URLhaus Database

You are currently viewing the URLhaus database entry for http://avto-baki.ru/INVOICES/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:52739
URL: http://avto-baki.ru/INVOICES/
URL Status:Offline
Host: avto-baki.ru
Date added:2018-09-06 10:59:03 UTC
Last online:2018-09-07 12:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Blocked
DNS4EU :Not blocked
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2018-09-07 11:48:44 UTC to abuse{at}best-hoster[dot]ru)
Takedown time:54 minutes Wow (down since 2018-09-07 12:42:50 UTC)
Tags:doc heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2018-09-10n/aunknown 548da4093681d819d1ce0600b7c6a3f0884f8d6151c700374ee162b49d9a420cVirustotal results 0.00% 
2018-09-07Doc1885.docdoc ca71170483f94cc9d5cf385aed5119287d3e5cc4fa19d9c8746dff5938e324b4Virustotal results 39.34% Heodo
2018-09-07Doc3920.docdoc 1beb180a4800b400249628e20421a092ed47491194721c97e5616f8daa5b2aa0n/a Heodo
2018-09-06Doc59644.docdoc 02f247feaff773b8190a6bf2440a5ff158fad61ee05372284952471d65ca8b19Virustotal results 36.07% Heodo
2018-09-06Doc3996.docdoc 8392cbca4a188b038a4ee855e738edc4c782725a2e8efc9ba0529eb8a7c965b9Virustotal results 32.79% Heodo
2018-09-06Doc196240.docdoc b5cf1eb2dfa9a64cfdbc05a292407200c105142e0f60845a2e90ef28f0883e46Virustotal results 26.23% Heodo
2018-09-06Doc0043.docdoc 9ac3e1dea648ef282333855dbbe7e3746614a2eedfc2dee3678125a6423fc063n/a Heodo
2018-09-06Doc18731.docdoc 44d3f49429e2ab93d575243f67bf919f5100826c26d90ddd80c6c1462ec20a63n/a Heodo
2018-09-06Doc0816.docdoc ca3f24766af1a4a3a8c54065325bfc0867535094a96db656262857a01d12632bVirustotal results 27.87% Heodo