URLhaus Database

You are currently viewing the URLhaus database entry for https://alimentechnician.com/restore1/https://esp/Y7aTUttnbBsMD0ZMqpb1/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:499016
URL: https://alimentechnician.com/restore1/https://esp/Y7aTUttnbBsMD0ZMqpb1/
URL Status:Offline
Host: alimentechnician.com
Date added:2020-09-14 16:07:14 UTC
Last online:2020-09-30 17:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-09-14 16:08:17 UTC to abuse{at}hostinger[dot]com)
Takedown time:16 days, 1 hours, 42 minutes Bad (down since 2020-09-30 17:50:31 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-09-14Doc_G5143.docdoc 52c59c0139100b7ec0ba5d14dd4e8ed0c8885e213d84414e200e77446dceed0fVirustotal results 25.42%Heodo
2020-09-14mes 2020_09_14 VXT0217.docdoc de5ff2a86b9b97821a627ee23d91fecfc32dcb3d5db129604ca5c47f4feb102bn/aHeodo
2020-09-14Rep.docdoc 5171e0e602e27c4122239e9c7833c603beebb69bea148c5d29341990af469f55n/aHeodo
2020-09-14Untitled_2020_09_14_867145.docdoc 80eefaacbd3208a12056ef722a8b67470ed5f98065369568ade5990de349718bn/a Heodo
2020-09-14doc_2020_09_14_568.docdoc 707c1063c30249706f5b47d56c8d6b057f13c1ba249b6fb0a9e86fced1ccc340n/aHeodo
2020-09-14LIST_2020_09_14_R093330.docdoc 62074e14407f4bc511eaef884985e46bd1162b0131bb672df2221c834291cd56Virustotal results 23.33%Heodo
2020-09-14arc_2020_09_14_451543.docdoc 63ab439cb5788c279996c35d7e41341081f97dadb4b255653cb11194a9368465Virustotal results 20.34%Heodo
2020-09-14Mes 20200914 7990171.docdoc f463cf4d92f75e61f9c1a076fe61975011301f50d20a575e76b350fdaabf40c7Virustotal results 20.34%Heodo
2020-09-14List.docdoc d14ca2a26f3320ae83ccf62d1671ae05864f80b048af7781992fbdd253d243d7Virustotal results 20.34%Heodo
2020-09-14doc 20200914 B863326.docdoc 246d8db0406a7eefb66059e1c8e4d1c5ea419c31bc641f11ee15ecfda9f5eda9Virustotal results 20.69%Heodo
2020-09-14W17858-812619.docdoc 30dd2df0674e842f8a3bfd8880f538175f2f42045d66060984f720b865acd353Virustotal results 20.34%Heodo
2020-09-14INF 20200914.docdoc 3ab666907d1caac6699ea16ad02a0143d9478daeabc0fb3e5bd94199cb787774Virustotal results 20.34%Heodo
2020-09-14Arc 20200914.docdoc a9db4b5c07b7e20a5ea8b7f523c48a4f0b50bb0936cb2b258a3156a6b96b6ab8Virustotal results 20.69%Heodo