URLhaus Database

You are currently viewing the URLhaus database entry for https://www.movelogistics.net/wp-includes/xxsoaj6z3ay-00079/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:445384
URL: https://www.movelogistics.net/wp-includes/xxsoaj6z3ay-00079/
URL Status:Offline
Host: www.movelogistics.net
Date added:2020-08-27 18:57:07 UTC
Last online:2020-09-08 11:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-08-27 18:58:04 UTC to abuse{at}liquidweb[dot]com)
Takedown time:11 days, 16 hours, 29 minutes Bad (down since 2020-09-08 11:27:21 UTC)
Tags:doc emotet link epoch3 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-08-29INV_9319.docdoc 5df4f10d255d1733e9450ecf67d166c73f6f29bb36efe88d6093a31d31ce0ad4Virustotal results 45.45%Heodo
2020-08-27Form - Aug 28, 2020.docdoc 97dfe06b3f4e9ebb2beb149355b82886fe468ce91c30adb82a16097ec15cbdfdVirustotal results 33.33%Heodo
2020-08-27PO# 08282020.docdoc 55729022c3684fd899ee712d0d0d3dbfeb5161fa842b101cd28dfcf85ead1a74Virustotal results 32.20%Heodo
2020-08-27PO# 08282020.docdoc 5eb93964840290b1a5e35577b2e7ed1c0f212ef275113d5ecdb4a85c127ae57an/aHeodo
2020-08-27Inv_62673.docdoc 249258e389c57dae809f34520051324f678dda2c946e37189377ac5ee3a7c8f2Virustotal results 32.76%Heodo
2020-08-27invoices 1521 & 5599.docdoc c87ff4601214eab29d1318e621dac4a0ae69e9f3ec301f4126b4dfff0a947572Virustotal results 32.20%Heodo
2020-08-276577045108HZ.docdoc 5bf845e70cde6a5112d1aec081e98995bc8494ce31682762bad07ec7c92a2889n/aHeodo
2020-08-27Payment status.docdoc ab3a6860b1695e639fb5909d56fdb6d9fe3ebc90a9327c3061ea31bc131630b7n/aHeodo
2020-08-27invoice #21679.docdoc 7b6888dbb025af550f9a973dc79ee2a0ec62237cb93a5e504b18761976eac998Virustotal results 33.90%Heodo
2020-08-27Payment.docdoc 13da78d90cace28cd0e40dbd890ee0a9213761726b36feaae5f25868b88b9201Virustotal results 34.48%Heodo