URLhaus Database

You are currently viewing the URLhaus database entry for http://jantosam.com/awstats/qz0nc-a37c8-065/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:426891
URL: http://jantosam.com/awstats/qz0nc-a37c8-065/
URL Status:Offline
Host: jantosam.com
Date added:2020-08-07 01:43:06 UTC
Last online:2020-08-07 17:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-08-07 01:44:02 UTC to abuse{at}louhi[dot]fi)
Takedown time:15 hours, 42 minutes Good (down since 2020-08-07 17:27:01 UTC)
Tags:doc emotet link epoch3 heodo link Quakbot link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-08-07Invoice-YG93-65472698.docdoc 23f821e6c9ca56b683bf96dc9e8d6d19094c60ea1223073f466278f12a2745edVirustotal results 29.03% QuakBot
2020-08-07Inv-SMF1996-500386530.docdoc 2232504c5ac6d12d0c0acc9590c5957289d5177e41c502d10797f7bfcf436fe4Virustotal results 27.42% Heodo
2020-08-07Inv_VHQM8_142245090.docdoc 8e2f0328288cf490110d9711e7ec0e47174680acecfea564873516b6f1478827Virustotal results 28.33% Heodo
2020-08-07INVOICEVBH524784045751.docdoc 38484bba81fe221467f8808a6667bd4344ab116fdfa4f92a1acccbf8e86d0b4dn/a Heodo
2020-08-07Invoice-C74-8894548.docdoc 8dca57bd20cb1aad6ec1fa7527c59fac9aa9f278935d7eabade0ff47817bda58Virustotal results 25.42% Heodo
2020-08-07INVOICE-E2685-427085.docdoc f2f9d8844e0ea0472349e17048e353522a138927c4b88802535845aa231f0833Virustotal results 24.59% Heodo
2020-08-07Inv-J1955-80812199.docdoc 03ebc44cfbcccf33f186b7fa2350c9b7043d031b274921de003e30d9d999dfb8Virustotal results 26.23% Heodo
2020-08-07Invoice_97_6731339.docdoc 73a3928db928299dd820e0673e47b3ba4173c06c8c22c488567d1999d11f9033n/a Heodo
2020-08-07INVOICE_ZUH1_51255251.docdoc 42642fe5dde80767bb7589d3ea7b83927869d5051f4192da8d9161b5b729d0b7Virustotal results 26.23%Heodo
2020-08-07Inv UHY18 397293.docdoc 1963ca2e2be391e747a22f560cebfcc9664e79b9474527fa4058356cd4483eb6Virustotal results 26.23% Heodo
2020-08-07Inv-QIC1705-50430121.docdoc c6808a80402ca8681d1d154b3c6f34f3234641262b544770e01db268c66b2de8n/a Heodo
2020-08-07InvNQT53420425601.docdoc 4b2a3123f9c35cd05baa562f88b99a767710e4576ab2f5da552c910fecc5b76cVirustotal results 26.67% Heodo
2020-08-07invoice-EWFS36-761880892.docdoc ebfc577418a0ab193288a2ed0c540e2d00b5a5e804aecceef9df0f6f3f90fa75n/a Heodo
2020-08-07INVOICE G1776 40342370.docdoc 382b082eed966058a7515440d5f5a584e13539b7b12e3c75ccdba195df22f2d2Virustotal results 25.42% Heodo
2020-08-07Inv-Y796-42536056.docdoc f0f5f013ab26d3b00b287eaa4f95787de6f79f1655fdaba066db4dff469588dfVirustotal results 34.43%Heodo
2020-08-07invoice-7995-088889217.docdoc 9aefb6f389c5867c81bd2ed1aabdb2c82eadbb256f417b396c0d50d1acc3c942Virustotal results 36.07% Heodo
2020-08-07invoice-ENM33-8637618.docdoc 951dd6a7741aea4cff5813cc5546bccc10ba19d357778b8ea3b7192c5b9dfb10n/a Heodo
2020-08-07INVOICE_BN5_8870133.docdoc dc902686200b4381ce2048e0d38c3f06a3d4da56353244e6a917b8b0f27df7a2n/a Heodo
2020-08-07Invoice CF5 3712287.docdoc add946cadfee3925c92464994e209117e44bed8d9f57d75dca1ae4baf0f41e90Virustotal results 29.03% Heodo
2020-08-07invoice-FGGM1925-4631974.docdoc 6cdade839f05e749d79545f061af1a49db0f84ebbbb8cdc86f7738c7e5d568c9Virustotal results 27.87% Heodo
2020-08-07Invoice-MZ36-948126.docdoc add7e88ace3a0a56cfe71a0681631f5fd7fee1b19757da23283c524784ae7a33n/a Heodo
2020-08-07Inv_8_332640.docdoc 4528ae49466b05296cde29f30b295e9c405e8fdb60e9ddfea00f6ccfd7d950b9Virustotal results 27.42% Heodo
2020-08-07INVOICE-6364-6505487.docdoc 2578059d07477ef34a31cf4195c47543fe2463d6eea9687ab6c2b4416926ff37Virustotal results 27.42% Heodo