URLhaus Database

You are currently viewing the URLhaus database entry for http://advantechnologies.com/76283AKLIL/identity/Commercial which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:58451
URL:http://advantechnologies.com/76283AKLIL/identity/Commercial
URL Status:Offline
Host:advantechnologies.com
Date added:2018-09-21 07:25:49 UTC
Threat:Malware download Malware download
Google Safe Browsing:Clean
Spamhaus DBL:Not listed
SURBL:Not listed
Reporter:@j00dan
Abuse complaint sent (?): Yes (2018-09-21 07:26:01 UTC to noc{at}usonyx[dot]net)
Takedown time:16 days, 11 hours, 16 minutes Bad
Tags:doc emotet heodo

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTSignature
2018-09-22PAYROLL #7369RZKOJJ.docdocfa964842244e752950fd4ed711759382a8950e13cc2794d6f73ab7eb9169e5een/aHeodo
2018-09-22SWIFT #2903LYONWI.docdoc345ab111b5c267ac9a36eadbf12d6840ef2eac5efd177d94d6cdbf3570f7fd17Virustotal results 22 / 61 (36.07)Heodo
2018-09-22SEP #390297VBZRY.docdocce8eba00ed5d24f06d762cb90280383de8b58d9227e867215ead99ede9216077n/aHeodo
2018-09-22SWIFT #481584FYVAF.docdoc85f57a86e855fc2f64cd9b43e12a6def19fe8b881b2360c20e0ab6750206ed09n/aHeodo
2018-09-22PAYMENT #37VHBJ.docdocbdc0068e9d069ac4d868fe970a9cdaaa4f1dc2ced8942160da23908e52cec5ecn/aHeodo
2018-09-22PAY #8504QG.docdoce10491f9ba051cb82007b7a1cced46a6cbb028e1889c3cf6e1376ca40a9d0040n/aHeodo
2018-09-21PAYMENT #138819TSSOQTQ.docdoc977c278fdbab0ee6627f82aaa5877986587e60c1374f6f2bd922278dff0a7727n/aHeodo
2018-09-21PAYMENT #509560X.docdocf0affe5fe7659ce4b9f6af0e2b92a04f6b2480e847433a8fcb884d340d733fd0n/aHeodo
2018-09-21SWIFT #60BTK.docdoc512e4b3c402dcd131cf1736cbfdf55800e9018323486844ab4546613b980c57fVirustotal results 19 / 60 (31.67)Heodo
2018-09-21SEP #86150ZQOQB.docdoc7f6e85146462a50015963d97502e4321f3e5c8262f1d55289bd8cb0a8f8ca7a0Virustotal results 19 / 61 (31.15)Heodo
2018-09-21BIZ #4613113MLK.docdoc4b04d7245c1d6f64efd042317a07da392972823797bb84e8ecbf5f23077ec31dVirustotal results 17 / 59 (28.81)Heodo
2018-09-21PAY #54AQPNGVF.docdoc7bf94f96f298cabab792d094909b8e5fa3ef7a15d1e2a796d8a6ab6dd9c35e89n/aHeodo
2018-09-21SEP #883737JXEIXH.docdoc7e7eb5fbfa21524784a4c5756fa5cf19091ebf441651ea2d02211f569d602a60Virustotal results 16 / 53 (30.19)Heodo
2018-09-21SWIFT #8831539QPNAPGCL.docdoc78e297673aec3eaa604d2a45bf6051329fe36729d396c540972e48f5d0741cb2Virustotal results 28 / 61 (45.90)Heodo
2018-09-21SWIFT #4710MSKPVSOG.docdoc86adb67838fd8d55bcb46f10dfced236e44cb66a74c04cf0d956db18f6d5b17eVirustotal results 27 / 61 (44.26)Heodo