URLhaus Database

You are currently viewing the URLhaus database entry for https://camrash.com/wp-content/eTrac/FHFOSCkZriMxy7H/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:617828
URL: https://camrash.com/wp-content/eTrac/FHFOSCkZriMxy7H/
URL Status:Offline
Host: camrash.com
Date added:2020-09-28 17:06:10 UTC
Last online:2021-01-07 13:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-09-28 17:08:40 UTC to abuse{at}GorillaServers[dot]com)
Takedown time:3 months, 10 days, 20 hours, 49 minutes Bad (down since 2021-01-07 13:57:41 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-09-30List 2020_09_30 MT1486.docdoc 1ae2baa185c14e948bba0b1f389e85ec3a9310871617b68296641f3b4d3f0828Virustotal results 22.95%Heodo
2020-09-30File 2020_09_30 CB56504.docdoc 283272050a0c0d994dacc605e1d7009688c58c1f0998f8007647a9b92e8604e1Virustotal results 46.67%Heodo
2020-09-30Inf 20200930 88630.docdoc e0241059c22b3f4c297b2b6d6c3d0d854d45f39af3ec08495ca2b04025772414Virustotal results 47.54%Heodo
2020-09-29INF_2020_09_30.docdoc 32a76ed8013dd82d6e6063013236d7fb37bb205dbd6ff84ab785e5af12e6b3f0Virustotal results 19.35% Heodo
2020-09-29Inf CMJ635418.docdoc 3c75ed8af10c5b4edceafce4736440fc1b3243e88e43b8380adf7097d716ab10Virustotal results 22.58%Heodo
2020-09-29Untitled_ZU040444.docdoc 7b38b8806a5a362ee1e10b7798035408929bebc90e4977adceddcff61c4d2ac2Virustotal results 40.98%Heodo
2020-09-28DX0751.docdoc b3424e46c8ad2705c202b37b2b5632896bc701014232fd065f0fafcc50f9c11cVirustotal results 32.26%Heodo
2020-09-28REP.docdoc 5b297371f4d6bc9ca72f58047899aef360743be5b6fe8486f09ffe3ce04bff80Virustotal results 32.26%Heodo
2020-09-28Inf-2020_09_28-3290.docdoc 9d0a3de849eb223e1356455ad5aaf447c8da90eec6ca0d3b7f585287bf75619eVirustotal results 30.65%Heodo
2020-09-28Doc_2020_09_28_8224.docdoc 4382b1ebded0cb7d0a7e1b916dc859c246ff14002f58c44d70a5ff854cdf0a23Virustotal results 30.65%Heodo