URLhaus Database

You are currently viewing the URLhaus database entry for http://witka.net/INFO/US/Need-to-send-the-attachment which is or has been used to serve malware. Please consider that URLhaus does not differentiate between websites thats have been compromised by hackers and such that has been setup by hackers for serving malware.

Database Entry


ID:91121
URL:http://witka.net/INFO/US/Need-to-send-the-attachment
URL Status:Offline
Host:witka.net
Date added:2018-12-07 11:45:36 UTC
Threat:Malware download Malware download
Google Safe Browsing:Clean
Spamhaus DBL:Not listed
SURBL:Not listed
Reporter:@Cryptolaemus1
Abuse complaint sent (?): Yes (2018-12-07 11:46:08 UTC to abuse{at}hetzner[dot]de)
Takedown time:2 hours, 53 minutes Good
Tags:emotet epoch2 heodo

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTSignature
2018-12-07Billing Invoice - Job # 754614.docdoc733724cd6ce25ed3d5e92a3c515662740e27e37106945ce01210b8cb65bdfe60Virustotal results 18 / 58 (31.03)Heodo
2018-12-07Inv. no. 6DL74675.docdoc295f6ef602b459b74163edb7e3264d4f408747e8d6c8fe3136f9a624d4b1789bVirustotal results 17 / 61 (27.87)Heodo
2018-12-07Final notice.docdoc661f4e65a7a32354417ac9a85a621f5cb45ac0447aa77dee49704a65d8212e3bVirustotal results 17 / 61 (27.87)Heodo
2018-12-07Customer No 4018437.docdoc4f0f62c04fb80ad73c9c7cdbb1a86ded0a4a09b343af9703d4011ac83bfcd083Virustotal results 17 / 59 (28.81)Heodo
2018-12-07Final notice.docdocda17ba8063d1d0771b86dc7856a514efef200b4ea64bf3ef593549f5dbc4c35fVirustotal results 16 / 56 (28.57)
2018-12-07Invoice Confirmation 7P795101.docdoc70850c75f51b5fd05d22bbeca9b011705375f71cab669e802140626376563e9aVirustotal results 16 / 60 (26.67)Heodo
2018-12-07Inv. no. 09CR244559.docdoc1f267d8e19c4db2792aa120ad43bda2afb4f4507d66e80a4ac3f487795c52289n/a
2018-12-07Accounts - Invoice.docdoc7a3fc72e8167da0f5a8dfd3f042d9bac4eba04186cd543e55983f109c2440530Virustotal results 17 / 60 (28.33)Heodo
2018-12-07Month notice.docdocec7d4502c19c7e1af37432658ad5ecdfc712fcaeafad6d20a2fff88d39170702n/aHeodo
2018-12-07Customer No 114708.docdocf6882dc5113226006ba2433ee8abd868e7c4d0f03ebbc8dbca15b467c31de0e1Virustotal results 17 / 60 (28.33)Heodo