URLhaus Database

You are currently viewing the URLhaus database entry for http://elifmakina.net/ww4w/AgXv/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:426750
URL: http://elifmakina.net/ww4w/AgXv/
URL Status:Offline
Host: elifmakina.net
Date added:2020-08-06 21:48:07 UTC
Last online:2020-08-07 14:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-08-06 21:50:03 UTC to merkez{at}aerotek[dot]com[dot]tr)
Takedown time:17 hours, 1 minutes Good (down since 2020-08-07 14:51:46 UTC)
Tags:doc emotet link epoch3 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-08-07INVOICE_AQY4452_73489759.docdoc 8dca57bd20cb1aad6ec1fa7527c59fac9aa9f278935d7eabade0ff47817bda58Virustotal results 25.42% Heodo
2020-08-07Inv EGSO363 086039073.docdoc f2f9d8844e0ea0472349e17048e353522a138927c4b88802535845aa231f0833Virustotal results 24.59% Heodo
2020-08-07Inv_XNN66_76211613.docdoc 0a4b53e2bf7608fe93c60618cf50a657598aa4fc95b947cc7fa7b8fb0331d561Virustotal results 25.81% Heodo
2020-08-07invoice SSE7484 686571634.docdoc d95a095f1cf9bdfaa08a2f69b690d0a9ab88aeb363b878d2fc63e4cf35f7e055Virustotal results 26.23% Heodo
2020-08-07Invoice MX1249 539401.docdoc ebfc577418a0ab193288a2ed0c540e2d00b5a5e804aecceef9df0f6f3f90fa75n/a Heodo
2020-08-07InvoiceUTXP470912991860.docdoc 382b082eed966058a7515440d5f5a584e13539b7b12e3c75ccdba195df22f2d2Virustotal results 25.42% Heodo
2020-08-07invoice-UE9-836447.docdoc f0f5f013ab26d3b00b287eaa4f95787de6f79f1655fdaba066db4dff469588dfVirustotal results 34.43%Heodo
2020-08-07INVOICE ATRW92 001073.docdoc 541b63c2ab13054f7115d4b65a2a960000cad86e64e288324f1451b59513e499Virustotal results 36.07% Heodo
2020-08-07Invoice-84-644724.docdoc 0fea8c2db3c475ea941bccbf546ba42a0356694e55823438931173dfd40edc9aVirustotal results 32.79% Heodo
2020-08-07Invoice 95 654616.docdoc dc902686200b4381ce2048e0d38c3f06a3d4da56353244e6a917b8b0f27df7a2n/a Heodo
2020-08-07Invoice-289-318756842.docdoc e13305ad2e8d5c6ebb9398980c6c22d613cb853f6a7ab015f7aa580dee3f23ebVirustotal results 29.03% Heodo
2020-08-07Invoice ADF0 069822.docdoc 8dc4ee504a8ea556b64d28c15876e54b2e03147b5b2ff7aa66729571400dfedcVirustotal results 27.42% Heodo
2020-08-07invoice_1_4585695.docdoc 1c024255eecede738af23041dce02427bf7d670769be308c2982406778aaa045Virustotal results 27.87% Heodo
2020-08-07INVOICE-UBAJ485-823270.docdoc 0a15f8cbb2249b4804d584bf72b384a9625d76844ad7294ddd0907b5bd5f4d6bn/a Heodo
2020-08-07Invoice3793919.docdoc 3cf8911f418c981d0ec4b19a457e634d457fad09fba0f349b483eaaeccb6fbe3Virustotal results 27.42% Heodo
2020-08-07invoice 23 69330935.docdoc 7114fa97be84770acda36b612f99c302ed013153b77ed3a067d02d76094c96e7Virustotal results 27.87% Heodo
2020-08-07invoice-W22-394378032.docdoc 599bff84f6835e3eff8a5e7f6192124c49303456a44a649b21bf01616f2df1dcn/a Heodo
2020-08-07InvMBLV931737688819.docdoc c9a9fbc41a7285f67d63ed23242f654f3e2a86ddc21f38e5b7d7059c5af1de4cVirustotal results 27.87% Heodo
2020-08-07INVOICE_MLYU822_231035.docdoc a8585830fa13dad333bb6013a31fbd091a1bdf83f13eee388f27e3aab345fbefVirustotal results 27.87% Heodo
2020-08-07INVOICE-TDEX2800-96784605.docdoc 4f45c033ce53894098871f4cc7496a3c068390adaebd9773d649ab906581822dVirustotal results 27.87% Heodo
2020-08-07InvTDL8216679903.docdoc 635ee74a309d9f1f7b4d0096a218aaf10f90d115c83ce91dd0ebf02199b4d84bVirustotal results 27.87% Heodo
2020-08-06invoice-T1-51543240.docdoc c9ce39498cdb7fb2227bd9ba2986cca4864f406c8afec758ad67bdee7c1f735bVirustotal results 27.42% Heodo
2020-08-06invoiceJN2541251458.docdoc 2aaa85dd9ac60aea2f5746aaa7b925bdf4453f69fdf378f446da71cb35378c9aVirustotal results 27.42% Heodo
2020-08-06Invoice-YA769-511140.docdoc 61407a2bb77dfa22827b5735f1e9ea42fe52799d2d5c0e1c2ac85290efbe9579Virustotal results 27.87% Heodo
2020-08-06Inv_P5_4453776.docdoc c98c4be3318c611e5a7ba96baed3a9da43243f367141d79a04924edf603ae9d6Virustotal results 27.12% Heodo
2020-08-06INVOICE-UFB20-536532.docdoc 368008a52450985d2ceebd6e4393f876a03212b37edc2d376013f1ced7e41975Virustotal results 24.14% Heodo
2020-08-06invoice_C9_127874390.docdoc 56336192a4f8789f6eaeb22a57ca0f54bf0ff5ddaf7455af8864714c0d941e30Virustotal results 26.67% Heodo