URLhaus Database

You are currently viewing the URLhaus database entry for http://adamello-presanella.ru/Receipts/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:52968
URL: http://adamello-presanella.ru/Receipts/
URL Status:Offline
Host: adamello-presanella.ru
Date added:2018-09-06 21:36:03 UTC
Last online:2018-09-12 15:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2018-09-07 11:36:15 UTC to abuse{at}rtcomm[dot]ru)
Takedown time:5 days, 3 hours, 39 minutes Bad (down since 2018-09-12 15:16:13 UTC)
Tags:doc heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2018-09-07Doc5048.docdoc 70eb7563e4458ebb664730c2555e989b4bcb46ebd54489b050fe10bd868fc949Virustotal results 31.67% Heodo
2018-09-07Doc1598.docdoc 9f2b0b6377e02ff6b8e4ddfd6e88c2d8a918e06413e66c89c4f28fb9474e4b36Virustotal results 33.90% Heodo
2018-09-07Doc295572.docdoc 3eba5d0f629ce4187c3bb43e867346361d8cbf891bed17a68e42b7e9104ab955Virustotal results 31.15% Heodo
2018-09-07Doc91078.docdoc 800ae600f431fd68e32e12fdcba9ced7e1966fd3d7836c1af1f3003c2f89a168Virustotal results 26.67% Heodo
2018-09-07Doc57475.docdoc 7ad5089f239bbdb56a9dc5f7e91b16076c8be7a941b41eb524b2134073531fbcVirustotal results 26.23% Heodo
2018-09-07Doc346840.docdoc 4fa87b317831469534c64bff9b479bcf0882609e0d0d53ef22af2422bb87ddfbn/a Heodo
2018-09-07Doc82766.docdoc facdf4b30d09b352cc569412e92b202c4821b79adcc110e632ad8be9b347854eVirustotal results 39.34% Heodo
2018-09-07Doc875803.docdoc db534329952b0154052cdd89960c4eb867a584aab4bf1499198c8da47d0c4549n/a Heodo
2018-09-07Doc02073.docdoc 04032c6d53dda3aaf0dc44431c2b435fdcd1804a8b4286fd7925635f54740f91n/a Heodo
2018-09-06Doc52335.docdoc 02f247feaff773b8190a6bf2440a5ff158fad61ee05372284952471d65ca8b19Virustotal results 36.07% Heodo
2018-09-06Doc812337.docdoc 495ee06c9aa8eeff382b2f5f92858ba9c9782880921216d2d2989b841d626fd2Virustotal results 39.34% Heodo