URLhaus Database

You are currently viewing the URLhaus database entry for http://sweatshop.org/EN_US/Clients/092018 which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:61167
URL: http://sweatshop.org/EN_US/Clients/092018
URL Status:Offline
Host: sweatshop.org
Date added:2018-09-27 02:02:01 UTC
Last online:2018-10-03 18:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Blocked
DNS4EU :Blocked
Reporter:Anonymous
Abuse complaint sent (?): Yes (2018-09-27 02:04:07 UTC to abuse{at}godaddy[dot]com)
Takedown time:6 days, 16 hours, 47 minutes Bad (down since 2018-10-03 18:51:07 UTC)
Tags:doc emotet link heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2018-09-28form-4465829362638386.docdoc c8ba54b0b471caa0194f8739d386aff5ebdb3e7213bc8f2d14424c18fcf5608bVirustotal results 28.33% Heodo
2018-09-28form-67187262130.docdoc 5b65cf41ae8eceff9c7a08628980914542bfd757bb4affdbce882cdba1ea1818Virustotal results 27.59% Heodo
2018-09-28FILE-5930348141012652.docdoc 834871281e889a5bf3f69ecb87f93883bca19dbabdb3a0631c68d81cd0c13b21Virustotal results 25.42% Heodo
2018-09-28FORM-6244328293.docdoc 36f14ebf9246cf92b2e0e73c8404c81c228c7da39e7af667a30dd9019b5561b2n/a Heodo
2018-09-28FILE-60416089579.docdoc cb1492fc3bc20c63ff31fb353efbd3e2652cf94433399ba929a1aa866bcbde70Virustotal results 27.87% Heodo
2018-09-28FORM-429025418973577.docdoc 6cc91d59850a8f08a69ec32ca8c10e44a3ce7e5ce2ee4fae84b01f7c9ffa9ff6n/a Heodo
2018-09-28FILE-3131610735979260.docdoc 6c7dd9c5f28bd50f55b95c7edfd6aac33ec177ce240deeb95dc197861e4f4e7an/a Heodo
2018-09-28file-6234259014949.docdoc d1a6e06767f59ab53848d58139602418369b070c6806a53f2885ca3528583dbbn/a Heodo
2018-09-28FILE-019875228043677.docdoc f8b789c9db49c8d5f8de129be7941f7047483e3076b5af2dd9f938fd41dbf854Virustotal results 23.33% Heodo
2018-09-28file-2573000068347.docdoc f8648621b583a6dece712e222b613117a21431a462f0782cfbb5e6e8c8a7982aVirustotal results 29.09% Heodo
2018-09-28FILE-1627994882881566.docdoc ddaf4bd998a507399f04865a80cba516cccc56590895849486ecc4da509a0174Virustotal results 29.51% Heodo
2018-09-28form-48890703471.docdoc 45429290ab6028c8e2046ef40c91fa1032586372caa33a9b565c34278805bf3dn/a Heodo
2018-09-28FORM-84982061642650.docdoc 228f574e588b380dd855870733c6af18ad879b9cebfba1fbfc309acc4be7f6dfVirustotal results 24.59% Heodo
2018-09-28form-1116412147.docdoc 56b08ebdd03ce6a5209d1c0d9ba40908056f011417fcaeafa77bbdd673c63736Virustotal results 24.59% Heodo
2018-09-28Untitled-5958853300387.docdoc 0e2d2330890d4f6a132f5e2bb979e8a27e13ed32d17cb33d123c82a95754802aVirustotal results 24.59% Heodo
2018-09-28FORM-2451614116064518.docdoc bbe71e8f10793aa4cc2277937115a6da91cfed65a2e6aa34747bad4d1d7e6288Virustotal results 24.59% Heodo
2018-09-27FILE-21106666199546.docdoc 85d309a0d5d263d0bd297d11e2cff355da37d0cedc1983d4428cb3f523eea684n/a Heodo
2018-09-27file-056102565793.docdoc 779f9aec9c5968a3e96eca789e67e05440c86d9127a5dcccd635526c90351d0dVirustotal results 29.31% Heodo
2018-09-27file-30363629937.docdoc 966781b68b46256bf479cc1f7382e6096b6a3942e14ff83ba9e654927bc8a75bVirustotal results 24.59% Heodo
2018-09-27DOC-2178034228338.docdoc b455c6753c3cfb3f13aec64c616437986964745e799eaa9a1ce8ce891fffd230Virustotal results 25.00% Heodo
2018-09-27form-11040860628.docdoc fc25b79dcef35b140e44bf2d25ee2fca89798626c283f80c4e811f5bf0f0754bVirustotal results 25.00% Heodo
2018-09-27DOC-3356853862029050.docdoc 74f0d874e98a2ed5b7c91cd34f91ffd286ce4646d709060d6865f6eb1121a773Virustotal results 27.87% Heodo
2018-09-27form-06948754815485.docdoc eeb415767d5a0d036e26528ea1fae616daf58ed60b37753a13ac1e1fbe2ba3a1n/a Heodo
2018-09-27FORM-65525359210.docdoc 5211095e6fe4a852b3bddacce0d63b7c5da2ecc2f0202632dc0006c22fec438bn/a Heodo
2018-09-27DOC-7026337572.docdoc 37f08991ef7bbc93af739f6148a5d914ebee12873d807d0549ec2d9f7aa373ceVirustotal results 30.00% Heodo
2018-09-27DOC-65746668241559.docdoc c936fe2c51614e4e68f17960a3a1f3c7385e38f459f05cb9c46034f3ccc96efan/a Heodo
2018-09-27form-417615547132453.docdoc 6e5fc31e710759036327bd45d5c0f520c618123424bb38351f65c3b5d8ce76aen/a Heodo