URLhaus Database

You are currently viewing the URLhaus database entry for http://robwalls.com/Dec2018/En_us/Need-to-send-the-attachment/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry




ID:90703
URL: http://robwalls.com/Dec2018/En_us/Need-to-send-the-attachment/
URL Status:Offline
Host: robwalls.com
Date added:2018-12-07 00:52:32 UTC
Last online:2019-12-17 10:XX:XX UTC
Threat:Malware download Malware download
URLhaus blocklist:Not blocked
Spamhaus DBL :Not blocked
SURBL :Not blocked
Quad9 :Not blocked
AdGuard :Not blocked
Cloudflare :Not blocked
dns0.eu :Not blocked
ProtonDNS :Not blocked
OpenBLD :Blocked
DNS4EU :Blocked
Reporter: Cryptolaemus1
Abuse complaint sent (?): Yes (2018-12-07 00:54:45 UTC to postmaster{at}myhostcenter[dot]com)
Takedown time:1 year, 0 month, 15 days, 9 hours, 23 minutes Bad (down since 2019-12-17 10:17:45 UTC)
Tags:doc emotet link epoch2 heodo link

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTBazaarSignature
2019-11-30n/ahtml 8dfbf98adfb38f0b612d15b4baccb23de19cf12dee36c9897708d62aaab6d308Virustotal results 0.00% 
2018-12-18this-site-is-virus.docdoc c2e393ff568f4a87ce48011f10664138e569710f56ddc0462aa7f36bdad5ecadVirustotal results 0.00%
2018-12-07Accounts - Invoice.docdoc f441bde0ceab792bc6549f95949b724bb170a303d15b07495c7eed4566069dd8Virustotal results 31.03% 
2018-12-07Latest invoice - 001673.docdoc 75e804ff47518aa610ac6968198ecb5c1e2e927ca4fd6bc869e979787e47ab2fVirustotal results 28.07% Heodo
2018-12-07Statement as at 07.12.2018.docdoc 4f0f62c04fb80ad73c9c7cdbb1a86ded0a4a09b343af9703d4011ac83bfcd083Virustotal results 28.81% Heodo
2018-12-07Invoice Query.docdoc da17ba8063d1d0771b86dc7856a514efef200b4ea64bf3ef593549f5dbc4c35fVirustotal results 28.57% Heodo
2018-12-07Statement as at 07.12.2018.docdoc 445119cdbe8fdab8457ce7c19335a6e52a3badaa3c1b4e32b6af2c91e5514cb4Virustotal results 27.59% Heodo
2018-12-07Customer No 6682618.docdoc 70850c75f51b5fd05d22bbeca9b011705375f71cab669e802140626376563e9an/a Heodo
2018-12-07Invoice # 35DW8644.docdoc d7333f9048dfe7ec88a8a146730105ef1370b2e00eec7f7c11da444a92dde162Virustotal results 28.81% Heodo
2018-12-07Outstanding invoice.docdoc 7a3fc72e8167da0f5a8dfd3f042d9bac4eba04186cd543e55983f109c2440530Virustotal results 28.33% Heodo
2018-12-07Invoice as at 07/12/2018.docdoc ec7d4502c19c7e1af37432658ad5ecdfc712fcaeafad6d20a2fff88d39170702n/a Heodo
2018-12-07Statement as at 07.12.2018.docdoc dd622df9ab616e7fa31ae9d160431dd96953bd297e8dc5294a2b339b77bbd9b6n/a Heodo
2018-12-07Outstanding invoice.docdoc f6140ff58d4e1e89d9931dde3a9414af08c4834c11c8949c0be40a9236dd25b0Virustotal results 30.00% Heodo
2018-12-07Invoice Confirmation QG24913.docdoc 77bd25346223a545453731426c73602bfdde844be5bfc28d077605b68fe45e62n/a Heodo
2018-12-07Month notice.docdoc f9f82559d5da865447d7db1555e39e205f2af8b10e1e7a4d7bd7ef6c979bcdb1Virustotal results 28.33% Heodo
2018-12-07Inv. no. 55VEU9721.docdoc d3b9defcc492a3427bffcc2450ff5bfa1886294dffc219648b4786afeb55185aVirustotal results 27.87% Heodo
2018-12-07Invoice as at 07/12/2018.docdoc 2b6225d16f07d33fb329056ef0d2085db72abb53afca2dd8e5227580fecd6898Virustotal results 28.81% Heodo
2018-12-07Latest invoice - 984849.docdoc a0ae8dc7067939e82ef3fe6c1a3bed1b02cd2753f389fc3dd2588057b89fbdden/a Heodo
2018-12-07Accounts - Invoice.docdoc 9f3dc68dc16a6e3405f859948513cd5bfe9924b2a607fec5c1ce224c90d26c5dVirustotal results 28.33% Heodo
2018-12-07Month notice.docdoc 43fc9914e34fe337795310dd6368bbd000cb0ccb387de9dad2c884c5a870afa1Virustotal results 28.81% Heodo
2018-12-07Invoice # 502R36940.docdoc 674861d38f1ea293e0f3295cdee486a0e506c3917797beba40e6ddaf78867bb0Virustotal results 28.33% Heodo
2018-12-07Statement as at 07.12.2018.docdoc f6882dc5113226006ba2433ee8abd868e7c4d0f03ebbc8dbca15b467c31de0e1Virustotal results 28.33% Heodo
2018-12-07Final notice.docdoc b9bb1c8920dfa548bad11ff04b2005f8a280fb7b3fc638bc9875353d67b246d1Virustotal results 28.33% Heodo
2018-12-07Month notice.docdoc 1b5b25a9da4a3bb5f806bd07fa6e7ca7e1fe521bd29a385d7a864d66ad14aeb5Virustotal results 36.67% Heodo
2018-12-07Outstanding invoice.docdoc 23d1ebb07c9d9be91a57e107c85611db2b1c7066ff9d0bbf492191f52da35a91n/a Heodo
2018-12-07Month notice.docdoc 2abcb7b869c8fc8a12074e1a24b9377263f51c91db46a52c9a44829af6da4ed5Virustotal results 37.29% Heodo
2018-12-07Invoice Confirmation 7B934450.docdoc 0f72c1defcae902417cf0393e8ef28143914b0b3f61cdce554ea018e181ff0a6Virustotal results 35.00% Heodo
2018-12-07Customer No 278232.docdoc 9393c1c425a62341198ee2c2fdf720aa183b94c31e24fc037cefe1a5fb868631Virustotal results 37.29% Heodo
2018-12-07Invoice # 48C44634.docdoc c111580905be91c9e3de97525d0a7f7a03e947606c31d4638a22a22b39ef966eVirustotal results 33.90% Heodo
2018-12-07Final notice.docdoc 2ad637beed379f852e3a9cf85d3b0b5499c090effeb2adf6fcde17114d92cfacVirustotal results 36.67% Heodo
2018-12-07Customer No 2009083.docdoc ab1d2d58da78b8f825471643d5741830d22d4b6e7ae1ab1c390b0246ca86ac90Virustotal results 33.33% Heodo
2018-12-07Invoice.docdoc d52cf121765a06e662ab0fd1a97bfdc3b2b3c527b1bb8c3bd612dcac9a47ddefVirustotal results 36.67% Heodo
2018-12-07Invoice Query.docdoc d52c96d5aeab96a6a01a7673ec78508ccfea5c3b7fd7acca3cb19847b5b832fdVirustotal results 37.93% Heodo
2018-12-07Invoice # 647P6821.docdoc eadab41408383bc0cf958c289f9858cd8e957bfea5e6ed87c019c9f06703e3c2Virustotal results 29.51% Heodo
2018-12-07Invoice Query.docdoc 5f50deac85a3e3e51cb6c6d7f8fa81f1e426281225e8e685c90a32f23c8b15d8n/a Heodo
2018-12-07Latest invoice - 132121.docdoc ed15ace286bf2ab379f1b8ba2a2aef1875da2bca87326007444c0ee9c087829bVirustotal results 31.67% Heodo
2018-12-07Billing Invoice - Job # 9964302.docdoc 4dbe1f57797a45a1604e4df92c5d526c9347f141f7452215746beef5e0900dd4Virustotal results 31.03% Heodo
2018-12-07Invoice as at 07/12/2018.docdoc 0f1cfd3ac5367a68398375794e0d7d5ad69a7d6cb6074b873e4725d7b15016a6Virustotal results 30.00% Heodo
2018-12-07Month notice.docdoc d0b4610c8a186b60d73bfc816840a9b15a9973995e86dfb5b9c21fbd54f03b8bVirustotal results 32.76% Heodo
2018-12-07Month notice.docdoc e984fed05fa026dae4499a7a4542ff509c81063e72709b6c19feea63670fb891Virustotal results 32.20% Heodo
2018-12-07Invoice Query.docdoc a9cd8939572ef8dd0bd35ca2b712d24f599865b57b66d24883ddacf317c95442Virustotal results 30.00% Heodo
2018-12-07Latest invoice - 305634.docdoc b77c69ef9bf6d7154fccf8b8d0c0ce3e3ae1243dcbf7ba77da915aea09364c84Virustotal results 31.03% Heodo
2018-12-07Outstanding invoice.docdoc 652075bd2cf5c9ec9e19150302f6a6ca48fcecb9c4b9f43f04a14d3765b3cb0fVirustotal results 32.76% Heodo