URLhaus Database

You are currently viewing the URLhaus database entry for http://www.ultigamer.com/wp-admin/includes/Corporation/EN_en/Invoices-Overdue/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:63204
URL: http://www.ultigamer.com/wp-admin/includes/Corporation/EN_en/Invoices-Overdue/
URL Status:Offline
Host: www.ultigamer.com
Date added:2018-10-01 17:52:03 UTC
Last online:2018-11-19 17:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: zbetcheckin
Abuse complaint sent (?): Yes (2018-10-01 17:54:02 UTC to ip_admin{at}csloxinfo[dot]net)
Takedown time:1 month, 18 days, 23 hours, 14 minutes Bad (down since 2018-11-19 17:08:50 UTC)
Tags:doc heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2018-10-03Invoice.docdoc 222b7aa135c114fbaa3e1bdeaaf410e1067296592d2576ff5461b8a0ba8802ecVirustotal results 29.51% Heodo
2018-10-03Month notice.docdoc 9ddb668406d296c5c59ce1a4c7d53d9e2a0ff9d4fc8057d4f167c354dbcc7d83n/a Heodo
2018-10-03New invoice 94AXW2443.docdoc d34ced604e76fbdbec6e62787449c8d32cf72dfbf18a29a815ccf9629f7e955fn/a Heodo
2018-10-03Final notice.docdoc b82d2c45864012c7d08756c906fbf0891dbf6353f9a53e8643a684721ab9d412n/a Heodo
2018-10-03Invoice Query.docdoc d65d391153497bea0d1fe1d5aeae4ef8572908cf6e134adcbf96f15cc494483bVirustotal results 29.51% Heodo
2018-10-03Invoice Query.docdoc 1cedd14a129c1784a6216e72c1f98168de9ffa0d0df2f5367548bd396b03b890Virustotal results 29.51% Heodo
2018-10-03Customer No 527244.docdoc 8903fb1a6080570556c4217c3f329c66c3000b71163a5449047edfe701018456Virustotal results 23.33% Heodo
2018-10-03Month notice.docdoc f307a8dba269262ffd35549938a7c950e83ea534734a752dc385c3cd00594a1eVirustotal results 31.15% Heodo
2018-10-03Statement as at 03.10.2018.docdoc 1c8382645c92a3727199a84dfc792638b2fc26d5d4c67c95565fc32d25f60aecVirustotal results 31.67% Heodo
2018-10-03Customer No 8593433.docdoc d6a5004805a83d40463d496e8fea3c7fb9b3f629ed3f17679802f077ae410f28Virustotal results 31.67% Heodo
2018-10-03Invoice # 82XB66073.docdoc ba063a282be3c86d05ba721ab2635cd920c88038ce5804a2732b4f716637b286Virustotal results 31.15% 
2018-10-03Statement as at 03.10.2018.docdoc 20331c5fbff11d6f684c9ee17fc0eed00e23243ef618cc47218b77731fa76ae6n/a Heodo
2018-10-03Inv. no. 02GXZ075836.docdoc a1537896ddc2ee52cc1d06b82276ddb12a79c3477d49def47fe8585c12f38437Virustotal results 27.87% Heodo
2018-10-03Invoice.docdoc 1a5171472f15d1a715dbd9d8b108cbbed096404db6067b34e86936a5c603b50an/a Heodo
2018-10-03Invoice Query.docdoc b8f197cdd692409a14507f4267c00aba9185edb83aad1ae3c9dfbd084b17696bn/a Heodo
2018-10-03Customer No 436527.docdoc 5d200dc9a97a6cb0a844e8db03343996d3f2627f15066071c0c9734b6a6f7377n/a Heodo
2018-10-03Accounts - Invoice.docdoc 35c3c740de000235df89a4eff4cd6e4e3b1bfedce77336850b75af2da7a9c51aVirustotal results 25.00% Heodo
2018-10-02Outstanding invoice.docdoc 615552f123608583a949a390c8fbae2842bd52926b3b143a6c47d8667e3ba3afn/a Heodo
2018-10-02Latest invoice - 095367.docdoc 745b1913c9e77939220e6b5b96e1d1d71b35872cb6dd5d1b8fc8edd0859a18e1Virustotal results 24.59% Heodo
2018-10-02Month notice.docdoc 50c1bdfa56a73c43368705071d2e19b58d2fe77f537feb32919b2b77a1323288n/a Heodo
2018-10-02Invoice.docdoc 7cb6869dfb50c6919f808a73832a35d25d70f5dcd5ed0c388108160cfb72ffe1n/a Heodo
2018-10-02Invoice as at 03/10/2018.docdoc f4adec35401a9340582e3dc9ccd784be3e296ca4ed88f04fa4fc387f56420f6fn/a Heodo
2018-10-02Statement as at 02.10.2018.docdoc 3c85c228036f9b6319888cf84bc9f42964b58885746d0a9ef305c36c933da2c3n/a Heodo
2018-10-02Invoice as at 02/10/2018.docdoc 6453be335f33d287158e7886518d28d888ab375e24abf7448f3231bc9c849635n/a Heodo
2018-10-02Statement as at 02.10.2018.docdoc 1704d6d1cc6de309acf4d5b206aefd2a663ab366e8a445aad902e539d913827cVirustotal results 28.33% Heodo
2018-10-02New invoice 06M791559.docdoc eccf6878b4f8e639376ffd2885ddc7099553586628894e15307f2990ad1b8494Virustotal results 27.87% Heodo
2018-10-02Inv. no. 5Y437450.docdoc b90647e77a742a38ae313682f9560cfdaad031d2f45b5d3a8ac41a31e071a0a1n/a Heodo
2018-10-02Final notice.docdoc b3cc71d0e90e884acb2876fff2831b7de8d1ac2ad79d5965f50777e222d5043dn/a Heodo
2018-10-02Invoice # 452W90839.docdoc e1704f6a5b22a4fa2e0322662af2bdc3267481185501393aab6cafe0707e7acan/a Heodo
2018-10-02Review invoice required.docdoc 55c9e5e566fe3aa14796e7d667bbbb3000e1bb49c1add4b15d07cb7a1ec16317Virustotal results 26.23% Heodo
2018-10-02Customer No 600387.docdoc 4625b4781c6715fe81d8f8831b056aca1f02c09ef5e9e6f0878bc871c7a7aeb6Virustotal results 26.23% Heodo
2018-10-02Billing Invoice - Job # 017845.docdoc a8f8a650ffa8a1413c98331ab4592f2c3396b106a1c965fcae3a9b1508bf40e4Virustotal results 31.67% Heodo
2018-10-02Invoice.docdoc fa16b22a6195b9f2294d429b372eefce07b6c77d48f1010d71315d68026ee173Virustotal results 34.43% Heodo
2018-10-02Invoice Confirmation 4X7745.docdoc 57d4a51b0adcbf54b719f4ffcdb8cf58a5e815288da10a2f2d0c566ed130c625Virustotal results 31.15% Heodo
2018-10-02Accounts - Invoice.docdoc 343e4beecea5bf477887a61490f32499c6717db3992e7d162ac4ee2e3943d89bVirustotal results 29.51% Heodo
2018-10-02Final notice.docdoc 3e7955eec1b12ef0c4d8f08e701e2155a553ec7241f7f8775a56f85896af77e7n/a Heodo
2018-10-01Month notice.docdoc 9a5d1687d501ea9474fe5ccb44cfaa202cc5633b45917dd47ea7611d9503fd6dn/a Heodo
2018-10-01Customer No 921404.docdoc 54e7b06724e943bc20aa5f49cfae8cb90e5eff91b3bad465ae6e1cbf7f46d240n/a Heodo
2018-10-01Invoice.docdoc 9e3422a1896d5fd33436cc1d75367c7f119d9633dcef5e3e97abd263212f47fdVirustotal results 29.51% Heodo
2018-10-01Invoice Query.docdoc fcd72d940ec379007fe6390b06824caba28d91724a4e6ea02597b3879b2f29a6Virustotal results 30.00% Heodo