URLhaus Database

You are currently viewing the URLhaus database entry for http://agentsdirect.com/Services/yuct20/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:428926
URL: http://agentsdirect.com/Services/yuct20/
URL Status:Offline
Host: agentsdirect.com
Date added:2020-08-10 23:40:06 UTC
Last online:2020-09-24 11:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: spamhaus
Abuse complaint sent (?): Yes (2020-08-10 23:42:03 UTC to admin{at}internetnamesforbusiness[dot]com)
Takedown time:1 month, 14 days, 12 hours, 11 minutes Bad (down since 2020-09-24 11:53:03 UTC)
Tags:doc emotet link epoch2 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-08-13REP_14557235.docdoc c934d43432962505a2f53b7950061889cfaf0d910a603793d8a5a814fe912471Virustotal results 49.15%Heodo
2020-08-1296915115.docdoc b09cdb8f91eb70d7f179d304a4585ab2b1867a160d9760ab236065aae029268dVirustotal results 50.82%Heodo
2020-08-12BAL_PO_08132020EX.docdoc 18a21fb577e46bcc0d46c9517a8c658172fe1262549ee32c8b6910e4d186619fVirustotal results 49.15%Heodo
2020-08-12FILE_8782719436.docdoc 9560b2aab2f8964f9d311f48c38bfb28b97ac4de7f71ec667e4ea68e921a2c62Virustotal results 45.90%Heodo
2020-08-127E3CSNLHK.docdoc b7e654a560a88bf16d0484d7edaddf1aa1bd09fe6329b834be3b7a6d02da873bVirustotal results 40.68%Heodo
2020-08-12Y_SKF_080120_QGB_081220.docdoc 4022f86118308a81871dda7de649a02d68e5c22b36aa00b2c75bbd93e9bc992bVirustotal results 40.00%Heodo
2020-08-12J_0928309333.docdoc 5039852e09153172ff5ef82c3e169e6a8c73a0b9f50c3ccdfac9773c3918bc09Virustotal results 29.31%Heodo
2020-08-12DOC_54853439.docdoc 6db3913fd8c05f2dde571112d3659bb43e3fb889f45ba9e99f49510b33d576c1Virustotal results 28.33%Heodo
2020-08-12BAL_648427437621024456.docdoc f3e65ce923f77dcb02b0c58ceba708791ca436bbc17560e262375f9c72fef49fVirustotal results 28.33%Heodo
2020-08-12DU2061309093GV.docdoc 4d6b98ee214b8dbf1b7241f2308904bbf6ddb8ffd1ce6d6c6771f03b9afba077Virustotal results 28.33%Heodo
2020-08-12FILE_TH3628887132BE.docdoc f54babb1bd506c10af7ded30d90a42d0cbb37969b9c5187f964047acffd9dbc0Virustotal results 54.24%Heodo
2020-08-11S_PO_08122020EX.docdoc fcb4120968947831c770a9f9e417a3d5d086b88b36417afe22aa11b671d42a0eVirustotal results 51.72%Heodo
2020-08-116576839748.docdoc 1b12d2490da123684664ff9e627dddc8f23b3a666af8331bf3cc409949f91f31Virustotal results 50.00%Heodo
2020-08-11FILE_PAD_080120_OON_081120.docdoc 34636244b17eb5cd6c19880f8f7ab9c65fd715535aadb192649ec2eae9887fd7Virustotal results 44.07%Heodo
2020-08-11REP_TRJ_080120_GYV_081120.docdoc 8ba6e22d298dc4a7b8722b5e15bfb9f8b4128d0fba504cff7fd4acd55999eba5n/aHeodo
2020-08-11PO_08112020EX.docdoc 16004f742c9d51196b4a45e665c360f8eecec87448f703ca65f1ca9fd2748debn/aHeodo
2020-08-11UCK1FOMGD19JNK.docdoc 8485fb683f1a2aa8d48bc940e3555d755bdb4fdaac78f8bb03cae49bb8cb066dVirustotal results 37.29%Heodo
2020-08-11NO3338780011GR.docdoc 2cf1f43470ff33536fabf3c1c6bfb82ea01ca6802e217e3723d642e86a185bf6Virustotal results 27.87%Heodo
2020-08-11BAL_94743380872857058134.docdoc b20330780ffde03eb1b391b3a57cd24eca45f10aff5916ff6ac1366f033f6c32n/aHeodo
2020-08-11REP_27337226.docdoc f6fa765a0885ee4a0383d1fec754e6051fc90b598eb9c66cc528e9adacce7d5bVirustotal results 23.73%Heodo
2020-08-11WRAT_UGN_080120_ZPN_081120.docdoc 26f2d0be90f31615389dbbc0800b2437556f84944b561af3af4aeec726dd70a6Virustotal results 44.26%Heodo
2020-08-11FILE_LS7031488611BS.docdoc a5231ddcc0dd60b8e592e26d19adc81ec13162c2ec100b3df902c514c88bc75cVirustotal results 43.33%Heodo
2020-08-11INV_PO_08112020EX.docdoc 924b9f4dbe781387fa790302dd7c272c776d48308416d3a69622bfd4ccfc6421Virustotal results 40.98% Heodo
2020-08-102B700GS.docdoc 5639cd7dc28e657166158b5345a1fe6740030c810a8dcd0a75ecb519caad072aVirustotal results 40.68% Heodo