URLhaus Database

You are currently viewing the URLhaus database entry for https://itisfuture.com/wp-content/https:/K4X8PLL0JFTSZM/qvevvcSJzqJitP4PH9/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:502153
URL: https://itisfuture.com/wp-content/https:/K4X8PLL0JFTSZM/qvevvcSJzqJitP4PH9/
URL Status:Offline
Host: itisfuture.com
Date added:2020-09-14 20:02:16 UTC
Last online:2020-09-14 22:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-09-14 20:04:03 UTC to CloudFlare Anti-Abuse API)
Takedown time:2 hours, 8 minutes Good (down since 2020-09-14 22:12:23 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-09-14mes 2020_09_15 0826741.docdoc bb9d70097d986e6230a4cd39c7869a818c10a52574d3a7332db4fe1003d053d7n/aHeodo
2020-09-14arc 2020_09_15.docdoc b5c594f80d5f76a189ece1257e4d352cd66bbf5e048a214779208e9b9a56e8f9Virustotal results 28.07%Heodo
2020-09-14Inf-2020_09_15-3160717.docdoc 8fd0c8e90eddeed6cb311d1fb176df14030684631cf580947e1e463f4c43d309Virustotal results 27.59%Heodo
2020-09-14UNTITLED-20200914-TM9778.docdoc e304bb6b2bb8268e3418e2985effc8b1a91c6f5f25ba3db7e2e23b3e19d1076fVirustotal results 25.86% Heodo
2020-09-14MES 167.docdoc fe97e6888a6d15f734ad3dc205b5d6dfbda80116eb40473a63af913888890e7bVirustotal results 26.32%Heodo
2020-09-14B193 2020_09_14 CE05704.docdoc 6dbfdbc0ac9cdc885f41c0d556780a91c677165212869afd7a77e5aab811b9ben/a Heodo
2020-09-14List-20200914-7569929.docdoc 200d48361b60fdaa3deb618c1dfed0c7d3d2a647dd8fe438e4bd4e3eeda459b7Virustotal results 25.86%Heodo
2020-09-142408_20200914_T618392.docdoc 3497e1cf506b91bab9a901a99757f2115d1ad48386a00ca764dfd35aaea32e5dVirustotal results 25.42% Heodo