07695cb8a948511d1c572Virustotal results 36.07% Heodo
2020-08-07Dat 2020_08_07 IBZ8937.docdoc 8dee1c489137e967d7674246af7a20f33986189be2bc33d2d1c2a766391d65d1Virustotal results 32.26% Heodo
2020-08-07FILE_2020_08_07_XMJ250.docdoc 017a10a1811401d7e7500e1b999024f7188b0636a16751e309fe8dc474232b95Virustotal results 30.00% Heodo
2020-08-07MES_QWQ34352.docdoc ad8d5522103a1694c39d1af9ab267e41522b348969e081dea22d39bdd7ea24a0n/a Heodo
2020-08-07REP 20200807 1289.docdoc 97aecccc681dccb6c444ec9431c1462e2cefcafeec9be0ef61346359fcf11e72Virustotal results 27.87% Heodo
2020-08-07mes_9115.docdoc 5bb39eafa5028062850d6792e1c03eb121c1102ab0454e68ab2ae662305c2f3dVirustotal results 31.03% Heodo
2020-08-07File-8578.docdoc cdad26800b0cbf8b3c591cc545378d50c93a28c735fada99d6bbe4228f2ed6b0Virustotal results 27.42% Heodo
2020-08-07doc_QN045548.docdoc b8dacf3ee73cdfc545f0e66e81dd8331ad345136a5a94dcc78f387bc7dfbea3fVirustotal results 29.03% Heodo
2020-08-07Rep-O932.docdoc 2a005cc6ecad083fbacad57dd64f003039138ab3058b1914a4857ea7390df298Virustotal results 29.03% Heodo
2020-08-07Inf 20200807 85007.docdoc 2d9e8d19691ccc198cf997196c54e831404e2577b1bd3c17ae29b1c78b0f95a8Virustotal results 29.51% Heodo
2020-08-07INF-2020_08_07-212.docdoc cb965595bedf28e722085f2c70f7ade49c8c594ecc499ce0c78bd06d6365cab8Virustotal results 26.23% Heodo
2020-08-07Mes_2020_08_07_6080.docdoc 90f8bbf6dee1ad7d38d610ea379dd8fd80444592cadac1f1497cad9b6d4e5caaVirustotal results 27.87% Heodo
2020-08-07REP-2020_08_07-121571.docdoc 36cf71324f57ceb43b443ab2e5d0670e4adf672165537042e46c23de797186d2Virustotal results 27.87% Heodo
2020-08-06dat 20200807 299275.docdoc 3a17dd818992725fb9bf1c2e0d4d18141f5b9fe15a184e7ebac32b935fe7e60fVirustotal results 26.23% Heodo
2020-08-06File-20200807-FEL69720.docdoc 2c5b7f8488ec8abc944d1a90f84293494cb7c6dea6cd23bad40fce8429f41442Virustotal results 29.03% Heodo
2020-08-06FILE-20200807-WMP9185.docdoc 834ae3e3344f994a972b0a6dd3850fc3a7d26a9d1ab48ed2c3ec49e34239147eVirustotal results 29.51% Heodo
2020-08-06list-20200807-4802195.docdoc 9fda153dee6f47ac4ab198402cc17dac3bd96bd975458ef5dc23e2345abe48bdVirustotal results 27.87% Heodo
2020-08-06Dat-20200807-H197602.docdoc a1668530748354caf4b83b007f729aa168414a2e53c2c87bc4043bdd0c7a3c06Virustotal results 25.00% Heodo
2020-08-06arc.docdoc 98d5c8044b069739335b5df00eabef5dc49008cce5db65b6311bba0e426f1d72Virustotal results 28.33% Heodo
2020-08-06dat_20200806.docdoc 91fb6e58eb106a9b22d169074f6a0cb518ffc6a0a39a4be3f413f540c48c9899Virustotal results 26.67% Heodo
2020-08-06REP_20200806_DTU099.docdoc e4c0b9acd76b72b5cfaae774818c9222ae052b5fdcb6c29bac642d6c0b720477Virustotal results 26.67% Heodo
2020-08-06Rep_20200806_7946598.docdoc 5aa5250ff5c978f28b1cae5cd797f549c018e87636de1298771d8c1fa0e7ad0bVirustotal results 28.33% Heodo
2020-08-06dat_2020_08_06_739908.docdoc eccf3fc72b302caef9a6b06ea0e0498e89c128011dd344bb63df5727b1ad3795n/a Heodo
2020-08-06Dat 2020_08_06.docdoc b1677b8c7736ccca1544b631f95f9c8997e288c8a69b94d957c518f0b12c9076Virustotal results 25.00% Heodo
2020-08-06INF-2020_08_06-08489.docdoc 700aecc7e91d44127bf925bc60a0fa24d7c0b35914acaf5174cb77e3994ce30aVirustotal results 22.95% Heodo
2020-08-06Rep-2020_08_06-2346041.docdoc 5a5f35342c4ad6d11498da54cba1ca23e179c07be2879f1c188262acade4d8ccn/a Heodo
2020-08-06LIST-20200806-J404.docdoc fee5f03d9808ee5aeef5b926cdabd3b142953d0f9f99e64f98da383a2cc5f5c5Virustotal results 22.95% Heodo
2020-08-06file CMV1424.docdoc f7aa8ad002edabd2f760b270adad094da839f79d3db3e3e75a682b1d3c807104Virustotal results 23.33%Heodo
2020-08-06Inf 20200806 WJ500587.docdoc fb05db86753e1ab2e4227a5c2ca675fe5c71335923a91df071ca7feb83abeb85Virustotal results 23.73% Heodo