URLhaus Database

You are currently viewing the URLhaus database entry for http://advantechnologies.com/Documents/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:52384
URL:http://advantechnologies.com/Documents/
URL Status:Offline
Host:advantechnologies.com
Date added:2018-09-06 01:59:14 UTC
Threat:Malware download Malware download
Google Safe Browsing:Clean
Spamhaus DBL:Not listed
SURBL:Not listed
Reporter:@JRoosen
Abuse complaint sent (?): Yes (2018-09-07 11:22:25 UTC to noc{at}usonyx[dot]net)
Takedown time:2 days, 18 hours, 14 minutes Poor
Tags:doc emotet epoch1 heodo

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTSignature
2018-09-06Doc270559.docdoc51d3d70235769a5fd43d542aa1c60a0f88ca82b4ccf51a40225a8a29675e77c5Virustotal results 16 / 61 (26.23)Heodo
2018-09-06Doc4096.docdocb5cf1eb2dfa9a64cfdbc05a292407200c105142e0f60845a2e90ef28f0883e46Virustotal results 16 / 61 (26.23)Heodo
2018-09-06Doc6733.docdoc9ac3e1dea648ef282333855dbbe7e3746614a2eedfc2dee3678125a6423fc063n/aHeodo
2018-09-06Doc5850.docdoc2ebf78f82fc5214e25fdb8426a40c0d8da384c0dd3bd0a9f723e6919fc8b567fVirustotal results 17 / 60 (28.33)Heodo
2018-09-06Doc38121.docdoce91afeee2e46b2fdebff4484328d5cc158fbe39fc5dd1de0e959b7782b70ea60Virustotal results 31 / 61 (50.82)Heodo
2018-09-06Doc64347.docdocad12b32bee745df9dfb325e78843a3e542c2efb198e7cca0ae4fffb98d0219b9Virustotal results 30 / 61 (49.18)Heodo
2018-09-06Doc407495.docdoc637e96bb25078bd74371cf279f4293a4af24908dc34652d2bf423b46ee1fb718n/aHeodo
2018-09-06Doc9744.docdoc111dbd9bce85a0d5857485af3b13a40570f5a9b2641587c62abf98235735e6daVirustotal results 28 / 59 (47.46)Heodo
2018-09-06Doc108944.docdoc1ce1209b507ae76b3f83ff6d382024f08b38ff7c4572baee00575c8fbed5cebcn/aHeodo
2018-09-06Doc78103.docdoc42e6f82ace45fd4c78d7cf4b7f076732de05f66ad3d78ed7486ee639184e3b65n/aHeodo