URLhaus Database

You are currently viewing the URLhaus database entry for http://constructoraalpes.com/owl/Overview/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:693602
URL: http://constructoraalpes.com/owl/Overview/
URL Status:Offline
Host: constructoraalpes.com
Date added:2020-10-14 17:47:05 UTC
Last online:2020-10-15 22:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?):mail Yes (Ticket DCU003013187 created on 2020-10-14 17:48:06 UTC)
Takedown time:1 day, 4 hours, 48 minutes Poor (down since 2020-10-15 22:36:51 UTC)
Tags:doc emotet link epoch2 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-10-15ZBTV_PO_10152020EX.docdoc 099d655f10b7e9d0e9a55994e8e8fa9ee064af726187f27e444a4583731c58ddVirustotal results 37.93%Heodo
2020-10-15LEPE_2263628268931.docdoc 5f924aabbc4f91b49f4b5c32468ef0ccacd1d850eb5c3157c1b4ae8783192c61Virustotal results 38.71%Heodo
2020-10-15JE0171110115OL.docdoc c36a82cf21da13695879467eaaffcf4d8f3278e11c03ac535fea556e715abb7fVirustotal results 38.71%Heodo
2020-10-15U_PO_10152020EX.docdoc 55f9b8d55b46b59a59cabf8636a6824d77810bc9fd4f4517c378c03110b52051Virustotal results 37.70%Heodo
2020-10-15Y_0D9J1QRSOIA18.docdoc e243387f9d6d14d042a3822b4b370d2f85701e0d74374cd84b3c08bc5d87aab1Virustotal results 40.32%Heodo
2020-10-15GFH_100120_KRH_101520.docdoc d30ec2dde96e92164e6be1b42ad79b2b25464da4be6140e0965cb115a5d9e8ddVirustotal results 32.26%Heodo
2020-10-15DOC_44421112.docdoc a6af3659e4963433d13e172e008c461d2b7c51e23095ab79381d98819d153e6an/aHeodo
2020-10-15UD1175136871YV.docdoc 82a4bc78e2e4035aa5699fea23ba4842723d4699d0515b5d9c8f6f467329ae95Virustotal results 32.26%Heodo
2020-10-15OS7626974606AI.docdoc ad4cae0196e04f7c42f2dd3e7dd7f1257dedcecf934f8f8780da7192bb20a2e2n/aHeodo
2020-10-15FILE_IDMD06H10F4M67RK.docdoc ddabc8380b111a6ab0351fdf1e43024580cf19bf58f90bb43c51755ca4058ca1Virustotal results 32.79%Heodo
2020-10-15XFE_100120_IXC_101520.docdoc d000ec56fd7a5ad82add1c1e5a04c56ccad42829b2d99b18e228d9c920def501Virustotal results 32.79%Heodo
2020-10-15JE0519749100KU.docdoc 0ff9d4c3cfd5a15918d7ed0e685e6b35da8c3c4fb272761910e8f3599bfb3647n/aHeodo
2020-10-15INV_ERZQ05O.docdoc 1cc454d75dc586cd5025eab16ed2a8097e3d412f9efb96ddd568041631aa0ebcVirustotal results 45.00% Heodo
2020-10-15ZDOPWZAGM.docdoc 48caa70a3b31ff976df78f2b4525b27307a53e88d1ce4f1846dd5801dd2c9b76n/aHeodo
2020-10-15BAL_RZA_100120_EOI_101520.docdoc 63d8b2866cf26b1f4411b45557b36780023b3768efe30a63d1e00400158856dfVirustotal results 38.71%Heodo
2020-10-15DOC_LIO_100120_MNY_101520.docdoc 6c5881955c63a7667fcdcbb9578f630c4ee7941cf731018c2bde6c0375cd265dVirustotal results 34.43%Heodo
2020-10-15RPS_100120_NTB_101520.docdoc d2d28ce9e628712a8478ea1439e111036497efe3d10a12bba622baf2952ded06Virustotal results 35.48%Heodo
2020-10-15BAL_08296959.docdoc 5fefd7066e7cb6344aa6f4ceb150de371e98cc1de2af7bfa2fa46cb4949ff0aen/aHeodo
2020-10-15BAL_JCU_100120_OGM_101520.docdoc 9c3dffbaa146c61c106f2b76127fe024ec9193641c046de19b1d144335206b7eVirustotal results 35.48%Heodo
2020-10-15INV_PO_10152020EX.docdoc fc4e851464b275cb4206af8ce176350c7e12b7b1334a795cf27e48bb6cd9df06Virustotal results 32.79%Heodo
2020-10-15W_PO_10152020EX.docdoc 25aa35b354712a75a1fa86936a9f4195ea8e3c08a6e6f2c3b9820cb4dd28209dVirustotal results 37.10%Heodo
2020-10-15S_58172853.docdoc 9b215a17a892b453c3f564442181f449693efbb1777c15f53e2238544500a92fn/aHeodo
2020-10-15DOC_AY3530085315LG.docdoc 9954017c3108e9f6fd524436830144dcc04c49f339486dba48e2d3dd3dfbd0a7n/aHeodo
2020-10-15BAL_70971932.docdoc 97c5d59d160a9c7c2cd3b9038cbd57f37010bfd8b6038b0a7423ab5fb471b28aVirustotal results 32.26%Heodo
2020-10-15FILE_BYU_100120_RYH_101520.docdoc 14cc0eaf88072cd7dc29c10554024abceb5d548710ad957dcece3133a3a37dc7Virustotal results 33.87%Heodo
2020-10-15FILE_GO8F55E66YVFH.docdoc 275d247b675319a0e083b29b0e1c88b3bae28687e80b83a5b6db109ae72d954dn/aHeodo
2020-10-15Z0G78MU.docdoc 1c801dab1da2fe35b4c87872baf097cb7b5500b886bc75cc29cd8aad2e83d2d4Virustotal results 35.48%Heodo
2020-10-15REP_3838920325322495461664.docdoc 3e222a87ae7cd1bbffb29335e25d2af2896c60be6575ff6070da3341b33b4c66Virustotal results 32.26%Heodo
2020-10-14REP_7H518Y9978EHFECL.docdoc efcdcddeb3af5c4adfe778f16974560901ff95704d36d10c3c7969b43e1e5e10Virustotal results 30.65%Heodo
2020-10-14DOC_CIV_100120_ETW_101520.docdoc 9c89c629514bf2387f6c00a5c10903227b923f18741a52982877996be1ea5811Virustotal results 31.15%Heodo
2020-10-1460966631.docdoc 0d6731404ab523678e4e70272959a38c04c12861e5d94284b88316c3830f0b9bVirustotal results 30.65%Heodo
2020-10-14DOC_30823494436475535315849.docdoc 9670351cda3385021054e49a74fab0df1f24d4e7d1344baddab81bfc1a4ae963Virustotal results 33.87%Heodo
2020-10-14INV_PO_10152020EX.docdoc a68e59e985de5290d76c27b23438157a0e16a0df7104abff03c1407e136c70beVirustotal results 36.07%Heodo
2020-10-14BAL_OG0648344356DP.docdoc 4fe3a3262ca90cb88f1f6c2c052627845a55d8f6f6c6a2cc1015c7d9478bd6bdVirustotal results 29.03%Heodo
2020-10-14BAL_JMS_100120_SYN_101520.docdoc 51c5985ef24ede55a5446682821fdd52ed3f7c5a78f003cbca23e2412bd4971an/aHeodo
2020-10-14INV_PO_10152020EX.docdoc 525a536f885e832de7e90140c6d9eefc86cc8e4bb3272cb6c8ba5256e672331fn/aHeodo
2020-10-14REP_UKJ_100120_CGG_101520.docdoc 521a53d518e84c5c1975c7019ce22c19f8a9e56401c060a2228768825a495411Virustotal results 29.51%Heodo
2020-10-14PO_10152020EX.docdoc 0bff6bf6ba29202d79c2d6d99daa7e68c8d9510de74cf51953ad87f9b9e8c71aVirustotal results 29.03%Heodo
2020-10-14DOC_AT5320687756VI.docdoc acac416cece30666385ae079cb90ec34a542354582617767f179f71cfc03384bVirustotal results 27.42%Heodo
2020-10-14PO_10142020EX.docdoc 4941f3655d82f92d240ad2c9fcfe7171919c3e8d2986f4b5817bc018ecec5426Virustotal results 29.03%Heodo
2020-10-1464698090.docdoc 8c1a9e39c903295352d356dcb9fc85fabf4ab6714062a12893e5a606407e8925Virustotal results 27.87%Heodo
2020-10-14DOC_PO_10142020EX.docdoc 26aeaa9dcc83b725d24a50ca59314ae4d632561d2b1238acdbfd83f2507d1297Virustotal results 29.03%Heodo
2020-10-14REP_WBUTK9V4.docdoc f8666587a1ec8ae87ba5d425aeb180960f97608a84b764099910f22376a91376Virustotal results 27.42%Heodo
2020-10-1448710835.docdoc 11b6433cc50996eaa60f48be87ac8627f7ef22e82111415e743daee3d32b613aVirustotal results 29.03%Heodo
2020-10-14DOC_UVT_100120_EHJ_101420.docdoc 08544b0583237aefdb829f4bc623028d9242db49511ac36f7eac946b47533c6cVirustotal results 27.42%Heodo
2020-10-14A_AFY_100120_YCD_101420.docdoc 846d77d538cd9695250cf045c49a916d429f3cda26c50d0d76aa91783ff96344Virustotal results 27.42%Heodo
2020-10-14INV_QOS_100120_WWE_101420.docdoc 266b94aef7020a8f128002d83bca80c054900d06c066a2e4223fddbcdbc9e7feVirustotal results 26.98%Heodo