URLhaus Database

You are currently viewing the URLhaus database entry for https://syntecks.com/shop/paclm/TSzqG/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:444840
URL: https://syntecks.com/shop/paclm/TSzqG/
URL Status:Offline
Host: syntecks.com
Date added:2020-08-27 01:05:34 UTC
Last online:2020-08-28 05:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-08-27 01:06:04 UTC to abuse{at}hetzner[dot]de)
Takedown time:1 day, 4 hours, 22 minutes Poor (down since 2020-08-28 05:28:05 UTC)
Tags:doc emotet link epoch3 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-08-27ZDE-080120 BYSR-082720.docdoc 262880b400d99283c606eac7c8f305097817ae5c81aca9961970efb5176cd961Virustotal results 28.07%Heodo
2020-08-27INV #00310 FOR PO #003699147526.docdoc 8969e1e9e29920ba44157da474d4851706f1f63a58b7cd36a87845beaea2af9aVirustotal results 29.31%Heodo
2020-08-27BQ-080120 PNBP-082720.docdoc da824fbeb1aca76e08e78a0e568930de8ef2c71147fcdc20943bf61f59e8a477Virustotal results 29.31%Heodo
2020-08-2700038978.docdoc c48f047235aef5e47fa8fdbe08dc7b9c9bf5625f22e2e5c48bd9cf09dbe31d27Virustotal results 31.58%Heodo
2020-08-27Invoice #2647436.docdoc 02db21d12dc0b5d4da95ae253092f640997129f192be9c9bf0ca6132f5cd7e2en/aHeodo
2020-08-27ZI0 invoicing.docdoc 1653613e54e13601c4799c80c854d900b5b794b6f042130935272db8d6d1e2dfVirustotal results 30.00%Heodo
2020-08-27INV #0585535 FOR PO #038727606896.docdoc 0abe748102c354778262121f25bd6d445be4c21e6c3d5ea5f11982bbd8e10ecdVirustotal results 28.81%Heodo
2020-08-27RV010 invoicing.docdoc cbe78f7b605decf53999dc44e92f4b8d9bb13637f7f40d771a04903ad9ec15d4n/aHeodo
2020-08-27Electronic form.docdoc 38aa8eabb4d27eeb9f5150b1d2f27b755f88b11df1a1985794f6677e3c1eb827Virustotal results 28.81%Heodo
2020-08-27Electronic form.docdoc 3655157b27b8b084443564d11a050740b1e72edf7bb35e9b2cc619eb795c52acn/aHeodo
2020-08-270846334.docdoc c057d3a53fbd3e1a5bdd009795ab34ec5300e41d3bc79ac2767fc1d845ebf532n/aHeodo
2020-08-27Electronic form.docdoc 4875db6cc826948164d8fa9b177fb20066906af4781846eecf82cbe9765a305an/aHeodo
2020-08-27091751.docdoc 1e01a8df8f521e0db311144288882290f51f66435f7ef11584a1d8c4166ec7aeVirustotal results 27.59%Heodo
2020-08-27Copy invoice #6820.docdoc 08531c896c900816e373957872ce7e55db50203fd681019719dca8fc27882b40Virustotal results 28.81%Heodo
2020-08-27Payment status.docdoc 982ec1619efb871fbcb238050b05cb55e526b8ea31b8759bde9e20c45ec482b8n/aHeodo
2020-08-27INV #05433 FOR PO #0531545380.docdoc 8961b61c4631b8c84367078e44fc1066f57830e0bc0622af1de7769f82e6442eVirustotal results 28.07%Heodo
2020-08-27August Invoice.docdoc f663b206e32202cdb2b7fe26738d009a4c1fb76352cb8e9a46bd1a7bc6060bb3Virustotal results 27.59%Heodo
2020-08-27Form - Aug 27, 2020.docdoc 2bae2742fb283aa2f35ef1722797919ff00e34f7e1868ca7841fc5baafdefe96Virustotal results 44.83%Heodo
2020-08-27INV #0608 FOR PO #8245319.docdoc dcab189bda6e7d076cfbc0f53566282de853a7676cf630a340bb8fd1288adfabn/aHeodo
2020-08-27Form.docdoc c741db44bb434a01cb739da0ba7df5ad5e396e7a3a5afcf79c11d071a5339b4bVirustotal results 43.10%Heodo
2020-08-27Y2660869466ZO.docdoc 94105da5eacb6335fe9b4b5bcf8eef7393f90e7d4e09fb4b98a4d73418aa8968Virustotal results 44.07%Heodo
2020-08-27Invoice #215833000.docdoc 11f958d598c4e1b0b0978b6e9d9ea6f5e1a8fa34f1af035d657f13b04bb128ben/aHeodo
2020-08-27invoice #205546.docdoc 469ac8a418f2dbb4e433d022cc757fe2ddb270878b4c7ab13ebf4f8a316c30e6Virustotal results 41.38%Heodo
2020-08-27Form.docdoc dbfbc13ff098e5c8ed87a620e5e73f075dc9ac85963d50111843d28ea929a4d1Virustotal results 41.38%Heodo
2020-08-27001243919.docdoc a7de5e7039339ecbff062dcb58d75a469ea8240a5f7d1549f67e69e56443865cVirustotal results 38.98%Heodo
2020-08-27Invoice.docdoc e0cc6b1684c8b8e688fb1f1a48960cb333e7001b6b8aef55314c0a4cb3ef74a5n/aHeodo
2020-08-27Z006 invoicing.docdoc e45a7277159aac8916096aa45b400cdd23c26f876fb6a1753d95e1119c352259Virustotal results 31.03%Heodo
2020-08-27Inv. 003022244681.docdoc 0cbddd5eeb728ba41f56bd3066629b9ad20536c1373057891cc5ea201d70c2d2Virustotal results 31.58%Heodo
2020-08-27Electronic form.docdoc a12169bfd5b2999a36e090c627578d1d8c9a00225ae68ec13361f8c61de5cee6Virustotal results 28.57%Heodo
2020-08-27Inv_96604.docdoc abb6a2d69cf06ee0f478dffc60db892a43144052a046dec113d28faf718c640an/aHeodo
2020-08-27invoice #59318.docdoc aa6642f3646a47adb129237f6b98cae77adf136b5e30fd9f9b2c05219fd730d0n/aHeodo
2020-08-27invoice #07838.docdoc f0f0b47493858a336750af576adda44472e0e356aee227c530620df0f158e3b0Virustotal results 29.82%Heodo