URLhaus Database

You are currently viewing the URLhaus database entry for http://www.tekfark.com/EN_US/Attachments/09_18 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:60529
URL: http://www.tekfark.com/EN_US/Attachments/09_18
URL Status:Offline
Host: www.tekfark.com
Date added:2018-09-25 18:56:11 UTC
Last online:2018-10-09 13:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Status unknown
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: unixronin
Abuse complaint sent (?): Yes (2018-09-25 19:00:34 UTC to abuse{at}cizgi[dot]net[dot]tr)
Takedown time:13 days, 18 hours, 3 minutes Bad (down since 2018-10-09 13:04:33 UTC)
Tags:doc emotet link heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2018-09-27Untitled-9877364339.docdoc 786f92fc4996a7cc1b13157ca7d592832c37083816b1787334f3efc009e2d914Virustotal results 28.81% Heodo
2018-09-27FILE-0187021484022.docdoc 2801b59e56d8d9295c800dd26f63bc80a68c2824e8e54a0360e62d526fe4bde0n/a Heodo
2018-09-27file-8488095024238890.docdoc 74f0d874e98a2ed5b7c91cd34f91ffd286ce4646d709060d6865f6eb1121a773Virustotal results 27.87% Heodo
2018-09-27form-758969279970939.docdoc 51e4428ae632f0f72242bd8f32183b233f00646603de8ca315f7173cd79d5a00Virustotal results 27.87% Heodo
2018-09-27FORM-4427484551797.docdoc 9901c7ec221f250927774dfc84d5d080053710074a042a477baf8a39a9db489bn/a Heodo
2018-09-27DOC-467125074838.docdoc 31cfe726c007cbc574504910955b862a7a509d545cde851df392b1fe80c08b14n/a Heodo
2018-09-27DOC-1378840377077.docdoc 5211095e6fe4a852b3bddacce0d63b7c5da2ecc2f0202632dc0006c22fec438bn/a Heodo
2018-09-27FILE-9560714568.docdoc 9569d7c47e278b37875c23c75aa0308d3a28c3ed7c268a924e0d74913337038bVirustotal results 28.33% Heodo
2018-09-27FILE-15127139255856.docdoc 057ee5a6b0654fc4dc2d28faaa2af8ae6300fe0e60121670d213d76d9389bb53n/a Heodo
2018-09-27doc-925292028096.docdoc ecffc7f4f63ed630e7ac8fa65dc24d4741cb8e921d640f7193ba0950264fd21aVirustotal results 26.23% Heodo
2018-09-27FILE-97224263424.docdoc 2863594f2c61ce7575db74a351385208d8ad7d55209c12f3385aedb514f78a6eVirustotal results 27.12% Heodo
2018-09-26doc-5251544125.docdoc 5901941b91980e653a8da8b5f43c2e0c1390c4ddbbf698356519f03fdbb6a6c5n/a Heodo
2018-09-26file-91120014193711.docdoc c4c8989ef731fc53d4906a1173d42506c52762b183e82829f5ff6fba47b88928Virustotal results 25.42% Heodo
2018-09-26form-461736521630.docdoc 82d482e04125b30bbad1cfc1a9f789633d4ec036e459e602ed1e02e54293cc3aVirustotal results 27.59% Heodo
2018-09-26Untitled-730833299298.docdoc 44580c4e54a06120b7ffc0b0afa9944504816d0a76445711fa7608b8b2a230f2Virustotal results 30.00% Heodo
2018-09-26form-279348316353373.docdoc 325d91ecb78723104518fb34a15966d3f8ff971af178406b981908aebbc5c9a6Virustotal results 26.67% Heodo
2018-09-26form-0001007594.docdoc 052c6b03c45f346ceba7edffb4fd0de808af21e002e826fb947720f10c34d44bVirustotal results 28.33% 
2018-09-26doc-024238943828218.docdoc 816abd2b4a39746269f1afe5275bf0e12e772339ecd005076453098a57ff94dfVirustotal results 33.33% Heodo
2018-09-26doc-1423330804.docdoc 663c5b26325bffd8258b41127b823a293a5ca7d460c3b9704a601bd21b3f0a36Virustotal results 26.32% Heodo
2018-09-26Untitled-78759683155.docdoc f228f29c3c0066233f3ce919baaad41f805bd520737569f79f5883c803a919a4Virustotal results 27.12% Heodo
2018-09-26Untitled-24072960879.docdoc a3857ace80e8492bac855ba078377664bcf32116252ec238f44b45c405fa503eVirustotal results 27.87% Heodo
2018-09-26FORM-493951156556107.docdoc e306487016eee1e1acca4a65c56df5c8436aa63e15700eba3b55084e1f453e73Virustotal results 27.87% Heodo
2018-09-26file-9516010457676681.docdoc a7c51e693862e8f7eb74b10e4844c646dbd5daae7028d2bcf17dc3407d4750adVirustotal results 30.00% Heodo
2018-09-26file-2801207854744.docdoc 8eb4e3317dfad2c94e3c1f3c1267635aaf1c0202738948b80bf012398942377fn/a Heodo
2018-09-26Untitled-4122708809390211.docdoc 6298261a5ccb038673a2ebb1a10bc242440c23b6b99c70a480ad91f2b7fc2d9fVirustotal results 25.42% Heodo
2018-09-25file-0167103052430754.docdoc 44411eb48afefceece9c958481825a5df919516102eab8928d2511d309870dc6Virustotal results 25.00% Heodo
2018-09-25file-48988057866.docdoc 65d71c2c2c1a80dfe616ad82b54d02c7f587da6f14f9799d7100fe961fef2a39Virustotal results 28.33% Heodo
2018-09-25Untitled-81118100120.docdoc e4e9959fb2986793860a8dc7e6ab4926e0a2f05a0bf8010c8f5a23dc98d612b6Virustotal results 31.67% Heodo