URLhaus Database

You are currently viewing the URLhaus database entry for http://shawktech.com/DOC/En_us/Invoice-Number-10267 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:50220
URL: http://shawktech.com/DOC/En_us/Invoice-Number-10267
URL Status:Offline
Host: shawktech.com
Date added:2018-08-31 08:42:06 UTC
Last online:2019-04-28 06:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Blocked
AdGuard :Blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Blocked
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: unixronin
Abuse complaint sent (?): Yes (2018-09-07 11:35:25 UTC to abuse{at}godaddy[dot]com)
Takedown time:7 months, 22 days, 18 hours, 54 minutes Bad (down since 2019-04-28 06:29:39 UTC)
Tags:doc emotet link heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-04-28n/aunknown 474085acd31681d171eb64b4b120db857aa64f226653f0fc3ce4281caa776d6dn/a 
2018-09-01Outstanding invoice.docdoc 8e04c42475bc3540925710dd1c71fad658b7cb19b6b2206fb59d0fea9b37cd2aVirustotal results 45.00% Heodo
2018-09-01Inv. no. 0SZO011351.docdoc 4805621eb61cedc4ff2c2790a4fa9d6bef7c698a9206e32c0e909474284c0d88Virustotal results 43.33% Heodo
2018-09-01Invoice.docdoc 8648c7aceae7b1438d6ddef4e4c3c4daf1b253bd00acc632978ba0c85e2da442n/a Heodo
2018-09-01Customer No 8793728.docdoc df4782979ddc3dc1a7e76d26eac7ee6db976d85bfd9f785fad67113d229c9213Virustotal results 33.33% Heodo
2018-08-31Invoice.docdoc 51b33b16f7ad8a624048ef27a6270f21fed3d12d66a3874f735ec7582fb58f26n/a Heodo
2018-08-31Invoice Query.docdoc 7f8aec95699ba129406c6d469a139cfd54ac9c0397276e74ebbcc14d1768053eVirustotal results 29.51% Heodo
2018-08-31Inv. no. 12142319.docdoc c6a39b86a89086987480c86b7d2dcbfeebd7629ab43e2e2fc824ec59b0ad77f7Virustotal results 32.79% Heodo
2018-08-31Statement as at 31.08.2018.docdoc a0e641a4d4a7b640e5b3da4a1496d6ed72e979ced7af5ec88b0fe6649888f05aVirustotal results 33.90% Heodo
2018-08-31Final notice.docdoc 79765635b755992b9035560d4e00b550c3690c4a75d4e022b5998f11db4db738n/a Heodo
2018-08-31Invoice # 13D633726.docdoc 81925e948f9d7d14fe216c3513e9085996d0f9ba1208b0f3e0a2cb69a1843b2fVirustotal results 42.62% Heodo