URLhaus Database

You are currently viewing the URLhaus database entry for http://milehighffa.com/1MXjH0onSekDbSm8 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:46109
URL: http://milehighffa.com/1MXjH0onSekDbSm8
URL Status:Offline
Host: milehighffa.com
Date added:2018-08-22 19:13:08 UTC
Last online:2018-09-14 21:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: unixronin
Abuse complaint sent (?): Yes (2018-09-07 11:40:51 UTC to abuse{at}godaddy[dot]com)
Takedown time:7 days, 9 hours, 27 minutes Bad (down since 2018-09-14 21:08:29 UTC)
Tags:doc emotet link heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2018-08-24Tracking - Freitag, 13:00-19:00 Uhr.docdoc 4f76dfd7d2b578b718671cf1ad7d09524a54cdbec57c10709d63d81b5a695f2eVirustotal results 21.67% Heodo
2018-08-24DHL Tracking - Freitag, 15:00-17:00 Uhr.docdoc 50ccc6c37eea4dd76202531bed56dff7bb5c323b3aa8008e1a84d7157707c7bdn/a Heodo
2018-08-24DHL number - Freitag, 15:00-19:00 Uhr.docdoc ab11063e17830817b9a424e2f169b94ec34cd90d472f44598e18c4af720b3173Virustotal results 20.00% Heodo
2018-08-24DHL number - Freitag, 12:00-17:00 Uhr.docdoc ed7f5475aa46fe18e469001da97c529181941cae2d7e5a8b0c8219f2de12dbc4n/a Heodo
2018-08-24DHL number - Freitag, 11:00-19:00 Uhr.docdoc 912da68953a25444aae15ea8f616f588dd66f6e1f51ab0dd4a98fffc353a059bn/a Heodo
2018-08-24Tracking - Freitag, 11:00-18:00 Uhr.docdoc 5bfa5bf2686ed5cfa84013363fde141a12dd62abe945d4cfbe0201edf71e1514Virustotal results 18.64% Heodo
2018-08-23Tracking - Freitag, 14:00-18:00 Uhr.docdoc 79c7f2a0b2f5480e3b2dc9b53732a097ed4151c286dc5ff8fa2990f578acd08cn/a Heodo
2018-08-23DHL number - Freitag, 12:00-19:00 Uhr.docdoc 93fda2392ff3651abb5a5a0e741d88094a51fc1ced0256b42d2b534f878dfdd8Virustotal results 20.00% Heodo
2018-08-23Tracking - Freitag, 14:00-17:00 Uhr.docdoc 515ae722bc93935cfaf7420351296dd32974d7a2668d24d0b5f0aef030c57ba5Virustotal results 20.34% Heodo
2018-08-23DHL Tracking - Donnerstag, 14:00-18:00 Uhr.docdoc 43002a55fa5d9127c4fbb3eb433905b4d4ca1f472de14d6127d5a069b304ba5cVirustotal results 20.34% Heodo
2018-08-23Tracking - Donnerstag, 13:00-19:00 Uhr.docdoc 02e2263411dafea25935be069c1b2b41e07facab08797da2fc985f509bbda46an/a Heodo
2018-08-23DHL number - Donnerstag, 12:00-18:00 Uhr.docdoc 4b89d37022dc5ee4dbc0003502cfcb43bcfa83b861616dd9db294bcdf5dd840en/a Heodo
2018-08-23Tracking - Donnerstag, 12:00-18:00 Uhr.docdoc 7cfc02799ac05b5b4ff7af4a221e3dc148f52ec655e011ed8ff28cffa45ad373Virustotal results 21.67% Heodo
2018-08-23DHL Express - Donnerstag, 13:00-17:00 Uhr.docdoc 31ce2216761aa38862c1b4e696ef6577661e3c98a2513270f255ab14f3db14d6n/a Heodo
2018-08-23DHL Express - Donnerstag, 11:00-17:00 Uhr.docdoc 2c6a72201610dff0ca4143348eaf130306d21a0645931e6db50d1312fdb31d2eVirustotal results 26.67% Heodo
2018-08-23Tracking - Donnerstag, 13:00-19:00 Uhr.docdoc 1ea926057fb6dc469e429011846ed19275825ba4abd68751259aa1d004620e9aVirustotal results 27.59% Heodo
2018-08-23DHL number - Donnerstag, 14:00-19:00 Uhr.docdoc a5008aa676fb57b1abcb46b96f291e158166e5f43ac677ac9be8c041b337b2c8Virustotal results 27.12% Heodo
2018-08-23DHL Express - Donnerstag, 12:00-17:00 Uhr.docdoc d1beb35e4f6c48fc5e14dfee28927039cc298936b968f6282caad20b77ed8ac7Virustotal results 26.67% Heodo
2018-08-22DHL Tracking - Donnerstag, 11:00-19:00 Uhr.docdoc 3e01593331fb6dc81cad6f88c9b93f53bd6235d483a1f2426f9ace3dc0f2fa85Virustotal results 25.00% Heodo
2018-08-22DHL Express - Mittwoch, 13:00-17:00 Uhr.docdoc 2fa7d13fb696a537c5afa27e55c0bb0718bf65ba0ee50fa9307cd58aa81ddd76Virustotal results 21.67% Heodo