URLhaus Database

You are currently viewing the URLhaus database entry for https://skysatservices.co.uk/cgi-bin/parts_service/O8xj3TSqVNo6OVs/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:751507
URL: https://skysatservices.co.uk/cgi-bin/parts_service/O8xj3TSqVNo6OVs/
URL Status:Offline
Host: skysatservices.co.uk
Date added:2020-10-26 12:17:05 UTC
Last online:2020-10-26 14:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Status unknown
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Status unknown
ProtonDNS :Status unknown
OpenBLD :Not blocked
DNS4EU :Not blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2020-10-26 12:18:03 UTC to eig-abuse{at}endurance[dot]com)
Takedown time:2 hours, 30 minutes Good (down since 2020-10-26 14:48:28 UTC)
Tags:doc emotet link epoch1 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2020-10-26list-2020_10_26-18869.docdoc 71f162c8957ab8fb83f188877490b60db94f52bf145476d52db84a502caa3a06Virustotal results 33.96%Heodo
2020-10-26mes-20201026-EHU444.docdoc c4840ad377c3998eae6bcb0ef239f283ecbbb3c896e8004fd674d10234a00189n/aHeodo
2020-10-26ARC_2020_10_26.docdoc 6e10d04f75eb03084b24cc9c1d08bf78c573375fdf35af45724038245061e11cVirustotal results 34.62%Heodo
2020-10-26File 20201026 5162.docdoc 5bdfa0c917624bd7de8b3378352e10dfc48b33bd79c14f27cc5b3e9dfe1d1ed7n/aHeodo
2020-10-26Attachments 2020_10_26 079.docdoc bb93640e7a962d06bda3911de02f559229a6bff1cbe867bf5cd47c457b69064dn/aHeodo
2020-10-26Inf-2020_10_26-Z8044.docdoc 7fe82452655b311a5f4854aabfdd91edb37e5232dc2e4020eacf3714c964353bVirustotal results 28.57%Heodo
2020-10-26MES 840676.docdoc 7440dda8e555e9035377fc29f2d9172549267ddd4e94229023c0109b5d2d9e2eVirustotal results 32.69%Heodo