URLhaus Database

You are currently viewing the URLhaus database entry for http://manatour.cl/Document/EN_en/Invoices-Overdue which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:49163
URL: http://manatour.cl/Document/EN_en/Invoices-Overdue
URL Status:Offline
Host: manatour.cl
Date added:2018-08-29 15:26:27 UTC
Last online:2018-11-21 17:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: unixronin
Abuse complaint sent (?): Yes (2018-09-07 11:35:06 UTC to netadmin{at}grupogtd[dot]com,soportetecnico{at}grupogtd[dot]com,abuse{at}grupogtd[dot]com)
Takedown time:2 months, 15 days, 5 hours, 41 minutes Bad (down since 2018-11-21 17:16:59 UTC)
Tags:doc emotet link heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2018-08-31Billing Invoice - Job # 102107.docdoc 87d1341c26511e57d07e8df5c6d6cd64d4d6f95e7403e171c1fc38415d134177Virustotal results 33.33% Heodo
2018-08-31New invoice 40X7E629816.docdoc 79765635b755992b9035560d4e00b550c3690c4a75d4e022b5998f11db4db738Virustotal results 42.62% Heodo
2018-08-31Invoice.docdoc 8f42e8029ea6ab00d08e940285fb29ab142f427f8354b9452eb6878fc0e0937dVirustotal results 39.34% Heodo
2018-08-31Invoice as at 31/08/2018.docdoc 3a2ce04a9398657962a31a6e53e5762b754fd7bfd675a34ed40bf5817c15964cVirustotal results 40.68% Heodo
2018-08-31Invoice Query.docdoc ddb199fccffb5e66dbe65054ee17ab0e9c1a4287707c8a781c666934e276f318n/a Heodo
2018-08-31Billing Invoice - Job # 381945.docdoc faf92cf99ada67ede9148966c47fd3482db2d4812555450a34f8cdb7906837e5n/a Heodo
2018-08-30Invoice Confirmation 3E95513.docdoc 92e27f0f1bdefda08f890d324e4a631f53f33096379d9bba32efb554a4834dbdVirustotal results 33.90% Heodo
2018-08-30Invoice # 2XT124821.docdoc e2aa8ae89ff4e8c23ef5cdeafc3c208b1ec2061735a855bd4694faa7a69e22b6n/a Heodo
2018-08-30Final notice.docdoc 2d3b8c2a662fd3a6f0693f5f010493c79f45a1edabfe16f8f22d5af3a56714c4Virustotal results 32.79% Heodo
2018-08-30Accounts - Invoice.docdoc 499e366d052b2456375a48c68d71b5fab9013834be17ad8c4972b514d1f090d5Virustotal results 32.79% Heodo
2018-08-30Invoice as at 30/08/2018.docdoc 2a0df4d0005fa84de6cd6ccbb337de5ec045e1e7a86bd79607089b3a2eb84723Virustotal results 31.67% Heodo
2018-08-30Accounts - Invoice.docdoc f75136051ff1f592a523db55a99a3d18f2daebfa648271c67eb4a0c66bb58ebfVirustotal results 31.67% Heodo
2018-08-30Month notice.docdoc 236961983c929d5cc8995eb5c7c6bced61dd60e70912bb11018c96f356eece31Virustotal results 35.00% Heodo
2018-08-30Billing Invoice - Job # 126788.docdoc 6db4f090094bade9095701030eb9f3b5b3f0d29f8617ac475d9d327d333919c7Virustotal results 35.59% Heodo
2018-08-30Invoice Query.docdoc a0d2ec906181775ebc4c9c2365b3b56192a394d51d9cb64fce0a1dfa079a4703Virustotal results 35.00% Heodo
2018-08-30New invoice 2669C6379.docdoc c030aaacd17be36d96cf691364799cf02a047b17e8969daa4a46425d67fabdecVirustotal results 31.67% Heodo
2018-08-30Review invoice required.docdoc a8eac895f09173e1d6714ed520f2544f0cb74a5067dfa565b574c2aff2efd400Virustotal results 31.67% 
2018-08-30Final notice.docdoc 5375c40bdb1a2228f013bb59b0a40ae5e0dd1baae2fbc16b7e684453a6d0e991Virustotal results 32.20% Heodo
2018-08-30Invoice.docdoc b310420513b142dbff7001fb48a391591d97ffc1ed7564805c978fe60a971c51n/a Heodo
2018-08-29Review invoice required.docdoc e70ba787217df3341c7994fdaadb339ad5cd53a1589f5e9342b4e7f95eaa97b0Virustotal results 31.67% 
2018-08-29Invoice # 5M19055.docdoc 72ed1821dda52beb9e1cfdf5a7c6254ae6a1d7ac3080bdb8b37988c1fc127a97Virustotal results 30.00% 
2018-08-29Outstanding invoice.docdoc ab2b31587d9870ddf948fb9fee4e74a229b99629557996ddd6edeffda0bb9da4Virustotal results 30.00% Heodo
2018-08-29New invoice 16C047398.docdoc 5e1f4107b44b38183b61d8add19e9e5e9c74261c20f8cfafdafcfdbccfacb9daVirustotal results 30.00% Heodo
2018-08-29Outstanding invoice.docdoc 33eddca30855de5a4411ed03f1b361ca31ced4de5dc4c817fd3220dd02092e8aVirustotal results 30.00%