URLhaus Database

You are currently viewing the URLhaus database entry for http://spitzertech.net/wp-content/invoice/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:431649
URL: http://spitzertech.net/wp-content/invoice/
URL Status:Offline
Host: spitzertech.net
Date added:2020-08-13 06:56:04 UTC
Last online:2020-08-14 04:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: spamhaus
Abuse complaint sent (?): Yes (2020-08-13 06:58:02 UTC to abuse{at}a2hosting[dot]com)
Takedown time:21 hours, 15 minutes Good (down since 2020-08-14 04:13:57 UTC)
Tags:doc emotet link epoch2 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-08-14U_CCI_080120_HPF_081420.docdoc 94c8419a57e163d01d78932f2246ad3427a18aae25869403b06980ba98cd1fcdVirustotal results 36.21%Heodo
2020-08-14FILE_39477863.docdoc 5b9c77e173da67ad419ce7c2c1264bd51647f242339265f6ea7a2af57ddd8f5aVirustotal results 36.67%Heodo
2020-08-14REP_641496301305.docdoc 13425d91c0471208df6a06b23e5f176fea8637422e82c95f1ecd534aadda855bVirustotal results 36.07%Heodo
2020-08-14HIRLBYGRI5H.docdoc d14b37fdf7ad86b3794264b6df4bfd7efbfd5ae07b03e72a800be6d16ec8aa83Virustotal results 35.00%Heodo
2020-08-14DOC_CI9497214790VY.docdoc 36d38e224e4d9711b5753532010c6306d1a2f2c9a73bcefbb77c27b8e4efbadcVirustotal results 36.07%Heodo
2020-08-13REP_YAY83QOQ8GA3.docdoc c9e89425f775cb4730a750e85f88ea3de6b4e8357d390b4aae06840b903a0e5bVirustotal results 35.00%Heodo
2020-08-13DOC_70793164.docdoc 45499aea148661dd2031d6e1da9a40dc9a831dbf19bef56eb485bccc18cca164Virustotal results 38.98%Heodo
2020-08-13REP_8EVZKMSNHCX0Y.docdoc b82cee3503f81e3078790d5ee8d98c23b7bec79b6c0646ffb0d1cdf1d462afe8Virustotal results 37.29%Heodo
2020-08-1352CSVKJYNT.docdoc 34aed4bb09915606f5373f0d72261b384fe3d85fcde9b3c716ac00967158ec77n/a Heodo
2020-08-13A_PO_08142020EX.docdoc 91cc4ef16008d86cae761d994b19c9e3a0ca67e1033dd418f0b39d00b4d003a4Virustotal results 37.70%Heodo
2020-08-13PO_08132020EX.docdoc 76d6e758439093b21d8591b1495e4519add573acd81e7c685212ea300c41b7b0Virustotal results 35.71%Heodo
2020-08-1347629626.docdoc 0f56c76a4c47767ff9ff3f8a9fdc37edabf5d585992ab218eec6d39627dee63dn/aHeodo
2020-08-139OKG16XSUN1L5.docdoc c08b268b234a3784f542f8e40a2f8004fd0f60a73c75aa0471cf23ca2d64c7f7Virustotal results 36.67%Heodo
2020-08-13REP_BJO_080120_IDX_081320.docdoc 15d1980af7ca71885dba9f7887ad95dd5b49442818013ec5293e6145f4cf5897Virustotal results 36.67%Heodo
2020-08-13PO_08132020EX.docdoc 691b99dee2ef914fdd3bf303b640843ff12e10ce1cf0bedf440b8d134ac7ff57Virustotal results 37.70%Heodo
2020-08-13H_OG1G35HZFTA.docdoc e2f068640b668762d51554e1bc9b5d61b3942708a99f8ee1f993348f345f89a3Virustotal results 36.67%Heodo
2020-08-13PWV_0951928294741.docdoc b8c7112d2672445960d4ca69da612b07b761b5119015c0dc4e75064b85978ff0Virustotal results 36.67%Heodo
2020-08-13DOC_9123271594928.docdoc 537b82770a281caa9472d66d322d16411e29851ee2a0b50528909951cafc59ccVirustotal results 35.00%Heodo
2020-08-13REP_PO_08132020EX.docdoc 02e1a4ab50d9465ed37429b538a0fdc7b977b21a9d50bbc7ec859ca51627da37Virustotal results 35.59%Heodo
2020-08-13INV_WEYH10M7ELY0.docdoc 63debac1dc47253a22b7685b416a733cc7e26d572390701bc3a2f5a9777e2143Virustotal results 32.20%Heodo
2020-08-13INV_ZXS_080120_NXB_081320.docdoc 964bb9e35389ab3548e2500223110b3ed04c0615a423017037d0c9985e784d52Virustotal results 32.20%Heodo
2020-08-13INV_PO_08132020EX.docdoc d23240e530c6e128759819077cbfc29eba747c717b96093efff66a139c0bb25cVirustotal results 32.79%Heodo
2020-08-13DOC_WS8916252673IQ.docdoc df8919a57eafa270cc35700fb2edab8c2e7c0b3e2bffa1ab48e747ec2dc1e5ccVirustotal results 30.51%Heodo
2020-08-13BAL_PO_08132020EX.docdoc 50ae6ef0151e609445f804907715e5381eaf3d7b45d75cad261dccd87069e371Virustotal results 28.33%Heodo
2020-08-13BAL_02440360.docdoc ec41f13f258ac8460cde5a3aad8b3303f36d8153ea400e4fecfe88cb380fad4fVirustotal results 29.51%Heodo
2020-08-13REP_6843182075109878644422.docdoc 9c4b90d3c6366d048bac579a06083e0c8cc405997c19ade21c0dd68010b5b0f6Virustotal results 28.33%Heodo
2020-08-13K_FE8884201139EG.docdoc 4a62d3729df93b38995a6be4a79fd8785c7591f0230b355532afcc18f823ab7aVirustotal results 27.87%Heodo
2020-08-13INV_45314017633179487263.docdoc 6abe762dcf788992b9e1b94b3ade58a35557ef0d7548ccffeaece390e4dffd5dVirustotal results 27.87%Heodo
2020-08-13PO_08132020EX.docdoc 5676f8c9d64ac486598ab8bed74e1dc329b9b7731524f07be808866dfe216afbVirustotal results 30.00%Heodo
2020-08-13INV_PO_08132020EX.docdoc 09bd7f442749dac84e11577aa507719969f7eac112f256a50e5b9e8d823a3b78Virustotal results 26.67%Heodo
2020-08-13NZVDCRJ97AD.docdoc 02e3709bae515c464ffd58cff635717bb10f8a7333efa3be788a76b84d46ae54Virustotal results 26.67%Heodo
2020-08-13FILE_KF9034138420ZY.docdoc bedf54726f739f906db66965be55e05516b933ce872264751f3dd48f5b9db8fcVirustotal results 26.67%Heodo
2020-08-13FILE_PO_08132020EX.docdoc 52426d2c2644ab78cd7fbe3a9e0d19acbd34903d9f62d42fe2e999b964e3eea7Virustotal results 29.31%Heodo
2020-08-13DOC_39582924.docdoc 0c4015de45653ee2f8fc6e338461a2377e14139b1ff879df5a2fe1d3c200a15eVirustotal results 28.33%Heodo
2020-08-1300416722.docdoc c62e7473580736e9ec7372d05bfebc80d995dde8be351119f101ba366ef172b8Virustotal results 26.67%Heodo
2020-08-13INV_QGQAHS4FD6X5HLX1.docdoc 2731bdfe77c211d311b857d10babfacd3acfb74042d2c03c3ccc5b4b0abccfe8Virustotal results 25.00%Heodo
2020-08-13BAL_XM8127970152TZ.docdoc 1ef5c1b7a68f7241097e40920f2b68d84457829edde96034073b68decbd72cb9Virustotal results 26.67%Heodo
2020-08-1311261614.docdoc e303bd587f94e0cc2bee4cd31594d807f186aa22f04da0615deaa6c27863e72aVirustotal results 28.81%Heodo
2020-08-13KSTO_YH0287313088TP.docdoc a43459929d854bd45e199f862787f3ced92d62480d21ad719eee50b8591aa341Virustotal results 28.33%Heodo
2020-08-1327433160.docdoc 476c19ca963d9a17e5e758320b98ec3c0fd457fc9c974651e838d52313f651acVirustotal results 28.33%Heodo
2020-08-13QJS_390860878828.docdoc 263e06d02ebaafda7a8e56a3974807634c9f1afa868382fa60527dd2016265d8Virustotal results 28.33%Heodo
2020-08-13FILE_74476900.docdoc e16da409effbabec15fdb033b55430e1badb6d19b4608b58230d43558ce007ean/aHeodo