URLhaus Database

You are currently viewing the URLhaus database entry for http://moldavitedesign.com/IRS-Transcript-treasury-gov/Wage-and-Income-Transcript/ which is or has been used to serve malware. Please consider that URLhaus does not differentiate between websites thats have been compromised by hackers and such that has been setup by hackers for serving malware.

Database Entry


ID:90369
URL:http://moldavitedesign.com/IRS-Transcript-treasury-gov/Wage-and-Income-Transcript/
URL Status:Offline
Host:moldavitedesign.com
Date added:2018-12-06 17:14:00 UTC
Threat:Malware download Malware download
Google Safe Browsing:Clean
Spamhaus DBL:Not listed
SURBL:Not listed
Reporter:@Cryptolaemus1
Abuse complaint sent (?): Yes (2018-12-06 17:14:38 UTC to abuse{at}liquidweb[dot]com)
Takedown time:4 hours, 12 minutes Good
Tags:doc emotet epoch2 heodo

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTSignature
2018-12-06IRS Tax Return Transcript - 12 06 2018.docdoc61d1e436611166258dfb38ba3689e88a3ccad183fa37c0c60497689798dc94cbVirustotal results 16 / 57 (28.07)Heodo
2018-12-06IRS Wage and Income Transcript.docdoc144051b0f71cbda8ab27e180ee51d652d3a2972d51e5c656a601ed8be3195bf3Virustotal results 16 / 60 (26.67)
2018-12-06Tax Return Transcript.docdoce296a9def0f7d3a54b230de642c6471ac9382a09f867b6be74088429ace7b157n/a
2018-12-06Verification of Non-filing Letter.docdoc6d01524edd4a75b561b1037e5f0d1f59529397cff067bd934e5b8cff4c312645Virustotal results 16 / 60 (26.67)Heodo
2018-12-06IRS Record of Account Transcript.jsjs0637ad3063ccae8474343ff5b22e74123ee144739df93914284c1407a96cbf6cVirustotal results 3 / 59 (5.08)
2018-12-06IRS Verification of Non-filing Letter - 12 06 2018.jsjsc4f512c2d048dd1c011d25be24c7f6694bb422a52288990ae305f60d02bf884bVirustotal results 2 / 57 (3.51)
2018-12-06IRS Tax Account Transcript - 12 06 2018.jsjsaadca608582f0e34005c99ce6987caa2feeed0b3fd336f9ee7e05a9ee7831b14n/a
2018-12-06IRS Wage and Income Transcript.docdocbcd2d834538fb6f6ea0f7857f613f95ea5399e2ad1bcb46f827180509059eba3n/aHeodo
2018-12-06IRS Record of Account Transcript.docdoce8abe7bbc2c20b3fcdfa12f00f07d722ffcd905586bed2c07d1706a9abeef2b6n/aHeodo
2018-12-06Tax Account Transcript.docdoc0823209426c4b58d11880db0b84613c85bdfef7c399e2f33312e11850b360454Virustotal results 15 / 59 (25.42)Heodo