URLhaus Database

You are currently viewing the URLhaus database entry for https://ctracknxt.in/wp-content/swift/WFBWH/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:734407
URL: https://ctracknxt.in/wp-content/swift/WFBWH/
URL Status:Offline
Host: ctracknxt.in
Date added:2020-10-22 12:03:06 UTC
Last online:2021-10-08 09:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2021-10-08 06:46:31 UTC to abuse{at}hostinger[dot]com)
Takedown time:11 months, 20 days, 22 hours, 21 minutes Bad (down since 2021-10-08 10:25:10 UTC)
Tags:doc emotet link epoch3 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-10-22Invoice 00024565.docdoc 59235980108e00a0011ebeca9348c5a39ef6d6ec0b052e15ddeb825e9c21e3d5Virustotal results 39.66%Heodo
2020-10-22Copy invoice #0788.docdoc 7104dd32f9de62701f5d5a01ac763237757d11e8fa2c10ec24749f5791467fcbVirustotal results 38.98% Heodo
2020-10-22October Invoice.docdoc be4c7d09c56502c45ff8439dadfb9497515c9df9558129f5b2e9884932adbd50Virustotal results 40.38% Heodo
2020-10-22INV_3109.docdoc 980307d89e587b452b4070afed9ad8494e035481816544a310dec6a81a7aa8c2Virustotal results 39.62% Heodo
2020-10-22Form.docdoc 6e126e02b7f4c06d354c623ac04174c9b81ca1ccb03c83f5de29b5722526983dVirustotal results 37.70% Heodo
2020-10-22PO# 10222020.docdoc d9e9ce342586063f33aaaaf408ee47cc54b990cacbaab0383bbacc0852320faaVirustotal results 39.62% Heodo
2020-10-22October Invoice.docdoc 67901eebf58c9cbbed2c00e87cb702c2e69cf959926247f3f99e59ba445a73f7n/a Heodo
2020-10-2289475821.docdoc 8ce84cc08c61ef8da560dab9863109bab6dac208bdb030c9d513aa71dc7b3492Virustotal results 40.68% Heodo
2020-10-22October Invoice.docdoc 0dd7566d93fe470be42c3b43f89d10022539dd21c040c3af9f234f5cdf3f580eVirustotal results 36.07% Heodo
2020-10-22Payment status.docdoc dfb6817c6e31d81f6a98945394150b500c04fb563d8fe9ae170733fc922f8421n/a Heodo
2020-10-22Inv_728477.docdoc d8bbe49377ebac547c2afa2ab29a64b774b4ddb3501f62becbaedf4d24c33a0fVirustotal results 38.89% Heodo
2020-10-22form.docdoc 5406fe66b809829db1393154a39470f8da4d7b86a2c0ef2e451ad2f19effdb27n/a Heodo
2020-10-2203307.docdoc 01b228cd4f024acce23be7b762797915e8ece1d47c301e20f9596a98aed2acb5Virustotal results 49.06% Heodo
2020-10-22INV #0254272 FOR PO #00387548047.docdoc 401e3ed004f6a908758dcda91de701a2bf29c67379e11a3fa21438ceb5323864Virustotal results 48.21% Heodo
2020-10-22Inv. 0094839809027.docdoc bfc258207c269b90840c0f912c129f0f366345cdc1c88c174f59a2848a979d8eVirustotal results 49.09% Heodo
2020-10-22INV_006507.docdoc 8849667217cbf5aaf17be7bc7eaef3b073f32d6d7d7a6f36a022c270228a0d8bVirustotal results 49.09% Heodo
2020-10-22Form - Oct 22, 2020.docdoc 4184aff59a80548872251572d47d8a0f88865d08d8b944efeadb47c07d6f30d8Virustotal results 50.00% Heodo
2020-10-22invoice.docdoc fe69570cfe43c056f36d0a40929d53d4532cd181924613bda7436913979c33cbVirustotal results 49.06% Heodo
2020-10-22Form.docdoc 638b48f5106a07180e10d72cb0c0fdd9c3568b08e463ee480d66fae4ab87f029Virustotal results 49.06% Heodo
2020-10-22invoice.docdoc 48c4356a3629c972a22b83fe612ed12ed47467fd7085e18ac16786cbd9c2bc4aVirustotal results 53.70% Heodo
2020-10-22INV #05485 FOR PO #55536965911.docdoc a89a346ba95533594891a15e53625209199e68bad7519485b3bfaf1954b2a8b8n/a Heodo
2020-10-22invoices 795 & 36294.docdoc 7132fddab8ccd72577838968f3e91a36c9ce64950fde88e34635e5e008be8a13Virustotal results 43.33% Heodo
2020-10-22Payment.docdoc 2bc5c1591569f6e8a480a530bf343df21867da564b7503824cb0e5193d3f8937n/a Heodo
2020-10-22form.docdoc 47024e56dc7cb9b1cb36ff764702c5105a0af0873104fd86e72d9f206c38ebacn/a Heodo
2020-10-2200754277.docdoc 14a0d5ba65a4585300b4daafa06c20898b303bcea1302012ef2f19559124edban/a Heodo
2020-10-220437881992.docdoc 410f511f7ba84ffbd69fbabc0226828f52eec22c5b5db6759f60fb65ea20270an/a Heodo
2020-10-22WR004 invoicing.docdoc c399ca12799f8c2ed7c5029b3f148939c9f948dad3d183ba766f2c13c84c3ec8Virustotal results 43.55% Heodo