URLhaus Database

You are currently viewing the URLhaus database entry for http://montegrappa.com.pa/DOC/EN_en/New-order which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:51442
URL: http://montegrappa.com.pa/DOC/EN_en/New-order
URL Status:Offline
Host: montegrappa.com.pa
Date added:2018-09-04 16:50:37 UTC
Last online:2018-09-14 17:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Blocked
Reporter:Anonymous
Abuse complaint sent (?): Yes (2018-09-07 11:24:10 UTC to abuse{at}godaddy[dot]com)
Takedown time:7 days, 6 hours, 18 minutes Bad (down since 2018-09-14 17:42:54 UTC)
Tags:doc emotet link heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2018-09-05Invoice as at 05/09/2018.docdoc 6c6dfcab49a55f450552f210124f1f75cfe878f6f8ef2cdff9baacd80e177938Virustotal results 33.90% Heodo
2018-09-05Statement as at 05.09.2018.docdoc db3cc7177e7a94494bfbe8169aca696977a8b6982ab0df6ba43f5de8ec7b0734n/a Heodo
2018-09-05New invoice 1537P972742.docdoc 91339375f4e75eb6d1e2cd05f67b13b4eab1312309aa35bca56f3e1f0960c37bVirustotal results 29.51% Heodo
2018-09-05Invoice.docdoc 41e92e88b0f22996098a60e5b4bedd6471f32c75245f721415c5f4da53019a9cVirustotal results 44.26% Heodo
2018-09-05Review invoice required.docdoc 16d2a4c6c5f94697fcfa589f451cb7c7c463f1e24916fd75fac15f4a2768c6faVirustotal results 37.70% Heodo
2018-09-04Outstanding invoice.docdoc 8af697b9f099a91e352825ea641ed2e16f34c712260fd9ffb944d4fbb63afd3aVirustotal results 36.07% Heodo
2018-09-04Invoice as at 05/09/2018.docdoc d6f969b7556d427cc83135fec3234a586d0b323e3681b31c093ddd6f2045bd59n/a 
2018-09-04Billing Invoice - Job # 187645.docdoc 5dfca212c007ad7b2b0f2e6fd0323a334b9a07cc304f3e74abad037450eac244Virustotal results 31.67% Heodo
2018-09-04Final notice.docdoc c2169b19e47b0ac1593cb92e794414d3c6395b7d38ae60cc23075130101a19d5n/a Heodo