URLhaus Database

You are currently viewing the URLhaus database entry for http://tecserv.us/En_us/Messages/122018/ which is being or has been used to serve malware. Please consider that URLhaus does not differentiate between websites that have been compromised by hackers and such that has been setup by cybercriminals for the sole purpose of serving malware.

Database Entry


ID:93669
URL:http://tecserv.us/En_us/Messages/122018/
URL Status:Offline
Host:tecserv.us
Date added:2018-12-12 15:37:37 UTC
Threat:Malware download Malware download
Google Safe Browsing:Clean
Spamhaus DBL:Not listed
SURBL:Not listed
Reporter:@Cryptolaemus1
Abuse complaint sent (?): Yes (2018-12-12 15:38:09 UTC to abuse{at}godaddy[dot]com)
Takedown time:6 days, 2 hours, 32 minutes Bad
Tags:emotet epoch1 heodo

Payload delivery


The table below documents all payloads that URLhaus retrieved from this particular URL.

FirstseenFilenameFile TypePayload (SHA256)VTSignature
2018-12-14FILE-14759836.docdocdaf626c41861297d464cdbed1d16c6316ec9819f6cb101bbe966bddb16f5e8c3Virustotal results 14 / 60 (23.33)Heodo
2018-12-14eForm-27194622.docdoc7eac18cab2205d94e5e5e0c43daf64cbab2e0b43cf841213c25ca34e8124739fVirustotal results 14 / 59 (23.73)Heodo
2018-12-14eFILE-75510986.docdoc302c48a05dd16441a940d2aef4f0be42ad8c90dfd4cd363286e3314e2eefb812Virustotal results 14 / 59 (23.73)Heodo
2018-12-14doc-3525036.docdoc2d81c83f83390b33cbc97987f8bfa63703b9149d94f635d21ff4a5b21ed90cb4Virustotal results 14 / 58 (24.14)Heodo
2018-12-14eForm-94804386.docdoc2d489d0cced3ead17d88ee7fad06d398c6b82d9b8922d00550c30c374f39c673Virustotal results 14 / 59 (23.73)Heodo
2018-12-14FILE-05774000.docdoc279ac06191ab8084dc33176151f2447bf1c58fbc70c3c41e98a1b9aa9478462eVirustotal results 14 / 59 (23.73)Heodo
2018-12-14form-456484.docdocfc58a0bcba42ea86759dc87d92edeb315a6bbcdf425dac3873f7edb76ace54cbVirustotal results 16 / 60 (26.67)Heodo
2018-12-14form-9978039.docdoc121efa8dd8ab2b6b8ccedf86cdf8adc92d4c8fa3a125cb1365baa0689dccbe32n/aHeodo
2018-12-14form-8681934.docdoc7536dfce3e0c079a63cefd34b223e59b316ed9973d5bfb6ee3c98f87b9c41bfbVirustotal results 16 / 59 (27.12)Heodo
2018-12-14file-5250068.docdocae4f6d22148c0134412911ef46fce2f34161d502bccce54a8cf3a3c04b1e5629Virustotal results 16 / 60 (26.67)Heodo
2018-12-14eForm-339419.docdoc33a54144962b3ce69a0ee38ab1eb36758204ee2392942b9e138631bdfa52b425Virustotal results 16 / 60 (26.67)Heodo
2018-12-14file-435535.docdoc98eccee0c836b4134a4e23588d6023b66b8298db04325d6589b543cd24198de1n/aHeodo
2018-12-14DOC-225329.docdocd148a2cddf1344ac953d0e9e4f2329778c85fa04689957a759f8da74d74b5b65Virustotal results 16 / 59 (27.12)Heodo
2018-12-14form-615599.docdocb6f1df9851a715354f43a6491cc96024077d2dc260be1d9a4eedc8a90ccbd811n/aHeodo
2018-12-14doc-55831283.docdoccfb0a0b37ad59320ce06fe2b1c2cfe655e7891de1557b09fd9757e891cfc2e09Virustotal results 16 / 60 (26.67)Heodo
2018-12-14form-375646356819047.docdoc44d7c346c8996b0859e5e9d44fe1c52aa05ffdd47141a3120689fb984a5e05ebn/aHeodo
2018-12-14file-33832894919476.docdoc62a8b92bffb1685be24a124a8fe51416cf4079409df84813e9ea9723664c1469Virustotal results 16 / 61 (26.23)Heodo
2018-12-14eForm-7108238701169886.docdoc726cc76512a2e66ae6fc2fb1c82522703a5290c433cecbe5ac1f6f55714b87e9n/aHeodo
2018-12-14FILE-801285197916.docdoca7de9bebec13d17c08d2b86a8f7702f89e6e42664cc6c71f664348f192a4a360n/aHeodo
2018-12-14eForm-29248836953775.docdoc6f873e5dfbdc981b78c412e2c9f5d21eec4451542e8f2798867d3c6cb6633c59n/aHeodo
2018-12-14FORM-85686750539.docdoc1e9159f34ae36852205e29116681a99a96a5b602c7e39075863946b3195d2ac4Virustotal results 19 / 59 (32.20)Heodo
2018-12-14doc-0568813811592.docdocac8264939e32b9ce905ba5ce826f8c0de2f9c97d3f4386fe0547fc008cfe02f3n/aHeodo
2018-12-14eForm-8712808658.docdoc9a07f5bb5538c9bff815000d454bd2db0de30380e9b734e577471c1ba5d5edb8Virustotal results 17 / 60 (28.33)
2018-12-14FORM-0241330347.docdoc0a72b9250b1bea5bea854681723f1e37ad717e1f906e65af2862a8e0874bccf1Virustotal results 18 / 60 (30.00)Heodo
2018-12-14form-8625428873043.docdoc5bc3a24e2e1857fd541975f994594c2aec951e72ade1c76bdf5888409043e4e8n/aHeodo
2018-12-14eFILE-73836220924337.docdoc1d37340d371237e74eb0fdb0f972c2dcd6744fd511d06eb5d33afde8a8295528n/a
2018-12-14FILE-27509353528.docdocd2dc8c5c0090b04d779cc027a7e522f237c4d5b785e00ff7ac6930e3af123097n/a
2018-12-14eForm-767143196832.docdocc6355c5fd03ef206cb4cc07fdd80895c0018b3ff4de8bbeec23e3e828d5a5d1an/aHeodo
2018-12-14form-413173402324991.docdoca4a5451bbf60cc2f016344d65a57d32d39a1796f61e60e13c669723235488ae0Virustotal results 16 / 60 (26.67)Heodo
2018-12-13doc-05035348064703.docdoc188de9c5bcc224721e793a1911ededb50f5a784b22e08486a6352242efbc98f7Virustotal results 16 / 59 (27.12)Heodo
2018-12-13eForm-5607208219.docdoc0474f1188d117fb6275e1634f562db07d764f8e74b160ed6a0bf7f3b2e793ca2Virustotal results 16 / 59 (27.12)Heodo
2018-12-13form-24487155213422.docdoc62910bd4dc39f1b8dced0bd0d393b1c9eef4a34ae727298460d4339fc82b962aVirustotal results 16 / 59 (27.12)
2018-12-13Untitled-8950443523.docdoc2f83e5e09e185c7635e62a18ed0fd5c4c5a7895ba48343cee9c2000ab2962f8aVirustotal results 16 / 59 (27.12)Heodo
2018-12-13FILE-51607246547523.docdocb99358b4abbcce4c8341416dfa9450cc760ca027d8ea3be5e70854c545dcb917Virustotal results 15 / 59 (25.42)Heodo
2018-12-13form-3917656172484.docdoc0ee37456c702b8e1650b5df248a87413c41687eecfdbb4ff540f41b0a88cb888Virustotal results 16 / 59 (27.12)Heodo
2018-12-13FORM-7215892561.docdoc5052248113913256eb15b46681b191471a669bf4e6c52ec9634ac9f8b57117c7Virustotal results 16 / 59 (27.12)Heodo
2018-12-13DOC-712446129583.docdoc059887456aeaad64973c376c9eccdcd518ca5490c93e7e2751ab90c1d06686fdVirustotal results 15 / 59 (25.42)
2018-12-13doc-5611690987.docdocd79d2e007a84d1aff0769465f234f6e3185e02628e72bc871747f1ee3393c1fcVirustotal results 15 / 59 (25.42)Heodo
2018-12-13DOC-995259325979.docdoc08484205eb780119f2c37ec36751509b9c65d902a288dc81f7d7723eab5ae1e3n/a
2018-12-13Untitled-71633960299.docdoc7bb1da7696aa432cc5d18fc3fc6cd233524f23148b64c8eb21b042faccaac72dVirustotal results 16 / 58 (27.59)
2018-12-13eForm-6589583524348767.docdoc5e60a0cd2165c0d4d61b627f2816f57f737f6f45a230529f2eb90127a7f2677cVirustotal results 13 / 60 (21.67)Heodo
2018-12-13doc-7887922293.docdoc05d698916d1c31d378c1e1fa8615f98a97c801f0106190eaa76f6dd83fcb09bcVirustotal results 15 / 60 (25.00)
2018-12-13DOC-732739789255.docdocce1c0f5f5abd6ea153c0ac49b79a000328581ca3335f32b73c551df8a81ed427Virustotal results 15 / 59 (25.42)Heodo
2018-12-13DOC-357854216966.docdoc4d20cff1990bffe64b6ded89a9d388af2690593e390ee1a5e2be59b6eb3ff5baVirustotal results 14 / 60 (23.33)Heodo
2018-12-13eForm-136917922766050.docdoc990a095527a78022c8a2a6aa925489c2af6417776bbd39994528d1849e227b39Virustotal results 15 / 59 (25.42)Heodo
2018-12-13FILE-52398006306692.docdoc4e8471f745f86dc15b5355d2a316f640f46cdda3e1da21085c9d2ad116cdad90Virustotal results 15 / 58 (25.86)Heodo
2018-12-13Untitled-056104651736.docdocf07d8064c9c02c28b6d0cc03b6927e997bd8a0679c40613fff307646b204061dVirustotal results 15 / 60 (25.00)Heodo
2018-12-13file-535268611051.docdoc60dfa820c8a6e5dc039647170659f35cea18dee16b38b9e5661c23509a8151e3Virustotal results 15 / 59 (25.42)Heodo
2018-12-13form-4555376329.docdoc41cd78b1d9632cd16dd25bdb21f4e2581bd82bc9f00962fd0fc99ffd4e4761e7Virustotal results 15 / 59 (25.42)Heodo
2018-12-13eForm-05005497724.docdocabf591321ee9666a3119ed05190ce39ce1e41e4a198da0534c27b1419c601339Virustotal results 13 / 59 (22.03)Heodo
2018-12-13Untitled-3298286878.docdocaa4d9458d3efddbc60b4d544d18a0a950dc13aefc6398631f9de1d3714efcc6dVirustotal results 14 / 59 (23.73)
2018-12-13eFILE-29040692568914.docdocc04af4bdbe317feea3b7f668ced37cb1478c0f9a5fde400012c2420dd66f1a92Virustotal results 17 / 60 (28.33)Heodo
2018-12-13eForm-8344919633868789.docdoc9db4a0892d75870d05dcaf7ff38fc01a1d810a62176527dbd8cb83038c2bd9c5Virustotal results 17 / 58 (29.31)Heodo
2018-12-13eFILE-408610427936.docdoc7621111ceb66934cdc9397af16680ac2bb1ca7ff5cc68945021e88de380f7173Virustotal results 17 / 60 (28.33)Heodo
2018-12-13eForm-2318201544697713.docdoc72a7c8daeee57fdd2065746eafe3c7a7f86c78fb82f3868572bc939f649336c5Virustotal results 17 / 59 (28.81)Heodo
2018-12-13doc-9828592189.docdocc0ebf3c4ffdb37a5d7b758841244c7a28249ca6b12216ac8302f83560b37ec13Virustotal results 17 / 59 (28.81)Heodo
2018-12-13file-955293475432639.docdoc049b79dbaebc327aaa16695f590efb893f6339cab2feb5069387656553f48b05n/aHeodo
2018-12-13FORM-8816399610.docdocb343c1a13897913f6aa42086ae71db86188361435d8b2a4a418166aa2f731f89Virustotal results 17 / 60 (28.33)Heodo
2018-12-13doc-29545664628.docdoc8349e7db43b2dfd5e963b843784e0852263aae6ede7e8c9135679b32b8dd868dVirustotal results 17 / 60 (28.33)Heodo
2018-12-13Untitled-729082599947486.docdoc69847632d38d300a0c156d8275f058a86c60c9b14d021c010e6e476ad49228adVirustotal results 17 / 58 (29.31)Heodo
2018-12-13file-784378555695891.docdoc5b124e8c1bcf94fa65d2d8677f9f032611e7c490028d3269a9d8bc21ceda25c9Virustotal results 16 / 59 (27.12)Heodo
2018-12-13FORM-0369779647771029.docdocf73805f33e356f603413bdf591e947f418ff4c5a2a4f466e49978233385d135cVirustotal results 16 / 58 (27.59)Heodo
2018-12-13eForm-255643960400708.docdocf95b8c3df9cabe9694072ed77ace4f75141ae8b059264df36ef34fa5ef49e08en/a
2018-12-13file-047601529520.docdoc718a5dde8a3f88876e81e21bfae2d095e21d33cf5eea16c1f6c66a7c06c7691bn/aHeodo
2018-12-13eForm-845194592934556.docdoc149bf544ba2941b9bb71c9b00784328ab1854b8eb4f6a146cf4d7c3d3b0ac409n/aHeodo
2018-12-13DOC-7173644404879264.docdoca244daeb0426fd380c58234724705194e4fef3b196687d1caaee8323ee793306Virustotal results 16 / 60 (26.67)Heodo
2018-12-13doc-0986350846463566.docdocc64fd9f613dbf9abc1bda4df6bb5f991319df3a61d756992f5465d6d636c37beVirustotal results 16 / 58 (27.59)Heodo
2018-12-13form-364954491153.docdocbebead29ee76ab485e6a6397de02397ebc10ae8c575169459a034f25b96f3c0fn/aHeodo
2018-12-13doc-80902235889.docdocee6e161447a287b9128a41c3fb09efe48d749c4e45cf12ccd71233ff756df4a8Virustotal results 16 / 58 (27.59)Heodo
2018-12-13FORM-8355812094796.docdocac77be0f808ff6e961a7c39ddd15ada52aaab51939cadbcceb518a84bfbd823fn/aHeodo
2018-12-13form-871174621963011.docdoc781289b182a159a7b221a906baa693f6db144e411dd7bddd17314329cd1db1b0Virustotal results 16 / 60 (26.67)Heodo
2018-12-13eFILE-7122267641530.docdoc7000e2c985aa33762a07098806c87a0ece3d8a18a04c4df0bead60452c9623f0Virustotal results 15 / 58 (25.86)Heodo
2018-12-13file-6351564850.docdocc78c8eb870618dfc2da7c077942bc47e8ad4b235b0cb2259b8d0c49c26e3b520Virustotal results 16 / 59 (27.12)Heodo
2018-12-13doc-0464430467.docdoc69525cd72d6eaf60802f35616ac60fd96847d2aa09c96bf7858c674e545cd1adn/aHeodo
2018-12-13form-551302872587754.docdocb2f01cea0e17be4d633abf708a887e372f71e646f4d36bea37b52c072e6435e4n/aHeodo
2018-12-13FORM-369406937280.docdoc05fe1848161b90ad78aacdf5edeca9a40e5126d6d17670c86d655c8d1f5b8e48Virustotal results 16 / 59 (27.12)Heodo
2018-12-13eForm-47075031738244.docdoc36d036089a4445da00df30f72533cb7a6e00a80f9155d964fb1d5ff66f0f0110n/a
2018-12-13file-2763247126610.docdoc6bd210ae2f0a2c1b6886bab67713e42936d687b9a14db8b2826d7c1cc88f941aVirustotal results 17 / 60 (28.33)Heodo
2018-12-13FORM-4582432341.docdoc79afdcd26505eae486e0ede5204f5d83bd9bd2005ae2a953fc2a6b6217c311bdn/aHeodo
2018-12-13eForm-7925474561.docdoc38685942b47e58990dc620ef197910464398fd45716d7322c47e72a4b7d1e52bVirustotal results 17 / 59 (28.81)Heodo
2018-12-13eForm-110866727446976.docdoc215c143eb6b856224569677bb76fb2bdcb015cd52c4a66d85c0c3321295d7979n/aHeodo
2018-12-13eForm-69395066158.docdoc9c96d7ba1c3041d262ed888c4c789420a162a81bc7b3b811ffd240b11a0d7c94Virustotal results 15 / 59 (25.42)Heodo
2018-12-12DOC-86162416090768.docdoc45dd4db884c48ae1bdd66b923a1aa3dfbfff9289a82f2dfd799173631b268675n/aHeodo
2018-12-12eForm-5258628432.docdocb57238d246bb1589d3d380e2cee1d76c6b6061d7f888736082edd52dd7eb36baVirustotal results 16 / 57 (28.07)Heodo
2018-12-12doc-70605921648475.docdoc246b1803bbd1d0106a274022c5fc52d3c739ce83a7ca38fddc5dc4a2e82287ccVirustotal results 16 / 60 (26.67)
2018-12-12doc-610812845068.docdocde38a2bfa5c7b25b2fa7753709cecca4e9009fa7201c27289aa30b8f399f24a0Virustotal results 14 / 60 (23.33)Heodo
2018-12-12eFILE-3095436011708.docdoc5059ac7dab8daa7afa9447c7a67e73746d03bbb3a679208855f4c99f79901289Virustotal results 16 / 60 (26.67)
2018-12-12FILE-7781306135.docdoc7b3b6bd02ce13e57dad9d4bd2570251b1d003a94d241b711928fb3e7eff32067Virustotal results 14 / 61 (22.95)Heodo
2018-12-12DOC-1158227974224841.docdoc6cf6845d371f197812e959ea33e0d333bcbd4eb9235e3ffe31ff41204c686b6cVirustotal results 15 / 60 (25.00)Heodo
2018-12-12DOC-9136145615.docdocf52bffbbb1463d2dfbd5fcdb0b4079a5968bc616bb29e0b178ce8de00ba1722aVirustotal results 15 / 59 (25.42)Heodo
2018-12-12file-82678893893.docdoc99f856147693cb4820aca1685c999581e81ae41fc87951ef3f0b3d5841e2a5cbVirustotal results 13 / 60 (21.67)
2018-12-12eForm-910204445943718.docdoc4f51bef3d98f24b0ab216ca1bfefb570d27c85912c1254072750314107bf35e3Virustotal results 13 / 59 (22.03)
2018-12-12eForm-4119736671.docdocad2841849e5d2e4f1f4289ff3e21cdca259c8aab0e2fbd973b6905c904bfc673Virustotal results 14 / 60 (23.33)Heodo
2018-12-12FORM-0267763800.docdocc5935db6a62f8f748198fc2fef10fec7444ae4c7ddc20d3448422a41a5d91764Virustotal results 14 / 60 (23.33)Heodo
2018-12-12FILE-1628157888.docdocdf15ec550e90377179f4483e05d10c7e874faa20ff5347aaa6cca77e86001133Virustotal results 13 / 60 (21.67)Heodo
2018-12-12FORM-3261877517216438.docdoc3e0014709362067da201bc54cdee063722e5a554555e2c8b0e96c120dbcb1c03Virustotal results 13 / 60 (21.67)Heodo
2018-12-12FORM-78639652978440.docdoc489243762401e9ec841a4df7025d4c5a46688d7b7fc2a8cf88f67bfce2fa61e2Virustotal results 13 / 60 (21.67)Heodo
2018-12-12file-5274556922157639.docdoc33d04158631cd781effbe52582f8ebfa2bf1410313bb16a5a3a17cdbb0c929dfVirustotal results 13 / 60 (21.67)Heodo
2018-12-12FORM-562813885844.docdoc918e3d3c42283f6aaeb9d78a95dee884cb622e1e57e010279ef8d44fede76fc9Virustotal results 15 / 60 (25.00)Heodo
2018-12-12form-0769566099140.docdoc3617a13ee58793c5b07acd997ab935d2cd8b8167bc6e9ee673a2c2451d924342Virustotal results 14 / 59 (23.73)Heodo
2018-12-12DOC-7858261809.docdoc3784a0c4ce7fcd4926c682f8c1d38fe94453211706353ae321e4121a4385d58dVirustotal results 15 / 60 (25.00)Heodo
2018-12-12eForm-25407899864308.docdoc247cfa8045a44f316388b7e0ad94da559078a132ebf8063398500b9da64c51dbVirustotal results 15 / 59 (25.42)
2018-12-12eFILE-433041949271931.docdoc4288aabb1cb4c653d43c40f14fec848bc258c1366700256036bbe41a0ef0b4d9Virustotal results 15 / 60 (25.00)Heodo
2018-12-12doc-3796415813.docdoc8c105c6298171aabae2a4b104c26de583570336fb85c125a061c80e0d000bb89Virustotal results 15 / 59 (25.42)Heodo
2018-12-12eForm-527003693674.docdoc907892b13b885d5a485195660ef873f0fc34f6aee4f04a435c5b36eeaaef3002Virustotal results 15 / 60 (25.00)
2018-12-12doc-1378217075152442.docdoc37733c11731d9512ed119d1c9e49d3510bc2c7064f636f1a84dddbb63fdf5dfbVirustotal results 15 / 60 (25.00)Heodo
2018-12-12doc-767844979994805.docdoc529b7d0649ebb61935e7c239d79b18102f968d868a5641389d01303f0dfa06f6Virustotal results 14 / 61 (22.95)Heodo
2018-12-12Untitled-49440567121.docdoc21701b3381a62e62ac27c1c6fead1f4f13180de163aa4cd7fc1f34f782215ecdVirustotal results 15 / 61 (24.59)Heodo
2018-12-12FILE-99873204030.docdocdeb52955cf410deb3ac523a15e72202bf7c775f23470a0f001f8482463680ceaVirustotal results 15 / 59 (25.42)Heodo
2018-12-12file-34719307167.docdoc520244563ac19bd239f3147a93ca5c2647c51ce6099c00547fd5b3b582829b46Virustotal results 15 / 59 (25.42)
2018-12-12form-7209140852.docdoc50cd8bba7fb9f7e39e59693588825835cc88217e7bdfa9e273f510a767298e28Virustotal results 14 / 59 (23.73)Heodo
2018-12-12eForm-37341368082.docdoceec489a43483617940bcaf97f5223773c57625eccda5cc41bfe1674bbe4e65f2Virustotal results 14 / 60 (23.33)Heodo
2018-12-12eForm-5490145422798046.docdoc990e12abaddb248acf28ea85192878e02974b7d9318ce457960f701ceb9b4127Virustotal results 14 / 59 (23.73)